io Zero-Day Privilege Escalation Disclosed For Android By packetstormsecurity.com Published On :: Fri, 06 Sep 2019 14:45:45 GMT Full Article headline phone flaw google zero day
io Researchers Say They Uncovered Uzbekistan Hacking Operations Due To Spectacularly Bad OPSEC By packetstormsecurity.com Published On :: Thu, 03 Oct 2019 14:13:26 GMT Full Article headline hacker government data loss cyberwar zero day
io Ashley Madison Breach Extortion Scam Targets Hundreds By packetstormsecurity.com Published On :: Tue, 04 Feb 2020 14:39:23 GMT Full Article headline hacker privacy cybercrime data loss fraud
io Adobe Flash Player Type Confusion Remote Code Execution By packetstormsecurity.com Published On :: Tue, 29 Apr 2014 02:01:15 GMT This Metasploit module exploits a type confusion vulnerability found in the ActiveX component of Adobe Flash Player. This vulnerability was found exploited in the wild in November 2013. This Metasploit module has been tested successfully on IE 6 to IE 10 with Flash 11.7, 11.8 and 11.9 prior to 11.9.900.170 over Windows XP SP3 and Windows 7 SP1. Full Article
io Adobe Flash Player Integer Underflow Remote Code Execution By packetstormsecurity.com Published On :: Mon, 05 May 2014 19:05:06 GMT This Metasploit module exploits a vulnerability found in the ActiveX component of Adobe Flash Player before 12.0.0.43. By supplying a specially crafted swf file it is possible to trigger an integer underflow in several avm2 instructions, which can be turned into remote code execution under the context of the user, as exploited in the wild in February 2014. This Metasploit module has been tested successfully with Adobe Flash Player 11.7.700.202 on Windows XP SP3, Windows 7 SP1 and Adobe Flash Player 11.3.372.94 on Windows 8 even when it includes rop chains for several Flash 11 versions, as exploited in the wild. Full Article
io AoA Audio Extractor 2.3.7 Active-X Overflow By packetstormsecurity.com Published On :: Tue, 20 May 2014 00:21:11 GMT AoA Audio Extractor Basic version 2.3.7 suffers from an overflow vulnerability. Full Article
io 1 Click Extract Audio 2.3.6 Buffer Overflow By packetstormsecurity.com Published On :: Fri, 05 Jun 2015 14:04:44 GMT 1 Click Extract Audio version 2.3.6 suffers from an active-x buffer overflow vulnerability. Full Article
io 1 Click Audio Converter 2.3.6 Buffer Overflow By packetstormsecurity.com Published On :: Fri, 05 Jun 2015 14:55:55 GMT 1 Click Audio Converter version 2.3.6 suffers from an active-x buffer overflow vulnerability. Full Article
io Advantech WebAccess 8.0 / 3.4.3 Code Execution By packetstormsecurity.com Published On :: Mon, 07 Sep 2015 14:33:33 GMT Using Advantech WebAccess SCADA Software and attacker can remotely manage industrial control systems devices like RTU's, generators, motors, etc. Attackers can execute code remotely by passing a maliciously crafted string to ConvToSafeArray API in ASPVCOBJLib.AspDataDriven ActiveX. Full Article
io UCanCode Remote Code Execution / Denial Of Service By packetstormsecurity.com Published On :: Thu, 24 Nov 2016 01:34:22 GMT UCanCode has active-x vulnerabilities which allow for remote code execution and denial of service attacks. Full Article
io Microsoft Windows 10 scrrun.dll Active-X Creation / Deletion Issues By packetstormsecurity.com Published On :: Wed, 06 Jun 2018 20:22:22 GMT scrrun.dll on Microsoft Windows 10 suffers from file creation, folder creation, and folder deletion vulnerabilities. Full Article
io Adobe Flash Active-X 28.0.0.137 Remote Code Execution By packetstormsecurity.com Published On :: Mon, 24 Dec 2018 04:44:44 GMT Adobe Flash Active-X plugin version 28.0.0.137 remote code execution proof of concept exploit. Full Article
io Bash 5.0 Patch 11 Privilege Escalation By packetstormsecurity.com Published On :: Fri, 29 Nov 2019 16:40:01 GMT An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support "saved UID" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use "enable -f" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected. Full Article
