Skip to content
RedPacket Security

RedPacket Security

InfoSec News & Tutorials

nordvpn-banner
Primary Menu RedPacket Security

RedPacket Security

  • Home
  • Merch
  • Premium Members Content
    • Offensive SecurityOffensive Security focuses on proactively testing and strengthening cybersecurity by simulating real-world attacks. This category covers penetration testing, ethical hacking techniques, exploit development, red teaming, and adversarial tactics used to identify and fix vulnerabilities before malicious actors exploit them. Whether you’re a cybersecurity professional, ethical hacker, or enthusiast, you’ll find expert insights, tools, methodologies, and case studies to enhance your offensive security skills. Stay ahead of threats by learning how attackers think and operate, ensuring robust defence through strategic offence
    • Threat Hunting
    • TutorialsTutorials
    • Hack The BoxGuides / Tutorials on Hack The Box https://www.hackthebox.eu/home
    • Try Hack MeGuides / Tutorials on Try Hack Me These posts are password protected. To obtain the password you will need to become a patreon:
  • News
    • US-CERT
    • HKCERT
    • OSINT
    • CISA
    • NCSC
  • Data Breach
    • Ransomware
  • Malware Analysis
    • Covenant C2
    • Cobalt Strike
    • Brute Ratel C4
    • Posh C2
    • PikaBot C2
    • SliverC2
  • Vulnerabilities
    • Bug Bounty
  • Tools

Main Story

unlock_membership
  • Premium Members Content

Mastering Security Assessment and Testing for Robust Cyber Defense

June 25, 2025
unlock_membership
  • Premium Members Content

Unveiling Hidden Clues: Mastering Forensic Analysis in Cybersecurity

June 13, 2025
unlock_membership
  • Premium Members Content

Unveiling the Hidden Dangers of Advanced Persistent Threats

June 11, 2025
unlock_membership
  • Premium Members Content

Mastering Cloud Security Strategies for a Safer Digital Future

June 9, 2025
unlock_membership
  • Premium Members Content

Mastering Network Security Techniques for a Safer Digital World

June 6, 2025

Editor’s Picks

fd3be727633124bdbf3a30714a81fcf9503fb40493117db4ccaf466df7de6da3
  • Tools

Shodan-Dorks – Dorks for Shodan; a powerful tool used to search for Internet-connected devices

May 12, 2025
bb892dd102fe085dfa675288dfdee2eaae88cac9f4f044af76c414a45febec61
  • Tools

Pegasus-Pentest-Arsenal – A Comprehensive Web Application Security Testing Toolkit That Combines 10 Powerful Penetration Testing Features Into One Tool

May 12, 2025

Trending Story

image
1
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough: Whats Your Name?

image
2
  • Premium Members Content
  • Try Hack Me
  • Tutorials

TryHackMe Walkthrough : Dodge

image
3
  • Premium Members Content
  • Tutorials

Simplify NordVPN + pfSense WireGuard Configuration with downloadable script + guide.

tryhackme
4
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Walkthrough Report – EXPOSED

image
5
  • Premium Members Content
  • Try Hack Me
  • Tutorials

Try Hack Me: Injectics Write Up

Featured Story

iStock-1499587581
  • NCSC
  • News

Post-quantum cryptography: what comes next?

August 15, 2024
bec-blog
  • NCSC
  • News

Business email compromise: new guidance to protect your organisation

June 4, 2024
iStock-1487920406
  • NCSC
  • News

Machine learning security principles updated

June 4, 2024
ai_checkout2
  • NCSC
  • News

Smart devices: new law helps citizens to choose secure products

April 30, 2024
iStock-154974489
  • NCSC
  • News

Cyber Assessment Framework 3.2

April 19, 2024
osint
  • Tools

TCMalloc viewer/dumper – TCMalloc Inspector Tool

November 19, 2020

Posted by Marcin Kozlowski on Nov 18Hi List, Maybe you will find this interesting/useful. Below is the TCMalloc tool that...

Read MoreRead more about TCMalloc viewer/dumper – TCMalloc Inspector Tool
osint
  • Vulnerabilities

SOWA.OPAC Reflected Cross Site Scripting

November 19, 2020

Posted by hacker on Nov 18 # Title: SOWA.OPAC Reflected Cross Site Scripting # Vulnerability Type: Cross Site Scripting (XSS)...

Read MoreRead more about SOWA.OPAC Reflected Cross Site Scripting
US-Capitol
  • News

Congress unanimously passes federal IoT security law

November 19, 2020

The US Senate unanimously passed the IoT Cybersecurity Improvement Act (H.R.1668) yesterday. The US House passed the bill in September,...

