Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Securing Critical Infrastructure in the Digital Age

July 18, 2025
unlock_membership
  • Premium Members Content

Mastering Mobile Device Security for a Safer Digital Life

July 16, 2025
unlock_membership
  • Premium Members Content

Mastering Blockchain Security Strategies for a Safer Digital Future

July 14, 2025
unlock_membership
  • Premium Members Content

Mastering Web Application Security Strategies

July 11, 2025
unlock_membership
  • Premium Members Content

Unlocking the Power of Zero Trust Security for Modern Organizations

July 9, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

image
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
3
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
4
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

image
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Injectics Write Up

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
CVE-prog
  • Vulnerabilities

GitLab security bypass | CVE-2023-3115

September 30, 2023

NAME__________GitLab security bypassPlatforms Affected:GitLab GitLab 16.4.0 GitLab GitLab 16.3.4 GitLab GitLab 16.2.7Risk Level:5.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________GitLab could allow a remote authenticated...

Read MoreRead more about GitLab security bypass | CVE-2023-3115
CVE-prog
  • Vulnerabilities

GitLab information disclosure | CVE-2023-2233

September 30, 2023

NAME__________GitLab information disclosurePlatforms Affected:GitLab GitLab 16.4.0 GitLab GitLab 16.3.4 GitLab GitLab 16.2.7Risk Level:3.1Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________GitLab could allow a remote authenticated...

Read MoreRead more about GitLab information disclosure | CVE-2023-2233
CVE-prog
  • Vulnerabilities

Mattermost security bypass | CVE-2023-5195

September 30, 2023

NAME__________Mattermost security bypassPlatforms Affected:Mattermost Mattermost 7.8.9 Mattermost Mattermost 8.1.0 Mattermost Mattermost 8.0.1 Mattermost Mattermost 8.7.9Risk Level:6.5Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Mattermost could allow...

Read MoreRead more about Mattermost security bypass | CVE-2023-5195
CVE-prog
  • Vulnerabilities

DEXMA DEXGate cross-site scripting | CVE-2023-40153

September 30, 2023

NAME__________DEXMA DEXGate cross-site scriptingPlatforms Affected:DEXMA DEXGate 20130114Risk Level:5.4Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________DEXMA DEXGate is vulnerable to cross-site scripting, caused by improper validation...

Read MoreRead more about DEXMA DEXGate cross-site scripting | CVE-2023-40153
CVE-prog
  • Vulnerabilities

Mattermost denial of service | CVE-2023-5196

September 30, 2023

NAME__________Mattermost denial of servicePlatforms Affected:Mattermost Mattermost 7.8.9 Mattermost Mattermost 8.1.0 Mattermost Mattermost 8.0.1 Mattermost Mattermost 8.7.9Risk Level:6.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________Mattermost...

Read MoreRead more about Mattermost denial of service | CVE-2023-5196
CVE-prog
  • Vulnerabilities

DEXMA DEXGate cross-site request forgery | CVE-2023-42435

September 30, 2023

NAME__________DEXMA DEXGate cross-site request forgeryPlatforms Affected:DEXMA DEXGate 20130114Risk Level:6.3Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________DEXMA DEXGate is vulnerable to cross-site request forgery, caused by...

Read MoreRead more about DEXMA DEXGate cross-site request forgery | CVE-2023-42435
CVE-prog
  • Vulnerabilities

GitLab denial of service | CVE-2023-3917

September 30, 2023

NAME__________GitLab denial of servicePlatforms Affected:GitLab GitLab 16.4.0 GitLab GitLab 16.3.4 GitLab GitLab 16.2.7Risk Level:4.3Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________GitLab is vulnerable to...

Read MoreRead more about GitLab denial of service | CVE-2023-3917
CVE-prog
  • Vulnerabilities

GitLab information disclosure | CVE-2023-0989

September 30, 2023

NAME__________GitLab information disclosurePlatforms Affected:GitLab GitLab 16.4.0 GitLab GitLab 16.3.4 GitLab GitLab 16.2.7Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________GitLab could allow a remote authenticated...

Read MoreRead more about GitLab information disclosure | CVE-2023-0989
CVE-prog
  • Vulnerabilities

Mattermost security bypass | CVE-2023-5193

September 30, 2023

NAME__________Mattermost security bypassPlatforms Affected:Mattermost Mattermost 7.8.9 Mattermost Mattermost 8.1.0 Mattermost Mattermost 8.0.1 Mattermost Mattermost 8.7.9Risk Level:4.9Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Mattermost could allow...

Read MoreRead more about Mattermost security bypass | CVE-2023-5193
CVE-prog
  • Vulnerabilities

Mattermost security bypass | CVE-2023-5159

September 30, 2023

NAME__________Mattermost security bypassPlatforms Affected:Mattermost Mattermost 7.8.9 Mattermost Mattermost 8.1.0 Mattermost Mattermost 8.0.1 Mattermost Mattermost 8.7.9Risk Level:3.8Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Mattermost could allow...

Read MoreRead more about Mattermost security bypass | CVE-2023-5159
CVE-prog
  • Vulnerabilities

GitLab security bypass | CVE-2023-5198

September 30, 2023

NAME__________GitLab security bypassPlatforms Affected:GitLab GitLab 16.4.0 GitLab GitLab 16.3.4 GitLab GitLab 16.2.7Risk Level:4.3Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________GitLab could allow a remote authenticated...

