Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Unlocking Data Encryption: The Key to Secure Digital Communication

May 14, 2025
unlock_membership
  • Premium Members Content

Unraveling Ransomware Attacks: Strategies to Protect Your Digital World

May 9, 2025
unlock_membership
  • Premium Members Content

Unlocking the Secrets of Cryptographic Protocols for Secure Communications

May 7, 2025
unlock_membership
  • Premium Members Content

Mastering Ethical Hacking and Penetration Testing for Cyber Defense

May 2, 2025
50036d6061ef3e0e5f82c4daedd66523
  • Premium Members Content
  • Try Hack Me

Try Hack Me: Fixit Splunk Walkthrough

April 25, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

image
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
3
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
4
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

image
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Injectics Write Up

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
cyber-security-1805632_1280
  • Uncategorized

Wicked Folders plugin for WordPress security bypass | CVE-2023-0718

February 11, 2023

NAME__________Wicked Folders plugin for WordPress security bypassPlatforms Affected:Risk Level:5.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Wicked Folders plugin for WordPress could allow a remote attacker...

Read MoreRead more about Wicked Folders plugin for WordPress security bypass | CVE-2023-0718
cyber-security-1805632_1280
  • Uncategorized

Wicked Folders plugin for WordPress security bypass | CVE-2023-0717

February 11, 2023

NAME__________Wicked Folders plugin for WordPress security bypassPlatforms Affected:Risk Level:5.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Wicked Folders plugin for WordPress could allow a remote attacker...

Read MoreRead more about Wicked Folders plugin for WordPress security bypass | CVE-2023-0717
cyber-security-1805632_1280
  • Uncategorized

Huawei Children Smart Watch security bypass | CVE-2022-48305

February 11, 2023

NAME__________Huawei Children Smart Watch security bypassPlatforms Affected:Huawei Children Smart Watch (Simba-AL00) 1.1.1.274Risk Level:6.2Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________Huawei Children Smart Watch could allow...

Read MoreRead more about Huawei Children Smart Watch security bypass | CVE-2022-48305
cyber-security-1805632_1280
  • Uncategorized

PyPI cryptography package security bypass | CVE-2023-23931

February 11, 2023

NAME__________PyPI cryptography package security bypassPlatforms Affected:Risk Level:4.8Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________PyPI cryptography package could allow a remote attacker to bypass security restrictions,...

Read MoreRead more about PyPI cryptography package security bypass | CVE-2023-23931
cyber-security-1805632_1280
  • Uncategorized

Palo Alto Networks Cortex XSOAR server | CVE-2023-0003

February 11, 2023

NAME__________Palo Alto Networks Cortex XSOAR serverPlatforms Affected:Palo Alto Networks Cortex XSOAR 6.6.0 Palo Alto Networks Cortex XSOAR 6.8.0 Palo Alto...

Read MoreRead more about Palo Alto Networks Cortex XSOAR server | CVE-2023-0003
cyber-security-1805632_1280
  • Uncategorized

AdminLTE directory traversal | CVE-2021-36471

February 11, 2023

NAME__________AdminLTE directory traversalPlatforms Affected:Risk Level:7.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________AdminLTE could allow a remote attacker to traverse directories on the system, caused by...

Read MoreRead more about AdminLTE directory traversal | CVE-2021-36471
cyber-security-1805632_1280
  • Uncategorized

FreeBSD information disclosure | CVE-2023-0751

February 11, 2023

NAME__________FreeBSD information disclosurePlatforms Affected:FreeBSD FreeBSDRisk Level:5.9Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________FreeBSD could allow a remote attacker to obtain sensitive information, caused by the...

Read MoreRead more about FreeBSD information disclosure | CVE-2023-0751
cyber-security-1805632_1280
  • Uncategorized

Palo Alto Networks Cortex XDR agent information disclosure | CVE-2023-0001

February 11, 2023

NAME__________Palo Alto Networks Cortex XDR agent information disclosurePlatforms Affected:Palo Alto Networks Cortex XDR Agent 7.5Risk Level:6Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Palo Alto Networks...

