■■■■□ Grafana 8.x Local File Inclusion (Pre-Auth) https://golangrepo.com/repo/taythebot-grafana-lfi-vulnerability https://t.me/cKure/10366
All posts by cK-bot
December 9, 2021 at 12:37AM
■■■■□ Grafana v8.x LFI. shodan: shodan search –color ‘app=”Grafana”‘ –fields ip_str https://t.me/cKure/10365
December 9, 2021 at 12:34AM
■■■□□ Attackers exploit another zero-day in ManageEngine software (CVE-2021-44515). https://www.helpnetsecurity.com/2021/12/07/cve-2021-44515/ https://t.me/cKure/10364
December 9, 2021 at 12:32AM
■■□□□ Data-Leak: A state-owned French transportation giant has inadvertently exposed nearly 60,000 employees to identity fraud after leaking their personal information via an unsecured HTTP server, according to researchers. https://www.infosecurity-magazine.com/news/french-transport-giant-exposes/ https://t.me/cKure/10363
December 8, 2021 at 04:53PM
■■■□□ A Mirai-based botnet called ‘Moobot’ is spreading aggressively via exploiting a critical command injection flaw in the webserver of many Hikvision products. https://www.bleepingcomputer.com/news/security/moobot-botnet-spreading-via-hikvision-camera-vulnerability/ https://t.me/cKure/10360
December 8, 2021 at 04:50PM
■□□□□ Privacy: Telegram has added content protection support to enable users to block others from saving or forwarding posts shared in groups and channels. https://www.bleepingcomputer.com/news/software/telegram-adds-content-protection-support-for-groups-and-channels/ https://t.me/cKure/10359
December 8, 2021 at 12:31AM
■■■■□ The hidden side of Seclogon part 2: Abusing leaked handles to dump LSASS memory https://splintercod3.blogspot.com/p/the-hidden-side-of-seclogon-part-2.html https://t.me/cKure/10358
December 7, 2021 at 11:09PM
■■□□□ Grafana nuclei Zero-Day template: https://github.com/projectdiscovery/nuclei-templates/blob/master/vulnerabilities/grafana/grafana-file-read.yaml https://t.me/cKure/10357
December 7, 2021 at 11:08PM
■□□□□ Grafana Zero-Day https://nosec.org/m/share/4914.html https://t.me/cKure/10356
December 7, 2021 at 11:07PM
■■□□□ One line command to detect unauth arbitrary file reading vulnerability in Grafana. https://t.co/9jzPH7KeUY https://t.me/cKure/10355
