#HackTheBox Unicode is now up! Was a fun box that involved exploiting a Claim Misuse vulnerability in a JWT, and some unicode normalization to bypass ...May 7, 2022
F5, Cisco admins: Stop what you're doing and check if you need to install these patches -- BIG-IP iControl authentication bypass, NFV VM escape, and m ...May 7, 2022
CVE-2022-1388: Critical security vulnerabilities in F5 Big-IP allows attackers to execute arbitrary code: On May 5, 2022, MITRE published CVE-2022-138 ...May 6, 2022
WAF-A-MoLE
A guided mutation-based fuzzer for ML-based Web Application Firewalls.
Given an input SQL injection query, it tries to produce a semantic ...May 6, 2022
F5, Cisco admins: Stop what you're doing and check if you need to install these patches: BIG-IP iControl authentication bypass, NFV VM escape, and mor ...May 6, 2022
New blog from @tenablesecurity Response Team, F5 issues patch for Critical Authentication Bypass Vulnerability. Also number of times I've already writ ...May 6, 2022
F5, Cisco admins: Stop what you're doing and check if you need to install these patches
BIG-IP iControl authentication bypass, NFV VM escape, and mor ...May 6, 2022
F5 has released security advisories on vulnerabilities affecting multiple products, including various versions of BIG-IP. Included in the release is a ...May 5, 2022
F5 Big IP RCE via API exploit
CVE-2022-1388-POC
BIG-IP iCONTROL REST API AUTH BYPASS /RCE EXPLOIT
BIG-IP RCE 2022
DETAILS:
THE iCONTROL REST API Of ...May 5, 2022
Critical @F5 BIG-IP #vulnerability allows device takeover, patch ASAP! (#CVE-2022-1388). This is an API authentication bypass vulnerability in #F5Netw ...May 5, 2022