[FD] VMware ThinApp DLL hijacking vulnerability

2021-07-16 Thread houjingyi
A few months ago I disclosed IBM(R) Db2(R) Windows client DLL Hijacking Vulnerability(0day) I found: https://seclists.org/fulldisclosure/2021/Feb/73 In that post I mentioned the vulnerability did not get fully patched. After I told IBM on hackerone that I disclosed it, hackerone asked me to del

[FD] New Release: UFONet v1.7 - "KRäK!eN"...

2021-07-16 Thread psy
Hi Community, I am glad to present a new release of this tool: - https://ufonet.03c8.net - "UFONet is a free software, P2P and cryptographic -disruptive toolkit- that allows to perform DoS and DDoS attacks; on the Layer 7 (APP/HTTP) through the exploitation of Open Redirect vectors on

[FD] Open-Xchange Security Advisory 2021-07-15

2021-07-16 Thread Martin Heiland via Fulldisclosure
Dear subscribers, we're sharing our latest advisory with you and like to thank everyone who contributed in finding and solving those vulnerabilities. Feel free to join our bug bounty programs for OX AppSuite, Dovecot and PowerDNS at HackerOne. Note that some bugfixes (MWB-423, MWB-460, MWB-492,