Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Mastering Phishing Attacks: How to Recognize and Prevent These Cyber Threats

July 4, 2025
unlock_membership
  • Premium Members Content

Mastering Firewall Technology for Better Cyber Defense

July 2, 2025
northkorea
  • News
  • Premium Members Content

“Jasper Sleet”: North Korean AI-assisted threat actors

July 1, 2025
image
  • Offensive Security
  • Premium Members Content

Introducing PromptFoo: Fast, Local LLM Evaluation for Developers

July 1, 2025
unlock_membership
  • Premium Members Content

Unlocking the Secrets of Biometric Security

June 30, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

image
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
3
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
4
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

image
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Injectics Write Up

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
CVE-prog
  • Vulnerabilities

Etsy Shop Plugin for WordPress cross-site scripting | CVE-2023-5470

October 13, 2023

NAME__________Etsy Shop Plugin for WordPress cross-site scriptingPlatforms Affected:WordPress Etsy Shop plugin for WordPress 3.0.4Risk Level:6.4Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Etsy Shop Plugin for...

Read MoreRead more about Etsy Shop Plugin for WordPress cross-site scripting | CVE-2023-5470
CVE-prog
  • Vulnerabilities

Peplink Surf SOHO HW1 command execution | CVE-2023-27380

October 13, 2023

NAME__________Peplink Surf SOHO HW1 command executionPlatforms Affected:Peplink Surf SOHO HW1 6.3.5Risk Level:7.2Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Peplink Surf SOHO HW1 could allow a...

Read MoreRead more about Peplink Surf SOHO HW1 command execution | CVE-2023-27380
CVE-prog
  • Vulnerabilities

Zebra Technologies ZTC ZT410-203dpi ZPL printer security bypass | CVE-2023-4957

October 13, 2023

NAME__________Zebra Technologies ZTC ZT410-203dpi ZPL printer security bypassPlatforms Affected:Zebra Technologies ZTC ZT410Risk Level:5.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Zebra Technologies ZTC ZT410-203dpi ZPL printer...

Read MoreRead more about Zebra Technologies ZTC ZT410-203dpi ZPL printer security bypass | CVE-2023-4957
CVE-prog
  • Vulnerabilities

SoftEther VPN denial of service | CVE-2023-22308

October 13, 2023

NAME__________SoftEther VPN denial of servicePlatforms Affected:SoftEther VPN 5.01.9674 SoftEther VPN 5.02Risk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________SoftEther VPN is vulnerable to a...

Read MoreRead more about SoftEther VPN denial of service | CVE-2023-22308
CVE-prog
  • Vulnerabilities

SoftEther VPN denial of service | CVE-2023-25774

October 13, 2023

NAME__________SoftEther VPN denial of servicePlatforms Affected:SoftEther VPN 5.01.9674 SoftEther VPN 5.02Risk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________SoftEther VPN is vulnerable to a...

Read MoreRead more about SoftEther VPN denial of service | CVE-2023-25774
CVE-prog
  • Vulnerabilities

Sante FFT Imaging code execution | CVE-2023-5059

October 13, 2023

NAME__________Sante FFT Imaging code executionPlatforms Affected:Santesoft Sante FFT Imaging 1.4.0Risk Level:7.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Sante FFT Imaging could allow a remote attacker...

Read MoreRead more about Sante FFT Imaging code execution | CVE-2023-5059
CVE-prog
  • Vulnerabilities

Siemens Xpedition Layout Browser buffer overflow | CVE-2023-30900

October 13, 2023

NAME__________Siemens Xpedition Layout Browser buffer overflowPlatforms Affected:Siemens Xpedition Layout BrowserRisk Level:7.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Siemens Xpedition Layout Browser is vulnerable to a...

Read MoreRead more about Siemens Xpedition Layout Browser buffer overflow | CVE-2023-30900
CVE-prog
  • Vulnerabilities

NASA Open MCT denial of service | CVE-2023-45282

October 13, 2023

NAME__________NASA Open MCT denial of servicePlatforms Affected:NASA Open MCT 2.2.5Risk Level:7.5Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________NASA Open MCT is vulnerable to a denial...

Read MoreRead more about NASA Open MCT denial of service | CVE-2023-45282
CVE-prog
  • Vulnerabilities

Thumbnail Slider With Lightbox Plugin for WordPress cross-site request forgery | CVE-2023-5531

October 13, 2023

NAME__________Thumbnail Slider With Lightbox Plugin for WordPress cross-site request forgeryPlatforms Affected:WordPress Thumbnail Slider With Lightbox Plugin for WordPress 1.0Risk Level:4.3Exploitability:UnprovenConsequences:Gain...

Read MoreRead more about Thumbnail Slider With Lightbox Plugin for WordPress cross-site request forgery | CVE-2023-5531
CVE-prog
  • Vulnerabilities

LINE App for iOS weak security | CVE-2023-5554

October 13, 2023

NAME__________LINE App for iOS weak securityPlatforms Affected:LINE LINE App for iOS 13.15.0Risk Level:7.4Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________LINE App for iOS could provide...

Read MoreRead more about LINE App for iOS weak security | CVE-2023-5554
CVE-prog
  • Vulnerabilities

Siemens SINEC NMS code execution | CVE-2022-30527

October 13, 2023

NAME__________Siemens SINEC NMS code executionPlatforms Affected:Siemens SINEC NMSRisk Level:7.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Siemens SINEC NMS could allow a local authenticated attacker to...

