Seclog - #126


"The cyber expert in battle seeks his victory from strategic advantage and does not demand it from his SOC." - The Art of Cyber War
๐ SecMisc
Internet Artifacts โ A nostalgic collection of forgotten internet relics. Read More
The Vulnerable MCP Project โ Tracking Model Context Protocol vulnerabilities in LLMs. Read More
๐ฐ SecLinks
Eclipse on Next.js โ Conditioned exploitation of an intended race-condition. Read More
Security for High Velocity Engineering โ Balancing speed with security in modern DevOps. Read More
Cloud Pentesting or Just Scanning? โ A real-world discussion on cloud security testing. Read More
Invision Community <= 5.0.6 RCE โ Remote Code Execution via customCss. Read More
SysAid RCE Chain โ Pre-auth RCE in support ticket systems. Read More
When RSS Feeds Bite โ How Chrome and Firefox handle RSS feeds differently. Read More
HTML to PDF RCE โ File access and shellcode via server-side rendering. Read More
Screen Security Issues โ Multiple vulnerabilities discovered in GNU Screen. Read More
Python Tools w/ UV CheatSheet โ Handy CLI tools and scripts for pentesters. Read More
MrBruh's Epic Blog โ Research into ASUS Driver Hub hijack. Read More
Detecting Malicious Unicode โ Threats hiding in plain text. Read More
VSCode XSS to RCE โ Breaking out of restricted mode. Read More
๐ฅ SecVideo
- How Does Surveillance Work? โ A breakdown of digital surveillance systems by Victoria Baines. Watch Here
๐ป SecGit
fwalbuloushi/pixhash โ CTI tool to extract and hash images from websites. Explore on GitHub
carlospolop/CloudPEASS โ Privilege escalation tools for cloud environments. Explore on GitHub
The-Art-of-Hacking/h4cker โ A curated collection of hacking and security resources. Explore on GitHub
ANG13T/skytrack โ A cybersecurity toolkit for various security tasks. Explore on GitHub
For suggestions and any feedback, please contact: securify@rosecurify.com
Subscribe to my newsletter
Read articles from Rosecurify directly inside your inbox. Subscribe to the newsletter, and don't miss out.
Written by
