Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Security Awareness Training that Works for Changing Employee Behavior

September 19, 2025
void_execution
  • Premium Members Content
  • Try Hack Me
  • Tutorials

[TRYHACKME] – Void Execution Challenge

September 10, 2025
london-bridge
  • Premium Members Content
  • Try Hack Me

[TRYHACKME] – LondonBridge Full Walkthrough.

September 10, 2025
unlock_membership
  • Premium Members Content

Navigating Cybersecurity Compliance and Regulations

September 5, 2025
try_hack_me_order
  • Premium Members Content
  • Try Hack Me

Try Hack Me Walkthrough: ORDER

September 1, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

void_execution
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

[TRYHACKME] – Void Execution Challenge

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
3
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
4
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
CVE-prog
  • Vulnerabilities

Microsoft Dynamics 365 Finance and Operations denial of service | CVE-2023-35621

December 13, 2023

NAME__________Microsoft Dynamics 365 Finance and Operations denial of servicePlatforms Affected:Microsoft Dynamics 365 for Finance and OperationsRisk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________Microsoft...

Read MoreRead more about Microsoft Dynamics 365 Finance and Operations denial of service | CVE-2023-35621
CVE-prog
  • Vulnerabilities

Microsoft Windows Sysmain Service privilege escalation | CVE-2023-35644

December 13, 2023

NAME__________Microsoft Windows Sysmain Service privilege escalationPlatforms Affected:Microsoft Windows Server 2019 Microsoft Windows 10 1809 for x64-based Systems Microsoft Windows 10...

Read MoreRead more about Microsoft Windows Sysmain Service privilege escalation | CVE-2023-35644
CVE-prog
  • Vulnerabilities

Adobe Illustrator code execution | CVE-2023-47074

December 13, 2023

NAME__________Adobe Illustrator code executionPlatforms Affected:Adobe Illustrator 2023 27.9 Adobe Illustrator 2024 28.0Risk Level:7.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Adobe Illustrator could allow a remote...

Read MoreRead more about Adobe Illustrator code execution | CVE-2023-47074
CVE-prog
  • Vulnerabilities

Microsoft Windows XAML Diagnostics privilege escalation | CVE-2023-36003

December 13, 2023

NAME__________Microsoft Windows XAML Diagnostics privilege escalationPlatforms Affected:Microsoft Windows 10 x32 Microsoft Windows 10 x64 Microsoft Windows Server 2016 Microsoft Windows...

Read MoreRead more about Microsoft Windows XAML Diagnostics privilege escalation | CVE-2023-36003
hacker-10
  • News

Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans

December 13, 2023

The notorious North Korea-linked threat actor known as the Lazarus Group has been attributed to a new global campaign that...

Read MoreRead more about Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans
d7cf5be443ac38ef7d54c72086216da87421ae8cdda97a8b6bd532f6272fc2f3
  • News

Non-Human Access is the Path of Least Resistance: A 2023 Recap

December 13, 2023

2023 has seen its fair share of cyber attacks, however there's one attack vector that proves to be more prominent...

Read MoreRead more about Non-Human Access is the Path of Least Resistance: A 2023 Recap
apache-4
  • News

New Critical RCE Vulnerability Discovered in Apache Struts 2 – Patch Now

December 13, 2023

Apache has released a security advisory warning of a critical security flaw in the Struts 2 open-source web application framework...

Read MoreRead more about New Critical RCE Vulnerability Discovered in Apache Struts 2 – Patch Now
windows
  • News

Microsoft’s Final 2023 Patch Tuesday: 33 Flaws Fixed, Including 4 Critical

December 13, 2023

Microsoft released its final set of Patch Tuesday updates for 2023, closing out 33 flaws in its software, making it...

Read MoreRead more about Microsoft’s Final 2023 Patch Tuesday: 33 Flaws Fixed, Including 4 Critical
cynomi-10
  • News

Playbook: Your First 100 Days as a vCISO – 5 Steps to Success

December 13, 2023

In an increasingly digital world, no organization is spared from cyber threats. Yet, not every organization has the luxury of...

Read MoreRead more about Playbook: Your First 100 Days as a vCISO – 5 Steps to Success
hacker-9
  • News

Russian APT28 Hackers Targeting 13 Nations in Ongoing Cyber Espionage Campaign

December 13, 2023

The Russian nation-state threat actor known as APT28 has been observed making use of lures related to the ongoing Israel-Hamas...

Read MoreRead more about Russian APT28 Hackers Targeting 13 Nations in Ongoing Cyber Espionage Campaign
alerts
  • News

Active Exploitation of Zero-Day Vulnerabilities in Apple Products

December 13, 2023

Apple has released security updates to address two zero-day vulnerabilities (CVE-2023-42898 and CVE-2023-42890) in their Apple products. The vulnerabilities are...

