AttackerKb Profile Banner
AttackerKB Profile
AttackerKB

@AttackerKb

Followers
920
Following
28
Media
3
Statuses
71

Community-driven information, analysis, and discussion of vulnerabilities and threats. Part of the @Rapid7 family.

Austin, Texas
Joined November 2019
Don't wanna be here? Send us removal request.
@AttackerKb
AttackerKB
5 years
print("Hello, World") With hundreds of community-driven assessments of vulnerabilities and threats, AttackerKB offers a platform for analysis and discussion. Interested in contributing? Want to learn more about the latest vulnerabilities? Join us:
Tweet card summary image
attackerkb.com
Not all vulns are created equal.
0
2
6
@Junior_Baines
Jacob Baines
4 years
I examined the Zyxel firewall "authentication bypass" for @AttackerKb. CVE-2022-0342 just looks like a 2fa bypass to me. An explanation and proof of concept exploit can be found here:
Tweet card summary image
attackerkb.com
On March 29, 2022, Zyxel released a security advisory for an authentication bypass vulnerability affecting a handful of their firewall and VPN products. The vu…
1
4
9
@Junior_Baines
Jacob Baines
4 years
I put together a short @AttackerKb for the Sophos Firewall CVE-2022-1040 issue. A test of sorts: curl --insecure -H "X-Requested-With: XMLHttpRequest" -X POST ' https://10.0.0.12/userportal/Controller?mode=8700&operation=1&datagrid=179&json=\{"🦞":"test"\}'
1
33
111
@Junior_Baines
Jacob Baines
4 years
I've got a few @AttackerKb write-ups in the backlog for vulnerabilities I couldn't find. I've very much not enjoyed that 😅 But hopefully the extra information will help someone else. First up, Apex Central's CVE-2022-26871:
Tweet card summary image
attackerkb.com
On March 29, 2022, Trend Micro released a security advisory for a remote code execution vulnerability affecting Apex Central. The vulnerability allegedly allow…
0
2
8
@Junior_Baines
Jacob Baines
4 years
I put together an @AttackerKb for Spring4Shell. There isn't a whole lot of new stuff to say at this point. I mostly focused on the original exploit. It's a simple and known technique, but not clearly stated anywhere, I thought. 🤷‍♂️ Happy hacking!
Tweet card summary image
attackerkb.com
On March 30, 2022, rumors began to circulate about an unpatched remote code execution vulnerability in Spring Framework after a researcher published and quickl…
0
4
7
@AttackerKb
AttackerKB
4 years
New assessments of CVE-2020-15099 and CVE-2022-21999 in AttackerKB via community contributor noraj and @SpaceySpacek
Tweet card summary image
attackerkb.com
Not all vulns are created equal.
0
1
2
@metasploit
Metasploit Project
4 years
Metasploit module available in today's release.
@AttackerKb
AttackerKB
4 years
Analysis of "Dirty Pipe" CVE-2022-0847 via @SpaceySpacek, including patch info and PoC
0
6
28
@Junior_Baines
Jacob Baines
4 years
Here is the @AttackerKb analysis for CVE-2021-36260, unauthenticated command injection on Hikvision cameras. It includes a snippet of the vulnerable code, a potential way to discover compromise, and a link to pcaps. https://t.co/EWzoCxC2Ro
attackerkb.com
On September 18, 2021, Hikvision issued an advisory for CVE-2021-36260, an unauthenticated remote command injection vulnerability in a number of IP cameras. Si…
0
12
19
@Junior_Baines
Jacob Baines
4 years
I wrote up CVE-2021-1585 for @AttackerKb. This unpatched vulnerability is in Cisco's ASDM, a thick client for managing Cisco ASA and the like. A MITM or an evil endpoint can execute arbitrary code on the victim host. PoC included. https://t.co/hb1yZtbfJH
Tweet card summary image
attackerkb.com
CVE-2021-1585 is a vulnerability in Cisco ASDM, a thick client for managing and monitoring Cisco ASA, ASAv, ASAm, FirePower, and ISA routers, VPNSs, and firewa…
1
8
11
@AttackerKb
AttackerKB
4 years
Technical analysis of CVE-2021-1585 in Cisco ASDM, which allows for person-in-the-middle attacks. Disclosed in July 2021, unpatched in latest version, public exploits available. PoC and IOCs in AttackerKB.
Tweet card summary image
attackerkb.com
CVE-2021-1585 is a vulnerability in Cisco ASDM, a thick client for managing and monitoring Cisco ASA, ASAv, ASAm, FirePower, and ISA routers, VPNSs, and firewa…
0
6
8
@Junior_Baines
Jacob Baines
4 years
To follow up on yesterday's tweet about PetitPotam/KB5009763, I added some notes to @AttackerKb and created a video demonstrating the failure and a patch to resolve it. https://t.co/qqIoc0m8Zj https://t.co/E6MIv6qpWC
0
11
32
@AttackerKb
AttackerKB
4 years
A handful of fresh vuln assessments for January Patch Tuesday bugs in AttackerKB this week courtesy of @tekwizz123. High-volume advisory dump, but at first glance, no easily exploitable CVEs that are *also* super useful attack targets.
Tweet card summary image
attackerkb.com
Not all vulns are created equal.
0
2
2
@AttackerKb
AttackerKB
4 years
Kibana CVE-2019-7609 and Oracle WebLogic Server CVE-2019-2725 have been reported as exploited in the wild per CISA.
Tweet card summary image
attackerkb.com
Not all vulns are created equal.
0
1
1
@Junior_Baines
Jacob Baines
4 years
My favorite is CVE-2021-20038, an unauthenticated stack-based buffer overflow in the web server. I wrote a fairly detailed @AttackerKb entry detailing the challenges of landing an exploit. (2/6) https://t.co/HdxQJujPh8
Tweet card summary image
attackerkb.com
On December 7, 2021, SonicWall released new firmware for their Secure Mobile Access (SMA) 100 series. SonicWall issued a security advisory on January 11, 2022 …
1
3
5
@AttackerKb
AttackerKB
4 years
Today, @rapid7 disclosed five zero-day vulnerabilities in SonicWall SMA 100 series devices. Technical analysis for CVE-2021-20038 (unauth stack-based buffer overflow) and CVE-2021-20039 (auth command injection) now in AttackerKB via @Junior_Baines.
attackerkb.com
On December 7, 2021, SonicWall released new firmware for their Secure Mobile Access (SMA) 100 series. SonicWall issued a security advisory on January 11, 2022 …
2
18
33
@Junior_Baines
Jacob Baines
4 years
We've updated the log4j @AttackerKb Rapid7 analysis to include a VMWare Horizon proof of concept. Thanks to @rwincey for help on that! We also noted that @1ZRR4H tweeted about seeing this one in the wild. https://t.co/pjLbAQq3Ip
Tweet card summary image
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
8
13
@AttackerKb
AttackerKB
4 years
11 product-specific analyses Log4j vulnerability now in AttackerKB. Latest addition is PoC (and how to find IOCs) for MobileIron, which is trivially exploitable.
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
10
38
@AttackerKb
AttackerKB
4 years
Recent additions to #Log4Shell analysis: - Apache JSPWiki, OFBiz, Druid vulnerable to CVE-2021-44228. PoCs and IOCs in write-up. - Our testing was unable to confirm exploitability for ManageEngine, VMware Horizon, WebLogic.
attackerkb.com
Information and exploitation of this vulnerability are evolving quickly. We will update this analysis with further information as it becomes available. Individ…
1
22
38