⤷ Title: Pico-CTF | Reverse Engineering | Flag-Hunter (Song on Hackers?!)
════════════════════════
𐀪 Author: rinz0x0cruz
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 15:33:42 GMT
════════════════════════
⌗ Tags: #reverse_engineering #code_injection #python #ctf #hacking
════════════════════════
𐀪 Author: rinz0x0cruz
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 15:33:42 GMT
════════════════════════
⌗ Tags: #reverse_engineering #code_injection #python #ctf #hacking
Medium
Pico-CTF | Reverse Engineering | Flag-Hunter (Song on Hackers?!)
Needle in the Hay Stack, quite literally…..
⤷ Title: ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
Penetration Testing Tools
ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
ComDotNetExploit is a C++ PoC demonstrating PPL bypass in Windows using COM-to-.NET redirection and reflection for code injection.
⤷ Title: Dangerous PHP functions every developer should avoid (or handle with extreme care)
════════════════════════
𐀪 Author: Roman Huliak
════════════════════════
ⴵ Time: Sun, 01 Jun 2025 07:30:26 GMT
════════════════════════
⌗ Tags: #web_development #secure_coding #cybersecurity #php #code_injection
════════════════════════
𐀪 Author: Roman Huliak
════════════════════════
ⴵ Time: Sun, 01 Jun 2025 07:30:26 GMT
════════════════════════
⌗ Tags: #web_development #secure_coding #cybersecurity #php #code_injection
Medium
Dangerous PHP functions every developer should avoid (or handle with extreme care)
Why “it works on my machine” isn’t good enough when security is on the line.
⤷ Title: Critical CI/CD Cache Poisoning Threatens Supply Chain: Undetectable Code Injection Possible!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Jun 2025 00:22:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CI/CD #cloud storage #code_injection #cybersecurity #privilege escalation #Remote Cache #Software Supply Chain #Supply Chain Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Jun 2025 00:22:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CI/CD #cloud storage #code_injection #cybersecurity #privilege escalation #Remote Cache #Software Supply Chain #Supply Chain Security
Daily CyberSecurity
Critical CI/CD Cache Poisoning Threatens Supply Chain: Undetectable Code Injection Possible!
A critical CI/CD flaw in remote caches allows undetectable code injection and privilege escalation via cache poisoning, bypassing all security controls.
⤷ Title: Injection Can Be Anywhere
════════════════════════
𐀪 Author: Faxcel
════════════════════════
ⴵ Time: Sun, 22 Jun 2025 12:49:25 GMT
════════════════════════
⌗ Tags: #code_injection #bug_bounty #xss_vulnerability #cybersecurity #ssti
════════════════════════
𐀪 Author: Faxcel
════════════════════════
ⴵ Time: Sun, 22 Jun 2025 12:49:25 GMT
════════════════════════
⌗ Tags: #code_injection #bug_bounty #xss_vulnerability #cybersecurity #ssti
Medium
Injection Can Be Anywhere
A write-up covering XSS, HTML Injection, and SSTI in real-world web applications
⤷ Title: BrightScan #ThreatIntelThursday | Code Injection
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 06:31:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #defenseark #threat_intelligence #code_injection #hacking
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 06:31:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #defenseark #threat_intelligence #code_injection #hacking
Medium
BrightScan #ThreatIntelThursday | Code Injection
This article was originally published on May 6, 2021, written by Ted Udelson
⤷ Title: Amazon Q Pulled After Malicious Pull Request Instructs AI to Delete User Files and AWS Resources
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 00:49:09 +0000
════════════════════════
⌗ Tags: #Malware #AI Assistant #Amazon Q #AWS #code injection #cybersecurity #File Deletion #Pull Request #supply chain attack #Visual Studio Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 00:49:09 +0000
════════════════════════
⌗ Tags: #Malware #AI Assistant #Amazon Q #AWS #code injection #cybersecurity #File Deletion #Pull Request #supply chain attack #Visual Studio Code
Penetration Testing Tools
Amazon Q Pulled After Malicious Pull Request Instructs AI to Delete User Files and AWS Resources
Amazon was forced to withdraw a compromised version of its AI assistant, Q, after a malicious pull request instructed it to delete local files and AWS resources.
⤷ Title: SAP Patch Day August 2025: Critical Code Injection Flaws Threaten Core ERP Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 07:25:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ABAP #code_injection #cybersecurity #ERP Security #RFC Exploit #SAP #SAP NetWeaver #SAP Patch Day #SAP S/4HANA #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 07:25:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ABAP #code_injection #cybersecurity #ERP Security #RFC Exploit #SAP #SAP NetWeaver #SAP Patch Day #SAP S/4HANA #Vulnerability
Daily CyberSecurity
SAP Patch Day August 2025: Critical Code Injection Flaws Threaten Core ERP Systems
SAP’s August 2025 Patch Day fixes critical code injection flaws in S/4HANA and SLT that could allow full ERP compromise via RFC exploits.
⤷ Title: NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 00:12:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Framework #code_injection #CVE_2025_23348 #LLM #Megatron_LM #nvidia #security update #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 00:12:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Framework #code_injection #CVE_2025_23348 #LLM #Megatron_LM #nvidia #security update #Vulnerability
Daily CyberSecurity
NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework
NVIDIA released an urgent update for its Megatron-LM LLM framework, patching four high-severity code injection flaws that could allow attackers to compromise AI workflows.
⤷ Title: CISA KEV Alert: Critical DELMIA Apriso Flaws Under Active Exploitation Allow RCE and Privileged Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 03:46:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CISA KEV #code_injection #Critical Vulnerability #CVE_2025_6204 #DELMIA Apriso #Manufacturing Systems #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 03:46:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CISA KEV #code_injection #Critical Vulnerability #CVE_2025_6204 #DELMIA Apriso #Manufacturing Systems #rce
Daily CyberSecurity
CISA KEV Alert: Critical DELMIA Apriso Flaws Under Active Exploitation Allow RCE and Privileged Access
CISA added two critical DELMIA Apriso flaws (CVE-2025-6204/6205) to its KEV Catalog due to active exploitation. The flaws risk RCE and privileged access to manufacturing management systems.