Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Ethical Hacking and Penetration Testing: A Practical Guide to Secure Systems

November 3, 2025
unlock_membership
  • Premium Members Content

Ransomware Attacks Demystified A Practical Guide for 2025

October 29, 2025
unlock_membership
  • Premium Members Content

Forensic Analysis Unlocked A Practical Guide for Cybersecurity Investigators

October 27, 2025
unlock_membership
  • Premium Members Content

Artificial Intelligence and Cybersecurity A New Era of Defense

October 13, 2025
unlock_membership
  • Premium Members Content

Fortifying Web Apps Practical Guide to Web Application Security

September 26, 2025

Editor’s Picks

bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025
fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025

Trending Story

void_execution
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

[TRYHACKME] – Void Execution Challenge

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
3
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
4
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
ransomware-3
  • News

Spacecolon Toolset Fuels Global Surge in Scarab Ransomware Attacks

August 23, 2023

A malicious toolset dubbed Spacecolon is being deployed as part of an ongoing campaign to spread variants of the Scarab...

Read MoreRead more about Spacecolon Toolset Fuels Global Surge in Scarab Ransomware Attacks
malware-8
  • News

Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware

August 23, 2023

A Syrian threat actor named EVLF has been outed as the creator of malware families CypherRAT and CraxsRAT. "These RATs...

Read MoreRead more about Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware
CVE-prog
  • Vulnerabilities

TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38906

August 23, 2023

NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...

Read MoreRead more about TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38906
CVE-prog
  • Vulnerabilities

IBM Robotic Process Automation information disclosure | CVE-2023-40370

August 23, 2023

NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 21.0.7.1Risk Level:3.7Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________IBM Robotic...

Read MoreRead more about IBM Robotic Process Automation information disclosure | CVE-2023-40370
CVE-prog
  • Vulnerabilities

TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38909

August 23, 2023

NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...

Read MoreRead more about TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38909
CVE-prog
  • Vulnerabilities

Puma HTTP request smuggling | CVE-2023-40175

August 23, 2023

NAME__________Puma HTTP request smugglingPlatforms Affected:Puma Puma 5.6.6 Puma Puma 6.3.0Risk Level:7.3Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Puma is vulnerable to HTTP request smuggling, caused...

Read MoreRead more about Puma HTTP request smuggling | CVE-2023-40175
CVE-prog
  • Vulnerabilities

EnterpriseDB Postgres Advanced Server UTL_ENCODE information disclosure |

August 23, 2023

NAME__________EnterpriseDB Postgres Advanced Server UTL_ENCODE information disclosurePlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...

Read MoreRead more about EnterpriseDB Postgres Advanced Server UTL_ENCODE information disclosure |
CVE-prog
  • Vulnerabilities

Typora directory traversal | CVE-2023-2316

August 23, 2023

NAME__________Typora directory traversalPlatforms Affected:Typora Typora 1.6.0 Typora Typora 1.5.0Risk Level:6.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Typora could allow a remote attacker to traverse directories...

Read MoreRead more about Typora directory traversal | CVE-2023-2316
CVE-prog
  • Vulnerabilities

TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38908

August 23, 2023

NAME__________TPLink Smart bulb Tapo series L530 and Tapo Application information disclosurePlatforms Affected:TPLink Smart bulb Tapo series L530 1.0.0 TPLink Tapo...

Read MoreRead more about TPLink Smart bulb Tapo series L530 and Tapo Application information disclosure | CVE-2023-38908
CVE-prog
  • Vulnerabilities

Veilid denial of service | CVE-2023-40711

August 23, 2023

NAME__________Veilid denial of servicePlatforms Affected:Veilid Veilid 0.1.8Risk Level:7.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________Veilid is vulnerable to a denial of service, caused by...

Read MoreRead more about Veilid denial of service | CVE-2023-40711
CVE-prog
  • Vulnerabilities

Cockpit cross-site scripting | CVE-2023-4451

August 23, 2023

NAME__________Cockpit cross-site scriptingPlatforms Affected:Cockpit-HQ Cockpit 2.6.3Risk Level:6.1Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Cockpit is vulnerable to cross-site scripting, caused by improper validation of user-supplied...

Read MoreRead more about Cockpit cross-site scripting | CVE-2023-4451
CVE-prog
  • Vulnerabilities

IBM Robotic Process Automation privilege escalation | CVE-2023-38734

August 23, 2023

NAME__________IBM Robotic Process Automation privilege escalationPlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 23.0.0 IBM Robotic Process Automation...

Read MoreRead more about IBM Robotic Process Automation privilege escalation | CVE-2023-38734
CVE-prog
  • Vulnerabilities

3CX privilege escalation | CVE-2023-27362

August 23, 2023

NAME__________3CX privilege escalationPlatforms Affected:3CX Phone Management System 18Risk Level:7Exploitability:UnprovenConsequences:Gain Privileges DESCRIPTION__________3CX could allow a local authenticated attacker to gain elevated...

