[FD] Backdoor.Win32.Hupigon.afjk / Directory Traversal

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/8dc8abc99c1e7908fe9d048a4e360960_B.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.Hupigon.afjk Vulnerability: Directory Traversal Description: The malware deploys a

[FD] Backdoor.Win32.Hupigon.afjk / Authentication Bypass RCE

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/8dc8abc99c1e7908fe9d048a4e360960.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.Hupigon.afjk Vulnerability: Authentication Bypass RCE Description: The malware runs

[FD] Backdoor.Win32.Hupigon.fjcd / Unauthenticated Open Proxy

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/284f36e35db6a0aa9a493f39d834367e.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.Hupigon.fjcd Vulnerability: Unauthenticated Open Proxy Description: The malware list

[FD] Backdoor.Win32.RmtSvc.l / Remote Denial of Service

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/38f9ee3ce51ead0ce6bf2edcaa462611.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.RmtSvc.l Vulnerability: Remote Denial of Service Description: The malware listens on

[FD] Backdoor.Win32.Agent.aer / Insecure Transit Password Disclosure

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/9576a6a59715a69be499fa41d6383a64_B.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.Agent.aer Vulnerability: Insecure Transit Password Disclosure Description: The mal

[FD] Backdoor.Win32.Agent.aer / Remote Denial of Service

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/9576a6a59715a69be499fa41d6383a64.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Backdoor.Win32.Agent.aer Vulnerability: Remote Denial of Service Description: The malware listens o

[FD] Trojan-Downloader.Win32.VB.abb / Insecure Permissions

2021-09-28 Thread malvuln
Discovery / credits: Malvuln - malvuln.com (c) 2021 Original source: https://malvuln.com/advisory/8f81373b0f0e6f60206a1a707de2ed77.txt Contact: malvul...@gmail.com Media: twitter.com/malvuln Threat: Trojan-Downloader.Win32.VB.abb Vulnerability: Insecure Permissions Description: The malware creates

[FD] Google Extensible Service Proxy v1 - CWE-287 Improper Authentication

2021-09-28 Thread Imre Rad
Extensible Service Proxy (a.k.a. ESP) is an open source software by Google assisting Cloud Endpoints, a product on Google Cloud Platform. ESPv1 is an nginx based proxy which enables API management capabilities for JSON/REST or gRPC API services. In a typical deployment, ESP is running and fronting