Read MoreRead more about Palo Alto Networks Cortex XDR agent information disclosure | CVE-2023-0001
cyber-security-1805632_1280
  • Uncategorized

HP Deskjet 2540 series cross-site scripting | CVE-2022-48311

February 11, 2023

NAME__________HP Deskjet 2540 series cross-site scriptingPlatforms Affected:Risk Level:5.2Exploitability:UnprovenConsequences:Cross-Site Scripting DESCRIPTION__________HP Deskjet 2540 series is vulnerable to cross-site scripting, caused by...

Read MoreRead more about HP Deskjet 2540 series cross-site scripting | CVE-2022-48311
cyber-security-1805632_1280
  • Uncategorized

Palo Alto Networks Cortex XDR Agent denial of service | CVE-2023-0002

February 11, 2023

NAME__________Palo Alto Networks Cortex XDR Agent denial of servicePlatforms Affected:Palo Alto Networks Cortex XDR Agent 5.0 Palo Alto Networks Cortex...

Read MoreRead more about Palo Alto Networks Cortex XDR Agent denial of service | CVE-2023-0002
cyber-security-1805632_1280
  • Uncategorized

Yugabyte Managed server-side request forgery | CVE-2023-0574

February 11, 2023

NAME__________Yugabyte Managed server-side request forgeryPlatforms Affected:Yugabyte Yugabyte Managed 2.0 Yugabyte Yugabyte Managed 2.13Risk Level:7.5Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Yugabyte Managed is vulnerable to...

Read MoreRead more about Yugabyte Managed server-side request forgery | CVE-2023-0574
cyber-security-1805632_1280
  • Uncategorized

Zyxel ATP, USG FLEX, VPN, and ZyWALL/USG command execution | CVE-2022-38547

February 11, 2023

NAME__________Zyxel ATP, USG FLEX, VPN, and ZyWALL/USG command executionPlatforms Affected:Risk Level:7.2Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Zyxel ATP, USG FLEX, VPN, and ZyWALL/USG could...

Read MoreRead more about Zyxel ATP, USG FLEX, VPN, and ZyWALL/USG command execution | CVE-2022-38547
cyber-security-1805632_1280
  • Uncategorized

HashiCorp Boundary information disclosure | CVE-2023-0690

February 11, 2023

NAME__________HashiCorp Boundary information disclosurePlatforms Affected:HashiCorp Boundary 0.10.0 HashiCorp Boundary 0.11.2Risk Level:5Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________HashiCorp Boundary could allow a local authenticated attacker...

Read MoreRead more about HashiCorp Boundary information disclosure | CVE-2023-0690
cyber-security-1805632_1280
  • Uncategorized

Nextcloud Office information disclosure | CVE-2023-25150

February 11, 2023

NAME__________Nextcloud Office information disclosurePlatforms Affected:Risk Level:5.8Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Nextcloud Office could allow a remote authenticated attacker to obtain sensitive information, caused...

Read MoreRead more about Nextcloud Office information disclosure | CVE-2023-25150
cyber-security-1805632_1280
  • Uncategorized

Argo CD information disclosure | CVE-2023-25163

February 11, 2023

NAME__________Argo CD information disclosurePlatforms Affected:Risk Level:6.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Argo CD could allow a remote authenticated attacker to obtain sensitive information, caused...

Read MoreRead more about Argo CD information disclosure | CVE-2023-25163
cyber-security-1805632_1280
  • Uncategorized

Apache NiFi information disclosure | CVE-2023-22832

February 11, 2023

NAME__________Apache NiFi information disclosurePlatforms Affected:Apache NiFi 1.2.0 Apache NiFi 1.19.1Risk Level:7.5Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Apache NiFi could allow a remote attacker to...

Read MoreRead more about Apache NiFi information disclosure | CVE-2023-22832
cyber-security-1805632_1280
  • Uncategorized

Helm information disclosure | CVE-2023-25165

February 11, 2023

NAME__________Helm information disclosurePlatforms Affected:Risk Level:4.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Helm could allow a remote authenticated attacker to obtain sensitive information, caused by a...

