Author: admin

  • May 2019 – Printerlogic shown weak vulnerability management

    Preface: Patch management is the best practice of upgrading existing software applications to remove any weak security patches that could be exploited by hackers. Background: PrinterLogic’s printer and driver management platform reduces infrastructure costs by eliminating print servers and providing centralized management of every printer on the network. Sold in both on-premise and cloud configurations,…

  • CVE-2019-1002101: Vulnerabilities found in Kubernetes’ kubectl cp command (3rd May 2019)

    Preface: Some supercomputers in the world, they are also using Kubernetes. Technical background: kubectl controls the Kubernetes cluster manager.Make use of “kubectl cp” command is able to copy files and directories to and from containers. Vulnerability details: An attacker can fool a user to use the kubectl cp command to copy and store a malicious…

  • 2nd May 2019 – Don’t let you SAP facility become a cyber attack target

    Preface: Heard that estimated total of 1,000,000 SAP production systems could currently be at risk of being hacked. Technical details: When you configure sap router (saprouter) to allow remote (from the Internet) connections via the SAP GUI. The original design will add entries to the route tables for TCP port 3300, 3301, and 3303 the…

  • Cisco Security Advisories and Alerts – 1st May 2019

    Preface: People judge an issue depends on your point of view. A design flaw or limitation of product in normal view point will make people dissatisfy. It is annoying and blame the designer what he is doing, does he dreaming? From hacker point of view, the flaw can become a backdoor. Highlight: CVE-2019-1804 – Cisco…

  • CVE-2019-11596: Memcached lru Commands NULL Pointer Dereference Vulnerablity – 29th Apr 2019

    Preface: In modern smart world, efficiency is the key words. Do we need that? Background: Memcached is a decentralized cache memory system. Use Memcached can improve database performance. Redis and Memcached are popular today. The reason is that both are the open-source products. And they can boost up database performance. Redis and Memcached are both…

  • CVE-2019-11577 – dhcpcd up to 7.2.0 dhcp.c DHO_OPTSOVERLOADED memory corruption (29th Apr 2019)

    Preface: IT world can’t without DHCP function! It looks like public vehicle in our daily life. Background: dhcpcd is a DHCP and DHCPv6 client. It is currently the most feature-rich open source DHCP client. Vulnerabilities Details: One of the vulnerabilities exists because the dhcp6_findna() function (src / dhcp6.c source code file) does not correctly handle…

  • Docker Hub hack! 25th Apri, 2019

    Preface: Docker Hub hack exposed data of 190,000 users Incident details: On Thursday, 25th April, 2019 Docker Hub discovered unauthorized access to a single Hub database storing a subset of non-financial user data. Impact: Data breach includes usernames and hashed passwords for a small percentage of these users, as well as Github and Bitbucket tokens…

  • A Vulnerability in Oracle WebLogic Could Allow for Remote Code Execution – 26th April 2019

    Preface: On April 17, 2019, the National Information Security Vulnerability Sharing Platform (CNVD) recorded the Oracle WebLogic wls9-async deserialization remote command execution vulnerability reported by China Minsheng Banking Co., Ltd. Synopsis: There are reports of this vulnerability being actively exploited in the wild in April 2019. Vulnerability details: CVE-2019-2725 – A vulnerability has been discovered…

  • PHP Vulnerability Alert – 25th Apr 2019

    Preface: Error handling in PHP is still primitive. However you can code your way around most problems. Synopsis: From technical point of view, a JPEG file with malicious EXIF data, and a PHP code that executes it. This PHP code can be easily inserted into any other PHP file found in the server, probably not…

  • ISC Releases BIND Security Updates – 25th Apr 2019 (CVE-2019-6467,CVE-2019-6468 & CVE-2018-5743)

    Preface: Operating system · Linux, NetBSD, FreeBSD, OpenBSD, macOS, Windows · Type · DNS server · License · Mozilla Public License (ISC license before 9.11). Website, www.isc.org/downloads/bind. BIND is the most widely used Domain Name System (DNS). Alert: A design limitation of BIND let remote attacker could exploit these vulnerabilities to cause a denial-of-service condition.…