Read MoreRead more about Congress unanimously passes federal IoT security law
Screen-Shot-2020-11-16-at-11.17.02-AM
  • News

Behind the Scenes: Under the Hoodie 2020 Video Series

November 19, 2020

Longtime fans of our Under the Hoodie video series may have noticed that this year’s videos looked, well, a little...

Read MoreRead more about Behind the Scenes: Under the Hoodie 2020 Video Series
warning2-1
  • News

WebNavigator Chromium browser published by search hijackers

November 18, 2020

A mystery Chromium browser recently made a sudden appearance, and is certainly proving popular. But what is it, and where...

Read MoreRead more about WebNavigator Chromium browser published by search hijackers
osint
  • News

Phishing Campaigns Evolving Rapidly; Using Innovative Tactics to Avoid Detection

November 18, 2020

 In the past few months, Microsoft Office 365 phishing campaigns have evolved drastically, using innovative tricks like inverted login pages,...

Read MoreRead more about Phishing Campaigns Evolving Rapidly; Using Innovative Tactics to Avoid Detection
osint
  • News

Jupyter Trojan Steals Chrome Firefox Data and Opens Backdoor

November 18, 2020

Researchers at Morphisec has recently discovered a trojan malware campaign targeted at stealing information from businesses and higher education. Reportedly,...

Read MoreRead more about Jupyter Trojan Steals Chrome Firefox Data and Opens Backdoor
2020_112524largeimg_697767252
  • News

Cyber Attacks in India At A Steady Rise as Per India’s Cybersecurity Chief

November 18, 2020

 National Cyber Security Coordinator Lt Gen (retd) Rajesh Pant recently discussed cyberattacks in India 'having gone up a multifold' in...

Read MoreRead more about Cyber Attacks in India At A Steady Rise as Per India’s Cybersecurity Chief
rehex_2_comments-types
  • News

Rehex – Reverse Engineers’ Hex Editor

November 18, 2020

A cross-platform (Windows, Linux, Mac) hex editor for reverse engineering, and everything else.FeaturesLarge (1TB+) file support Decoding of integer/floating point...

Read MoreRead more about Rehex – Reverse Engineers’ Hex Editor
gping_3_readme-example
  • News

Gping – Ping, But With A Graph

November 18, 2020

Ping, but with a graph.InstallFYI: The old Python version can be found under the python tag. Homebrew (MacOS + Linux)brew...

Read MoreRead more about Gping – Ping, But With A Graph
osint
  • Vulnerabilities

SEC Consult SA-20201117-0 :: Blind Out-Of-Band XML External Entity Injection in Avaya Web License Manager

November 18, 2020

Posted by SEC Consult Vulnerability Lab on Nov 17SEC Consult Vulnerability Lab Security Advisory < 20201117-0 > ======================================================================= title: Blind...

Read MoreRead more about SEC Consult SA-20201117-0 :: Blind Out-Of-Band XML External Entity Injection in Avaya Web License Manager
osint
  • Vulnerabilities

Fancy Product Designer for WooCommerce – Unrestricted File Upload

November 18, 2020

Posted by Jonathan Gregson via Fulldisclosure on Nov 17## About Fancy Product Designer for WooCommerce Fancy Product Designer for WooCommerce...

Read MoreRead more about Fancy Product Designer for WooCommerce – Unrestricted File Upload
osint
  • Vulnerabilities

Fancy Product Designer for WooCommerce – Stored XSS via SVG upload

November 18, 2020

Posted by Jonathan Gregson via Fulldisclosure on Nov 17## About Fancy Product Designer for WooCommerce Fancy Product Designer for WooCommerce...

Read MoreRead more about Fancy Product Designer for WooCommerce – Stored XSS via SVG upload
Don-t-Put-It-on-the-Internet-Tesla-Backup-Gateway-Edition
  • News

Don’t Put It on the Internet: Tesla Backup Gateway Edition

November 18, 2020

Derek Abdine, formerly Director of Rapid7 Labs, now CTO at Censys, contributed this blog post.This blog post aims to increase...

Read MoreRead more about Don’t Put It on the Internet: Tesla Backup Gateway Edition
fake_portal
  • News

Malsmoke operators abandon exploit kits in favor of social engineering scheme

November 17, 2020

Exploit kits continue to be used as a malware delivery platform. In 2020, we’ve observed a number of different malvertising...

Read MoreRead more about Malsmoke operators abandon exploit kits in favor of social engineering scheme
osint
  • News

A week in security (November 9 – November 15)

November 17, 2020

Last week on Malwarebytes Labs, we reported on multiple patch releases: from Mozilla’s Firefox and Thunderbird to Google’s Chrome. We...

