Latest Tweets

Latest Ransomware and Zero Day

The Big Feed

  • The landing gear had been deployed and the plane was climbing to its intended altitude when a portion of a wall burst from the rear cabin of Alaska Airlines Flight 1282 on Friday night, just 20 minutes after takeoff from Portland International Airport in Oregon. Went. On the way to Ontario, California.

  • I’m sad to say it but there’s more to life than gaming. And what’s strange is that Asus has taken this lesson to heart with the recently announced ROG Phone 8 and ROG Phone 8 Pro – a pair of gaming phones that aren’t trying to shout about it.

  • Think you’re too small to experience a cyber attack? That’s not the case. In fact, cyber threat actors (CTAs) are increasingly setting their sights on small businesses. If successful, their attack attempts can be devastating.

  • Adversaries can intentionally mislead or “poison” AI systems, causing them to malfunction, and developers have yet to find an infallible defense against this. In their latest publication, NIST researchers and their partners highlight these AI and machine learning vulnerabilities.

  • Melbourne, (APP – UrduPoint / Pakistan Point News – 9th Jan, 2024) Novak Djokovic is once again red-hot favourite at the Australian Open as he chases an unprecedented 25th Grand Slam title, but a wrist problem and the emergence of Carlos Alcaraz puts his all-conquering reign under threat.

  • China’s Foreign Minister Wang Yi said Tuesday that Beijing’s relationship with Washington has ‘stabilised’ over the past year – Copyright AFP Pedro Pardo

  • Authored by tmrswrr iGalerie version 3.0.22 suffers from a cross site scripting vulnerability. # Exploit Title: iGalerie Version: 3.0.22 – Reflected XSS # Date: 2024-7-1# Exploit Author: tmrswrr# Vendor Homepage: https://www.igalerie.org/# Version: 3.0.22# Tested on: https://softaculous.com/demos/iGalerie1 ) Go to home page and click edit > https://127.0.0.1/iGalerie/Titre : “><sVg/onLy=1 onLoaD=confirm(1)//2 ) Write in titre your payload…

  • #!/usr/bin/perl use Net::FTP; # Exploit Title: Femitter FTP Server 1.03 – Denial of Service (DoS)# Discovery by: Fernando Mengali# Discovery Date: 08 january 2024# Vendor Homepage: https://acritum.com/# Download to demo: https://drive.google.com/file/d/1GBFmc7tMavA9mMoZPYVlUVUe62dGjBhF/view?usp=sharing# Notification vendor: No reported# Tested Version: Femitter FTP Server 1.03# Tested on: Window XP Professional – Service Pack 2 and 3 – English# Vulnerability…

  • Authored by tmrswrr PluXml Blog version 5.8.9 suffers from a remote code execution vulnerability. ## Exploit Title: PluXml Blog Version : 5.8.9 – Remote Code Execution (Authenticated)### Date: 2024-1-7### Exploit Author: tmrswrr### Category: Webapps### Vendor Homepage: https://pluxml.org/### Version : 5.8.9### Tested on: https://www.softaculous.com/apps/cms/PluXml1 ) After login Click Static pages > Edit > Write in content…

  • Linux >=6.4: io_uring: page UAF via buffer ring mmap

  • io_uring: __io_uaddr_map() handles multi-page region dangerously

  • Authored by tmrswrr Form Tools version 3.1.1 suffers from a cross site scripting vulnerability. # Exploit Title: Form Tools Version: 3.1.1 – Reflected XSS # Date: 2024-6-1# Exploit Author: tmrswrr# Vendor Homepage: https://formtools.org/# Version: 3.1.1# Tested on: https://www.softaculous.com/demos/Form_Tools1 ) Write after form_id your payload : https://demos2.softaculous.com/Form_Toolsdswyuy0rdr/modules/form_builder/preview.php?form_id=2Payload : “><sVg/onLy=1 onLoaD=confirm(1)//2 ) You will bee alert button…

  • Authored by Yehia Elghaly Gom Player version 2.3.92.5362 suffers from a buffer overflow vulnerability. # Exploit Title: Gom Player 2.3.92.5362 – Buffer Overflow (PoC)# Discovered by: Yehia Elghaly (Mrvar0x)# Discovered Date: 04.01.2024# Vendor Homepage: https://www.gomlab.com/en# Tested Version: 2.3.92.5362# Tested on: Windows 7, Windows 10# – Open GOM Player# – Click on the settings# – From…

  • Authored by Yehia Elghaly Gom Player version 2.3.92.5362 suffers from a dll hijacking vulnerability. # Exploit Title: Gom Player 2.3.92.5362 – nvcuda.dll DLL Hijacking# Date: 2023-01-03# Exploit Author: Yehia Elghaly (Mrvar0x)# Vendor Homepage: https://www.mrvar0x.com/# Version: 2.3.92.5362# Tested on: Windows 7, Windows 10A DLL hijacking vulnerability has been discovered Gom Player 2.3.92.5362. When a user loads…

  • #include <stdio.h#include <string.h>#include <unistd.h>#include <openssl/ssl.h>#include <openssl/err.h>

  • #!/usr/bin/perl use IO::Socket::INET; # Exploit Title: File Sharing Wizard 1.5.0 – Denial of Service (DoS)# Discovery by: Fernando Mengali# Discovery Date: 07 january 2024# Vendor Homepage: N/A# Download to demo: https://drive.google.com/file/d/13fs9IHSaGQ27YIQNDyrQV20jCT7owPQ6/view?usp=sharing# Notification vendor: No reported# Tested Version: File Sharing Wizard 1.5.0# Tested on: Window XP Professional – Service Pack 2 and 3 – English# Vulnerability…

  • Amazon doesn’t want you to get the wrong size, so from now on it will recommend the one that best fits you in a variety of different styles. Promotional image of Amazon Fashion, which will now use AI to recommend sizes.

  • A new study has found that the average bottle of water contains nearly a quarter million pieces of “nanoplastics” – plastic particles so small that they could potentially glue up the machinery of human cells.

  • With the modern Internet, it’s easier than ever before to learn from, imitate and even plagiarize other people’s work. So how will new generative AI tools change our media landscape in 2024 and beyond?      January 08, 2024 •  Dan Lohrmann It was two days after Government Technology first published my annual cybersecurity industry prediction report,…

  • In today’s digital age, passwords have become a necessary evil. We rely on them to protect our sensitive information, yet they often fall short in terms of security and user experience. The constant need to remember and manage multiple passwords can be a daunting task, and the increasing frequency of data breaches and password leaks…