We finished 🥈at @UYBHYS’s LHE organized by @yeswehack and @Bzhunt1
Congrats to @fayred_fr for winning Best Report award and to @rayanlecat for a top🥉individual ranking and the award for the most critical bug! 💥
Thanks to the organizers, can’t wait for the next edition! 🤘
🚨Alert🚨
CVE-2024-29415: Popular Node.js Package ‘node-ip’ Exposes Millions to Potential SSRF Attacks
⚠Widely-used node-ip npm package, which is designed to retrieve a computer’s IPv4 addresses, has been identified to contain a serious SSRF vulnerability.
📊35.6M+ Services are…
🚨Alert🚨CVE-2024-4985 (CVSS 10): Critical Authentication Bypass Flaw Found in GitHub Enterprise Server
🔥PoC:github.com/absholi7ly/Byp…
⚠It could allow attackers to bypass authentication and gain unauthorized access to sensitive code repositories and data.
📊248K+ Services are…
🚨Alert🚨CVE-2024-4985 (CVSS 10): Critical Authentication Bypass Flaw Found in GitHub Enterprise Server
🔥PoC:github.com/absholi7ly/Byp…
⚠It could allow attackers to bypass authentication and gain unauthorized access to sensitive code repositories and data.
📊248K+ Services are… https://t.co/GEXyTjZmqV
🚀 The Phreaks have taken flight! 🚀
This week, our players are crossing the Atlantic to take part in @NorthSec_io taking place in #Montreal 🍁
On the program 2 days of conferences and a #CTF that will bring together a hundred teams! 🏆
Wish us luck! 🌟
📣 Give it up to the brave survivors of Brains & Bytes 📣
#UniversityCTF23 has come to an end, and these are its champions:
🥇 @gcc_ensibs
🥈 @EsnaBretagne
🥉 @phreaks2600
Thank you, everyone, for participating in the epic #CTF, and of course, stay tuned for more to come 😉…
Giveaway time! I have 1 online ticket to giveaway for @ArabConf. Please Retweet and Reply to participate. I will announce winners tomorrow.
Also, we (@AlteredSecurity) are glad to sponsor our labs as prizes for @ascyberwargames
CVE-2023-1829: A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation.
Poc
github.com/lanleft/CVE202…
CVE-2023-2825: issue has been discovered in GitLab CE/EE affecting only version 16.0.0. An unauthenticated malicious user can use a path traversal vulnerability.
PoC
github.com/Occamsec/CVE-2…
[#ECSC] La Team France est au complet ! 👏
Découvrez la sélection des joueurs qui défendront les couleurs de la 🇫🇷 du 24 au 27 octobre 2023 à Hamar, en Norvège !
@Cybersec_EU@enisa_eu#UE#CTF#ECSC#ECSC2023 #TeamFR
17 Followers 456 FollowingDreamed of the past in midnight and thought great to keep old memories and to make up new ones with new meets like you perhaps https://t.co/vaBPKsIfCj
56K Followers 3 FollowingOfficial account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
12K Followers 488 FollowingSr. Penetration Tester / Red Team Operator @ptswarm :: Author of the Pentester’s Promiscuous Notebook :: He/him :: Tweets’re my pwn 🐣
28K Followers 206 FollowingHacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.
68K Followers 586 FollowingHigh Queen of the Cybers | Educator | Content Creator | UwU-Anointed Wapp King | Ex-Brit | https://t.co/04RRExvxXj (he/him) 🇺🇸 I run gameshows at DEF CON.
36K Followers 184 FollowingNuclei uses a vast templating library to scan applications, cloud infrastructure, and networks to find and remediate vulnerabilities.
37K Followers 125 FollowingDetect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
48K Followers 622 FollowingThe power behind the @Synack platform is an elite team of the world's top cybersecurity researchers. Our best are honored at https://t.co/6bEAyp7HWJ
129K Followers 60 FollowingProviding Cyber Threat Intelligence from the Dark Web & Clearnet: Breaches, Ransomware, Darknet Markets, Threat Alerts & more. https://t.co/Fi7VW9lg94
2K Followers 10 FollowingA reboot of the DEFCON GROUP Paris group. Free bimonthly meetups.
If you would like to give a talk, contact us here: [email protected]