#drupalgeddon2 search results

UPDATE— In a statement today Drupal said the number of vulnerable sites presented by researchers is inaccurate. Since #Drupalgeddon2 patches didn't touch CHANGELOG.txt or any version strings, checking CHANGELOG.txt is not a valid way to determine whether a site is vulnerable.

TheHackersNews's tweet image. UPDATE— In a statement today Drupal said the number of vulnerable sites presented by researchers is inaccurate. Since #Drupalgeddon2 patches didn't touch CHANGELOG.txt or any version strings, checking CHANGELOG.txt is not a valid way to determine whether a site is vulnerable.

What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. #hacktheplanet

heathenhkr's tweet image. What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. 

#hacktheplanet

Oh snap - stuff just got real. There's a working exploit for the new #drupalgeddon2 (CVE-2018-7602). This is going to be a long weekend. pastebin.com/pRM8nmwj


Já aí anda o exploit para o #drupalgeddon2

tomahock's tweet image. Já aí anda o exploit para o #drupalgeddon2
tomahock's tweet image. Já aí anda o exploit para o #drupalgeddon2

Jasper Mattsson is explaining how he discovered #drupalgeddon2 and how easy it was to exploit it #drupalhackcamp

ABaumeier's tweet image. Jasper Mattsson is explaining how he discovered #drupalgeddon2 and how easy it was to exploit it #drupalhackcamp

Drupalgeddon2 😇 inurl:"/user/register" "Powered by Drupal" -CAPTCHA -"Access denied" inurl:"user/register?element_parents=account/mail" inurl:"*drupal_ajax" #Drupal #drupalgeddon #Drupalgeddon2

alexfrancow's tweet image. Drupalgeddon2 😇

inurl:"/user/register" "Powered by Drupal" -CAPTCHA -"Access denied"
inurl:"user/register?element_parents=account/mail"
inurl:"*drupal_ajax"
#Drupal #drupalgeddon #Drupalgeddon2

⚠️ Enligt en ny skanning är cirka 24% av alla världens Drupal-sajter sårbara för CVE-2018-7600 aka #drupalgeddon2 24% motsvarar 115070 st sårbara sajter #Drupal

kryptera's tweet image. ⚠️ Enligt en ny skanning är cirka 24% av alla världens Drupal-sajter sårbara för CVE-2018-7600 aka #drupalgeddon2 24% motsvarar 115070 st sårbara sajter #Drupal

I survived #Drupalgeddon2 by updating 13 websites in 30 minutes. Thank the DrupalGods for @getpantheon for making my updates with one click. @getpantheon you had me at hello 😍🏩#Drupal


#Drupalgeddon2 as seen by @Ixia_ATI - CVE-2018-7600 being abused to drop crypto-coin miners + Linux backdoors ixiacom.com/company/blog/d…

stefant's tweet image. #Drupalgeddon2 as seen by @Ixia_ATI - CVE-2018-7600 being abused to drop crypto-coin miners + Linux backdoors
ixiacom.com/company/blog/d…

Cloudflare says it blocks around 56,000 attacks exploiting #Drupalgeddon2 per day blog.cloudflare.com/keeping-drupal…


Big kudos to the #drupal security team and Drupalistas around the planet today... #Drupalgeddon2

hook42inc's tweet image. Big kudos to the #drupal security team and Drupalistas around the planet today...
#Drupalgeddon2

[In Review] "wE ArE nOt HacKeR!" says campaign targeting #Drupal servers using #Drupalgeddon2 in attempt to upload a php backdoor.

F5Labs's tweet image. [In Review] "wE ArE nOt HacKeR!" says campaign targeting #Drupal servers using #Drupalgeddon2 in attempt to upload a php backdoor.
F5Labs's tweet image. [In Review] "wE ArE nOt HacKeR!" says campaign targeting #Drupal servers using #Drupalgeddon2 in attempt to upload a php backdoor.
F5Labs's tweet image. [In Review] "wE ArE nOt HacKeR!" says campaign targeting #Drupal servers using #Drupalgeddon2 in attempt to upload a php backdoor.

RT @F5Security: ICYMI - @lmacvittie's blog highlights #Drupalgeddon2 and the need for AppSecOps: bit.ly/2L2J1sF #cryptominer

F5's tweet image. RT @F5Security: ICYMI - @lmacvittie's blog highlights #Drupalgeddon2 and the need for AppSecOps: bit.ly/2L2J1sF #cryptominer

For real though I've put way too much damn time into this. #drupal #drupalgeddon #drupalgeddon2

heyitsmikeyv's tweet image. For real though I've put way too much damn time into this.