Read MoreRead more about 3CX privilege escalation | CVE-2023-27362
CVE-prog
  • Vulnerabilities

Sourceforge DoorGets CMS information disclosure |

August 23, 2023

NAME__________Sourceforge DoorGets CMS information disclosurePlatforms Affected:Sourceforge DoorGets CMS 7.0Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Sourceforge DoorGets CMS could allow a remote attacker to...

Read MoreRead more about Sourceforge DoorGets CMS information disclosure |
CVE-prog
  • Vulnerabilities

EnterpriseDB Postgres Advanced Server UTL_FILE security bypass |

August 23, 2023

NAME__________EnterpriseDB Postgres Advanced Server UTL_FILE security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...

Read MoreRead more about EnterpriseDB Postgres Advanced Server UTL_FILE security bypass |
CVE-prog
  • Vulnerabilities

IBM Robotic Process Automation information disclosure | CVE-2023-38732

August 23, 2023

NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 21.0.7Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________IBM Robotic...

Read MoreRead more about IBM Robotic Process Automation information disclosure | CVE-2023-38732
CVE-prog
  • Vulnerabilities

EnterpriseDB Postgres Advanced Server DBMS_PROFILER security bypass |

August 23, 2023

NAME__________EnterpriseDB Postgres Advanced Server DBMS_PROFILER security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...

Read MoreRead more about EnterpriseDB Postgres Advanced Server DBMS_PROFILER security bypass |
CVE-prog
  • Vulnerabilities

EnterpriseDB Postgres Advanced Server DBMS_MVIEW security bypass |

August 23, 2023

NAME__________EnterpriseDB Postgres Advanced Server DBMS_MVIEW security bypassPlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB Postgres Advanced...

Read MoreRead more about EnterpriseDB Postgres Advanced Server DBMS_MVIEW security bypass |
CVE-prog
  • Vulnerabilities

20script Fara Melk Estate CMS information disclosure |

August 23, 2023

NAME__________20script Fara Melk Estate CMS information disclosurePlatforms Affected:20script Fara Melk Estate CMS 1.5.0Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________20script Fara Melk Estate CMS...

Read MoreRead more about 20script Fara Melk Estate CMS information disclosure |
CVE-prog
  • Vulnerabilities

Devolutions Remote Desktop Manager security bypass | CVE-2023-4373

August 23, 2023

NAME__________Devolutions Remote Desktop Manager security bypassPlatforms Affected:Devolutions Remote Desktop Manager 2023.2.19Risk Level:4.3Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Devolutions Remote Desktop Manager could allow a...

Read MoreRead more about Devolutions Remote Desktop Manager security bypass | CVE-2023-4373
CVE-prog
  • Vulnerabilities

EnterpriseDB Postgres Advanced Server get_url_as_text and get_url_as_bytea information disclosure |

August 23, 2023

NAME__________EnterpriseDB Postgres Advanced Server get_url_as_text and get_url_as_bytea information disclosurePlatforms Affected:EnterpriseDB Postgres Advanced Server 11.21 EnterpriseDB Postgres Advanced Server 12.16 EnterpriseDB...

Read MoreRead more about EnterpriseDB Postgres Advanced Server get_url_as_text and get_url_as_bytea information disclosure |
CVE-prog
  • Vulnerabilities

IBM Robotic Process Automation information disclosure | CVE-2023-38733

August 23, 2023

NAME__________IBM Robotic Process Automation information disclosurePlatforms Affected:IBM Robotic Process Automation 21.0.0 IBM Robotic Process Automation 23.0.0 IBM Robotic Process Automation...

Read MoreRead more about IBM Robotic Process Automation information disclosure | CVE-2023-38733
CVE-prog
  • Vulnerabilities

ASUSTOR Data Master security bypass | CVE-2023-4475

August 23, 2023

NAME__________ASUSTOR Data Master security bypassPlatforms Affected:ASUSTOR Data Master 4.0 ASUSTOR Data Master 4.1 ASUSTOR Data Master 4.2Risk Level:7.5Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________ASUSTOR...

Read MoreRead more about ASUSTOR Data Master security bypass | CVE-2023-4475
CVE-prog
  • Vulnerabilities

Trane Thermostats command execution | CVE-2023-4212

August 23, 2023

NAME__________Trane Thermostats command executionPlatforms Affected:Trane Technologies XL824 Thermostat Firmware 5.9.8 Trane Technologies XL850 Thermostat Firmware 5.9.8 Trane Technologies XL1050 Thermostat...

Read MoreRead more about Trane Thermostats command execution | CVE-2023-4212

Posts pagination

Previous 1 … 2,217 2,218 2,219 2,220 2,221 2,222 2,223 … 4,513 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware Qilin ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Data Breach
  • Ransomware

[MEDUSA] – Ransomware Victim: Simon Property Group

November 8, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-12399 – alexreservations – Alex Reservations: Smart Restaurant Booking

November 8, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-12099 – academylms – Academy LMS – WordPress LMS Plugin for Complete eLearning Solution

November 8, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-9334 – codesolz – Better Find and Replace – AI-Powered Suggestions

November 8, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-11967 – getwpfunnels – Mail Mint – Newsletters, Email Marketing, Automation, WooCommerce Emails, Post Notification, and more

November 8, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
pixel