Read MoreRead more about A week in security (November 9 – November 15)
credit-card-1591492_1280
  • News

Banks offered the Central Bank of Russia to create a centralized mechanism to combat fraudsters

November 17, 2020

According to the Vice-President of the Association of Banks of Russia Alexey Voilukov, information processing can take several hours or...

Read MoreRead more about Banks offered the Central Bank of Russia to create a centralized mechanism to combat fraudsters
network-3418742_1280
  • News

Interview with experts who lead the project ONTOCHAIN

November 17, 2020

On 9 November E Hacking News conducted an interesting interview with experts from different parts of the world that lead...

Read MoreRead more about Interview with experts who lead the project ONTOCHAIN
jackpotting
  • News

Clothing Brand ‘The North Face’ Hit By Credential Stuffing Attack, Suffers Data Breach

November 17, 2020

 After North Face's website faced a credential stuffing attack, the company has reset the customers' credentials. In a recent cybersecurity...

Read MoreRead more about Clothing Brand ‘The North Face’ Hit By Credential Stuffing Attack, Suffers Data Breach
MacC2_9_pic7
  • News

MacC2 – Mac Command And Control That Uses Internal API Calls Instead Of Command Line Utilities

November 17, 2020

MacC2 is a macOS post exploitation tool written in python that uses Objective C calls or python libraries as opposed...

Read MoreRead more about MacC2 – Mac Command And Control That Uses Internal API Calls Instead Of Command Line Utilities
Garud_1
  • News

Garud – An Automation Tool That Scans Sub-Domains, Sub-Domain Takeover And Then Filters Out XSS, SSTI, SSRF And More Injection Point Parameters

November 17, 2020

An automation tool that scans sub-domains, sub-domain takeover and then filters out xss, ssti, ssrf and more injection point parameters....

Read MoreRead more about Garud – An Automation Tool That Scans Sub-Domains, Sub-Domain Takeover And Then Filters Out XSS, SSTI, SSRF And More Injection Point Parameters
rapid7-modern-vm-hero-light
  • News

Defining Vulnerability Risk Management (and How to Build a Modern VRM Program)

November 17, 2020

Once upon a time (just a handful of years ago), vulnerability management programs focused solely on servers, running quarterly scans...

Read MoreRead more about Defining Vulnerability Risk Management (and How to Build a Modern VRM Program)
osint
  • Vulnerabilities

SugarCRM v6.5.18 – (Contacts) Persistent Cross Site Web Vulnerability

November 16, 2020

Posted by Vulnerability Lab on Nov 16Document Title: =============== SugarCRM v6.5.18 - (Contacts) Persistent Cross Site Web Vulnerability References (Source):...

Read MoreRead more about SugarCRM v6.5.18 – (Contacts) Persistent Cross Site Web Vulnerability
osint
  • Vulnerabilities

SugarCRM v6.5.18 – (Employees) Persistent Cross Site Vulnerability

November 16, 2020

Posted by Vulnerability Lab on Nov 16Document Title: =============== SugarCRM v6.5.18 - (Employees) Persistent Cross Site Vulnerability References (Source): ====================https://www.vulnerability-lab.com/get_content.php?id=2257...

Read MoreRead more about SugarCRM v6.5.18 – (Employees) Persistent Cross Site Vulnerability

Posts pagination

Previous 1 … 4,064 4,065 4,066 4,067 4,068 4,069 4,070 … 4,174 Next

Search

SUPPORT THE WEBSITE



OFFICIAL MERCH STORE


Recommended eBook



Tags

#threatintel #security #osint 8base akira Black Basta bug bounty Bypass Security cisa CobaltStrikeBeaconDetected CONFIRM Cross-Site Scripting Cross Site Scripting CVE cybersecurity Cybersecurity dark web Dark Web data breach Data Manipulation Denial of Service exploit Gain Access Gain Privileges hacking HaveIBeenPwnedLatestBreaches HIBP hunters international Lockbit 2.0 lockbit 3.0 malware MISC Obtain Information OSINT patch play ransomware ransomhub ransomware Security Sliver C2 threatintel tools tor TroyHunt US-CERT Vendor Advisory vulnerability

You may have missed

hkcert
  • HKCERT
  • News

Ubuntu Linux Kernel Multiple Vulnerabilities

June 25, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-6557

June 25, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-6579

June 25, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-6556

June 25, 2025
image
  • Vulnerabilities

CVE Alert: CVE-2025-52571

June 25, 2025
Copyright © All rights reserved. | CoverNews by AF themes.
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok
pixel