Thanksgiving holiday weekend kicks off heightened threat environment for security teams
https://www.cybersecuritydive.com/news/thanksgiving-holiday-threat-environment-cyber/806585/
#Infosec #Security #Cybersecurity #CeptBiro #ThanksgivingHoliday #SecurityTeams
๐ฅ FreePBX auth bypass leading to SQL Injection and Remote Code Execution chain is now detectable and testable in Pentest-Tools.com.
This issue is also listed in CISAโs catalog, making fast validation essential.
New modules released:
1๏ธโฃ Network Scanner โก๏ธ find affected FreePBX instances quickly
2๏ธโฃ Sniper: Auto-Exploiter โก๏ธ validate exploitation and gather evidence
Confirm exposure and stop attackers from chaining access into full takeover today!
๐ Full technical details: https://pentest-tools.com/vulnerabilities-exploits/freepbx-authentication-bypass-leading-to-sql-injection-and-remote-code-execution_27767
Test safely and report with evidence.
๐ฅ SonicWall access control flaw is already being weaponized by ransomware operators in the wild. We wasted no time and shipped a detection module after one of you asked us to prioritize it.
Validate CVE-2024-40766 now! The new module is live Sniper: Auto-Exploiter.
๐ Check the the full listing in our Vulnerabilities and Exploits database: https://pentest-tools.com/vulnerabilities-exploits/sonicwall-improper-access-control_27773