Initial Access Intelligence
The "Initial Access Intelligence" module is a vital tool for cybersecurity, designed to scan GitHub repositories for the latest exploit and proof-of-concept codes for new vulnerabilities. It provides users with crucial updates on potential security threats, enabling proactive defense measures. This module helps close the gap between vulnerability discovery and patching, significantly enhancing system security.
-
May 22, 2022, 7:39 a.m.
An unauthenticated attacker can send an HTTP request with an "Accept-Encoding" HTTP request header triggering a double free in the unknown coding-list inside the HTTP Protocol Stack (http.sys) to process packets, resulting in a kernel crash.
Shell
Updated: 3 years, 1 month ago1 stars 1 fork 1 watcherBorn at : May 10, 2022, 4 p.m. This repo has been linked 1 different CVEs too. -
Aug. 12, 2024, 8:23 p.m.
CVE-2022-1388-PocExp,新增了多线程,F5 BIG-IP RCE exploitation
Python
Updated: 10 months, 2 weeks ago5 stars 0 fork 0 watcherBorn at : May 10, 2022, 3:44 p.m. This repo has been linked 1 different CVEs too. -
May 26, 2022, 9:22 p.m.
A Test API for testing the POC against CVE-2022-1388
Dockerfile Makefile Python
Updated: 3 years, 1 month ago4 stars 2 fork 2 watcherBorn at : May 10, 2022, 3:34 p.m. This repo has been linked 1 different CVEs too. -
Aug. 12, 2024, 8:23 p.m.
Test and Exploit Scripts for CVE 2022-1388 (F5 Big-IP)
Python
Updated: 10 months, 2 weeks ago1 stars 0 fork 0 watcherBorn at : May 10, 2022, 3:16 p.m. This repo has been linked 1 different CVEs too. -
Feb. 16, 2023, 8:58 a.m.
PowerShell and C++ PoCs for critical / high impact Windows Spooler vulnerabilities found in 2020-22
C++ C PowerShell
Updated: 2 years, 4 months ago2 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:53 p.m. This repo has been linked 5 different CVEs too. -
May 10, 2022, 2:53 p.m.
Various documentation on known exploit methodologies
Updated: 3 years, 1 month ago0 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:53 p.m. This repo has been linked 1 different CVEs too. -
July 12, 2022, 6:10 a.m.
A "Mishandling of Input to API" or "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability to attack any enterprise installation running in KioskMode by exploiting the local PrintixProxy class to invoke an error with localhost/e/?error=INVALID_CREDENTIAL&errorMessage={kioskModeValue}. When an attacker combines this with CVE-2022-29552, the attacker may change the ProgramDir registry value to invoke any program named unis000.exe.
C#
Updated: 2 years, 11 months ago3 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:37 p.m. This repo has been linked 0 different CVEs too. -
Aug. 12, 2024, 8:23 p.m.
A "Exposed Dangerous Method or Function" or "Use of Hard-coded, Security-relevant Constants" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability to override the "ProgramDir" registry value and point it to a directory that contains a malicious PrintixServiceTask.xml file. This allows an attacker the ability to escalate their privileges to a system session.
C#
Updated: 10 months, 2 weeks ago0 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:36 p.m. This repo has been linked 0 different CVEs too. -
Aug. 12, 2024, 8:23 p.m.
A "Incorrect Use of Privileged APIs" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability change any values within the LocalMachine\Software\Printix\ Registry. This was an insufficient fix to CVE-2022-25089.
C#
Updated: 10 months, 2 weeks ago1 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:35 p.m. This repo has been linked 1 different CVEs too. -
Aug. 12, 2024, 8:23 p.m.
A "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability to install malicious printer drivers and run them through the Printix Service. An attacker can use this to execute malicious driver code remotely to escalate their privileges to system.
C#
Updated: 10 months, 2 weeks ago1 stars 0 fork 0 watcherBorn at : May 10, 2022, 2:35 p.m. This repo has been linked 0 different CVEs too.