Mail.ru: [https://kiwi.youdrive.today/] Information disclosure via Kiwi TCMS vulnerability

Outdated ```kiwi.youdrive.today``` ([Kiwi TCMS](https://kiwitcms.org/) instance) was vulnerable to information disclosure via JSON-RPC endpoints. Outdated [Kiwi TCMS](https://kiwitcms.org/) instance w ...

Continue Reading
BloodyAD – An Active Directory Privilege Escalation Framework

[![](https://blogger.googleusercontent.com/img/a/AVvXsEiOul_KCkh9ENHvZadXvKqVY2grj6MP9ngEozIq4I-y_afr5xhRsEQsfOp5ad2OFlwFhqKOZdYO046qLVNBW3fpullLfPqqW9CMQb-yPIBptr8BfWHydGHM2AVY9kBv2dSSCpQgi3H8rIXYkGK ...

Continue Reading
LACheck – Multithreaded C# .NET Assembly Local Administrative Privilege Enumeration

[![](https://blogger.googleusercontent.com/img/a/AVvXsEjYav8wQXsJJmo1gRA2o_KhZvDPF7beN8UQ2RknaM8q_5r56HGzYS7CmE7qn_MLvgzi911k6V-Ik0no9nK6zz1_BiPL33IsmKcHwF_vp-tvCGh5PrHx0WdHbnweAERpm6-z_rfl2fOANof4cDh ...

Continue Reading
What is SAML authentication ? How does it work ?

Enterprises using various business apps have a tough time maintaining data’s secrecy and access grants as per user roles throughout the infrastructure landscape. SAML (Security Assertion Markup Langu ...

Continue Reading
OpenSea ‘Free Gift’ NFTs Drain Cryptowallet Balances

Users of OpenSea, the world’s largest digital-collectible marketplace, have found their cryptocurrency wallets ripped off thanks to cyberattackers weaponizing security bugs that allowed them to highj ...

Continue Reading
CVE-2021-22008

The vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue by sending ...

Continue Reading
CVE-2021-28495

In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, user authentication can be bypassed when API access is enabled via the JSON- ...

Continue Reading
Fpicker – A Frida-based Fuzzing Suite Supporting Various Modes (Including AFL++ In-Process Fuzzing)

[![](https://2.bp.blogspot.com/-2DFBtt0igd8/YR2RnxGfu_I/AAAAAAAArR4/u_iEJXOd1hwknuA-Bil4XIP3QN8pDPt2gCK4BGAYYCw/w400-h351/fpicker_1_fpicker_logo-766362.png)]() fpicker is a Frida-based fuzzing suite t ...

Continue Reading

Back to Main

Subscribe for the latest news: