Thanksgiving holiday weekend kicks off heightened threat environment for security teams
https://www.cybersecuritydive.com/news/thanksgiving-holiday-threat-environment-cyber/806585/
#Infosec #Security #Cybersecurity #CeptBiro #ThanksgivingHoliday #SecurityTeams
π₯ FreePBX auth bypass leading to SQL Injection and Remote Code Execution chain is now detectable and testable in Pentest-Tools.com.
This issue is also listed in CISAβs catalog, making fast validation essential.
New modules released:
1οΈβ£ Network Scanner β‘οΈ find affected FreePBX instances quickly
2οΈβ£ Sniper: Auto-Exploiter β‘οΈ validate exploitation and gather evidence
Confirm exposure and stop attackers from chaining access into full takeover today!
π Full technical details: https://pentest-tools.com/vulnerabilities-exploits/freepbx-authentication-bypass-leading-to-sql-injection-and-remote-code-execution_27767
Test safely and report with evidence.
π₯ SonicWall access control flaw is already being weaponized by ransomware operators in the wild. We wasted no time and shipped a detection module after one of you asked us to prioritize it.
Validate CVE-2024-40766 now! The new module is live Sniper: Auto-Exploiter.
π Check the the full listing in our Vulnerabilities and Exploits database: https://pentest-tools.com/vulnerabilities-exploits/sonicwall-improper-access-control_27773