Not_H
9 posts

Not_H
@Noth72013441
Penetration Test , Write Page , Analysis Code
Katılım Aralık 2018
40 Takip Edilen6 Takipçiler
Not_H retweetledi
Not_H retweetledi

【情报】新Windows提权漏洞CVE-2024-35250🚨
PoC for the Untrusted Pointer Dereference in the ks.sys driver😢
Github地址:github.com/varwara/CVE-20…
提权适用的Windows版本挺多的,但动作很明显,实测大部分XDR都拦截动态行为了🫣
#cybersecurity #CyberSafety #redteam #blueteam #exploit #CVE

中文
Not_H retweetledi

github.com/weaselsec/GodP…
GodPotato can be found at github.com/BeichenDream/G…
Tested on Windows 10 (fully patched)

English
Not_H retweetledi

We are reporting Microsoft Exchange Server CVE-2023-36439 vulnerable IPs (post-auth RCE). Over 63K vulnerable worldwide. Patch released Nov 14th - msrc.microsoft.com/update-guide/v…
IP data for your constituency in shadowserver.org/what-we-do/net…
Dashboard tracker - dashboard.shadowserver.org/statistics/com…

English
Not_H retweetledi

CVE-2020-28040 WordPress before 5.5.2 allows CSRF attacks that change a theme's background image. cve.mitre.org/cgi-bin/cvenam…
English

CVE-2020-13758 modules/security/classes/general.post_filter.php/post_filter.php in the Web Application Firewall in Bitrix24 through 20.0.950 allows XSS by placing %00 before the payload. cve.mitre.org/cgi-bin/cvenam…
English
