tgindex
PT SWARM

Positive Technologies Offensive Team: twitter.com/ptswarm This is the channel where we share articles/vulnerabilities/scripts/etc, not necessarily authored by us, that we find interesting

Последний пост
6 июл.
Последнее чтение
12:23
Постов за неделю
0
Всего постов
20
Тип
открытый
Язык
английский
Категория
Новости и СМИ (по похожим)
В каталоге с
12 авг.
Подписчики
7 439
+11 за 4 дн.
Сутки
+4
+0,05%
Неделя
 
Месяц
 
Просмотров на пост
10,2 тыс
20 постов
Вовлечённость
137,0%
к подписчикам
Постов в день
0,0
всего 20
Упоминаний
9
каналов
Охват размещения
оценка
1/24сутки в ленте
1/48двое суток
1/72трое суток

Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.

Посты

  • 6 июл.2 5812835

    🐘 PHP PDO layer exposed! Aleksey Solovev & Nikita Sveshnikov uncovered 2 flaws: SQL Injection in pdo_firebird (CVE-2025-14179) and DoS in PDO via pdo_pgsql (CVE-2025-14180). https://swarm.ptsecurity.com/hack-the-elephant-one-bite-at-a-time-nul-byte-sql-injection-in-pdo_firebird-and-null-pointer-dereference-in-pdo-pgsql/

  • 5 июн.4 4032732

    👨🏻‍💻 Did you know that it’s possible to perform RCE in Internet Explorer via clickjacking? Igor Sak-Sakovsky's new article will explain how! https://swarm.ptsecurity.com/the-click-that-shouldnt-have-worked-rce-via-clickjacking-in-internet-explorer/

  • 15 мая5 3382938

    🐘 PHP JPEG bugs: how image parsing leads to memory corruption. Our researcher Nikita Sveshnikov discovered two JPEG-related memory-safety bugs in PHP’s ext/standard: CVE-2025-14177 in getimagesize and a heap buffer overflow in iptcembed. https://swarm.ptsecurity.com/hack-the-elephant-one-bite-at-a-time-jpeg-related-memory-safety-bugs-in-php/

  • 30 апр.38,5 тыс45424

    🧑‍🚒 Our researcher Mikhail Sukhov shares his knowledge and experience in analyzing FreeIPA environments. He also introduces his new tool, IPAHound 💪 Go ’n see the details ➡️ https://swarm.ptsecurity.com/thinking-in-graphs-with-ipahound/

  • 15 апр.6 0312126

    🔥 Read the new article by our researcher Timofey Duditsky. The write-up dives into the AMD Platform Configuration Blobs mechanism, shows how it works, and reveals the vulnerability CVE-2025-54502. https://swarm.ptsecurity.com/slowburn-looking-through-amd-platform-configuration-blobs-infrastructure/

  • 23 мар.6 4542745

    Two bugs. One chain. Full RCE. New research by Aleksandr Zhurnakov on Dell Wyse Management Suite shows how business logic flaws can be chained into complete system compromise. Read the full writeup! https://swarm.ptsecurity.com/business-logic-and-chains-unauthenticated-rce-in-dell-wyse-management-suite/

  • 10 мар.6 3182125

    🐘 Attack arithmetic: how an integer overflow in PostgreSQL libpq leads to denial of service. Our researcher Aleksey Solovev discovered the vulnerability CVE-2025-12818, which may cause a product using the libpq PostgreSQL library to crash. https://swarm.ptsecurity.com/attack-arithmetic-how-an-integer-overflow-in-postgresql-libpq-leads-to-denial-of-service/

  • 2 мар.6 2334026

    🚨 Our researcher Alexander Zhurnakov identified two vulnerabilities in Dell Wyse Management Suite prior to version 5.5. In certain configurations, they can be chained to achieve unauthenticated remote code execution. Upgrade now → https://www.dell.com/support/kbdoc/en-us/000429141/dsa-2026-103

  • 21 янв.7 0205250

    🏆 Two of our research articles are nominated for PortSwigger's Top 10 Web Hacking Techniques of 2025! 1️⃣ Impossible XXE in PHP 2️⃣ Blind trust: what is hidden behind the process of creating your PDF file? Last day to vote if you found them useful! https://portswigger.net/polls/top-10-web-hacking-techniques-2025

  • 19 янв.6 7115665

    📞 Microsoft fixed an authenticated RCE in Windows Telephony Service (CVE-2026-20931), discovered by our researcher Sergey Bliznyuk. Read the write-up: https://swarm.ptsecurity.com/whos-on-the-line-exploiting-rce-in-windows-telephony-service/

