Aggregator
DeerStealer: New Malware Uses Stealthy LNK & LOLBins for Undetectable Data Theft
A newly uncovered malicious campaign involving the infostealer DeerStealer has been identified by researchers at ANY.RUN. Threat actors are employing a sophisticated tactic—combining Windows shortcut files (LNK) with trusted system utilities known as Living-off-the-Land...
The post DeerStealer: New Malware Uses Stealthy LNK & LOLBins for Undetectable Data Theft appeared first on Penetration Testing Tools.
Weak Password Destroys 158-Year-Old UK Transport Company: Akira Ransomware Claims 700 Jobs
In 2023, one of the United Kingdom’s oldest transport companies—established 158 years ago—declared bankruptcy following a devastating ransomware attack. The cyber assault brought the operations of Knights of Old (also known as KNP) to...
The post Weak Password Destroys 158-Year-Old UK Transport Company: Akira Ransomware Claims 700 Jobs appeared first on Penetration Testing Tools.
使用Ai8051模拟fx2lafw设备制作简易逻辑分析仪
使用Ai8051模拟fx2lafw设备制作简易逻辑分析仪
无线充电联盟WPC宣布Qi2 25W充电选项 即将发布的安卓旗舰机预计都提供支持
CVE-2003-0763 | Squished Mosquito Escapade Scripting Engine PAGE cross site scripting (EDB-23127 / ID 11401)
CVE-2003-0764 | Squished Mosquito Escapade Scripting Engine Error Message PAGE information disclosure (ID 11414)
CVE-2003-0772 | Ipswitch WS_FTP Server 3.x/4.x APPE/STAT Command memory corruption (VU#219140 / EDB-1158)
CVE-2003-0770 | Ikonboard 3.1.1/3.1.2a Cookie FUNC.pm lang memory corruption (EDB-22499 / Nessus ID 11605)
CVE-2003-0780 | Sun MySQL up to 3.0.57/4.0.14 Password Field memory corruption (VU#516492 / EDB-98)
CVE-2004-0124 | Microsoft Windows NT 4.0/2000/XP/Server 2003 RPC/DCOM Object Identity Remote Code Execution (MS04-012 / VU#212892)
CVE-2003-0812 | Microsoft Windows 2000/XP Workstation Service stack-based overflow (MS03-049 / VU#567620)
Cisco ISE Critical RCE Zero-Days (CVSS 10.0) Actively Exploited In The Wild – Patch Immediately!
Recently uncovered critical vulnerabilities in Cisco’s infrastructure are already being actively exploited by malicious actors to compromise corporate networks. The company has officially confirmed that its Product Security Incident Response Team (PSIRT) has observed...
The post Cisco ISE Critical RCE Zero-Days (CVSS 10.0) Actively Exploited In The Wild – Patch Immediately! appeared first on Penetration Testing Tools.
New Tool: ficheck.py, (Thu, Jul 24th)
研究显示:俄罗斯利用吉尔吉斯斯坦加密货币行业规避制裁
研究显示:俄罗斯利用吉尔吉斯斯坦加密货币行业规避制裁
UK to Ban Ransom Payments for Public Sector and Critical Infrastructure in Fight Against Cybercrime
The British government has announced its preparation for a bold and decisive move in the fight against cybercrime—a sweeping ban on ransom payments following ransomware attacks. This new prohibition will apply to public sector...
The post UK to Ban Ransom Payments for Public Sector and Critical Infrastructure in Fight Against Cybercrime appeared first on Penetration Testing Tools.
Silicon Valley Engineer Pleads Guilty to Stealing US Military Tech Secrets for China
Chenguang Gong, a 59-year-old engineer from Silicon Valley holding dual citizenship in the United States and China, has pleaded guilty to the theft of over 3,600 confidential documents containing critical military technology developments. Among the...
The post Silicon Valley Engineer Pleads Guilty to Stealing US Military Tech Secrets for China appeared first on Penetration Testing Tools.