io Apache James Server 2.3.2 Insecure User Creation / Arbitrary File Write By packetstormsecurity.com Published On :: Thu, 20 Feb 2020 21:25:29 GMT This Metasploit module exploits a vulnerability that exists due to a lack of input validation when creating a user. Messages for a given user are stored in a directory partially defined by the username. By creating a user with a directory traversal payload as the username, commands can be written to a given directory. To use this module with the cron exploitation method, run the exploit using the given payload, host, and port. After running the exploit, the payload will be executed within 60 seconds. Due to differences in how cron may run in certain Linux operating systems such as Ubuntu, it may be preferable to set the target to Bash Completion as the cron method may not work. If the target is set to Bash completion, start a listener using the given payload, host, and port before running the exploit. After running the exploit, the payload will be executed when a user logs into the system. For this exploitation method, bash completion must be enabled to gain code execution. This exploitation method will leave an Apache James mail object artifact in the /etc/bash_completion.d directory and the malicious user account. Full Article
io AG Barr Asks Facebook To Not Use End To End Encryption By packetstormsecurity.com Published On :: Fri, 04 Oct 2019 13:47:34 GMT Full Article headline government privacy usa spyware facebook social cryptography
io Cozy Bear Is Back In Action Again By packetstormsecurity.com Published On :: Thu, 17 Oct 2019 14:06:50 GMT Full Article headline government usa russia fraud cyberwar facebook social
io Linux Kernel Sendpage Local Privilege Escalation By packetstormsecurity.com Published On :: Thu, 19 Jul 2012 00:45:23 GMT The Linux kernel failed to properly initialize some entries the proto_ops struct for several protocols, leading to NULL being derefenced and used as a function pointer. By using mmap(2) to map page 0, an attacker can execute arbitrary code in the context of the kernel. Several public exploits exist for this vulnerability, including spender's wunderbar_emporium and rcvalle's ppc port, sock_sendpage.c. All Linux 2.4/2.6 versions since May 2001 are believed to be affected: 2.4.4 up to and including 2.4.37.4; 2.6.0 up to and including 2.6.30.4 Full Article
io KeeWeb 1.14.0 HTML Injection By packetstormsecurity.com Published On :: Thu, 07 May 2020 15:23:04 GMT KeeWeb version 1.14.0 suffers from an html injection vulnerability. Full Article
io Exposed Database Dumps PII Of 1.6 Million Job Seekers By packetstormsecurity.com Published On :: Mon, 17 Jun 2019 14:40:55 GMT Full Article headline privacy database data loss
io Exposed Orvibo Database Leaks Two Billion Records By packetstormsecurity.com Published On :: Tue, 02 Jul 2019 13:57:53 GMT Full Article headline privacy database china data loss
io MoviePass Database Exposes 161 Million Records By packetstormsecurity.com Published On :: Thu, 22 Aug 2019 15:44:43 GMT Full Article headline hacker privacy database data loss
io Database Exposes Millions Of Private SMS Messages By packetstormsecurity.com Published On :: Mon, 02 Dec 2019 17:32:01 GMT Full Article headline privacy phone database data loss flaw
io Malmon Detection Tool 0.1b By packetstormsecurity.com Published On :: Fri, 21 Jan 2011 20:11:11 GMT Malmon is a real-time exploit/backdoor detection tool for Linux that audits the integrity of files in a given directory. Full Article
io Malmon Detection Tool 0.3 By packetstormsecurity.com Published On :: Wed, 02 Feb 2011 18:22:11 GMT Malmon is a real-time exploit/backdoor detection tool for Linux that audits the integrity of files in a given directory. Full Article
io Chkrootkit Local Privilege Escalation By packetstormsecurity.com Published On :: Fri, 20 Nov 2015 01:09:39 GMT Chkrootkit before 0.50 will run any executable file named /tmp/update as root, allowing a trivial privsec. WfsDelay is set to 24h, since this is how often a chkrootkit scan is scheduled by default. Full Article
io Apache Hadoop Spins Cracking Code Injection Vulnerability YARN By packetstormsecurity.com Published On :: Mon, 26 Nov 2018 15:31:20 GMT Full Article headline flaw apache
io Serious Apache Server Bug Gives Root To Baddies In Shared Environments By packetstormsecurity.com Published On :: Thu, 04 Apr 2019 14:38:10 GMT Full Article headline flaw apache
io Attention Symantec - There Is A Bug Crawling On Your Website By packetstormsecurity.com Published On :: Wed, 15 Apr 2009 10:59:55 GMT Full Article symantec xss
io XSS Vulnerabilities In 8 Million Flash Files By packetstormsecurity.com Published On :: Tue, 22 Dec 2009 09:16:16 GMT Full Article adobe xss
io Serious XSS Flaw Haunts Microsoft SharePoint By packetstormsecurity.com Published On :: Thu, 29 Apr 2010 04:24:15 GMT Full Article microsoft flaw xss
io Anti-Virus Vendor Trio Plug Website Flaws By packetstormsecurity.com Published On :: Mon, 04 Oct 2010 10:06:13 GMT Full Article virus flaw xss
