|
You are here |
notsosecure.com | ||
| | | | |
tantosec.com
|
|
| | | | | This blog post explores critical vulnerabilities in Grav CMS and how they can be exploited to escalate privileges and execute code. | |
| | | | |
darkatlas.io
|
|
| | | | | On the evening of July 18, 2025, active and large-scale exploitation of a newly discovered SharePoint remote code execution (RCE) vulnerability chain-dubbed "ToolShell"-was observed in the wild. Initially demonstrated just days earlier on X, the exploit is being used to compromise on-premises SharePoint servers worldwide. The vulnerability chain, detailed in this blog, was later assigned [...] | |
| | | | |
www.sjoerdlangkemper.nl
|
|
| | | | | Using gadget chains it is possible to achieve remote code execution in web application that unserialize user input, even without having the complete source code. | |
| | | | |
thehackernews.com
|
|
| | | A critical vulnerability (CVE-2024-3400) in Palo Alto Networks PAN-OS is being actively exploited by threat actors. | ||