April 15, 2022 at 12:50AM

■■□□□ High severity local privilege escalation bug in the Windows Common Log File System Driver. Tracked as CVE-2022-24521, the Zero-Day was reported by CrowdStrike and NSA. https://t.me/cKure/11209

April 15, 2022 at 12:23AM

■■■□□ How a YouTube Video lead to pwning a web application via SQL Injection worth $4324 bounty. https://infosecwriteups.com/how-a-youtube-video-lead-to-pwning-a-web-application-via-sql-injection-worth-4324-bounty-285f0a9b9f6c https://t.me/cKure/11208

April 14, 2022 at 04:07PM

■■■■■ Zero-Day: CVE-2022-26809 – Windows RPC Wormable Remote Code Execution. Shodan: product:”Microsoft RPC Endpoint Mapper” Censys: https://censys.io/cve-2022-26809/ https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-26809 https://t.me/cKure/11200

April 14, 2022 at 03:11PM

■■■■□ Zero-Day: Critical VMware Workspace ONE Access CVE-2022-22954 flaw actively exploited. There are around 800 public instances of the vulnerable software. https://securityaffairs.co/wordpress/130188/hacking/vmware-workspace-one-access-flaw-attacks.html https://t.me/cKure/11199