Author: Cybernoz

Doxxers posed as police officers to obtain information from social media companies
21
Mar
2023

Doxxers posed as police officers to obtain information from social media companies

Two individuals have been charged with being members of ViLE, a group of doxxers that even impersonated police officers to…

uploaded JSP executed on the server
21
Mar
2023

Apache Tomcat RCE if readonly set to false (CVE-2017-12617)

The Vulnerability The Apache Tomcat team announced today that all Tomcat versions before 9.0.1 (Beta), 8.5.23, 8.0.47 and 7.0.82 contain…

ATMs
21
Mar
2023

General Bytes Bitcoin ATMs hacked using zero-day, $1.5M stolen

Leading Bitcoin ATM maker General Bytes disclosed that hackers stole cryptocurrency from the company and its customers using a zero-day…

DotRunpeX: The Malware That Infects Systems with Multiple Families
21
Mar
2023

The Malware That Infects Systems with Multiple Families

Currently, DotRunpeX malware appears to be primarily distributed through phishing emails and malicious Google Ads, presenting a significant threat to…

Google reveals 18 chip vulnerabilities threatening mobile, wearables, vehicles
21
Mar
2023

Google reveals 18 chip vulnerabilities threatening mobile, wearables, vehicles

We take a look at multiple vulnerabilities highlighted by Google’s Project Zero team, and what you can do to ward…

NCSC launches cyber check-up tools for SMEs
21
Mar
2023

NCSC launches cyber check-up tools for SMEs

The UK’s National Cyber Security Centre (NCSC) is today launching two new services pitched at the country’s 5.5 million small…

Exploiting SSL Vulnerabilities in Mobile Apps – allysonomalley.com
21
Mar
2023

Exploiting SSL Vulnerabilities in Mobile Apps – allysonomalley.com

This post is an overview of a mobile app MitM vulnerability I’ve found several times in the real world. I’ll…

Ferrari
20
Mar
2023

Ferrari discloses data breach after receiving ransom demand

Ferrari has disclosed a data breach following a ransom demand received after attackers gained access to some of the company’s…

Windows 11 bug
20
Mar
2023

Windows 11 bug warns Local Security Authority protection is off

Windows 11 users report seeing widespread Windows Security warnings that Local Security Authority (LSA) Protection has been disabled even though…

Access to remapped root allows privilege escalation to real root · Advisory · moby/moby · GitHub
20
Mar
2023

Access to remapped root allows privilege escalation to real root · Advisory · moby/moby · GitHub

Impact When using –userns-remap, if the root user in the remapped namespace has access to the host filesystem they can…

Hacker
20
Mar
2023

Hackers target .NET developers with malicious NuGet packages

Threat actors are targeting and infecting .NET developers with cryptocurrency stealers delivered through the NuGet repository and impersonating multiple legitimate…

Compromising an unreachable Solr server with CVE-2013-6397
20
Mar
2023

Compromising an unreachable Solr server with CVE-2013-6397

Compromising an unreachable Solr server with CVE-2013-6397 I recently did a pentest where I compromised a Solr server located several…