Read MoreRead more about Siemens SINEC NMS code execution | CVE-2022-30527
CVE-prog
  • Vulnerabilities

SoftEther VPN denial of service | CVE-2023-23581

October 13, 2023

NAME__________SoftEther VPN denial of servicePlatforms Affected:SoftEther VPN 5.01.9674 SoftEther VPN 5.02Risk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________SoftEther VPN is vulnerable to a...

Read MoreRead more about SoftEther VPN denial of service | CVE-2023-23581
CVE-prog
  • Vulnerabilities

taoCMS cross-site scripting | CVE-2020-20725

October 13, 2023

NAME__________taoCMS cross-site scriptingPlatforms Affected:taoCMS taoCMS 2.5 beta5.1Risk Level:6.1Exploitability:UnprovenConsequences:Cross-Site Scripting DESCRIPTION__________taoCMS is vulnerable to cross-site scripting, caused by improper validation of...

Read MoreRead more about taoCMS cross-site scripting | CVE-2020-20725
curl
  • News

Hyped up curl vulnerability falls short of expectations

October 13, 2023

curl 8.4.0 has been released to patch and release details on a hyped up high-severity security vulnerability (CVE-2023-38545), easing week-long...

Read MoreRead more about Hyped up curl vulnerability falls short of expectations
shadow
  • News

Shadow PC warns of data breach as hacker tries to sell gamers’ info

October 13, 2023

Shadow PC, a provider of high-end cloud computing services, is warning customers of a data breach that exposed customers' private...

Read MoreRead more about Shadow PC warns of data breach as hacker tries to sell gamers’ info
toddycat
  • News

ToddyCat hackers use ‘disposable’ malware to target Asian telecoms

October 13, 2023

A newly discovered campaign dubbed "Stayin' Alive" has been targeting government organizations and telecommunication service providers across Asia since 2021,...

Read MoreRead more about ToddyCat hackers use ‘disposable’ malware to target Asian telecoms
data-theft
  • News

Malicious Solana, Kucoin packages infect NuGet devs with SeroXen RAT

October 13, 2023

Malicious NuGet packages appearing to have over 2 million downloads impersonate crypto wallets, crypto exchange, and Discord libraries to infect developers...

Read MoreRead more about Malicious Solana, Kucoin packages infect NuGet devs with SeroXen RAT
hacker-staring-1
  • News

Ransomware attacks now target unpatched WS_FTP servers

October 13, 2023

Internet-exposed WS_FTP servers unpatched against a maximum severity vulnerability are now targeted in ransomware attacks.  As recently observed by Sophos...

Read MoreRead more about Ransomware attacks now target unpatched WS_FTP servers
AvosLocker_ransomware
  • News

FBI shares AvosLocker ransomware technical details, defense tips

October 13, 2023

The U.S. government has updated the list of tools AvosLocker ransomware affiliates use in attacks to include open-source utilities along...

Read MoreRead more about FBI shares AvosLocker ransomware technical details, defense tips
apple_triangle
  • News

Apple fixes iOS Kernel zero-day vulnerability on older iPhones

October 13, 2023

Apple has published security updates for older iPhones and iPads to backport patches released one week ago, addressing two zero-day vulnerabilities...

Read MoreRead more about Apple fixes iOS Kernel zero-day vulnerability on older iPhones
Bug_bounty
  • News

New Microsoft bug bounty program focuses on AI-powered Bing

October 13, 2023

Microsoft announced a new AI bounty program focused on the AI-driven Bing experience, with rewards reaching $15,000. With the AI-powered...

Read MoreRead more about New Microsoft bug bounty program focuses on AI-powered Bing
CISA_Logo
  • News

US-CERT Vulnerability Summary for the Week of October 2, 2023

October 12, 2023

 High VulnerabilitiesPrimary Vendor -- ProductDescriptionPublishedCVSS ScoreSource & Patch Infoacronis -- agentLocal privilege escalation due to improper soft link handling. The...

Read MoreRead more about US-CERT Vulnerability Summary for the Week of October 2, 2023
d2b354cc1c63f408aef5bd0adac914959674858bde0de7d0344e27bfcc8f5a08
  • Tools

RecycledInjector – Native Syscalls Shellcode Injector

October 12, 2023

(Currently) Fully Undetected same-process native/.NET assembly shellcode injector based on RecycledGate by thefLink, which is also based on HellsGate +...

Read MoreRead more about RecycledInjector – Native Syscalls Shellcode Injector
hackerone
  • Bug Bounty

HackerOne Bug Bounty Disclosure: b-stored-xss-at-nordvpn-com-b-tvmbug

October 12, 2023

Company Name: b'Nord Security' Company HackerOne URL: https://hackerone.com/nordsecurity Submitted By:b'tvmbug'Link to Submitters Profile:https://hackerone.com/b'tvmbug' Report Title:b'Stored XSS at nordvpn.com'Report Link:https://hackerone.com/reports/1841042Date Submitted:12...

Read MoreRead more about HackerOne Bug Bounty Disclosure: b-stored-xss-at-nordvpn-com-b-tvmbug

Posts pagination

Previous 1 … 1,767 1,768 1,769 1,770 1,771 1,772 1,773 … 4,207 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Data Breach
  • Ransomware

[AKIRA] – Ransomware Victim: DKN Hotels

July 4, 2025
image
  • Data Breach
  • Ransomware

[AKIRA] – Ransomware Victim: Corinthian Media

July 4, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-49595

July 4, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-43713

July 4, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-3702

July 4, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
pixel