Failed Cobalt Strike fix with buried RCE exploit now patched

The fix was developed at a running pace as Cobalt Strike is essential to Red Team operations | Continue reading


@portswigger.net | 1 year ago

Researchers find 633% increase in cyber-attacks aimed at open source

Attack surge blamed on ‘avoidable’ bugs | Continue reading


@portswigger.net | 1 year ago

Gitlab patches RCE bug in GitHub import function

Data importation mechanism failed to sanitize imports | Continue reading


@portswigger.net | 1 year ago

DNS resolver insecurity creates widespread website hijack risk

WordPress installations exposed to spoofed password reset vis cache poisoning threat | Continue reading


@portswigger.net | 1 year ago

Zimbra remote code execution vulnerability actively exploited in the wild

Mitigation guidance provided while a patch is being developed | Continue reading


@portswigger.net | 1 year ago

Critical flaw in open source WebPageTest remains unpatched

Public disclosure, a talk, and a blog post later, the RCE exploit remains unresolved | Continue reading


@portswigger.net | 1 year ago

Patching common vulnerabilities at scale: project promises bulk pull requests

Automating bulk pull request generation FTW | Continue reading


@portswigger.net | 1 year ago

Vulnerability in Apache Pulsar allowed manipulator-in-the-middle attacks

Clients vulnerable due to improper certificate validation | Continue reading


@portswigger.net | 1 year ago

Squiz Matrix CMS squashes admin account takeover bug

IDOR issue meant user account privileges and contact details could be altered | Continue reading


@portswigger.net | 1 year ago

API security: Broken access controls, injection attacks plague the enterprise

Spring4Shell and Veeam RCE exploit topped the list in Q1 2022 | Continue reading


@portswigger.net | 1 year ago

Black Hat USA: Former CISA director Chris Krebs warns clouds of cyberwar are

Attack on Taiwan seemingly a case of ‘when’ not ‘if’ Chris Krebs, the former director of the US Cybersecurity and Infrastructure Security Agency (CISA), is “bearish in the short term, bullish in the l | Continue reading


@portswigger.net | 1 year ago

Browser-Powered Desync Attacks: A New Frontier in HTTP Request Smuggling

The recent rise of HTTP Request Smuggling has seen a flood of critical findings enabling near-complete compromise of numerous major websites. However, the threat has been confined to attacker-accessib | Continue reading


@portswigger.net | 1 year ago

Cisco router flaw gives patient attackers full access to small business networks

Vulnerable path is reachable just once a day, but patches still need to be implemented as a matter of priority | Continue reading


@portswigger.net | 1 year ago

XSS bugs in open source web apps could lead to complete system compromise

Evolution CMS, FUDForum, and GitBucket vulnerabilities chained for maximum impact | Continue reading


@portswigger.net | 1 year ago

XSS in Gmail’s AMP For Email earns researcher $5k

Researcher bypasses email filter with inspired style tag trickery | Continue reading


@portswigger.net | 1 year ago

Authentication bypass bug in Nextauth.js could allow email account takeover

Vulnerability has been patched in latest versions | Continue reading


@portswigger.net | 1 year ago

ParseThru: HTTP parameter smuggling flaw uncovered in several Go applications

Harbor, Traefik, and Skipper projects tackle unsafe URL parsing methods | Continue reading


@portswigger.net | 1 year ago

‘Password extraction risk’ in identity provider Okta disputed

Researchers go public after vendor disputes impersonation threat | Continue reading


@portswigger.net | 1 year ago

LDAP Account Manager bug poses unauthenticated remote code execution risk

Silence of the LAM | Continue reading


@portswigger.net | 1 year ago

Prototype pollution in Blitz.js leads to remote code execution

Chain of exploits could be triggered without any authentication | Continue reading


@portswigger.net | 1 year ago

More than 4k individuals’ medical data left exposed for 16 years

Private healthcare information was accessible since 2006 | Continue reading


@portswigger.net | 1 year ago

Fantasy Premier League football app introduces 2FA to tackle account takeover

Authentication controls added to defend against account hijack threat | Continue reading


@portswigger.net | 1 year ago

Vivaldi browser founder Jon von Tetzchner puts privacy at the center of

A man for all four seasons | Continue reading


@portswigger.net | 1 year ago

Bypassing Firefox's HTML Sanitizer API

The HTML Sanitizer is a great new API that allows web developers to filter untrusted HTML natively in the browser rather than use a JavaScript library such as DOM Purify. Microsoft created a similar A | Continue reading


