Cabir
banner
cabir.bsky.social
Cabir
@cabir.bsky.social
Infosec @ pirates
Reposted by Cabir
ID: CVE-2024-39165
CVSS N/A
QR/demoapp/qr_image.php in Asial JpGraph Professional through 4.2.6-pro allows remote attackers to execute arbitrary code via a PHP payload in the data parameter in conjunction with a .php file name in the filename parameter....
#security #infosec #cve-alert
nvd.nist.gov
July 4, 2024 at 1:15 PM
Reposted by Cabir
December 1, 2023 at 8:16 PM
Reposted by Cabir
A very interesting read! 💎

Looking forward to the DragonSector’s CCC talk being published 👀
Dieselgate, but for trains – some heavyweight hardware hacking
[this is an English translation of the original article in Polish, we occasionally publish the best cyber stories from Poland in English] A train manufactured by a Polish company suddenly broke...
badcyber.com
December 7, 2023 at 9:15 PM
Reposted by Cabir
The Mirai Confessions: Three Young Hackers Who Built a Web-Killing Monster Finally Tell Their Story

www.wired.com/story/mirai-...
November 15, 2023 at 9:41 AM
Reposted by Cabir
Another amusing quick and dirty Defender bypass that I use a lot, although sophisticated defenders will pick it up: remove all of Defender's definitions without actually killing it

cmd /c "c:\program files\windows defender\mpcmdrun.exe" -RemoveDefinitions -All
October 20, 2023 at 4:17 AM