■■■■□ CVE-2021-41349 PoC. https://github.com/0x0021h/expbox/blob/main/cve-2021-41349-poc.py https://t.me/cKure/10216
All posts tagged hack
November 23, 2021 at 11:47PM
■□□□□ United States based Apple Inc. sues Israel’s state sponsored Cyber-Crime firm; ‘NSO Group’ for Cyber-Terrorism and espionage. https://t.me/cKure/10215
November 23, 2021 at 03:27PM
■■■■■ Can you trust a file’s digital signature? A new #Zloader campaign abuses CVE-2013-3900 for defense evasion. HTA content appended to a signed Microsoft DLL, without breaking trust MSHTA used to execute the appended script CVE-2013-3900 still unpatched by default https://t.co/5n1AoS6hsl https://t.me/cKure/10214
November 23, 2021 at 03:37AM
Another Microsoft Zero-Day exploit pertaining to bad fix of CVE-2021-41379. https://github.com/klinix5/InstallerFileTakeOver Details: https://www.bleepingcomputer.com/news/microsoft/new-windows-zero-day-with-public-exploit-lets-you-become-an-admin/ https://t.me/cKure/10212
November 23, 2021 at 03:29AM
■□□□□ In August, KrebsOnSecurity warned that scammers were contacting people and asking them to unleash ransomware inside their employer’s network, in exchange for a percentage of any ransom amount paid by the victim company. This week, authorities in Nigeria arrested a suspect in connection with the scheme – a young man who said he was…
November 23, 2021 at 03:01AM
CVE-2021-42321: Proof-of-concept exploit code has been released online over the weekend for an actively exploited high severity vulnerability impacting Microsoft Exchange servers. https://gist.github.com/testanull/0188c1ae847f37a70fe536123d14f398 https://t.me/cKure/10207
November 23, 2021 at 02:57AM
■□□□□ Companies such as GItLab, which today increased its payment for critical bugs by 75%, are raising bounties and bonuses to attract top-notch researchers. https://t.me/cKure/10206
November 23, 2021 at 02:54AM
■□□□□ Fake website for renting a hit-man has been up for over 16 years and is used as a honeypot for potential crimes. https://rentahitman.com/ Details: https://www.washingtonpost.com/nation/2021/11/22/rent-a-hitman-website/ https://t.me/cKure/10205
November 23, 2021 at 01:24AM
■■■□□ Fall of the machines: Exploiting the Qualcomm NPU (neural processing unit) kernel driver. https://securitylab.github.com/research/qualcomm_npu/ https://t.me/cKure/10204
November 22, 2021 at 09:16PM
■□□□□ A tiny typo in an automated email to thousands of customers turns out to be a big problem for legal. https://www.theregister.com/2021/11/22/who_me/ https://t.me/cKure/10203
