Fully Weaponized CVE-2021-40444 Malicious docx generator to exploit CVE-2021-40444 (Microsoft Office Word Remote Code Execution), works with arbitrary DLL files. https://github.com/klezVirus/CVE-2021-40444 https://t.me/cKure/9365
All posts by cK-bot
September 16, 2021 at 02:20PM
■□□□□ Hillstone virtual Web Application Firewall detects and defends against treats in web applications. https://www.helpnetsecurity.com/2021/09/16/hillstone-virtual-web-application-firewall/ https://t.me/cKure/9364
September 16, 2021 at 02:17PM
■■□□□ Critical vulnerability in Netgear smart switches that could be leveraged by an attacker to potentially execute malicious code and take control of vulnerable devices. The flaw — dubbed “Seventh Inferno” (CVSS score: 9.8) — is part of a trio of security weaknesses, called Demon’s Cries (CVSS score: 9.8) and Draconian Fear (CVSS score: 7.8).…
September 16, 2021 at 02:15PM
■■■□□ ROFL-FUZZER: Ths is Domato, a DOM Fuzzer from Google, but hosted as an website It generates a instance of a newtab on the template given by the user , cuz come on no one wants thousands of html files on their PC HDD. https://github.com/GawdOfROFL/rofl-fuzzer https://t.me/cKure/9362
September 16, 2021 at 02:13PM
■■□□□ SpoolSploit: A collection of Windows print spooler exploits containerized with other utilities for practical exploitation. https://github.com/BeetleChunks/SpoolSploit https://t.me/cKure/9361
September 16, 2021 at 01:57PM
■■■□□ Data-Leak: Actor selling 188K decrypted strings from the dump JamTangan.com at the price of $80 in BTC (negotiable). https://t.me/cKure/9359
September 16, 2021 at 10:58AM
■■■□□ Data-Leak from Israel via Malaysia: Apparently a Malaysian hacking group or individual will likely leak data of 7 million Israeli citizens. https://t.me/cKure/9357
September 16, 2021 at 10:46AM
■□□□□ Microsoft on Wednesday announced a new passwordless mechanism that allows users to access their accounts without a password by using Microsoft Authenticator, Windows Hello, a security key, or a verification code sent via SMS or email. The change is expected to be rolled out in the coming weeks. https://t.me/cKure/9355
September 16, 2021 at 10:20AM
■□□□□ Ransomware criminals saying ‘We’ll burn your data if you get a negotiator’ can’t be legally paid off anyway. https://www.theregister.com/2021/09/15/grief_corp_ransomware_negotiator_rage/ https://t.me/cKure/9354
September 16, 2021 at 10:18AM
■□□□□ Data-Leak: Customer Care Giant TTEC Hit By Ransomware. https://krebsonsecurity.com/2021/09/customer-care-giant-ttec-hit-by-ransomware/ https://t.me/cKure/9353
