Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Unveiling Hidden Clues: Mastering Forensic Analysis in Cybersecurity

June 13, 2025
unlock_membership
  • Premium Members Content

Unveiling the Hidden Dangers of Advanced Persistent Threats

June 11, 2025
unlock_membership
  • Premium Members Content

Mastering Cloud Security Strategies for a Safer Digital Future

June 9, 2025
unlock_membership
  • Premium Members Content

Mastering Network Security Techniques for a Safer Digital World

June 6, 2025
unlock_membership
  • Premium Members Content

Securing the Future: Cybersecurity Strategies for Critical Infrastructure

June 4, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

image
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
3
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
4
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

image
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Injectics Write Up

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
image
  • Vulnerabilities

CVE Alert: CVE-2024-12023

May 4, 2025

Vulnerability Summary: CVE-2024-12023 The FULL – Cliente plugin for WordPress is vulnerable to SQL Injection via the 'formId' parameter in...

Read MoreRead more about CVE Alert: CVE-2024-12023
image
  • Vulnerabilities

CVE Alert: CVE-2024-13418

May 4, 2025

Vulnerability Summary: CVE-2024-13418 Multiple plugins and/or themes for WordPress are vulnerable to Arbitrary File Uploads due to a missing capability...

Read MoreRead more about CVE Alert: CVE-2024-13418
image
  • Vulnerabilities

CVE Alert: CVE-2024-13420

May 3, 2025

Vulnerability Summary: CVE-2024-13420 Multiple plugins and/or themes for WordPress are vulnerable to unauthorized access due to a missing capability check...

Read MoreRead more about CVE Alert: CVE-2024-13420
image
  • Vulnerabilities

CVE Alert: CVE-2025-1326

May 3, 2025

Vulnerability Summary: CVE-2025-1326 The Homey theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability...

Read MoreRead more about CVE Alert: CVE-2025-1326
image
  • Vulnerabilities

CVE Alert: CVE-2025-3510

May 3, 2025

Vulnerability Summary: CVE-2025-3510 The tagDiv Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple shortcodes in all...

Read MoreRead more about CVE Alert: CVE-2025-3510
image
  • Vulnerabilities

CVE Alert: CVE-2025-1327

May 3, 2025

Vulnerability Summary: CVE-2025-1327 The Homey theme for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to,...

Read MoreRead more about CVE Alert: CVE-2025-1327
image
  • Vulnerabilities

CVE Alert: CVE-2024-13344

May 3, 2025

Vulnerability Summary: CVE-2024-13344 The Advance Seat Reservation Management for WooCommerce plugin for WordPress is vulnerable to SQL Injection via the...

Read MoreRead more about CVE Alert: CVE-2024-13344
image
  • Vulnerabilities

CVE Alert: CVE-2025-3708

May 3, 2025

Vulnerability Summary: CVE-2025-3708 Le-show medical practice management system from Le-yan has a SQL Injection vulnerability, allowing unauthenticated remote attackers to...

Read MoreRead more about CVE Alert: CVE-2025-3708
image
  • Vulnerabilities

CVE Alert: CVE-2025-3858

May 3, 2025

Vulnerability Summary: CVE-2025-3858 The Formality plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ parameter in all...

Read MoreRead more about CVE Alert: CVE-2025-3858
image
  • Vulnerabilities

CVE Alert: CVE-2025-3709

May 3, 2025

Vulnerability Summary: CVE-2025-3709 Agentflow from Flowring Technology has an Account Lockout Bypass vulnerability, allowing unauthenticated remote attackers to exploit this...

Read MoreRead more about CVE Alert: CVE-2025-3709
image
  • Vulnerabilities

CVE Alert: CVE-2025-3748

May 3, 2025

Vulnerability Summary: CVE-2025-3748 The Taxonomy Chain Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's pn_chain_menu...

Read MoreRead more about CVE Alert: CVE-2025-3748
image
  • Vulnerabilities

CVE Alert: CVE-2025-3707

May 3, 2025

Vulnerability Summary: CVE-2025-3707 The eHDR CTMS from Sunnet has a SQL Injection vulnerability, allowing remote attackers with regular privileges to...

