■■■■■ CVE-2023-40031: Notepad++ heap buffer overflow vulnerability CVE-2023-40031 analysis and reproduction. https://github.com/webraybtl/CVE-2023-40031 https://t.me/cKure/12866
All posts tagged cyber
September 9, 2023 at 03:21PM
■■■■■ Corrupting memory without memory corruption. https://github.blog/2022-07-27-corrupting-memory-without-memory-corruption/ https://t.me/cKure/12865
September 9, 2023 at 03:15PM
■■■■□ Interesting thread on SQLi exploring utilities (tools). https://twitter.com/intigriti/status/1700458599108018291 https://t.me/cKure/12864
September 9, 2023 at 01:27PM
■■■■■ Iranian hackers breach United States’ aviation org via Zoho, Fortinet bugs. https://www.cisa.gov/news-events/alerts/2023/09/07/cisa-fbi-and-cnmf-release-advisory-multiple-nation-state-threat-actors-exploit-cve-2022-47966-and https://www.bleepingcomputer.com/news/security/iranian-hackers-breach-us-aviation-org-via-zoho-fortinet-bugs/ https://t.me/cKure/12863
September 8, 2023 at 11:45PM
■■■■■ Debugging Windows Isolated User Mode (IUM) Processes . https://blog.quarkslab.com/debugging-windows-isolated-user-mode-ium-processes.html https://t.me/cKure/12862
September 8, 2023 at 11:40PM
■■■■■ CVE-2023-35674: September Android updates fix zero-day exploited in attacks. https://www.bleepingcomputer.com/news/security/september-android-updates-fix-zero-day-exploited-in-attacks/ https://t.me/cKure/12860
September 8, 2023 at 08:28PM
■■□□□ Google to enable real time phishing protection for all chrome users. https://t.me/cKure/12859
September 8, 2023 at 01:51PM
Active North Korean campaign targeting security researchers. https://blog.google/threat-analysis-group/active-north-korean-campaign-targeting-security-researchers/ https://t.me/cKure/12856
September 8, 2023 at 01:46PM
■■■■□ An unknown threat actor has been observed weaponizing high-severity security flaws in the MinIO high-performance object storage system to achieve unauthorized code execution on affected servers. https://thehackernews.com/2023/09/hackers-exploit-minio-storage-system.html https://t.me/cKure/12855
September 8, 2023 at 12:27AM
■■■□□ Phishing Campaigns Deliver New SideTwist Backdoor and Agent Tesla Variant. The Iranian threat actor tracked as APT34 has been linked to a new phishing attack that leads to the deployment of a variant of a backdoor called SideTwist. https://thehackernews.com/2023/09/alert-phishing-campaigns-deliver-new.html https://t.me/cKure/12854
