Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Hans-Martin Münch

@h0ng10@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

CEO of MOGWAI LABS GmbH and part time bboy.

0 Followers
0 Following
15 Posts
Joined November 03, 2022
Twitter:
https://twitter.com/h0ng10
GitHub:
github.com/h0ng10
Website:
https://mogwailabs.de
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
So, @Rapid7Official@infosec.exchange is shutting down AttackerKB (https://attackerkb.com/) soon. I view this as a case where an initially promising idea became overwhelmed by low‑quality reports from contributors. Anyway, archive any data you wish to retain.
Rapid7 Vulnerability & Exploit Database | CVE Insights
Rapid7

Rapid7 Vulnerability & Exploit Database | CVE Insights

Search verified CVE data, exploit details, and remediation insights curated by Rapid7 Labs. Stay informed on the latest vulnerabilities and public exploits.

2
1
2
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 13mo ago
Replying to
@micahflee Please note that installing the latest Ubuntu security updates for Apache httpd does not necessarily upgrade Apache to the latest available version. Instead, security fixes are typically backported to the version included with the distribution. As a result, the displayed version remains unchanged. For example, even after fully updating Ubuntu 22.04 LTS, the Apache version shown in the Server header still appears as 2.4.52, despite being patched with the latest security fixes.
22
5
2
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
So @irsdl@infosec.exchange released a new version of YSoNet (a forge of ysoserial.net), with some cool new features / gadgets: ▸ DataTable + DataTableTypeSpoof Same-graph DataTable root carrier for RCE. No nested BinaryFormatter or extra binder boundary. TypeSpoof emits a real DataTable subclass, so blocking only the exact DataTable wire name may not prevent reconstruction. ▸ TypeConfuseDelegateFileOperations Five delegate-confusion variants for writing, copying, moving and truncating files. No child process, compiler or WPF required. ▸ AssemblyInstallerLoad Loads a specified DLL from a local or UNC path and instantiates [RunInstaller(true)] installer types. Supported by nine serializers. ▸ DynamicUpdateMapExtension Passes x:XData to NetDataContractSerializer without a binder, allowing a XAML-only sink to carry an NDCS gadget. 🔧 NOTABLE UPDATES ▸ TypeConfuseDelegate now supports SortedDictionary and TreeSet roots, useful for testing blocklists that match only the exact SortedSet wire name. ▸ WindowsIdentity and WindowsClaimsIdentity can carry the inner BinaryFormatter graph through actor, bootstrapContext, claims or WIF’s _actor sink. Variant numbering is now aligned across both gadgets and all serializers. 🔗 https://github.com/irsdl/ysonet http://ysonet.com | http://ysonet.net #AppSec #YSoNet
GitHub

GitHub - irsdl/ysonet: Deserialization payload generator for a variety of .NET formatters

Deserialization payload generator for a variety of .NET formatters - irsdl/ysonet

1
0
1
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 3mo ago
If you want to quickly burn tokens, let an LLM evaluate a CVSS rating.
1
1
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 8mo ago

RE: https://infosec.exchange/@mogwailabs_gmbh/115941084350429064

I'm getting old. Instead of analyzing vulnerabilities, I analyze regulations 😩

Infosec Exchange

MOGWAI LABS GmbH (@mogwailabs_gmbh@infosec.exchange)

In our latest blog post, we examine the reporting and disclosure obligations for software vendors under the European Cyber Resilience Act (CRA). Parts of these obligations take effect this September. https://mogwailabs.de/en/blog/2026/01/reporting-and-disclosure-obligations-in-the-cyber-resilience-act/

3
0
1
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 13mo ago
Replying to
@Orca @micahflee I assume he is using Mantic (which is no longer supported as it only received security updates for nine months) https://launchpad.net/ubuntu/+source/apache2/2.4.57-2ubuntu2
2.4.57-2ubuntu2 : apache2 package : Ubuntu
Launchpad

2.4.57-2ubuntu2 : apache2 package : Ubuntu

0
1
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 8mo ago

@lcamtuf@infosec.exchange Due to the EU Cyber Resilience Act, auto-updates will become mandatory, as products must provide an automatic update feature. Looking forward to all the vulnerabilities in auto-update services...

0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 3mo ago
So @nostarch@mastodon.social currently provides a summer sale (40 percent off).
0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
Steven Fewer from (@Rapid7Official@infosec.exchange) killing it again as always, this time with SharePoint (CVE-2026-55040) https://www.rapid7.com/blog/post/ve-cve-2026-55040-microsoft-sharepoint-jwt-token-authentication-bypass-fixed/
CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)
Rapid7

CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)

Rapid7 Labs conducted a zero-day research project against Microsoft SharePoint, resulting in the discovery of 2 new vulnerabilities that – when chained together – achieve unauthenticated remote code execution against a vulnerable SharePoint server. More in a new technical blog post.

0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
WordPress, the most widely used CMS, has just released an emergency update for a critical security vulnerability. Update your sites and blogs immediately. https://wordpress.org/news/2026/07/wordpress-7-0-2-release/
WordPress 7.0.2 Release
WordPress News

WordPress 7.0.2 Release

WordPress 7.0.2 is now available. The 7.0.2 security release addresses one critical and one high severity security issue. Because this is a security release, it is recommended that you update your …

0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
I am aware that bug bounty programs are overwhelmed by low-quality AI submissions, but I have also observed a general decline in the validation process, particularly when reporting issues that fall outside the web technology stack. I can generate highly detailed reports that describe the issue, include a proof of concept, and yet they often struggle to validate the finding.
0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
I know it's still a while away, but on November 12, 2026, I'll be speaking about “Private AI/Inference” at the "IT Kongress" in Neu-Ulm (Germany): Talk will be in German https://www.it-kongress.com/index.php/programm-und-anmeldung/ki-und-automatisierung-use-ai-because-nobody-is-watching/
it-kongress.com
0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
CVE-2026-16232 Check Point SmartConsole Authentication Bypass Technical Analysis from Rapid7: https://www.rapid7.com/blog/post/ra-check-point-smartconsole-authentication-bypass-technical-analysis-cve-2026-16232/ PoC Exploit: https://github.com/sfewer-r7/CVE-2026-16232
Rapid7
Rapid7

Rapid7

Root cause technical analysis of CVE-2026-16232, an authentication bypass in the SmartConsole login process affecting Check Point Security Management Server and Multi-Domain Security Management Server (MDS).

0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
Bugtraq is back: "I have acquired securityfocus.com and the Bugtraq name. Not to build a museum - to restart the conversation. The mission is unchanged: full disclosure, researcher-first, no corporate filter. The old archives, sourced from community copies of what was always public mailing list traffic, will be preserved and made accessible separately." https://lists.securityfocus.com/hyperkitty/list/bugtraq@securityfocus.com/thread/CHKLXLA7SJEWLDFHWXB3QU57ADOXGL2E/
lists.securityfocus.com

Bugtraq is back - Bugtraq - SecurityFocus Mailing Lists

0
0
0
0
Open post
Hans-Martin Münch @h0ng10@infosec.exchange
· 2mo ago
Replying to
@buherator@infosec.place @Rapid7Official@infosec.exchange @attackerkb@infosec.place I liked it as a resource for technical vulnerability analysis. The last times that I looked into it, I saw more and more stuff that looked like an incident / report. I don't know if this is actually the reason Rapid7 shuts it down, but it was the reason why I used it less often. But I don't consider myself as a "power-user"
0
1
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 11:39:14 UTC