Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Cisco bug gives remote attackers root privileges via debug mode
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Cisco bug gives remote attackers root privileges via debug modePost Views: 119 https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/BECOME-A-PATRON-AND-UNLOCK-EXCLUSIVE-VIDEOS-1.png Reading Time: 1 Minute
Cisco has fixed a critical security flaw discovered in the Cisco Redundancy Configuration Manager (RCM) for Cisco StarOS Software during internal security testing.
The vulnerability, tracked as CVE-2022-20649, enables unauthenticated attackers to gain remote code execution (RCE) with root-level privileges on devices running the vulnerable software.
“A vulnerability in Cisco RCM for Cisco StarOS Software could allow an unauthenticated, remote attacker to perform remote code execution on the application with root-level privileges in the context of the configured container,” Cisco said.
As the company further explains, the vulnerability exists due to the debug mode being incorrectly enabled for specific services.
“An attacker could exploit this vulnerability by connecting to the device and navigating to the service with debug mode enabled. A successful exploit could allow the attacker to execute arbitrary commands as the root user,” Cisco added.
However, for unauthenticated access to devices running unpatched software, the attackers would first need to perform detailed reconnaissance to discover the vulnerable services.
See Also: Complete Offensive Security and Ethical Hacking Course No in-the-wild exploitationCisco’s Product Security Incident Response Team (PSIRT) said that the company is not aware of exploitation of this vulnerability in ongoing attacks.
Today, Cisco also fixed a medium severity information disclosure bug (CVE-2022-20648) in the Cisco RCM for Cisco StarOS caused by a debug service incorrectly listening to and accepting incoming connections.
Remote attackers could exploit this second bug by executing debug commands after connecting to the debug port. Successful exploitation could allow them to access sensitive debugging information on the vulnerable device.
See Also: Microsoft: New critical Windows HTTP vulnerability is wormable
The company has released Cisco RCM for StarOS 21.25.4, which comes with security updates to address these flaws and is available through the Software Center on Cisco.com.
Last year, Cisco patched several other vulnerabilities that allow threat actors to execute code and commands remotely with root privileges.
For instance, it addressed critical pre-authentication RCE flaw impacting SD-WAN vManage that could enable threat actors to get root privileges on the underlying OS in May. Another pre-auth bug in the same software, allowing attackers to gain RCE as root, was fixed in April.
Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
See Also: OSINT Tool: Commit Stream See Also: Hacking stories – Rafael Núñez (aka RaFa), hacking NASA with the hacking group: World of Hell
Source: bleepingcomputer.com (Click Link)https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/ezgif.com-gif-maker-11-1-90x90.jpg Beijing Olympics App Flaws Allow Man-in-the-Middle Attacks1 day ago
* https://www.blackhatethicalhacking.com/[...]
___________________________
@hacking_Attack
@Hacking_Video
Cisco bug gives remote attackers root privileges via debug mode
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Cisco bug gives remote attackers root privileges via debug modePost Views: 119 https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/BECOME-A-PATRON-AND-UNLOCK-EXCLUSIVE-VIDEOS-1.png Reading Time: 1 Minute
Cisco has fixed a critical security flaw discovered in the Cisco Redundancy Configuration Manager (RCM) for Cisco StarOS Software during internal security testing.
The vulnerability, tracked as CVE-2022-20649, enables unauthenticated attackers to gain remote code execution (RCE) with root-level privileges on devices running the vulnerable software.
“A vulnerability in Cisco RCM for Cisco StarOS Software could allow an unauthenticated, remote attacker to perform remote code execution on the application with root-level privileges in the context of the configured container,” Cisco said.
As the company further explains, the vulnerability exists due to the debug mode being incorrectly enabled for specific services.
“An attacker could exploit this vulnerability by connecting to the device and navigating to the service with debug mode enabled. A successful exploit could allow the attacker to execute arbitrary commands as the root user,” Cisco added.
However, for unauthenticated access to devices running unpatched software, the attackers would first need to perform detailed reconnaissance to discover the vulnerable services.
See Also: Complete Offensive Security and Ethical Hacking Course No in-the-wild exploitationCisco’s Product Security Incident Response Team (PSIRT) said that the company is not aware of exploitation of this vulnerability in ongoing attacks.
Today, Cisco also fixed a medium severity information disclosure bug (CVE-2022-20648) in the Cisco RCM for Cisco StarOS caused by a debug service incorrectly listening to and accepting incoming connections.
Remote attackers could exploit this second bug by executing debug commands after connecting to the debug port. Successful exploitation could allow them to access sensitive debugging information on the vulnerable device.
