FTP banner dead drop: analyzing E4del and PINHOLE RAT
How E4del and PINHOLE RAT use the FTP banner as a dead drop to receive commands, with PCAP analysis, Suricata rules and hardening.
CVEs and related topics
10 articoli
How E4del and PINHOLE RAT use the FTP banner as a dead drop to receive commands, with PCAP analysis, Suricata rules and hardening.
CSRF remains in the OWASP Top 10 and hits applications that look secure. How it really works, with exploit examples and concrete countermeasures to im...
A specially crafted animated sticker file can execute remote code on Telegram for Android and Linux with no user interaction at all. ZDI-CAN-30207, CV...
A bot requesting dozens of password resets per minute on a WordPress site, with a different user-agent on every request. Here's how to spot it in ngin...
La prompt injection rappresenta una debolezza strutturale dei sistemi basati su LLM. Quando comandi e dati viaggiano nello stesso canale, basta una fr...
Software supply chain attacks are a growing, insidious threat: compromising a single library or DevOps tool is enough to hit thousands of systems. Fro...
SQL Injection is still among the most exploited vulnerabilities. Here's how it really works, with practical examples and concrete solutions for develo...
Cross-site scripting (XSS) is a serious vulnerability that lets hackers inject malicious scripts into web applications. Covers prevention, types of XS...
A massive collection of stolen data, nicknamed "the Mother of All Breaches", has recently been discovered, including 26 billion records from LinkedIn,...
There are several types of malware, including spyware, adware, backdoors, ransomware, scareware, rootkits, viruses, trojans and worms, each with a dif...