  • 29 дек.9 3583082

    📑 A new article from our researchers Aleksey Solovev, Nikita Sveshnikov and Vladimir Razov — "Blind trust: what is hidden behind the process of creating your PDF file?". https://swarm.ptsecurity.com/blind-trust-what-is-hidden-behind-the-process-of-creating-your-pdf-file/

  • 14 нояб.7 5402640

    📱 New article by our researcher Artem Kulakov: Injection for an athlete. Read about a vulnerability discovered in the Garmin Connect mobile application: https://swarm.ptsecurity.com/injection-for-an-athlete/

  • 24 июл. 2025 г.16,7 тыс79136

    🚨 We've launched dbugs.ptsecurity.com, a new home for vulnerabilities. More than CVEs. More than MITRE. ✅ Trends & Insights ✅ AI-generated, multi-source vulnerability descriptions ✅ Researcher credits Explore now: https://dbugs.ptsecurity.com

  • 22 июл. 2025 г.23,3 тыс43154

    👑 Our researcher has discovered LPE in VMWare Tools (CVE-2025-22230 & CVE-2025-22247) via VGAuth! Write-up by the one who broke it: Sergey Bliznyuk https://swarm.ptsecurity.com/the-guest-who-could-exploiting-lpe-in-vmware-tools/

  • 😈 Read the new article "Daemon Ex Plist: LPE via MacOS Daemons" by our researcher Egor Filatov. This research reveals a vulnerability affecting popular apps like Mozilla VPN, Tunnelblick & more. https://swarm.ptsecurity.com/daemon-ex-plist-lpe-via-macos-daemons/

  • 🧠 Our researcher Sergey Tarasov discovered a vulnerability (CVE-2025-49689) in NTFS on MS Windows. The article dives into the exploitation path, file system internals, VHD format, and more. 🔗 Read the article: https://swarm.ptsecurity.com/buried-in-the-log-exploiting-a-20-years-old-ntfs-vulnerability/

  • 🦊 Mozilla Foundation fixed CVE-2025-6430, discovered by our researcher Daniil Satyaev! This vulnerability allows the Content-Disposition: attachment header to be ignored if the page is opened using <embed> or <object>, resulting in files being displayed instead of downloaded.

  • 3 июн. 2025 г.17,2 тыс69282

    ⚠️ We've reproduced CVE-2025-49113 in Roundcube. This vulnerability allows authenticated users to execute arbitrary commands via PHP object deserialization. If you're running Roundcube — update immediately!

  • Don't Call That "Protected" Method: Dissecting an N-Day vBulletin RCE 👤 by Egidio Romano The article analyzes a critical Unauthenticated Remote Code Execution vulnerability (CVE-2025-48827) in vBulletin, which becomes exploitable when running on PHP 8.1 or newer. The vulnerability stems from vBulletin’s misuse of ReflectionMethod::invoke(), which in PHP 8.1+ no longer blocks access to protected methods by default. As a result, attackers can remotely trigger sensitive internal functions originally meant to be inaccessible and achieve code execution on the server. 📝 Contents: ● The Vulnerability ● The vBulletin Vulnerability ● Exploiting vBulletin: Path to Pre-Auth RCE ● Conclusion https://karmainsecurity.com/dont-call-that-protected-method-vbulletin-rce

  • Next.js and the corrupt middleware: the authorizing artifact 👤 by Rachid Allam & Yasser Allam Researchers have discovered a critical vulnerability in Next.js, a popular framework for building web applications. The flaw allows attackers to bypass middleware responsible for request processing, including authentication and path rewrites. By adding the x-middleware-subrequest header with a specific value, an attacker can completely ignore middleware execution, gaining unauthorized access to protected resources. Additionally, the vulnerability can be exploited for denial-of-service (DoS) attacks by poisoning the cache, leading to service disruption. Many versions of Next.js are affected, making this a widespread security concern. 📝 Contents: ● The Next.js middleware ● The authorizing artifact artifact: old code, 0ld treasure • Execution order and middlewareInfo.name ● The authorizing artifact: nostalgia has its charm, but living in the moment is better • /src directory • Max recursion depth ● Exploits • Authorization/Rewrite bypass • CSP bypass • DoS via Cache-Poisoning (what?) • Clarification ● Security Advisory - CVE-2025-29927 ● Disclaimer ● Conclusion https://zhero-web-sec.github.io/research-and-things/nextjs-and-the-corrupt-middleware