■□□□□ #Russia linked APT groups leveraged the Lithuanian nation’s technology infrastructure to launch cyber-attacks against targets worldwide. https://t.me/cKure/7084
All posts in Uncategorized
March 7, 2021 at 05:42PM
■■■□□ Chameleon – Customizable Honeypots For Monitoring Network Traffic, Bots Activities And Username\Password Credentials (DNS, HTTP Proxy, HTTP, HTTPS, SSH, POP3, IMAP, STMP, RDP, VNC, SMB, SOCKS5, Redis, TELNET, Postgres And MySQL) https://github.com/qeeqbox/chameleon https://t.me/cKure/7083
March 7, 2021 at 05:41PM
■■□□□ packetStrider – A Network Packet Forensics Tool For SSH. packetStrider for SSH is a packet forensics tool that aims to provide valuable insight into the nature of SSH traffic, shining a light into the corners of SSH network traffic where golden nuggets of information previously lay in the dark. https://github.com/benjeems/packetStrider https://t.me/cKure/7082
March 7, 2021 at 05:19PM
■■■□□ RCE via war upload in Tomcat using path traversal. https://blog.defmax.io/rce-via-war-upload-in-tomcat-using-path-traversal-e0f11898016e https://t.me/cKure/7081
March 7, 2021 at 12:15PM
■■□□□ Cisco announced this week that several of its products are exposed to denial-of-service (DoS) attacks due to a vulnerability in the Snort detection engine. https://hackademicus.nl/multiple-cisco-products-exposed-to-dos-attack-due-to-a-snort-issue/ https://t.me/cKure/7080
March 7, 2021 at 11:28AM
■■■■□ Data from the Russian cybercriminal forum Maza (Mazafaka) leaked. The data belonged to more than 2,000 cyber attackers. https://www.ehackingnews.com/2021/03/data-from-russian-cybercriminal-forum.html https://t.me/cKure/7079
March 7, 2021 at 08:30AM
■■■■□ Stored XSS in Google Ads Android Application— $3133.70 https://ashketchum.medium.com/stored-xss-in-google-ads-android-application-3133-70-373f6c361ff3 https://t.me/cKure/7078
March 6, 2021 at 11:54PM
■■■■□ RCE via CSRF. https://github.com/zadam/trilium/issues/455 https://t.me/cKure/7077
March 6, 2021 at 10:45PM
■■■□□ Check if you are vulnerable to Microsoft Exchange Server zero-days using this tool https://github.com/microsoft/CSS-Exchange/tree/main/Security #0day #Zeroday https://t.me/cKure/7076
March 6, 2021 at 08:21PM
■■■□□ SSRF: Bypassing hostname restrictions with fuzzing. https://blog.deesee.xyz/fuzzing/security/2021/02/26/ssrf-bypassing-hostname-restrictions-fuzzing.html https://t.me/cKure/7075
