Subscribe via feed.

Wireless Photo Transfer 3.0 Local File Include

Posted by deepcore under Apple (No Respond)

The Vulnerability Laboratory Research Team discovered a local file include vulnerability in the official Wireless Photo Transfer Mobile version 3.0 iOS application.

Tags: , ,

Apple Security Advisory 2015-05-06-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2015-05-06-1 – Safari 8.0.6, Safari 7.1.6, and Safari 6.2.6 are now available and address memory corruption, information compromise, and unauthorized access vulnerabilities.

Tags: , ,

Apple Security Advisory 2015-05-06-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2015-05-06-1 – Safari 8.0.6, Safari 7.1.6, and Safari 6.2.6 are now available and address memory corruption, information compromise, and unauthorized access vulnerabilities.

Tags: , ,

Apple iOS 8.0.2 Authentication Bypass

Posted by deepcore under Apple (No Respond)

Apple IOS versions 8.0 through 8.0.2 suffer from a lock bypass vulnerability.

Tags: , ,

Mac OS X Local Denial Of Service

Posted by deepcore under Apple (No Respond)

Local denial of service exploit for Mac OS X kernel versions prior to 10.10.3.

Tags: , ,

Zed Attack Proxy 2.4.0 Mac OS X Release

Posted by deepcore under Apple (No Respond)

The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. ZAP provides automated scanners […]

Tags: , ,

Mac OS X Rootpipe Privilege Escalation

Posted by deepcore under Apple (No Respond)

This Metasploit module exploits a hidden backdoor API in Apple’s Admin framework on Mac OS X to escalate privileges to root, dubbed Rootpipe. Tested on Yosemite 10.10.2 and should work on previous versions. The patch for this issue was not backported to older releases. Note: you must run this exploit as an admin user to […]

Tags: , ,

WordPress Windows Desktop And iPhone Photo Uploader File Upload

Posted by deepcore under Apple (No Respond)

WordPress Windows Desktop and iPhone Photo Uploader plugin suffers from a remote shell upload vulnerability.

Tags: , ,

Mac OS X rootpipe Local Privilege Escalation

Posted by deepcore under Apple (No Respond)

Mac OS X rootpipe local proof of concept privilege escalation exploit.

Tags: , ,

Apple Security Advisory 2015-04-08-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2015-04-08-1 – Safari 8.0.5, Safari 7.1.5, and Safari 6.2.5 are now available and address information disclosure, code execution, certificate matching, and various other vulnerabilities.

Tags: , ,