πNew WriteupβοΈ
βββββββββββββββ
πDate: Mon, 02 Oct 2023 04:24:04 GMT
βββββββββββββββ
βοΈTitle: [CVE-2023β38743] ManageEngine ADManager Command Injection
βββββββββββββββ
πLink: https://medium.com/p/a23dcfa34b7e
βββββββββββββββ
Tags: #white_box #command_injection #zoho #manageengine #security
βββββββββββββββ
πDate: Mon, 02 Oct 2023 04:24:04 GMT
βββββββββββββββ
βοΈTitle: [CVE-2023β38743] ManageEngine ADManager Command Injection
βββββββββββββββ
πLink: https://medium.com/p/a23dcfa34b7e
βββββββββββββββ
Tags: #white_box #command_injection #zoho #manageengine #security
Medium
[CVE-2023β38743] ManageEngine ADManager Command Injection
Authenticated users with admin privileges can run an arbitrary command on the host machine in which ADManager Plus is installed.
β€· Title: PoisonSeed Campaign: Uncovering a Web of Cryptocurrency and Email Provider Attacks
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 07 Apr 2025 00:15:07 +0000
ββββββββββββββββββββββββ
β Tags: #Cyber Security #coinbase #CryptoChameleon #cryptocurrency seed phrase poisoning attack #HubSpot #Ledger #Mailchimp #Mailgun #PoisonSeed #SendGrid #The Comm #Troy Hunt #Zoho
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 07 Apr 2025 00:15:07 +0000
ββββββββββββββββββββββββ
β Tags: #Cyber Security #coinbase #CryptoChameleon #cryptocurrency seed phrase poisoning attack #HubSpot #Ledger #Mailchimp #Mailgun #PoisonSeed #SendGrid #The Comm #Troy Hunt #Zoho
Daily CyberSecurity
PoisonSeed Campaign: Uncovering a Web of Cryptocurrency and Email Provider Attacks
Uncover the details of the PoisonSeed campaign targeting enterprises and cryptocurrency holders with phishing and email attacks.
β€· Title: MySQL Servers Under Attack: Threat Actors Exploiting UDFs to Inject Gh0stRAT, XWorm & Zoho Agents
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 19 Jun 2025 00:30:17 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #ASEC #cyberattack #cybersecurity #database security #Gh0stRAT #HpLoader #mysql #Remote Access Trojan #UDF #User Defined Functions #XWorm #Zoho ManageEngine
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 19 Jun 2025 00:30:17 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #ASEC #cyberattack #cybersecurity #database security #Gh0stRAT #HpLoader #mysql #Remote Access Trojan #UDF #User Defined Functions #XWorm #Zoho ManageEngine
Daily CyberSecurity
MySQL Servers Under Attack: Threat Actors Exploiting UDFs to Inject Gh0stRAT, XWorm & Zoho Agents
Threat actors are actively compromising poorly managed MySQL servers, using UDFs to inject Gh0stRAT, XWorm, HpLoader, and legitimate Zoho agents for full system control and data theft.
β€· Title: 2 Best Self-Hosted Bounty Programs
ββββββββββββββββββββββββ
πͺ Author: Abhirup Konwar
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 16 Oct 2025 13:48:58 GMT
ββββββββββββββββββββββββ
β Tags: #ethical_hacking #bug_bounty #bug_bounty_hunter #zoho #bug_bounty_tips
ββββββββββββββββββββββββ
πͺ Author: Abhirup Konwar
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 16 Oct 2025 13:48:58 GMT
ββββββββββββββββββββββββ
β Tags: #ethical_hacking #bug_bounty #bug_bounty_hunter #zoho #bug_bounty_tips
Medium
2 Best Self-Hosted Bounty Programs
Listed based on my own personal opinion and observations.
For others priority might vary from person to person :)
For others priority might vary from person to person :)
β€· Title: Critical Zoho Analytics Plus Flaw (CVE-2025-8324, CVSS 9.8) Allows Unauthenticated SQL Injection and Data Takeover
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 14 Nov 2025 00:00:03 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_8324 #Data Exposure #sql injection #unauthenticated RCE #Zoho Analytics Plus
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 14 Nov 2025 00:00:03 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_8324 #Data Exposure #sql injection #unauthenticated RCE #Zoho Analytics Plus
Daily CyberSecurity
Critical Zoho Analytics Plus Flaw (CVE-2025-8324, CVSS 9.8) Allows Unauthenticated SQL Injection and Data Takeover
Zoho issued an urgent patch for a Critical (CVSS 9.8) Unauthenticated SQL Injection flaw (CVE-2025-8324) in Analytics Plus. The bug risks remote query execution and account takeover. Update to Build 6171.