See Also: Microsoft: New critical Windows HTTP vulnerability is wormable
The company has released Cisco RCM for StarOS 21.25.4, which comes with security updates to address these flaws and is available through the Software Center on Cisco.com.
Last year, Cisco patched several other vulnerabilities that allow threat actors to execute code and commands remotely with root privileges.
For instance, it addressed critical pre-authentication RCE flaw impacting SD-WAN vManage that could enable threat actors to get root privileges on the underlying OS in May. Another pre-auth bug in the same software, allowing attackers to gain RCE as root, was fixed in April.
Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
See Also: OSINT Tool: Commit Stream See Also: Hacking stories – Rafael Núñez (aka RaFa), hacking NASA with the hacking group: World of Hell
Source: bleepingcomputer.com (Click Link)https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/ezgif.com-gif-maker-11-1-90x90.jpg Beijing Olympics App Flaws Allow Man-in-the-Middle Attacks1 day ago
* https://www.blackhatethicalhacking.com/[...]
___________________________
@hacking_Attack
@Hacking_Video
Black Hat Ethical Hacking
Cisco bug gives remote attackers root privileges via debug mode | Black Hat Ethical Hacking
Cisco has fixed a critical security flaw discovered in the Cisco Redundancy Configuration Manager (RCM) for Cisco StarOS Software during internal security testing.
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Cisco bug gives remote attackers root privileges via debug mode https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Cisco bug gives remote attackers root privileges via debug modePost Views:…
wp-content/uploads/2022/01/ezgif.com-gif-maker-10-90x90.jpg SSRF vulnerability in VMWare authentication software could allow access to user data2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/Safari-Apple-navigateur-90x90.jpg Same-origin violation vulnerability in Safari 15 could leak a user’s website history and identity3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/Qlocker-Ransomware-1-90x90.png Qlocker ransomware returns – targets QNAP NAS devices worldwide4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/https___specials-images.forbesimg.com_imageserve_61aff357a4c71fc225ab8ba7_0x0-90x90.jpg AWS fixes security flaws that exposed AWS customer data1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/image-apple-releases-15-2-1-update-for-ios-and-ipados-to-fix-bugs-164203308032302-90x90.jpg Apple fixes doorLock bug that can disable iPhones and iPads1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/0_Windows-headpic-90x90.jpg Microsoft: New critical Windows HTTP vulnerability is wormable1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/powerdir-exploit-microsoft-90x90.jpg Microsoft: powerdir bug gives access to protected macOS user data1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/using-npm-create-javascript-icon-libraries-90x90.png Dev corrupts NPM libs ‘colors’ and ‘faker’ breaking thousands of apps2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/ezgif.com-gif-maker-7-90x90.jpg Partially Unpatched VMware Bug Opens Door to Hypervisor Takeover2 weeks ago
The post Cisco bug gives remote attackers root privileges via debug mode first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/Safari-Apple-navigateur-90x90.jpg Same-origin violation vulnerability in Safari 15 could leak a user’s website history and identity3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/Qlocker-Ransomware-1-90x90.png Qlocker ransomware returns – targets QNAP NAS devices worldwide4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/https___specials-images.forbesimg.com_imageserve_61aff357a4c71fc225ab8ba7_0x0-90x90.jpg AWS fixes security flaws that exposed AWS customer data1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/image-apple-releases-15-2-1-update-for-ios-and-ipados-to-fix-bugs-164203308032302-90x90.jpg Apple fixes doorLock bug that can disable iPhones and iPads1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/0_Windows-headpic-90x90.jpg Microsoft: New critical Windows HTTP vulnerability is wormable1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/powerdir-exploit-microsoft-90x90.jpg Microsoft: powerdir bug gives access to protected macOS user data1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/using-npm-create-javascript-icon-libraries-90x90.png Dev corrupts NPM libs ‘colors’ and ‘faker’ breaking thousands of apps2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/01/ezgif.com-gif-maker-7-90x90.jpg Partially Unpatched VMware Bug Opens Door to Hypervisor Takeover2 weeks ago
The post Cisco bug gives remote attackers root privileges via debug mode first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Nakji Network launches a 200K USD Bug Bounty Program
https://medium.com/sentinel-protocol/nakji-network-launches-a-200k-usd-bug-bounty-program-7aa99defbf22?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/sentinel-protocol/nakji-network-launches-a-200k-usd-bug-bounty-program-7aa99defbf22?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Nakji Network launches a 200K USD Bug Bounty Program
Singapore, 21st January 2022 — The Nakji Foundation (‘Nakji’) is launching a 200K USD Bug Bounty program for developers and security…
Singapore, 21st January 2022 — The Nakji Foundation (‘Nakji’) is launching a 200K USD Bug Bounty program for developers and security…Continue reading on Sentinel Protocol » (https://medium.com/sentinel-protocol/nakji-network-launches-a-200k-usd-bug-bounty-program-7aa99defbf22?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Nakji Network launches a 200K USD Bug Bounty Program
Singapore, 21st January 2022 — The Nakji Foundation (‘Nakji’) is launching a 200K USD Bug Bounty program for developers and security…
Cronos Theft of Transactions Fees Bugfix Postmortem
https://medium.com/immunefi/cronos-theft-of-transactions-fees-bugfix-postmortem-b33f941b9570?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/immunefi/cronos-theft-of-transactions-fees-bugfix-postmortem-b33f941b9570?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Cronos Theft of Transactions Fees Bugfix Postmortem
Transactions in blockchain are like sound traveling through air. We communicate with others through transactions; we announce what we’re…
Transactions in blockchain are like sound traveling through air. We communicate with others through transactions; we announce what we’re…Continue reading on Immunefi » (https://medium.com/immunefi/cronos-theft-of-transactions-fees-bugfix-postmortem-b33f941b9570?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Cronos Theft of Transactions Fees Bugfix Postmortem
Transactions in blockchain are like sound traveling through air. We communicate with others through transactions; we announce what we’re…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to prepare for Certified Ethical Hacker (CEH)v11 Certification?
