AttackerKB

71 posts

AttackerKB banner
AttackerKB

AttackerKB

@AttackerKb

Community-driven information, analysis, and discussion of vulnerabilities and threats. Part of the @Rapid7 family.

Austin, Texas Katılım Kasım 2019
15 Takip Edilen920 Takipçiler
Sabitlenmiş Tweet
AttackerKB
AttackerKB@AttackerKb·
print("Hello, World") With hundreds of community-driven assessments of vulnerabilities and threats, AttackerKB offers a platform for analysis and discussion. Interested in contributing? Want to learn more about the latest vulnerabilities? Join us: attackerkb.com
English
0
2
6
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
I examined the Zyxel firewall "authentication bypass" for @AttackerKb. CVE-2022-0342 just looks like a 2fa bypass to me. An explanation and proof of concept exploit can be found here: attackerkb.com/assessments/7e…
English
1
4
9
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
I put together a short @AttackerKb for the Sophos Firewall CVE-2022-1040 issue. A test of sorts: curl --insecure -H "X-Requested-With: XMLHttpRequest" -X POST 'https://10.0.0.12/userportal/Controller?mode=8700&operation=1&datagrid=179&json=\{"🦞":"test"\}'
English
1
32
110
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
I've got a few @AttackerKb write-ups in the backlog for vulnerabilities I couldn't find. I've very much not enjoyed that 😅 But hopefully the extra information will help someone else. First up, Apex Central's CVE-2022-26871: attackerkb.com/assessments/21…
English
0
2
8
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
I put together an @AttackerKb for Spring4Shell. There isn't a whole lot of new stuff to say at this point. I mostly focused on the original exploit. It's a simple and known technique, but not clearly stated anywhere, I thought. 🤷‍♂️ Happy hacking! attackerkb.com/topics/xtgLfwQ…
English
0
4
7
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
Here is the @AttackerKb analysis for CVE-2021-36260, unauthenticated command injection on Hikvision cameras. It includes a snippet of the vulnerable code, a potential way to discover compromise, and a link to pcaps. attackerkb.com/topics/mb8q72U…
English
0
12
19
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
I wrote up CVE-2021-1585 for @AttackerKb. This unpatched vulnerability is in Cisco's ASDM, a thick client for managing Cisco ASA and the like. A MITM or an evil endpoint can execute arbitrary code on the victim host. PoC included. attackerkb.com/topics/0vIso8f…
English
1
8
11
0
AttackerKB
AttackerKB@AttackerKb·
Technical analysis of CVE-2021-1585 in Cisco ASDM, which allows for person-in-the-middle attacks. Disclosed in July 2021, unpatched in latest version, public exploits available. PoC and IOCs in AttackerKB. attackerkb.com/topics/0vIso8f…
English
0
6
8
0
AttackerKB
AttackerKB@AttackerKb·
A handful of fresh vuln assessments for January Patch Tuesday bugs in AttackerKB this week courtesy of @tekwizz123. High-volume advisory dump, but at first glance, no easily exploitable CVEs that are *also* super useful attack targets. attackerkb.com
English
0
2
2
0
AttackerKB
AttackerKB@AttackerKb·
Kibana CVE-2019-7609 and Oracle WebLogic Server CVE-2019-2725 have been reported as exploited in the wild per CISA. attackerkb.com
English
0
1
1
0
AttackerKB retweetledi
Jacob Baines
Jacob Baines@Junior_Baines·
My favorite is CVE-2021-20038, an unauthenticated stack-based buffer overflow in the web server. I wrote a fairly detailed @AttackerKb entry detailing the challenges of landing an exploit. (2/6) attackerkb.com/topics/QyXRC1w…
English
1
3
5
0
AttackerKB
AttackerKB@AttackerKb·
Today, @rapid7 disclosed five zero-day vulnerabilities in SonicWall SMA 100 series devices. Technical analysis for CVE-2021-20038 (unauth stack-based buffer overflow) and CVE-2021-20039 (auth command injection) now in AttackerKB via @Junior_Baines. attackerkb.com/topics/9szJhq4…
English
2
18
33
0
AttackerKB
AttackerKB@AttackerKb·
11 product-specific analyses Log4j vulnerability now in AttackerKB. Latest addition is PoC (and how to find IOCs) for MobileIron, which is trivially exploitable. attackerkb.com/topics/in9sPR2…
English
1
10
38
0
AttackerKB
AttackerKB@AttackerKb·
Recent additions to #Log4Shell analysis: - Apache JSPWiki, OFBiz, Druid vulnerable to CVE-2021-44228. PoCs and IOCs in write-up. - Our testing was unable to confirm exploitability for ManageEngine, VMware Horizon, WebLogic. attackerkb.com/topics/in9sPR2…
English
1
22
38
0