@portswigger.net | 1 year ago

One in every 13 incidents blamed on API insecurity – report

Larger organizations are statistically more at risk, warns Imperva | Continue reading


@portswigger.net | 1 year ago

Russian botnet ‘RSOCKS’ dismantled after hacking millions of devices

Sock it to ‘em | Continue reading


@portswigger.net | 1 year ago

RubyGems trials 2FA-by-default in code repo’s latest security effort

Move intended to help prevent Ruby packages from being used in supply chain attacks | Continue reading


@portswigger.net | 1 year ago

Hid Mercury access control vulnerabilities leave door open to lock manipulation

Manufacturer HID Global addresses threat to integrity and availability of physical access systems | Continue reading


@portswigger.net | 1 year ago

Indian VPN providers resist incoming data-logging law

Privacy concerns raised over mandate to retain customer records | Continue reading


@portswigger.net | 1 year ago

Bug Bounty Radar // The latest bug bounty programs for June 2022

New web targets for the discerning hacker | Continue reading


@portswigger.net | 1 year ago

Dozens of high-traffic websites vulnerable to ‘account pre-hijacking’, study

Validation check loopholes exposed | Continue reading


@portswigger.net | 1 year ago

Patch released for cross-domain cookie leakage flaw in Guzzle

Drupal rolls out update for issue that is contingent on cookie middleware being enabled | Continue reading


@portswigger.net | 1 year ago

Security ‘researcher’ hits back against claims of malicious CTX file uploads

They claim that all data received was deleted | Continue reading


@portswigger.net | 1 year ago

Volatile market for stolen credit card data shaken up by sanctions against

Illicit trade still flourishing despite recent law enforcement takedowns | Continue reading


@portswigger.net | 1 year ago

Hunting Evasive Vulnerabilities

Do you ever wonder about the vulnerabilities you've missed? Why didn't they show themselves - and will they be discovered by somebody else later? Certain vulnerabilities have a knack for evading audit | Continue reading


@portswigger.net | 1 year ago

CyberUK 2022: Global power conflicts creating ‘balkinization’ of cybersecurity

Technology interoperability at risk from wider conflict between China and the West | Continue reading


@portswigger.net | 1 year ago

WordPress sites getting hacked ‘within seconds’ of TLS certificates being issued

Attackers pounce before site owners can activate the installation wizard | Continue reading


@portswigger.net | 1 year ago

GitHub offers post-mortem on recent security breach

Tokens stollen and abused but problem has been contained | Continue reading


@portswigger.net | 1 year ago

Microsoft report unmasks at least six Russian nation-state actors

Kremlin-linked actors have launched multiple assaults since invasion began | Continue reading


@portswigger.net | 1 year ago

Socket: New tool takes a proactive approach to prevent OSS supply chain attacks

Signal detector aims to help developers to stay ahead of threats | Continue reading


@portswigger.net | 1 year ago

Student grades stored in Greek education platform UniverSIS could be manipulated

Maintainers promptly patch issue that could also leak sensitive personal data | Continue reading


@portswigger.net | 1 year ago

Internal AWS credentials swiped by researcher via SQL payload

Amazon cloud service acts quickly to close security hole in RDS | Continue reading


@portswigger.net | 2 years ago

Access control vulnerability in EA exposed sensitive personal data

Unprotected API could expose names, places, times of bookings made using app | Continue reading


@portswigger.net | 2 years ago

Authorities seize Hydra servers in bust against darknet cybercrime marketplace

Wretched hive of villainy shut down | Continue reading


@portswigger.net | 2 years ago

US Government launches Bureau of Cyberspace and Digital Policy to enhance

Department will be tasked with addressing the security challenges and opportunities associated with cyberspace | Continue reading


@portswigger.net | 2 years ago

Singaporean cybersecurity agency launches certification scheme for businesses

Program comprises separate security marks aimed at SMEs and enterprises | Continue reading


@portswigger.net | 2 years ago

Rust patches sneaky ReDoS bug

Regex defenses restored to thwart resource consumption trap | Continue reading


@portswigger.net | 2 years ago

OpenSSL drops update addressing ‘high severity’ denial of service issue in

The race is on for maintainers of downstream applications | Continue reading


@portswigger.net | 2 years ago