Hacker News
- Linksys E-series Unauthenticated Remote Code Execution Exploit http://www.exploit-db.com/exploits/31683/ 13 comments
- From XSS to Reverse PHP Shell http://www.exploit-db.com/vbseo-from-xss-to-reverse-php-shell/ 5 comments
- Remote Exploit Against the Aircrack-NG Tools http://www.exploit-db.com/exploits/12217 8 comments
- Phrack: Twenty years of Exploits Escaping the Java Sandbox https://www.exploit-db.com/papers/45517 2 comments java
- Twenty Years of Escaping the Java Sandbox https://www.exploit-db.com/papers/45517 12 comments programming
- Minalic 2.0.0 Buffer Overflow Exploit https://www.exploit-db.com/exploits/24958 2 comments pentesting
- Exploit-Database got a face lift (and captcha removed) https://www.exploit-db.com/ 9 comments netsec
- Comcast DOCSIS 3.0 Business Gateways Multiple Vulnerabilities. All D3G-CCR gateways provided by Comcast have an administrative login of "mso" with the password of "D0nt4g3tme". This is a root login - having more rights than the normal login https://www.exploit-db.com/exploits/16123/ 20 comments privacy
- SQL Injection in Insert,Update, and Delete Statements http://www.exploit-db.com/wp-content/themes/exploit/docs/33253.pdf 5 comments netsec
- The Ultimate XSS Protection Cheat Sheet for Developers [PDF] http://www.exploit-db.com/download_pdf/33931 12 comments netsec
- Adobe ColdFusion 9 Administrative Login Bypass http://www.exploit-db.com/exploits/30210/ 3 comments netsec
- Apache / PHP 5.x Remote Code Execution Exploit http://www.exploit-db.com/exploits/29290/ 33 comments netsec
- When Office XP went out of support, there was already a known zero day that will never be patched... http://www.exploit-db.com/exploits/17399/ 17 comments netsec
- Multiple SQLi Vulnerabilities in AlienVault's OSSIM http://www.exploit-db.com/exploits/25447/ 8 comments netsec
- Android exploit I wrote this morning :) http://www.exploit-db.com/exploits/18446/ 7 comments netsec
- Windows Explorer really simple DOS http://www.exploit-db.com/exploits/18272/ 13 comments netsec
- Calibre E-Book reader local root exploit. http://www.exploit-db.com/exploits/18071/ 63 comments netsec
- Anyone know anything about this local privilege escalation vuln? Is it new? Didn't hear anything about it last week. http://www.exploit-db.com/exploits/17787/ 7 comments linux
- I think it's time we took a good look at the state of WordPress plugin security -- 38 plugin vulnerabilities in the last two weeks alone! http://www.exploit-db.com/search/?action=search&filter_page=1&filter_description=wordpress&filter_exploit_text=&filter_author=&filter_platform=0&filter_type=0&filter_lang_id=0&filter_port=&filter_osvdb=&filter_cve= 27 comments netsec
- Exploitable via email? http://www.exploit-db.com/exploits/16103/ 13 comments netsec
- Linux Kernel CAP_SYS_ADMIN to root Exploit http://www.exploit-db.com/exploits/15916/ 5 comments netsec
- BackTrack, exploit-db, Ettercap, inj3ctor and carders.cc were all rooted. http://www.exploit-db.com/papers/15823 71 comments netsec
- Microsoft Windows Automatic LNK Shortcut File Code Execution http://www.exploit-db.com/exploits/14403/ 8 comments netsec
- FreeBSD Kernel nfs_mount() Exploit works on FreeBSD 7.3/7.2- RELEASE and FreeBSD 8.0-RELEASE http://www.exploit-db.com/exploits/14002/ 3 comments netsec
Linking pages
- Block YouTube Ads on AppleTV by Decrypting and Stripping Ads from Profobuf https://ericdraken.com/pfsense-decrypt-ad-traffic/ 1196 comments
- GitHub - trimstray/the-book-of-secret-knowledge: A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more. https://github.com/trimstray/the-book-of-secret-knowledge 278 comments
- Security Begins at the Home Router https://insights.sei.cmu.edu/sei_blog/2018/07/security-begins-at-the-home-router.html 172 comments
- GitHub - future-architect/vuls: Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices https://github.com/future-architect/vuls 67 comments
- GitHub - ARPSyndicate/awesome-intelligence: A collaboratively curated list of awesome Open-Source Intelligence (OSINT) Resources https://github.com/ARPSyndicate/awesome-intelligence 40 comments
- GitHub - offensive-security/exploitdb: The official Exploit Database repository https://github.com/offensive-security/exploit-database 22 comments
- thc-tips-tricks-hacks-cheat-sheet/README.md at master · hackerschoice/thc-tips-tricks-hacks-cheat-sheet · GitHub https://github.com/hackerschoice/thc-1001-tips-and-tricks/blob/master/readme.md 17 comments
- GitHub - mikeroyal/Open-Source-Security-Guide: Open Source Security Guide. Learn all about Security Standards, Frameworks, Threat Models, Encryption, and Benchmarks. https://github.com/mikeroyal/Open-Source-Security-Guide 11 comments
- GitHub - trimstray/the-book-of-secret-knowledge: A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more. https://github.com/trimstray/awesome-ninja-admins 10 comments
- The Enchiridion of Impetus Exemplar https://shellsharks.com/threat-modeling 9 comments
- CVE, a key cybersecurity resource, is at risk inside and out http://www.sfchronicle.com/business/article/CVE-a-key-cybersecurity-resource-is-at-risk-7107509.php 7 comments
- Exploiting Scratch with a malicious image https://www.mnemonic.no/blog/exploiting-scratch-with-a-malicious-image/ 6 comments
- GitHub - edoardottt/awesome-hacker-search-engines: A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more https://github.com/edoardottt/awesome-hacker-search-engines 4 comments
- Buffer Overflow Examples, Code execution by shellcode injection - protostar stack5 - 0xRick’s Blog https://0xrick.github.io/binary-exploitation/bof5/ 4 comments
- GitHub - bad-bit/mailpl0it: Mailpl0it is a small utility that hunts the homepage of exploit-db looking for user supplied quer(y/ies) and notifies the user via email if an exploit is found for the supplied query. http://github.com/bad-bit/mailpl0it 4 comments
- GitHub - iLabAcademy/the-book-of-secret-knowledge: A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more. https://github.com/iLabAcademy/the-book-of-secret-knowledge 4 comments
- GitHub - johackim/docker-hacklab: My personal hacklab, create your own. https://github.com/ston3o/docker-hacklab 3 comments
- Easy File Sharing Web Server v7.2 - Remote SEH Buffer Overflow (DEP Bypass With ROP) - Knapsy’s brain dump http://blog.knapsy.com/blog/2015/11/25/easy-file-sharing-web-server-v7-dot-2-remote-seh-buffer-overflow-dep-bypass-with-rop/ 3 comments
- GitHub - sundowndev/hacker-roadmap: A collection of hacking tools, resources and references to practice ethical hacking. https://github.com/sundowndev/hacker-roadmap 2 comments
- Impact of Shared Code on Vulnerability Patching - Tudor Dumitras https://www.umiacs.umd.edu/~tdumitra/blog/2015/04/15/impact-of-shared-code-on-vulnerability-patching/ 2 comments