β€· Title: Vulnerability Disclosure -Business logic: Application Restriction Bypass @ Zoho Application Controlβ¦
ββββββββββββββββββββββββ
πͺ Author: Kartik Lalan
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 06 Jan 2026 04:36:55 GMT
ββββββββββββββββββββββββ
β Tags: #application_control #zoho #vulnerability #application_security #manageengine
ββββββββββββββββββββββββ
πͺ Author: Kartik Lalan
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 06 Jan 2026 04:36:55 GMT
ββββββββββββββββββββββββ
β Tags: #application_control #zoho #vulnerability #application_security #manageengine
Medium
Vulnerability Disclosure -Business logic: Application Restriction Bypass @ Zoho Application Controlβ¦
Status: Open (As on 1-Jun-2025)
β€· Title: Jumping the Gap: APT37βs βRuby Jumperβ Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 04 Mar 2026 07:01:03 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 04 Mar 2026 07:01:03 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
Penetration Testing Tools
Jumping the Gap: APT37βs "Ruby Jumper" Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
The DPRK-affiliated syndicate APT37 has augmented its arsenal dedicated to breaching air-gapped networks. The Zscaler ThreatLabz vanguard has
β€· Title: The Friend Request from Pyongyang: How APT37 Hijacks Facebook to Deploy RokRAT
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 15 Apr 2026 07:40:02 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #APT37 #Code Cave Injection #Facebook Phishing #Fileless Malware #Genians Security Center #North Korean APT #PE Patching #RokRAT #social engineering #Wondershare PDFelement #Zoho WorkDrive
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 15 Apr 2026 07:40:02 +0000
ββββββββββββββββββββββββ
β Tags: #Cybercriminals #APT37 #Code Cave Injection #Facebook Phishing #Fileless Malware #Genians Security Center #North Korean APT #PE Patching #RokRAT #social engineering #Wondershare PDFelement #Zoho WorkDrive
Daily CyberSecurity
The Friend Request from Pyongyang: How APT37 Hijacks Facebook to Deploy RokRAT
APT37 pivots to Facebook social engineering, using Wondershare PDFelement "code caves" to deploy RokRAT. Learn how they bypass EDR with memory-only payloads.
β€· Title: Mustang Panda Exploits Zoho WorkDrive in Cyber Espionage
ββββββββββββββββββββββββ
πͺ Author: Nam Phong
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Jul 2026 15:10:02 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cyber Espionage #India Cyberattack #Mustang Panda #Zoho WorkDrive
ββββββββββββββββββββββββ
πͺ Author: Nam Phong
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Jul 2026 15:10:02 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cyber Espionage #India Cyberattack #Mustang Panda #Zoho WorkDrive
Information Security News
Mustang Panda Exploits Zoho WorkDrive in Cyber Espionage
An innocuous cloud-based file collaboration platform recently became the conduit for a sophisticated espionage operation. The notorious Chinese threat actor, Mustang Panda, orchestrated targeted aβ¦
β€· Title: ADAudit Plus Flaw CVE-2026-6516 Allows Unauthenticated Remote Code Execution at CVSS 10
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 24 Jul 2026 02:50:50 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #active directory #ADAudit Plus #Authentication Bypass #CVE_2026_6516 #ManageEngine #patch management #Path Traversal #unauthenticated RCE #Zoho
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 24 Jul 2026 02:50:50 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #active directory #ADAudit Plus #Authentication Bypass #CVE_2026_6516 #ManageEngine #patch management #Path Traversal #unauthenticated RCE #Zoho
Daily CyberSecurity
ADAudit Plus Flaw CVE-2026-6516 Allows Unauthenticated Remote Code Execution at CVSS 10
TL;DR ManageEngine patched a critical ADAudit Plus vulnerability tracked as CVE-2026-6516. Two weaknesses in the productβs Agent APIs, an authentication bypass and a path traversal, chain inβ¦