#drupal #drupalgeddon #drupalgeddon2

Hackers are exploiting #Drupal RCE vulnerability (CVE-2018-7600) in the wild to backdoor and infect websites with #cryptocurrency miners thehackernews.com/2018/04/drupal… IMPORTANT — Simply updating Drupal will not remove backdoors or fix compromised sites. #drupalgeddon2

Swati_THN's tweet image. Hackers are exploiting #Drupal RCE vulnerability (CVE-2018-7600) in the wild to backdoor and infect websites with #cryptocurrency miners 

thehackernews.com/2018/04/drupal…

IMPORTANT — Simply updating Drupal will not remove backdoors or fix compromised sites. #drupalgeddon2

Now you can practice labs based on PHuiP-FPizdaM, #ImageTragick, #BaronSamedit & #Drupalgeddon2 vulnerabilities. They're all in our Cyber Security Vulnerability library. Learn more: bit.ly/3DK998z #networking #cybersecurity #hack


Now you can practice labs based on PHuiP-FPizdaM, #ImageTragick, #BaronSamedit & #Drupalgeddon2 vulnerabilities. They're all in our Cyber Security Vulnerability library. Learn more: bit.ly/3DK998z #networking #cybersecurity #hack


Bored and need something to do? Check out our free lesson about CVE-2018-7600 aka #Drupalgeddon2 Be awesome and don't forget to #hack the planet! cydefe.com/lesson-list/20…


La vulnerabilidad conocida como #Drupalgeddon2 de #Drupal, identificada durante el 2018, fue una de la más explotadas durante el 2019 #SeguridadWeb #cms4bib documentacionhoy.com/contents/blog/…


Our newest #pentesting lesson is live. Check it out at cydefe.com/lesson-list/20…. This one covers identification, #exploitation, and mitigation of CVE-2018-7600 aka #Drupalgeddon2. Be awesome everyone and don't forget to #hack the planet!


Our newest lesson is live. Check it out at cydefe.com/lesson-list/20…. This one covers identification, #exploitation, and mitigation of CVE-2018-7600 aka #Drupalgeddon2.


What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. #hacktheplanet

heathenhkr's tweet image. What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. 

#hacktheplanet

A year after patch, #Drupalgeddon2 is still being employed in cybercriminal attacks ow.ly/o4dC30pJbLP #CyberSecurity #Ransomware #cybercrime

RiskSense's tweet image. A year after patch, #Drupalgeddon2 is still being employed in cybercriminal attacks ow.ly/o4dC30pJbLP #CyberSecurity #Ransomware #cybercrime

A #RCE vulnerability patched over a year and a half ago is still being actively employed in attacks against high-profile websites. #Drupalgeddon2 @SecurityCharlie @ZDNet @Akamai @_larry0 bit.ly/32nLw26

rhpowell4's tweet image. A #RCE vulnerability patched over a year and a half ago is still being actively employed in attacks against high-profile websites. #Drupalgeddon2 @SecurityCharlie @ZDNet @Akamai @_larry0 bit.ly/32nLw26

Immagini impiegate per l’hacking di siti Drupal. #drupalgeddon2 buff.ly/2BePHRN


A #RCE vulnerability patched over a year and a half ago is still being actively employed in attacks against high-profile websites. #Drupalgeddon2 @SecurityCharlie @ZDNet @Akamai @_larry0 bit.ly/2OThQFQ

AGimarcus's tweet image. A #RCE vulnerability patched over a year and a half ago is still being actively employed in attacks against high-profile websites. #Drupalgeddon2 @SecurityCharlie @ZDNet @Akamai @_larry0 bit.ly/2OThQFQ

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/35BsSp9

mnk716's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/35BsSp9

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2B70jlI

FadedGlyph's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2B70jlI

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2VHr0GR

nomaanlatif's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2VHr0GR

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/33uc95y

jroemer87's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/33uc95y

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2OLsXRu

brunogoveas's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2OLsXRu

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2ODpyEa

Varun130985's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2ODpyEa

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/317SvdV

Stibboo's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/317SvdV

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2VBbhJz

ffarooqb's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2VBbhJz

.@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2MakNQY

mnk716's tweet image. .@_larry0 has uncovered a new campaign targeting the popular #Drupalgeddon2 vulnerability to deliver malware. Find out more on @cyberdefensemag. @Akamai #cybersecurity bit.ly/2MakNQY

No results for "#drupalgeddon2"

The essence of the diff between Drupal 7.57 and 7.58 (CVE-2018-7600, SA-CORE-2018-002) appears to be this. #drupal #drupalgeddon2

bendiken's tweet image. The essence of the diff between Drupal 7.57 and 7.58 (CVE-2018-7600, SA-CORE-2018-002) appears to be this. #drupal #drupalgeddon2

UPDATE— In a statement today Drupal said the number of vulnerable sites presented by researchers is inaccurate. Since #Drupalgeddon2 patches didn't touch CHANGELOG.txt or any version strings, checking CHANGELOG.txt is not a valid way to determine whether a site is vulnerable.

