Home Tools Page 291

Tools

The latest hacking and hacker tools. Open source offensive and defensive security tools. Browse interactive maps of offensive security tools used by malicious actors and cybercriminals. Check out some live threat maps and malware intelligence databases.

This will be a curated list of mostly open source hacking tools. These can range from Red Teaming offensive security tools to fuzzers and debuggers for malware analysis. We are always looking for new state of the art tools that can be used for security professionals. Please feel free to send us a tool via email or one of our social media accounts.

Linux PT_SUSPEND_SECCOMP Permission Bypass / Death Race

Authored by Jann Horn, Google Security Research Linux suffers from two bugs in PT_SUSPEND_SECCOMP. One allows for permission bypass and the other relates to a ptracer death race.

F5 BIG-IP Remote Code Execution

Authored by Alt3kx | Site github.com F5 BIG-IP remote code execution proof of concept exploit that leverages the vulnerability identified in CVE-2022-1388. advisories | CVE-2022-1388 Change Mirror Download # F5 BIG-IP RCE exploitation...

Spring4Shell Spring Framework Class Property Remote Code Execution

Authored by vleminator | Site metasploit.com Spring Framework versions 5.3.0 to 5.3.17, 5.2.0 to 5.2.19, and older versions when running on JDK 9 or above and specifically packaged as a...

Printix 1.3.1106.0 Privilege Escalation

Authored by Logan Latvala | Site github.com A "Creation of Temporary Files in Directory with Insecure Permissions" vulnerability in PrintixService.exe in Printix's "Printix Secure Cloud Print Management" versions 1.3.1106.0 and...

Printix 1.3.1106.0 Privileged API Abuse

Authored by Logan Latvala | Site github.com An "Incorrect Use of a Privileged API" vulnerability in PrintixService.exe in Printix's "Printix Secure Cloud Print Management" versions 1.3.1106.0 and below allows a...

Ransom.Petya Code Execution

Authored by malvuln | Site malvuln.com Petya ransomware looks for and loads a DLL named "wow64log.dll" in WindowsSystem32. Therefore, we can drop our own DLL to intercept and terminate the...

Travel Management System 1.0 SQL Injection

Authored by nu11secur1ty Travel Management System version 1.0 suffers from multiple remote SQL injection vulnerabilities. Original discovery of SQL injection in this version is attributed to Bobby Cooke and hyd3sec...

School Dormitory Management 1.0 SQL Injection

Authored by nu11secur1ty School Dormitory Management version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download ## Title: School Dormitory Management 1.0 SQLi## Author: nu11secur1ty## Date: 05.09.2022## Vendor: https://www.sourcecodester.com/users/tips23## Software:...

ZoneMinder Language Settings Remote Code Execution

Authored by krastanoel | Site metasploit.com This Metasploit module exploits an arbitrary file write in the debug log file option chained with a path traversal in the language settings that...

REvil.Ransom Code Execution

Authored by malvuln | Site malvuln.com REvil ransomware looks for and executes DLLs in its current directory. Therefore, we can hijack a DLL, execute our own code, and control and...