Read MoreRead more about Active Exploitation of Zero-Day Vulnerabilities in Apple Products
alerts
  • News

Dec 2023 Monthly Patch

December 13, 2023

Microsoft has released security patches to address multiple vulnerabilities in their software and products.The vulnerabilities that have been classified as...

Read MoreRead more about Dec 2023 Monthly Patch
pf-sense
  • News

Over 1,450 pfSense servers exposed to RCE attacks via bug chain

December 13, 2023

Roughly 1,450 pfSense instances exposed online are vulnerable to command injection and cross-site scripting flaws that, if chained, could enable...

Read MoreRead more about Over 1,450 pfSense servers exposed to RCE attacks via bug chain
cyber-smiley-lower
  • News

Microsoft: OAuth apps used to automate BEC and cryptomining attacks

December 13, 2023

Microsoft warns that financially-motivated threat actors are using OAuth applications to automate BEC and phishing attacks, push spam, and deploy...

Read MoreRead more about Microsoft: OAuth apps used to automate BEC and cryptomining attacks
kyivstar-store-2
  • News

Ukraine’s largest mobile carrier Kyivstar down following cyberattack

December 13, 2023

Kyivstar, Ukraine's largest telecommunications service provider serving over 25 million mobile and home internet subscribers, has suffered a cyberattack impacting...

Read MoreRead more about Ukraine’s largest mobile carrier Kyivstar down following cyberattack
Ukraine-hacker
  • News

Ukrainian military says it hacked Russia’s federal tax agency

December 13, 2023

​The Ukrainian government's military intelligence service says it hacked the Russian Federal Taxation Service (FNS), wiping the agency's database and...

Read MoreRead more about Ukrainian military says it hacked Russia’s federal tax agency
Sophos-headpic
  • News

Sophos backports RCE fix after attacks on unsupported firewalls

December 13, 2023

Sophos was forced to backport a security update for CVE-2022-3236 for end-of-life (EOL) firewall firmware versions after discovering hackers actively...

Read MoreRead more about Sophos backports RCE fix after attacks on unsupported firewalls
hacker-datacenter
  • News

Cloud engineer gets 2 years for wiping ex-employer’s code repos

December 13, 2023

Miklos Daniel Brody, a cloud engineer, was sentenced to two years in prison and a restitution of $529,000 for wiping...

Read MoreRead more about Cloud engineer gets 2 years for wiping ex-employer’s code repos
4bb8b53a3809fd2b55746336919be3e905ac6bb5f3cd3b94a0cb1e4e61d97a8a
  • News

Non-Human Access is the Path of Least Resistance: A 2023 Recap

December 13, 2023

2023 has seen its fair share of cyber attacks, however there's one attack vector that proves to be more prominent...

Read MoreRead more about Non-Human Access is the Path of Least Resistance: A 2023 Recap
cynomi-9
  • News

Playbook: Your First 100 Days as a vCISO – 5 Steps to Success

December 13, 2023

In an increasingly digital world, no organization is spared from cyber threats. Yet, not every organization has the luxury of...

Read MoreRead more about Playbook: Your First 100 Days as a vCISO – 5 Steps to Success
hacker-8
  • News

Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans

December 13, 2023

The notorious North Korea-linked threat actor known as the Lazarus Group has been attributed to a new global campaign that...

Read MoreRead more about Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans
apache-3
  • News

New Critical RCE Vulnerability Discovered in Apache Struts 2 – Patch Now

December 13, 2023

Apache has released a security advisory warning of a critical security flaw in the Struts 2 open-source web application framework...

Read MoreRead more about New Critical RCE Vulnerability Discovered in Apache Struts 2 – Patch Now
hkcert
  • HKCERT
  • News

Apple Products Multiple Vulnerabilities

December 13, 2023

Multiple vulnerabilities were identified in Apple Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service...

Read MoreRead more about Apple Products Multiple Vulnerabilities
news
  • News
  • Premium Members Content

Apache Warns of Critical Vulnerability in Struts 2

December 13, 2023

Apache has warned customers of a critical remote code execution (RCE) vulnerability in its popular Struts 2 framework.Apache Struts 2...

Read MoreRead more about Apache Warns of Critical Vulnerability in Struts 2

Posts pagination

Previous 1 … 1,799 1,800 1,801 1,802 1,803 1,804 1,805 … 4,417 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Vulnerabilities

CVE Alert: CVE-2025-5955 – aonetheme – Service Finder SMS System

September 19, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-10647 – salzano – Embed PDF for WPForms

September 19, 2025
unlock_membership
  • Premium Members Content

Security Awareness Training that Works for Changing Employee Behavior

September 19, 2025
HIBP-Banner-1
  • Data Breach

FreeOnes – 960,213 breached accounts

September 19, 2025
Cobalt-Strike
  • Cobalt Strike

Cobalt Strike Beacon Detected – 47[.]120[.]32[.]72:8081

September 19, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
pixel