Read MoreRead more about CVE Alert: CVE-2025-3707
image
  • Data Breach
  • Ransomware

[HELLCAT] – Ransomware Victim: www

May 3, 2025

Ransomware Group: HELLCAT VICTIM NAME: www NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...

Read MoreRead more about [HELLCAT] – Ransomware Victim: www
hackerone
  • Bug Bounty

HackerOne Bug Bounty Disclosure: -names-nsf-and-all-names-files-route-to-public-api-on-rubygems-org-jagat-singh

May 3, 2025

Company Name: RubyGems Company HackerOne URL: https://hackerone.com/rubygems Submitted By:jagat-singhLink to Submitters Profile:https://hackerone.com/jagat-singh Report Title:`/namesnsf` and all `/names*` files route to...

Read MoreRead more about HackerOne Bug Bounty Disclosure: -names-nsf-and-all-names-files-route-to-public-api-on-rubygems-org-jagat-singh
image
  • Data Breach
  • Ransomware

[MONTI] – Ransomware Victim: American Eagle Logistics

May 3, 2025

Ransomware Group: MONTI VICTIM NAME: American Eagle Logistics NOTE: No files or stolen information are by RedPacket Security. Any legal...

Read MoreRead more about [MONTI] – Ransomware Victim: American Eagle Logistics
image
  • Vulnerabilities

CVE Alert: CVE-2025-3488

May 3, 2025

Vulnerability Summary: CVE-2025-3488 The WPML plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpml_language_switcher shortcode in...

Read MoreRead more about CVE Alert: CVE-2025-3488
image
  • Vulnerabilities

CVE Alert: CVE-2025-3438

May 3, 2025

Vulnerability Summary: CVE-2025-3438 The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is...

Read MoreRead more about CVE Alert: CVE-2025-3438
image
  • Vulnerabilities

CVE Alert: CVE-2025-3513

May 3, 2025

Vulnerability Summary: CVE-2025-3513 The SureForms WordPress plugin before 1.4.4 does not sanitise and escape some of its Form settings, which...

Read MoreRead more about CVE Alert: CVE-2025-3513
image
  • Vulnerabilities

CVE Alert: CVE-2025-47201

May 3, 2025

Vulnerability Summary: CVE-2025-47201 In Intrexx Portal Server before 12.0.4, multiple Velocity-Scripts are susceptible to the execution of unrequested JavaScript code...

Read MoreRead more about CVE Alert: CVE-2025-47201
image
  • Vulnerabilities

CVE Alert: CVE-2025-3514

May 3, 2025

Vulnerability Summary: CVE-2025-3514 The SureForms WordPress plugin before 1.4.4 does not sanitise and escape some of its Form settings, which...

Read MoreRead more about CVE Alert: CVE-2025-3514
image
  • Vulnerabilities

CVE Alert: CVE-2025-2812

May 3, 2025

Vulnerability Summary: CVE-2025-2812 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket...

Read MoreRead more about CVE Alert: CVE-2025-2812
image
  • Vulnerabilities

CVE Alert: CVE-2024-11142

May 3, 2025

Vulnerability Summary: CVE-2024-11142 Cross-Site Request Forgery (CSRF) vulnerability in Gosoft Software Proticaret E-Commerce allows Cross Site Request Forgery.This issue affects...

Read MoreRead more about CVE Alert: CVE-2024-11142
image
  • Vulnerabilities

CVE Alert: CVE-2024-13860

May 3, 2025

Vulnerability Summary: CVE-2024-13860 The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘bbp_topic_title’ parameter in...

Read MoreRead more about CVE Alert: CVE-2024-13860
image
  • Vulnerabilities

CVE Alert: CVE-2024-13859

May 3, 2025

Vulnerability Summary: CVE-2024-13859 The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘bp_nouveau_ajax_media_save’ function in...

Read MoreRead more about CVE Alert: CVE-2024-13859

Posts pagination

Previous 1 … 113 114 115 116 117 118 119 … 4,169 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Vulnerabilities

CVE Alert: CVE-2025-5815

June 15, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2024-38822

June 15, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-5938

June 15, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-5282

June 15, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-22236

June 15, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok
pixel