io FreeBSD Intel SYSRET Privilege Escalation By packetstormsecurity.com Published On :: Thu, 07 Mar 2019 02:01:26 GMT This Metasploit module exploits a vulnerability in the FreeBSD kernel, when running on 64-bit Intel processors. By design, 64-bit processors following the X86-64 specification will trigger a general protection fault (GPF) when executing a SYSRET instruction with a non-canonical address in the RCX register. However, Intel processors check for a non-canonical address prior to dropping privileges, causing a GPF in privileged mode. As a result, the current userland RSP stack pointer is restored and executed, resulting in privileged code execution. Full Article
io FreeBSD rtld execl() Privilege Escalation By packetstormsecurity.com Published On :: Wed, 22 May 2019 00:51:22 GMT This Metasploit module exploits a vulnerability in the FreeBSD run-time link-editor (rtld). The rtld unsetenv() function fails to remove LD_* environment variables if __findenv() fails. This can be abused to load arbitrary shared objects using LD_PRELOAD, resulting in privileged code execution. Full Article
io macOS Kernel wait_for_namespace_event() Race Condition / Use-After-Free By packetstormsecurity.com Published On :: Wed, 18 Dec 2019 14:08:33 GMT In the macOS kernel, the XNU function wait_for_namespace_event() in bsd/vfs/vfs_syscalls.c releases a file descriptor for use by userspace but may then subsequently destroy that file descriptor using fp_free(), which unconditionally frees the fileproc and fileglob. This opens up a race window during which the process could manipulate those objects while they're being freed. Exploitation requires root privileges. Full Article
io Hammond Held In Contempt For Refusing To Answer Questions By packetstormsecurity.com Published On :: Mon, 14 Oct 2019 14:29:52 GMT Full Article headline hacker government usa data loss anonymous military
io Hacker Almost Derailed Mandela Election In South Africa By packetstormsecurity.com Published On :: Wed, 27 Oct 2010 12:19:03 GMT Full Article hacker africa
io Hackers Shut Down NDDC Website Over Presidential Inauguration By packetstormsecurity.com Published On :: Fri, 27 May 2011 13:41:54 GMT Full Article headline hacker africa
io Nigerian Scams Are Hyper-Efficient Idiot Finders By packetstormsecurity.com Published On :: Thu, 21 Jun 2012 15:23:35 GMT Full Article headline cybercrime fraud africa scam
io Megaupload Sequel Faces Gabon's Suspension Order Setback By packetstormsecurity.com Published On :: Thu, 08 Nov 2012 00:49:22 GMT Full Article headline government usa africa riaa mpaa new zealand
io Ebola Outbreak Reaches City Of 1 Million Residents By packetstormsecurity.com Published On :: Sat, 15 Dec 2018 14:26:52 GMT Full Article headline africa science
io Kenya Court Halts Biometric ID Over Data Fears By packetstormsecurity.com Published On :: Fri, 31 Jan 2020 15:28:36 GMT Full Article headline government privacy africa
io New Discovery Around Juniper Backdoor Raises More Questions About The Company By packetstormsecurity.com Published On :: Fri, 08 Jan 2016 15:06:56 GMT Full Article headline government flaw juniper backdoor
io BlackBerry Users Get Free Remote Wipe, Backup And Location By packetstormsecurity.com Published On :: Wed, 23 Mar 2011 02:53:52 GMT Full Article headline blackberry
io BlackBerry Blog Hacked With Pro-Riot Warning To RIM By packetstormsecurity.com Published On :: Wed, 10 Aug 2011 04:02:06 GMT Full Article headline hacker blackberry
io RIM Denies Giving India BlackBerry Encryption Keys By packetstormsecurity.com Published On :: Thu, 02 Aug 2012 15:04:37 GMT Full Article headline india blackberry cryptography
io Pakistan Surveillance Situation Leads To BlackBerry Cull By packetstormsecurity.com Published On :: Mon, 27 Jul 2015 14:15:34 GMT Full Article headline phone spyware blackberry pakistan
io BlackBerry Hits Back At PGP Encryption Cracking Claims By packetstormsecurity.com Published On :: Fri, 15 Jan 2016 13:29:31 GMT Full Article headline government flaw blackberry cryptography
io BlackBerry CEO 'Disturbed' By Apple's Hard Line On Encryption By packetstormsecurity.com Published On :: Wed, 20 Jul 2016 16:36:13 GMT Full Article headline government privacy usa apple blackberry cryptography
io Blackberry In $1.4 Billion Deal To Buy Cylance By packetstormsecurity.com Published On :: Sat, 17 Nov 2018 14:33:11 GMT Full Article headline blackberry
io Ethiopia Clamps Down On Skype And Other Internet Use Of Tor By packetstormsecurity.com Published On :: Sat, 16 Jun 2012 16:41:10 GMT Full Article headline government skype ethiopia