https://cdn-images-1.medium.com/max/1280/1*wiMcnYjDSj8e00wcu2aXqQ.jpeg
Hello Security researchers, This blog is about how to prepare for your CEH v11 Certification, I will share the tips, resources, and my…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How to prepare for Certified Ethical Hacker (CEH)v11 Certification?
https://cdn-images-1.medium.com/max/1280/1*wiMcnYjDSj8e00wcu2aXqQ.jpeg
Hello Security researchers, This blog is about how to prepare for your CEH v11 Certification, I will share the tips, resources, and my…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How to prepare for Certified Ethical Hacker (CEH)v11 Certification?
Hello Security researchers, This blog is about how to prepare for your CEH v11 Certification, I will share the tips, resources, and my…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Is North Korea a hacker state?
https://cdn-images-1.medium.com/max/1280/0*eF5_1M__AHNuxARn.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Is North Korea a hacker state?
https://cdn-images-1.medium.com/max/1280/0*eF5_1M__AHNuxARn.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Is North Korea a hacker state?
The news went unnoticed in a week of media-worthy missile launches, but North Korea stole $400 million (€352 million) in seven attacks on cryptocurrency platforms last year, according to experts at…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Renforcer la sécurité de ses accès
https://cdn-images-1.medium.com/max/612/1*3GVqfGeLxcHv95AfQk8Sgw.jpeg
Depuis de nombreuses années maintenant, pas une semaine ne passe sans que l’on ne découvre dans les médias que de nouvelles entreprises …
Continue reading on Ouidou »
___________________________
@hacking_Attack
@Hacking_Video
Renforcer la sécurité de ses accès
https://cdn-images-1.medium.com/max/612/1*3GVqfGeLxcHv95AfQk8Sgw.jpeg
Depuis de nombreuses années maintenant, pas une semaine ne passe sans que l’on ne découvre dans les médias que de nouvelles entreprises …
Continue reading on Ouidou »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Renforcer la sécurité de ses accès
Depuis de nombreuses années maintenant, pas une semaine ne passe sans que l’on ne découvre dans les médias que de nouvelles entreprises …
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
QuickCode a beautiful encryption algorithm. Any Comments?
https://external-preview.redd.it/FCQTv_Uf5X4DIXdehNNstVi508cKp2Ry1Ze3UtTNT3Q.jpg?width=640&crop=smart&auto=webp&s=fd88385c3d98bfc51f532bbfcd28a51706b45f09 submitted by /u/Beginning-Safe4282
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
QuickCode a beautiful encryption algorithm. Any Comments?
https://external-preview.redd.it/FCQTv_Uf5X4DIXdehNNstVi508cKp2Ry1Ze3UtTNT3Q.jpg?width=640&crop=smart&auto=webp&s=fd88385c3d98bfc51f532bbfcd28a51706b45f09 submitted by /u/Beginning-Safe4282
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
QuickCode a beautiful encryption algorithm. Any Comments?
Posted in r/hacking by u/Beginning-Safe4282 • 1 point and 0 comments
hacking: security in practice
Want to capture HTTP requests
Scenario : I want to capture the HTTP requests of computers and save them into a text file. This is going to be a place where multiple computers are being used simultaneously (Coffee Shops). I am not doing this for hacking. This is just to learn about the security.
So are there any scripts that i can use? i will be using Linux or macOS. aGaIn I am just a Student trying to learn about security.
