Plus récents

CVE-2021-22045 - VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and VMware Fusion (12.2.0) contains a heap-overflow vulnerability in CD-ROM device emulation. Someone with access to a VM with CD-ROM device emulation may be able to exploit it in conjunction with other issues to execute code on the hypervisor from a virtual machine.

vmware.com/security/advisories

Purple Fox - The threat actors have noticed that the attacks generally take advantage of legitimate software for implementing malicious payloads. The vulnerability has been named CVE-2021-1732, and this vulnerability generally optimizes rootkit capabilities that are leveraged in their attacks.

blog.minerva-labs.com/maliciou

Korean security researchers have discovered 2 major vulnerabilities revolving around the over-provisioning feature built into all modern SSDs. Anti-virus software can't find this malware by scanning the disk.

arxiv.org/ftp/arxiv/papers/211

🔌 Des millions de serveurs Microsoft Exchange cessent de transmettre les courriels à cause d'une erreur stupide sur un format de date. Plusieurs produits également perturbés.

CVE-2021-38687 : A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Surveillance Station.

qnap.com/en/security-advisory/

CVE-2021-44228 Vulnérabilité critique dans la bibliothèque de journalisation Apache log4j. Bibliothèque très souvent utilisée dans les projets de développement d'application /J2EE.. Il est fortement recommandé d'utiliser la v2.15.0 de log4j dès que possible.

cert.ssi.gouv.fr/alerte/CERTFR

BurpLog4j2Scan is a Burp Suite Extension written in which could be useful as scan log4j2rce

github.com/tangxiaofeng7/BurpL

Hikvision video systems have become the targets of hackers in an attempt to conduct a cyberattack that has the role to drop a botnet. The under discussion is dubbed , being a -based one.

heimdalsecurity.com/blog/moobo

CVE-2021-43267 : blasty-vs-tipc.c is a PoC for vulnerability found in net/tipc/crypto.c in the kernel before 5.14.16

haxx.in/posts/pwning-tipc/

3 bugs (CVE-2021-1940, CVE-2021-1968 & CVE-2021-1969) in NPU exploited together enables me (Man Yue Mo) to execute arbitrary code in the kernel from an untrusted app with ease. I'll then use these primitives to create a reverse root shell with SELinux disabled on devices

securitylab.github.com/researc

Sketch is a popular UI/UX design app for . This post covers a vulnerability in Sketch that I discovered back in July - CVE-2021-40531. In its simplest form, it is a macOS quarantine bypass, but in context it can be used for RCE

jonpalmisc.com/2021/11/22/cve-

New PowerShortShell Stealer Exploits Recent MSHTML Vulnerability to Spy on Farsi Speakers. SafeBreach Labs analyzed the full attack chain, discovered new attacks which started in July 2021 and achieved the last and most interesting piece of the puzzle - the Stealer code - which we named PowerShortShell.

safebreach.com/blog/2021/new-p

Plus anciens