-
Fake LDAPNightmware exploit on GitHub spreads infostealer malware
Fake LDAPNightmware exploit on GitHub spreads infostealer malware A deceptive proof-of-concept (PoC) exploit for CVE-2024-49113 (aka “LDAPNightmare”) on GitHub infects users with infostealer malware that exfiltrates sensitive data to an external FTP server. The tact … Read more Published Date: Jan 11, 2025 (1 day ago) Vulnerabilities has been mentioned in this article. CVE-2024-49113 CVE-2024-49112 Go…
-
CVE-2024-49415 : Samsung Android devices Impacted
CVE-2024-49415 : Samsung Android devices Impacted CVE-2024-49415 is a critical vulnerability found in Samsung devices running Android versions 12, 13, and 14. This vulnerability was discovered by researchers from Google Project Zero, a team dedicated … Read more Published Date: Jan 11, 2025 (1 day, 2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2024-12847 CVE-2024-53704…
-
CVE-2024-53704 impacts SonicWall
CVE-2024-53704 impacts SonicWall CVE-2024-53704 is a high-severity vulnerability impacting SonicWall’s SSLVPN authentication mechanism. This flaw, with a CVSS score of 8.2, allows remote attackers to bypass authentication and gain un … Read more Published Date: Jan 11, 2025 (1 day, 4 hours ago) Vulnerabilities has been mentioned in this article. CVE-2024-12847 CVE-2024-53704 CVE-2024-51741 CVE-2024-46981 CVE-2024-54677 CVE-2024-50379 CVE-2024-38193…
-
2025-01-09: CVE-2017-0199 XLS –> HTA –> VBS –> steganography –> DBatLoader/GuiLoader style malware
2025-01-09: CVE-2017-0199 XLS –> HTA –> VBS –> steganography –> DBatLoader/GuiLoader style malware 2025-01-09 (THURSDAY): CVE-2017-0199 XLS –> HTA –> VBS –> STEGANOGRAPHY –> DBATLOADER/GUILOADER STYLE MALWARE NOTES: Zip files are password-protected. Of note, this site has a new password scheme … Read more Published Date: Jan 11, 2025 (1 day, 8 hours ago) Vulnerabilities has been…
-
CVE-2024-12847: Proof-of-Concept Exploit Code Released
CVE-2024-12847: Proof-of-Concept Exploit Code Released OverviewCVE-2024-12847 is a critical security vulnerability affecting certain models of NETGEAR routers, notably the DGN1000 and DGN2200 v1. This vulnerability has been assigned a CVSS score of 9.8, r … Read more Published Date: Jan 11, 2025 (1 day, 9 hours ago) Vulnerabilities has been mentioned in this article. CVE-2024-12847 CVE-2024-51741 CVE-2024-46981…
-
Reversing, Discovering, And Exploiting A TP-Link Router Vulnerability — CVE-2024–54887
Reversing, Discovering, And Exploiting A TP-Link Router Vulnerability — CVE-2024–54887 OverviewRecently, I picked up an interest in reverse engineering and exploit development. After a while, picking at Hack The Box challenges can get tired, and I started looking for a more interesting … Read more Published Date: Jan 11, 2025 (1 day, 10 hours ago) Vulnerabilities has been mentioned…
-
CVE-2024-12847 (CVSS 9.8): NETGEAR Router Flaw Exploited in the Wild for Years, PoC Published
CVE-2024-12847 (CVSS 9.8): NETGEAR Router Flaw Exploited in the Wild for Years, PoC Published A severe security vulnerability has been discovered in several Netgear routers, allowing remote attackers to gain unauthorized access and control over the devices. The vulnerability, identified as CVE … Read more Published Date: Jan 11, 2025 (1 day, 14 hours ago) Vulnerabilities has…
-
Ivanti Connect Secure Zero-Day Threat: 2,048 Vulnerable Devices and Critical Exploitation Details Unveiled
Ivanti Connect Secure Zero-Day Threat: 2,048 Vulnerable Devices and Critical Exploitation Details Unveiled On January 8, 2025, Ivanti disclosed an actively exploited zero-day vulnerability, tracked as CVE-2025-0282, affecting its Connect Secure appliances. This critical stack-based buffer overflow vulnerab … Read more Published Date: Jan 11, 2025 (1 day, 14 hours ago) Vulnerabilities has been mentioned in this…
-
Threat Actors Exploit a Critical Ivanti RCE Bug, Again
Threat Actors Exploit a Critical Ivanti RCE Bug, Again Source: Lobro via Alamy Stock PhotoA Chinese threat actor is once again exploiting Ivanti remote access devices at large.If you had a nickel for every high-profile vulnerability affecting Ivanti appli … Read more Published Date: Jan 10, 2025 (1 day, 17 hours ago) Vulnerabilities has been mentioned in…
-
China’s UNC5337 Exploits a Critical Ivanti RCE Bug, Again
China’s UNC5337 Exploits a Critical Ivanti RCE Bug, Again Source: Lobro via Alamy Stock PhotoA Chinese threat actor is once again exploiting Ivanti remote access devices at large.If you had a nickel for every high-profile vulnerability affecting Ivanti appli … Read more Published Date: Jan 10, 2025 (1 day, 17 hours ago) Vulnerabilities has been mentioned in…