This is my first time asking for help in getting scripts. If want to know more please a reply...
submitted by /u/barathrajkb
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Want to capture HTTP requests
Scenario : I want to capture the HTTP requests of computers and save them into a text file. This is going to be a place where multiple computers are being used simultaneously (Coffee Shops). I am not doing this for hacking. This is just to learn about the security.
So are there any scripts that i can use? i will be using Linux or macOS. aGaIn I am just a Student trying to learn about security.
This is my first time asking for help in getting scripts. If want to know more please a reply...
submitted by /u/barathrajkb
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Want to capture HTTP requests
Scenario : I want to capture the HTTP requests of computers and save them into a text file. This is going to be a place where multiple computers...
Wireshark-Forensics-Plugin - A cross-platform Wireshark plugin that correlates network traffic data with threat intelligence, asset categorization & vulnerability data
http://www.kitploit.com/2022/01/wireshark-forensics-plugin-cross.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2022/01/wireshark-forensics-plugin-cross.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Wireshark-Forensics-Plugin - A cross-platform Wireshark plugin that correlates network traffic data with threat intelligence,…
Wireshark is the most widely used network traffic analyzer. It is an important tool for both live traffic analysis (https://www.kitploit.com/search/label/Traffic%20Analysis) & forensic analysis (https://www.kitploit.com/search/label/Forensic%20Analysis) for forensic/malware analysts. Even though Wireshark provides incredibly powerful functionalities for protocol parsing & filtering, it does not provide any contextual information about network endpoints. For a typical analyst, who has to comb through GBs of PCAP files to identify malicious activity, it's like finding a needle in a haystack. Wireshark Forensics Toolkit is a cross-platform Wireshark plugin that correlates network traffic data with threat intelligence, asset categorization & vulnerability data to speed up network forensic analysis. It does it by extending Wireshark native search filter functionality to allow filtering based on these additional contextual attributes. It works with both PCAP files and real-time traffic captures.
This toolkit provides the following functionality Loads malicious Indicators CSV exported from Threat Intelligence (https://www.kitploit.com/search/label/Threat%20Intelligence) Platforms like MISP and associates it with each source/destination IP from network traffic Loads asset classification information based on IP-Range to Asset Type mapping which enables filtering incoming/outgoing traffic from a specific type of assets (e.g. filter for ‘Database Server’, ‘Employee Laptop’ etc) Loads exported vulnerability scan information exported from Qualys/Nessus map IP to CVEs. Extends native Wireshark filter functionality to allow filtering based severity, source, asset type & CVE information for each source or destination IP address in network logs How To Use Download source Zip file or checkout the code Folder data/formatted_reports has 3 files asset_tags.csv : Information about asset ip/domain/cidr and associated tags. Default file has few examples for intranet IPs & DNS servers asset_vulnerabilities.csv : Details about CVE IDs and top CVSS score value for each asset indicators.csv : IOC data with attributes type, value, severity & threat type All 3 files mentioned in step (2) can either be manually edited or vulnerabilities (https://www.kitploit.com/search/label/vulnerabilities) & indicators file can be generated using exported MISP & Tenable Nessus scan report. Need to place exported files under following folders with exact name specified data/raw_reports/misp.csv : this file can be exported from MISP from following location, Export->CSV_Sig->Generate then Download
___________________________
@hacking_Attack
@Hacking_Video
This toolkit provides the following functionality Loads malicious Indicators CSV exported from Threat Intelligence (https://www.kitploit.com/search/label/Threat%20Intelligence) Platforms like MISP and associates it with each source/destination IP from network traffic Loads asset classification information based on IP-Range to Asset Type mapping which enables filtering incoming/outgoing traffic from a specific type of assets (e.g. filter for ‘Database Server’, ‘Employee Laptop’ etc) Loads exported vulnerability scan information exported from Qualys/Nessus map IP to CVEs. Extends native Wireshark filter functionality to allow filtering based severity, source, asset type & CVE information for each source or destination IP address in network logs How To Use Download source Zip file or checkout the code Folder data/formatted_reports has 3 files asset_tags.csv : Information about asset ip/domain/cidr and associated tags. Default file has few examples for intranet IPs & DNS servers asset_vulnerabilities.csv : Details about CVE IDs and top CVSS score value for each asset indicators.csv : IOC data with attributes type, value, severity & threat type All 3 files mentioned in step (2) can either be manually edited or vulnerabilities (https://www.kitploit.com/search/label/vulnerabilities) & indicators file can be generated using exported MISP & Tenable Nessus scan report. Need to place exported files under following folders with exact name specified data/raw_reports/misp.csv : this file can be exported from MISP from following location, Export->CSV_Sig->Generate then Download
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.