Read MoreRead more about GitLab security bypass | CVE-2023-5198
CVE-prog
  • Vulnerabilities

Mattermost security bypass | CVE-2023-5194

September 30, 2023

NAME__________Mattermost security bypassPlatforms Affected:Mattermost Mattermost 7.8.9 Mattermost Mattermost 8.1.0 Mattermost Mattermost 8.0.1 Mattermost Mattermost 8.7.9Risk Level:2.7Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Mattermost could allow...

Read MoreRead more about Mattermost security bypass | CVE-2023-5194
image
  • Data Breach
  • Ransomware

CACTUS Ransomware Victim: www[.]utcoverseas[.]com

September 30, 2023

NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating to the content of the files...

Read MoreRead more about CACTUS Ransomware Victim: www[.]utcoverseas[.]com
Lazarus-1-2
  • News

Lazarus hackers breach aerospace firm with new LightlessCan malware

September 30, 2023

The North Korean 'Lazarus' hacking group targeted employees of an aerospace company located in Spain with fake job opportunities to...

Read MoreRead more about Lazarus hackers breach aerospace firm with new LightlessCan malware
SharePoint
  • News

Exploit released for Microsoft SharePoint Server auth bypass flaw

September 30, 2023

Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation. Tracked...

Read MoreRead more about Exploit released for Microsoft SharePoint Server auth bypass flaw
Exim-headpic
  • News

Millions of Exim mail servers exposed to zero-day RCE attacks

September 30, 2023

A critical zero-day vulnerability in all versions of Exim mail transfer agent (MTA) software can let unauthenticated attackers gain remote code...

Read MoreRead more about Millions of Exim mail servers exposed to zero-day RCE attacks
dark-angels
  • News

The Week in Ransomware – September 29th 2023 – Dark Angels

September 30, 2023

This week has been a busy ransomware week, with ransomware attacks having a massive impact on organizations and the fallout...

Read MoreRead more about The Week in Ransomware – September 29th 2023 – Dark Angels
Discord-headpic
  • News

Discord is investigating cause of ‘You have been blocked’ errors

September 30, 2023

Many Discord users attempting to access the popular instant messaging and VoIP social platform today have been met with a...

Read MoreRead more about Discord is investigating cause of ‘You have been blocked’ errors
legal-hack-scales
  • News

ShinyHunters member pleads guilty to $6 million in data theft damages

September 30, 2023

Sebastien Raoult, a 22-year-old from France, has pleaded guilty in the U.S. District Court of Seattle to conspiracy to commit...

Read MoreRead more about ShinyHunters member pleads guilty to $6 million in data theft damages
CISA_Logo
  • News

US-CERT Vulnerability Summary for the Week of September 18, 2023

September 29, 2023

 High VulnerabilitiesPrimary Vendor -- ProductDescriptionPublishedCVSS ScoreSource & Patch Infoacronis -- cyber_protect_home_officeSensitive information disclosure due to insecure folder permissions. The following...

Read MoreRead more about US-CERT Vulnerability Summary for the Week of September 18, 2023
c0a394f09150533287da9916514df32afe632631b6d7172db183674f8f3c1ee6
  • Tools

Skyhook – A Round-Trip Obfuscated HTTP File Transfer Setup Built To Bypass IDS Detections

September 29, 2023

Skyhook is a REST-driven utility used to smuggle files into and out of networks defended by IDS implementations. It comes...

Read MoreRead more about Skyhook – A Round-Trip Obfuscated HTTP File Transfer Setup Built To Bypass IDS Detections
vpn
  • News

Post-Quantum Cryptography: Finally Real in Consumer Apps?

September 29, 2023

Most people are barely thinking about basic cybersecurity, let alone post-quantum cryptography. But the impact of a post-quantum world is...

Read MoreRead more about Post-Quantum Cryptography: Finally Real in Consumer Apps?
hacking-1
  • News

Lazarus Group Impersonates Recruiter from Meta to Target Spanish Aerospace Firm

September 29, 2023

The North Korea-linked Lazarus Group has been linked to a cyber espionage attack targeting an unnamed aerospace company in Spain...

Read MoreRead more about Lazarus Group Impersonates Recruiter from Meta to Target Spanish Aerospace Firm
malware-2
  • News

Microsoft’s AI-Powered Bing Chat Ads May Lead Users to Malware-Distributing Sites

September 29, 2023

Malicious ads served inside Microsoft Bing's artificial intelligence (AI) chatbot are being used to distribute malware when searching for popular...

Read MoreRead more about Microsoft’s AI-Powered Bing Chat Ads May Lead Users to Malware-Distributing Sites

Posts pagination

Previous 1 … 1,857 1,858 1,859 1,860 1,861 1,862 1,863 … 4,264 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Data Breach
  • Ransomware

[QILIN] – Ransomware Victim: http://www[.]balkankalip[.]com

July 22, 2025
image
  • Data Breach
  • Ransomware

[SECUROTROP] – Ransomware Victim: BronzeCraft

July 22, 2025
image
  • Data Breach
  • Ransomware

[KRAKEN] – Ransomware Victim: www[.]optyma[.]co[.]uk

July 22, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-7938

July 22, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-7316

July 22, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
pixel