wvu (@wvuuuuuuuuuuuuu) 's Twitter Profile
wvu

@wvuuuuuuuuuuuuu

Sentient one-liner grepping the Internet for signs of intelligence.

VulnCheck. Previously Atredis, Rapid7 vuln research, and Metasploit.

ID: 2191234993

linkhttps://github.com/wvu calendar_today12-11-2013 23:27:48

11,11K Tweet

6,6K Followers

1,1K Following

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

hop skip jump over to our latest blog post - analysing Fortinet's FortiJump CVE-2024-47575, FortiJump-Higher (we love this name😄) and beyond (PoC included) labs.watchtowr.com/hop-skip-forti…

BleepingComputer (@bleepincomputer) 's Twitter Profile Photo

Palo Alto Networks patches two firewall zero-days used in attacks - Sergiu Gatlan bleepingcomputer.com/news/security/… bleepingcomputer.com/news/security/…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

in today's 'no way, is it real?' we found out that Palo Alto's PAN-OS CVE-2024-0012 and CVE-2024-9474 were the equivalents of saying 'turn off auth and give me a shell'. Enjoy! labs.watchtowr.com/pots-and-pans-…

Stephen Fewer (@stephenfewer) 's Twitter Profile Photo

We now have a Metasploit Project exploit module in the pull queue for the PAN-OS management interface unauthenticated RCE exploit chain (CVE-2024-0012 + CVE-2024-9474), based upon the technical analysis published today by watchTowr. github.com/rapid7/metaspl…

We now have a <a href="/metasploit/">Metasploit Project</a> exploit module in the pull queue for the PAN-OS management interface unauthenticated RCE exploit chain (CVE-2024-0012 + CVE-2024-9474), based upon the technical analysis published today by <a href="/watchtowrcyber/">watchTowr</a>. github.com/rapid7/metaspl…
shubs (@infosec_au) 's Twitter Profile Photo

Earlier this year, Assetnote's Security Research team discovered a vulnerability in Sitecore XP (CVE-2024-46938) that can lead to pre-authentication RCE. Order of operations bugs are one of my favorite types of bugs :) Write up and exploit script here: assetnote.io/resources/rese…

Earlier this year, <a href="/assetnote/">Assetnote</a>'s Security Research team discovered a vulnerability in Sitecore XP (CVE-2024-46938) that can lead to pre-authentication RCE.
Order of operations bugs are one of my favorite types of bugs :) Write up and exploit script here: assetnote.io/resources/rese…
VulnCheck (@vulncheckai) 's Twitter Profile Photo

Today, VulnCheck released new research revealing that 99% of ProjectSend instances are still vulnerable to a critical vulnerability that has been publicly known for over a year. More on how attackers are exploiting this vulnerability here: vulncheck.com/blog/projectse…

noperator (@noperator) 's Twitter Profile Photo

The first in a three-part series detailing my team's work in decrypting and analyzing SonicWall firewall firmware 🔥🧱 bishopfox.com/blog/sonicwall…

Caitlin Condon (@catc0n) 's Twitter Profile Photo

New whitepaper from Stephen Fewer on a five-bug chain he used to get unauthenticated RCE on the Lorex 2K Indoor Wi-Fi Security Camera 📸🐚 rapid7.com/globalassets/_…

Stephen Fewer (@stephenfewer) 's Twitter Profile Photo

Today Rapid7 is disclosing the vulnerabilities from our exploit chain targeting the Lorex 2K Indoor Wi-Fi Security Camera, which we entered at this year's Pwn2Own Ireland. A 2 phase exploit, built upon 5 vulnerabilities - phase 1 is an auth bypass, whilst phase 2 is RCE. Read

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

You knew it was coming… Cleo Harmony, VLTrader, and LexiCom - RCE via Arbitrary File Write (CVE-2024-50623) labs.watchtowr.com/cleo-cve-2024-…

Jose Enrique Hernandez (@_josehelps) 's Twitter Profile Photo

This is your yearly reminder that this repo exists github.com/vulhub/vulhub if you ever needed a environment for that CVE poc to run on, its a life saver! 🫶Thank you vulhub for sharing this resource with the community. Also thank you The Haag™ for showing it to me!

VulnCheck (@vulncheckai) 's Twitter Profile Photo

VulnCheck’s latest research shows exploitation of Four-Faith industrial routers in the wild. VulnCheck assigned this issue CVE-2024-12856 and wrote a Suricata rule to detect it on the wire. Read the full report: vulncheck.com/blog/four-fait…

VulnCheck’s latest research shows exploitation of Four-Faith industrial routers in the wild. VulnCheck assigned this issue CVE-2024-12856 and wrote a Suricata rule to detect it on the wire. Read the full report: vulncheck.com/blog/four-fait…