Cybersecurity information flow

干净的信息流推送工具,偏向安全圈的点点滴滴,为安全研究人员每日发现优质内容.

了解更多 »

最近更新
时间 节点
2024年5月6日 15:53 Github关注
2024年5月6日 15:53 Github关注
A simple Java Agent template with javassist support.
2024年5月6日 15:53 freebuf
5月6日,RSAC 2024 在美国旧金山正式开幕。本届大会主题为“可能的艺术”。
2024年5月6日 15:33 来自Phithon推荐
2024年5月6日 15:33 freebuf
微软方面指出,该安全漏洞问题非常普遍,相关开发者应当采取措施,仔细检查自身应用程序是否存在类似问题。
2024年5月6日 15:13 freebuf
resource-counter是一款功能强大的命令行工具,该工具基于纯Python 3开发,可以帮助广大研究人员跨Amazon区域统计不同...
2024年5月6日 15:13 先知社区
2024年5月6日 14:53 Github关注
IDA Plugin to automatically identify and set enums for standard functions
2024年5月6日 14:53 Github关注
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
2024年5月6日 14:53 先知社区
2024年5月6日 14:53 先知社区
2024年5月6日 14:33 先知社区
2024年5月6日 14:33 先知社区
2024年5月6日 14:33 先知社区
2024年5月6日 14:33 看雪论坛
ATF Fuzzing FVP环境搭建 FVP下载 https://developer.arm.com/Tools and Software/Fixed Virtual Platforms 推荐直接下载: Armv-A Base RevC AEM FVP (x86 Li ...
2024年5月6日 14:13 先知社区
2024年5月6日 14:13 先知社区
2024年5月6日 13:33 Github关注
LLAP is an LLVM-based tool for generating enriched program dependency graphs (ePDGs) from program source code that are suitable for use in AI/ML mo…
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability was found in Ruijie RG-UAC up to 20240428 and classified as critical. This issue affects some unknown processing of the file /view/IPV6/ipv6StaticRoute/static_route_add_ipv6.php. The manipulation of the argument text_prefixlen/text_gateway/devname leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263111. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability has been found in Ruijie RG-UAC up to 20240428 and classified as critical. This vulnerability affects unknown code of the file /view/IPV6/ipv6Addr/ip_addr_edit_commit.php. The manipulation of the argument text_ip_addr/orgprelen/orgname leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263110 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability, which was classified as critical, was found in Ruijie RG-UAC up to 20240428. This affects an unknown part of the file /view/IPV6/ipv6Addr/ip_addr_add_commit.php. The manipulation of the argument prelen/ethname leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263109 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240428. Affected by this issue is some unknown functionality of the file /view/HAconfig/baseConfig/commit.php. The manipulation of the argument peer_ip/local_ip leads to os command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263108. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability classified as critical was found in Ruijie RG-UAC up to 20240428. Affected by this vulnerability is an unknown functionality of the file /view/dhcp/dhcpConfig/dhcp_relay_commit.php. The manipulation of the argument interface_from leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263107. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240428. Affected is an unknown function of the file /view/dhcp/dhcpClient/dhcp_client_commit.php. The manipulation of the argument ifName leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263106 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:14 知名组件CVE监控
有新的漏洞组件被发现啦,组件ID:Ruijie
A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been rated as critical. This issue affects some unknown processing of the file /view/bugSolve/captureData/commit.php. The manipulation of the argument tcpDump leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263105 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
2024年5月6日 13:13 Github关注
2024年5月6日 13:13 freebuf
压缩包本身并不具备隐藏信息的功能,但由于在CTF竞赛中,经常出现压缩包与隐写术结合在一起的题目,所以我们需要掌握在CTF竞赛中有关 ZIP ...
2024年5月6日 12:13 freebuf
大多数情况下,攻击者会利用信任关系,通过入侵第三方外部供应商或承包商,在连接的虚拟机或混合环境中执行命令。
2024年5月6日 11:53 Github关注
2024年5月6日 11:53 Github关注
NextTrace, an open source visual route tracking CLI tool