Read MoreRead more about Helm information disclosure | CVE-2023-25165
cyber-security-1805632_1280
  • Uncategorized

mojoPortal security bypass | CVE-2023-24688

February 11, 2023

NAME__________mojoPortal security bypassPlatforms Affected:Risk Level:5.3Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION__________mojoPortal could allow a remote attacker to bypass security restrictions, caused by a flaw...

Read MoreRead more about mojoPortal security bypass | CVE-2023-24688
cyber-security-1805632_1280
  • Uncategorized

hapi.js formula denial of service | CVE-2023-25166

February 11, 2023

NAME__________hapi.js formula denial of servicePlatforms Affected:hapi.js formula 3.0.0Risk Level:5.5Exploitability:UnprovenConsequences:Denial of Service DESCRIPTION__________hapi.js formula is vulnerable to a denial of service,...

Read MoreRead more about hapi.js formula denial of service | CVE-2023-25166
CVE-prog
  • Vulnerabilities

Zuken Elmic KASAGO security bypass | CVE-2022-43501

February 11, 2023

NAME__________Zuken Elmic KASAGO security bypassPlatforms Affected:Zuken Elmic KASAGO IPv6/v4 Dual Zuken Elmic KASAGO IPv4 Zuken Elmic KASAGO IPv4 Light Zuken...

Read MoreRead more about Zuken Elmic KASAGO security bypass | CVE-2022-43501
cyber-security-1805632_1280
  • Uncategorized

Control By Web cross-site scripting | CVE-2023-23553

February 11, 2023

NAME__________Control By Web cross-site scriptingPlatforms Affected:Control By Web X-400 Control By Web X-600Risk Level:4.5Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION__________Control By Web is vulnerable...

Read MoreRead more about Control By Web cross-site scripting | CVE-2023-23553
cyber-security-1805632_1280
  • Uncategorized

Horner Automation Cscape Envision RV code execution | CVE-2023-0622

February 11, 2023

NAME__________Horner Automation Cscape Envision RV code executionPlatforms Affected:Risk Level:7.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION__________Horner Automation Cscape Envision RV could allow a remote attacker...

Read MoreRead more about Horner Automation Cscape Envision RV code execution | CVE-2023-0622
cyber-security-1805632_1280
  • Uncategorized

glorylion JFinalOA SQL injection | CVE-2023-0758

February 11, 2023

NAME__________glorylion JFinalOA SQL injectionPlatforms Affected:glorylion JFinalOA 1.0.2Risk Level:6.5Exploitability:UnprovenConsequences:Data Manipulation DESCRIPTION__________glorylion JFinalOA is vulnerable to SQL injection. A remote attacker could...

Read MoreRead more about glorylion JFinalOA SQL injection | CVE-2023-0758
cyber-security-1805632_1280
  • Uncategorized

LSElectric XBC-DN32U weak security | CVE-2023-22803

February 11, 2023

NAME__________LSElectric XBC-DN32U weak securityPlatforms Affected:Risk Level:7.5Exploitability:UnprovenConsequences:Configuration DESCRIPTION__________LSElectric XBC-DN32U could provide weaker than expected security, caused by missing authentication to carry...

Read MoreRead more about LSElectric XBC-DN32U weak security | CVE-2023-22803

Posts pagination

Previous 1 … 2,462 2,463 2,464 2,465 2,466 2,467 2,468 … 4,076 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

image
  • Data Breach
  • Ransomware

[QILIN] – Ransomware Victim: ITinSell group

May 15, 2025
image
  • Data Breach
  • Ransomware

[AKIRA] – Ransomware Victim: Vezina Lawrence & Piscitelli

May 15, 2025
image
  • Data Breach
  • Ransomware

[STORMOUS] – Ransomware Victim: www[.]jparkislandresort[.]com

May 15, 2025
image
  • Data Breach
  • Ransomware

[QILIN] – Ransomware Victim: MKA Accountants: Business Advisers, Moonee Ponds VIC

May 15, 2025
hackerone
  • Bug Bounty

HackerOne Bug Bounty Disclosure: -xenoblade-chronicles-x-definitive-edition-improper-validation-of-names-allows-injecting-formatting-tags-and-bypassing-profanity-filter-roccodev

May 15, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok
pixel