07/31

HTML Over the Wire

https://bountyplz.xyz/bugbounty/2023/07/30/HTML-Over-The-Wire.html
HTML Over the Wire

Remote code execution via user-supplied H2 connection strings · Advisory · metabase/metabase · GitHub

https://github.com/metabase/metabase/security/advisories/GHSA-p7w3-9m58-rq83
Remote code execution via user-supplied H2 connection strings · Advisory · metabase/metabase · GitHub

Out of the Sandbox: WikiLoader Digs Sophisticated Evasion   | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/out-sandbox-wikiloader-digs-sophisticated-evasion
Out of the Sandbox: WikiLoader Digs Sophisticated Evasion   | Proofpoint US

AVRecon Botnet Leveraging Compromised Routers to Fuel Illegal Proxy Service

https://thehackernews.com/2023/07/avrecon-botnet-leveraging-compromised.html
AVRecon Botnet Leveraging Compromised Routers to Fuel Illegal Proxy Service

Intel VT-rp - Part 2. paging-write and guest-paging verification | Satoshi’s notes

https://tandasat.github.io/blog/2023/07/31/intel-vt-rp-part-2.html
Intel VT-rp - Part 2. paging-write and guest-paging verification | Satoshi’s notes

corctf 2023 - leakynote & pdfpal · GitHub

http://gist.github.com/parrot409/09688d0bb81acbe8cd1a10cfdaa59e45
corctf 2023 - leakynote & pdfpal · GitHub

Fruity Trojan Uses Deceptive Software Installers to Spread Remcos RAT

https://thehackernews.com/2023/07/fruity-trojan-uses-deceptive-software.html
Fruity Trojan Uses Deceptive Software Installers to Spread Remcos RAT

Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor

https://thehackernews.com/2023/07/patchwork-hackers-target-chinese.html
Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor

Multiple Flaws Found in Ninja Forms Plugin Leave 800,000 Sites Vulnerable

https://thehackernews.com/2023/07/multiple-flaws-found-in-ninja-forms.html
Multiple Flaws Found in Ninja Forms Plugin Leave 800,000 Sites Vulnerable

TrainSec - Security and Programming Training

https://training.trainsec.net/
TrainSec - Security and Programming Training

New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods

https://thehackernews.com/2023/07/new-p2pinfect-worm-targets-redis.html
New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods