by Bill Sempf
9. February 2020 12:02
Christian Pedersen wrote a cool scanner for the Netscaler Gateway flaw, and is hosting it on Azure.
https://cve-2019-19781.azurewebsites.net/
It is based on the TrustedSec POC
https://github.com/trustedsec/cve-2019-19781
Wacom tablets call the mothership every time you load up an application. The writeup has a fantastic breakdown on how to use available tools to find this shittery.
https://robertheaton.com/2020/02/05/wacom-drawing-tablets-track-name-of-every-application-you-open/
The Twitter API was exploitable by a direct object reference flaw that exposed phone numbers of users.
https://www.theregister.co.uk/2020/02/04/twitter_phone_numbers/
An ancient bug in Sudo (well by software standards anyway) allowed nonprivleged users to, well, do what superusers do.
https://thehackernews.com/2020/02/sudo-linux-vulnerability.html
That's the news folks. Keep it frosty.
124eaa4c-0b00-4936-91da-a74c62bee2df|0|.0|96d5b379-7e1d-4dac-a6ba-1e50db561b04
Tags: