brsn @br-sn.bsky.social · 10/04/2025@metlstorm.risky.biz @patrick.risky.biz looks like rapid7 found a nice exploit strategy for that Ivanti BOF you discussed in the recent ep: attackerkb.com/topics/0ybGQ...attackerkb.comCVE-2025-22457 | AttackerKBOn April 3, 2025, Ivanti published an advisory for CVE-2025-22457, an unauthenticated remote code execution vulnerability due to a stack based buffer overflow.… 041
Reposted by brsnDilDog 🅅 @dildog.l0pht.com · 03/04/2025unpopular opinion: circuit board hacker conference badges are unwieldy and impractical e-waste 146512
Reposted by brsnFrycos @frycos.bsky.social · 02/12/2024Most of you know about Telerik or DevExpress but ever heard of Syncfusion as another big global player? I found some interesting vulnerabilities in it, fixed in version v27.1.55. Unfortunately, Syncfusion still tries to understand CVE assignments 😅 094
Reposted by brsnBitquark @bitquark.io · 25/11/2024I've just updated Shortscan to support reading a list of URLs to scan from a file (and included a minor bugfix). Feedback welcome! The latest version is v0.9.2 and can be found on Github: github.com/bitquark/sho...github.comGitHub - bitquark/shortscan: An IIS short filename enumeration toolAn IIS short filename enumeration tool. Contribute to bitquark/shortscan development by creating an account on GitHub. 4368