N-Day research for CVE-2024-7399 - a path traversal vulnerability in Samsung MagicINFO Server 9, that can lead to remote code execution as nt authority\system.
Explains how to gain Remote Code Execution (RCE) on modern WordPress instances using administrator privileges by creating and installing a custom plugin that triggers a reverse shell. Also offers a ready-to-use plug-and-play plugin if you don't want to create one from scratch.
A wierd glitch when refreshing the page of a webapp made me look into its potential cause. The end result? A really serious Authentication Bypass on the app's API.
CI workflows often give the user the possibility to execute commands inside containers in one war or another. However, with great power comes great responsability, and if the code execution is not properly isolated it could be used in malitious ways.