TheHackersNews's tweet image. UPDATE— In a statement today Drupal said the number of vulnerable sites presented by researchers is inaccurate. Since #Drupalgeddon2 patches didn't touch CHANGELOG.txt or any version strings, checking CHANGELOG.txt is not a valid way to determine whether a site is vulnerable.

Drupalgeddon2 😇 inurl:"/user/register" "Powered by Drupal" -CAPTCHA -"Access denied" inurl:"user/register?element_parents=account/mail" inurl:"*drupal_ajax" #Drupal #drupalgeddon #Drupalgeddon2

alexfrancow's tweet image. Drupalgeddon2 😇

inurl:"/user/register" "Powered by Drupal" -CAPTCHA -"Access denied"
inurl:"user/register?element_parents=account/mail"
inurl:"*drupal_ajax"
#Drupal #drupalgeddon #Drupalgeddon2

Waiting for them #drupalgeddon2 updates like... #theanxiety


#drupalgeddon2 appears to be related to PHP's handling of arrays in parameters (i.e. array[]=1&array[]=2). The patch added sanitization for GET and POST (body) parameters as well as cookies. Execution path is not that obvious, but should not be too difficult to figure out.

bojanz's tweet image. #drupalgeddon2 appears to be related to PHP's handling of arrays in parameters (i.e. array[]=1&array[]=2). The patch added sanitization for GET and POST (body) parameters as well as cookies. Execution path is not that obvious, but should not be too difficult to figure out.

Hackers are exploiting #Drupal RCE vulnerability (CVE-2018-7600) in the wild to backdoor and infect websites with #cryptocurrency miners thehackernews.com/2018/04/drupal… "Simply updating Drupal will not remove backdoors or fix compromised sites," Drupal warned. #drupalgeddon2

TheHackersNews's tweet image. Hackers are exploiting #Drupal RCE vulnerability (CVE-2018-7600) in the wild to backdoor and infect websites with #cryptocurrency miners

thehackernews.com/2018/04/drupal…

"Simply updating Drupal will not remove backdoors or fix compromised sites," Drupal warned. #drupalgeddon2

Just saw the our first exploit for SA-CORE-2018-002 in the wild. Blocked by @Cloudflare's WAF. #drupalgeddon2

wiifm's tweet image. Just saw the our first exploit for SA-CORE-2018-002 in the wild. Blocked by @Cloudflare's WAF. #drupalgeddon2

Oh snap - stuff just got real. There's a working exploit for the new #drupalgeddon2 (CVE-2018-7602). This is going to be a long weekend. pastebin.com/pRM8nmwj


What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. #hacktheplanet

heathenhkr's tweet image. What's the next lesson in our pipeline? We will be teaching everyone about CVE-2018-7600 aka #Drupalgeddon2. This lesson like the last one will cover identification, #exploitation, and mitigation of the CVE. 

#hacktheplanet

RT @F5Security: ICYMI - @lmacvittie's blog highlights #Drupalgeddon2 and the need for AppSecOps: bit.ly/2L2J1sF #cryptominer

F5's tweet image. RT @F5Security: ICYMI - @lmacvittie's blog highlights #Drupalgeddon2 and the need for AppSecOps: bit.ly/2L2J1sF #cryptominer

How we fixed all our #Drupal sites, really quickly bit.ly/2It0tFM #drupalgeddon2

computerminds's tweet image. How we fixed all our #Drupal sites, really quickly bit.ly/2It0tFM #drupalgeddon2

Big kudos to the #drupal security team and Drupalistas around the planet today... #Drupalgeddon2

hook42inc's tweet image. Big kudos to the #drupal security team and Drupalistas around the planet today...
#Drupalgeddon2

Jasper Mattsson is explaining how he discovered #drupalgeddon2 and how easy it was to exploit it #drupalhackcamp

ABaumeier's tweet image. Jasper Mattsson is explaining how he discovered #drupalgeddon2 and how easy it was to exploit it #drupalhackcamp

Loading...

Something went wrong.


Something went wrong.


United States Trends