During a web application pentest, we found unpatched instances of CVE-2024-1813 in WordPress.
By chaining the underlying PHP object injection, we achieved unauthenticated RCE.
https://t.co/ZZ2WGwzfnY
Dès demain, nous serons à l’ECW à Rennes au stand S11.
Si vous passez, arrêtez-vous quelques minutes, les deux cofondateurs de Mobeta vous montreront comment on repense le modèle du pentest.
@EUCyberWeek
Arthur Le Corguillé et Antoine Morin seront sur l’espace FIC talks et interviendront à 10h50.
Au programme de notre pitch « Pentest terminé… et maintenant ? »
#ForumINCYBER
Retrouvez Mobeta au #ForumINCYBER sur l’espace innovation pour discuter, cybersécurité, pentest ainsi que de notre solution Rigma, l'assistant à la remédiation des audits.
Stand F17-8
Nouvel article technique concernant les comptes machines dans Active Directory.
Découvrez comment ils sont exploités et comment s’en protéger dans notre dernier blog post : https://t.co/wCpLCrHcCB
#cybersecurity#pentest#activedirectory
New blog: Lateral movement and on-prem NT hash dumping with Microsoft Entra Temporary Access Passes.
Some tips and tricks on abusing TAPs for Windows Hello persistence and NT hash recovery over Cloud Kerberos Trust. https://t.co/h3XHjBhwtz
Here's an educational POC for #xortigate (CVE-2023-27997).
I'll cover the vulnerability at @hexacon_fr this Saturday, and @BlackAlpsConf a few days later!
https://t.co/WA9nw7ObQT
Following our blogpost on #xortigate, here are some Forensics findings we observed during the exploitation of #CVE-2023-27997 on our test labs. This may help you with future #DFIR engagements: https://t.co/wxe6OqJMtq
This was a fun one! The vulnerability has been found and exploited during the timeframe of one of our Red Team engagements and allowed us to compromise our target entirely. Happy patch week! #xortigate
#Fortinet patched #CVE-2023-27997, a critical vulnerability affecting its VPN #Fortigate. Our latest blogpost describes the technical details about the bug, a pre-auth heap overflow, with a twist. #xortigate
https://t.co/LZ1ynVNY7w
Introducing sshimpanzee, a reverse shell made by @TitouanLazard based on openssh's sshd. It supports DNS, ICMP and HTTP encapsulation as well as SOCKS and HTTP Proxies :
https://t.co/PmEIHODLru
A few months ago, we reported a pre-auth Remote Code Execution #RCE vulnerability to @vBulletin. The exploitation of this unserialize() bug was tricky, as vBulletin classes are not deserialisable. Discover the exploitation in our latest blogpost:
https://t.co/6FDbtS4U8K
Learn how we discovered 5 distinct vulnerabilities on @watchguard#Firebox/#XTM firewalls, and obtained a pre-auth Remote Code Execution as root #0day (CVE-2022-31789, CVE-2022-31790).
https://t.co/I2ixfZEAPK