AttackerKB
@AttackerKb
Followers
920
Following
28
Media
3
Statuses
71
Community-driven information, analysis, and discussion of vulnerabilities and threats. Part of the @Rapid7 family.
Austin, Texas
Joined November 2019
print("Hello, World") With hundreds of community-driven assessments of vulnerabilities and threats, AttackerKB offers a platform for analysis and discussion. Interested in contributing? Want to learn more about the latest vulnerabilities? Join us:
attackerkb.com
Not all vulns are created equal.
0
2
6
I examined the Zyxel firewall "authentication bypass" for @AttackerKb. CVE-2022-0342 just looks like a 2fa bypass to me. An explanation and proof of concept exploit can be found here:
attackerkb.com
On March 29, 2022, Zyxel released a security advisory for an authentication bypass vulnerability affecting a handful of their firewall and VPN products. The vu…
1
4
9
I put together a short @AttackerKb for the Sophos Firewall CVE-2022-1040 issue. A test of sorts: curl --insecure -H "X-Requested-With: XMLHttpRequest" -X POST ' https://10.0.0.12/userportal/Controller?mode=8700&operation=1&datagrid=179&json=\{"🦞":"test"\}'
1
33
111
I've got a few @AttackerKb write-ups in the backlog for vulnerabilities I couldn't find. I've very much not enjoyed that 😅 But hopefully the extra information will help someone else. First up, Apex Central's CVE-2022-26871:
attackerkb.com
On March 29, 2022, Trend Micro released a security advisory for a remote code execution vulnerability affecting Apex Central. The vulnerability allegedly allow…
0
2
8
I put together an @AttackerKb for Spring4Shell. There isn't a whole lot of new stuff to say at this point. I mostly focused on the original exploit. It's a simple and known technique, but not clearly stated anywhere, I thought. 🤷♂️ Happy hacking!
attackerkb.com
On March 30, 2022, rumors began to circulate about an unpatched remote code execution vulnerability in Spring Framework after a researcher published and quickl…
0
4
7
Rapid7 analysis for #Spring4Shell CVE-2022-22965 in AttackerKB via @Junior_Baines
attackerkb.com
On March 30, 2022, rumors began to circulate about an unpatched remote code execution vulnerability in Spring Framework after a researcher published and quickl…
0
0
0
New assessments of CVE-2020-15099 and CVE-2022-21999 in AttackerKB via community contributor noraj and @SpaceySpacek
attackerkb.com
Not all vulns are created equal.
0
1
2
Metasploit module available in today's release.
Analysis of "Dirty Pipe" CVE-2022-0847 via @SpaceySpacek, including patch info and PoC
0
6
28
Analysis of "Dirty Pipe" CVE-2022-0847 via @SpaceySpacek, including patch info and PoC
attackerkb.com
On March 7, 2022, CM4all security researcher Max Kellermann published technical details on CVE-2022-0847, an arbitrary file overwrite vulnerability in versions…
0
6
16
Here is the @AttackerKb analysis for CVE-2021-36260, unauthenticated command injection on Hikvision cameras. It includes a snippet of the vulnerable code, a potential way to discover compromise, and a link to pcaps. https://t.co/EWzoCxC2Ro
attackerkb.com
On September 18, 2021, Hikvision issued an advisory for CVE-2021-36260, an unauthenticated remote command injection vulnerability in a number of IP cameras. Si…
0
12
19
I wrote up CVE-2021-1585 for @AttackerKb. This unpatched vulnerability is in Cisco's ASDM, a thick client for managing Cisco ASA and the like. A MITM or an evil endpoint can execute arbitrary code on the victim host. PoC included. https://t.co/hb1yZtbfJH
attackerkb.com
CVE-2021-1585 is a vulnerability in Cisco ASDM, a thick client for managing and monitoring Cisco ASA, ASAv, ASAm, FirePower, and ISA routers, VPNSs, and firewa…
1
8
11
Technical analysis of CVE-2021-1585 in Cisco ASDM, which allows for person-in-the-middle attacks. Disclosed in July 2021, unpatched in latest version, public exploits available. PoC and IOCs in AttackerKB.
attackerkb.com
CVE-2021-1585 is a vulnerability in Cisco ASDM, a thick client for managing and monitoring Cisco ASA, ASAv, ASAm, FirePower, and ISA routers, VPNSs, and firewa…
0
6
8
To follow up on yesterday's tweet about PetitPotam/KB5009763, I added some notes to @AttackerKb and created a video demonstrating the failure and a patch to resolve it. https://t.co/qqIoc0m8Zj
https://t.co/E6MIv6qpWC
0
11
32
Technical analysis for Zoho ManageEngine Desktop Central (and MSP) CVE-2021-44515, including PoC. Credit to @wvuuuuuuuuuuuuu
attackerkb.com
On December 3, 2021, Zoho published a vulnerability notification for CVE-2021-44515, an authentication bypass and potential remote code execution (RCE) vulnera…
0
16
28
A handful of fresh vuln assessments for January Patch Tuesday bugs in AttackerKB this week courtesy of @tekwizz123. High-volume advisory dump, but at first glance, no easily exploitable CVEs that are *also* super useful attack targets.
attackerkb.com
Not all vulns are created equal.
0
2
2
Kibana CVE-2019-7609 and Oracle WebLogic Server CVE-2019-2725 have been reported as exploited in the wild per CISA.
attackerkb.com
Not all vulns are created equal.
0
1
1
My favorite is CVE-2021-20038, an unauthenticated stack-based buffer overflow in the web server. I wrote a fairly detailed @AttackerKb entry detailing the challenges of landing an exploit. (2/6) https://t.co/HdxQJujPh8
attackerkb.com
On December 7, 2021, SonicWall released new firmware for their Secure Mobile Access (SMA) 100 series. SonicWall issued a security advisory on January 11, 2022 …
1
3
5
Today, @rapid7 disclosed five zero-day vulnerabilities in SonicWall SMA 100 series devices. Technical analysis for CVE-2021-20038 (unauth stack-based buffer overflow) and CVE-2021-20039 (auth command injection) now in AttackerKB via @Junior_Baines.
attackerkb.com
On December 7, 2021, SonicWall released new firmware for their Secure Mobile Access (SMA) 100 series. SonicWall issued a security advisory on January 11, 2022 …
2
18
33
We've updated the log4j @AttackerKb Rapid7 analysis to include a VMWare Horizon proof of concept. Thanks to @rwincey for help on that! We also noted that @1ZRR4H tweeted about seeing this one in the wild. https://t.co/pjLbAQq3Ip
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
8
13
11 product-specific analyses Log4j vulnerability now in AttackerKB. Latest addition is PoC (and how to find IOCs) for MobileIron, which is trivially exploitable.
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
10
38
Recent additions to #Log4Shell analysis: - Apache JSPWiki, OFBiz, Druid vulnerable to CVE-2021-44228. PoCs and IOCs in write-up. - Our testing was unable to confirm exploitability for ManageEngine, VMware Horizon, WebLogic.
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
22
38