December 15, 2021 at 09:41PM

Zero-Day: A deep dive into the Israeli state sponsored cyber-crime spyware via zero-click iMessage exploit: Remote Code Execution. https://googleprojectzero.blogspot.com/2021/12/a-deep-dive-into-nso-zero-click.html https://t.me/cKure/10421

December 13, 2021 at 11:00PM

■■□□□ Privacy: Apple launches AirTags and Find My detector app for Android, in effort to boost privacy. https://www.cnet.com/tech/mobile/apple-launches-airtags-and-find-my-detector-app-for-android-in-effort-to-boost-privacy/ https://t.me/cKure/10419

December 13, 2021 at 10:23PM

■■■■□ JNDI-Exploitation-Kit; A modified version of the great JNDI-Injection-Exploit created by @welk1n. This tool can be used to start an HTTP Server, RMI Server and LDAP Server to exploit java web apps vulnerable to JNDI Injection. https://github.com/pimps/JNDI-Exploit-Kit https://t.me/cKure/10417

December 13, 2021 at 10:21PM

■■■■□ noPac: CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter. Yet another low effort domain user to domain admin exploit. If a Domain Controller is vulnerable it will return a TGT without a PAC, all eyes on small size tickets. https://github.com/cube0x0/noPac https://t.me/cKure/10416