<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Jack Heysel &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/author/jack-heysel/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 23 Jan 2026 21:00:28 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Metasploit Wrap-Up 01/23/2026</title>
		<link>https://noise.getoto.net/2026/01/23/metasploit-wrap-up-01-23-2026/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 23 Jan 2026 21:00:28 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c41c3a532f74964ad6d84d1c3cf760c1</guid>

					<description><![CDATA[Oracle E-Business Suite Unauth RCEThis week, we are pleased to announce the addition of a module that exploits CVE-2025-61882, a pre-authentication remote code execution vulnerability in Oracle E-Business Suite versions 12.2.3 through 12.2.14. The expl...]]></description>
		
		
		<enclosure url="https://images.contentstack.io/v3/assets/blte4f029e766e6b253/blt0d50271a40a5f14f/6849ab419621d9f3824d5017/metasploit-sky.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Wrap-Up 12/05/2025</title>
		<link>https://noise.getoto.net/2025/12/05/metasploit-wrap-up-12-05-2025/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 05 Dec 2025 20:58:04 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f8e6a00c0365ddcb080a0a62dabc0b75</guid>

					<description><![CDATA[Twonky Auth Bypass, RCEs and RISC-V Reverse Shell PayloadsThis was another fantastic week in terms of PR contribution to the Metasploit Framework. Rapid7’s very own Ryan Emmons recently disclosed CVE-2025-13315 and CVE-2025-13316 which exist in Twonky ...]]></description>
		
		
		<enclosure url="https://images.contentstack.io/v3/assets/blte4f029e766e6b253/blt0475760a2990dfd7/6849ab41a770d7563190a3ea/metasploit-fence.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Wrap-Up 03/28/2025</title>
		<link>https://noise.getoto.net/2025/03/28/metasploit-wrap-up-03-28-2025/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 28 Mar 2025 19:44:37 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6cd51a3677a9b3cf98274a4a07d23596</guid>

					<description><![CDATA[This Metasploit release includes an exploit module for CVE-2024-30085, an LPE in cldflt.sys which is known as the Windows Cloud Files Mini Filer Driver.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/metasploit-ascii-1-2-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up 01/24/2025</title>
		<link>https://noise.getoto.net/2025/01/24/metasploit-weekly-wrap-up-01-24-2025/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 24 Jan 2025 21:58:01 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=aa3a832471d08e581fab48f5e392ebcf</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>LibreNMS Authenticated RCE module and ESC15 improvements</h2>
<p>This week the Metasploit Framework was blessed with an authenticated RCE module in LibreNMS, an autodiscovering PHP/MySQL-based network monitoring system. An authenticated attacker can create dangerous directory names on the system and alter sensitive configuration parameters through the web portal. These two</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/01/metasploit-fence.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2024/11/15/metasploit-weekly-wrap-up-87/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 15 Nov 2024 20:37:21 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=81ee37840505b34caa71d97d705118d5</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Palo Alto Expedition RCE module</h2>
<p>This week's release includes an exploit module for the Palo ALto Expedition exploit chain that's been making headlines recently. The first vulnerability, CVE-2024-5910, allows attackers to reset the password of the admin user. The second vulnerability, CVE-2024-9464 is an authenticated OS command injection. The module</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/11/metasploit-ascii-1-2-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up 09/06/2024</title>
		<link>https://noise.getoto.net/2024/09/06/metasploit-weekly-wrap-up-09-06-2024/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 06 Sep 2024 17:56:11 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=545618319a56151b8a7a81d82f0f3359</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Honey, I shrunk the PHP payloads</h2>
<p>This release contains more PHP payload improvements from Julien Voisen. Last week we landed a PR from Julien that added a datastore option to the php/base64 encoder that when enabled, will use zlib to compress the payload which significantly reduced the size, bringing</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/09/metasploit-sky.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up 06/28/2024</title>
		<link>https://noise.getoto.net/2024/06/28/metasploit-weekly-wrap-up-06-28-2024/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 28 Jun 2024 20:36:29 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=459d37b7307743710098dd503473663c</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Unauthenticated Command Injection in Netis Router</h2>
<p>This week's Metasploit release includes an exploit module for an unauthenticated command injection vulnerability in the Netis MW5360 router which is being tracked as CVE-2024-22729. The vulnerability stems from improper handling of the password parameter within the router's web interface which allows for command</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/06/metasploit-fence-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up 04/19/24</title>
		<link>https://noise.getoto.net/2024/04/19/metasploit-weekly-wrap-up-04-19-24/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 19 Apr 2024 18:42:39 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=68d0ff1a700de10bcbf821ad8edcd983</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Welcome Ryan and the new CrushFTP module</h2>
<p>It's not every week we add an awesome new exploit module to the Framework while adding the original discoverer of the vulnerability to the Rapid7 team as well. We're very excited to welcome Ryan Emmons to the Emergent Threat Response team, which works</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/04/metasploit-ascii-1-2.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up 02/09/2024</title>
		<link>https://noise.getoto.net/2024/02/09/metasploit-weekly-wrap-up-02-09-2024/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 09 Feb 2024 19:35:23 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=71b168340851bc07432f217400565b69</guid>

					<description><![CDATA[This weeks wrap up includes three new exploits for docker, Fortra GoAnywhere and Cacti.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/02/metasploit-ascii-1-2.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap up</title>
		<link>https://noise.getoto.net/2023/07/21/metasploit-weekly-wrap-up-66/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 21 Jul 2023 18:08:03 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=68166a14debe502f54ffabf846b953ae</guid>

					<description><![CDATA[This week's weekly wrapup includes two new Metasploit modules - Piwigo Gather Credentials via SQL Injection ( CVE-2023-26876 ) and Openfire authentication bypass with RCE plugin (CVE-2023-32315)]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/07/metasploit-sky-1-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2023/03/24/metasploit-weekly-wrap-up-50/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 24 Mar 2023 18:33:38 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c3cfb99e07e9f3e87460a90f1fb16452</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Zxyel Routers Beware</h2>
<p>This week we've released a module written by first time community contributor <a href="https://github.com/shr70">shr70</a> that can exploit roughly 45 different Zyxel router and VPN models. The module exploits a buffer overflow vulnerability that results in unauthenticated remote code execution on affected devices. It's rare we see a module</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/03/metasploit-sky-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2023/03/10/metasploit-weekly-wrap-up-48/</link>
		
		<dc:creator><![CDATA[Jack Heysel]]></dc:creator>
		<pubDate>Fri, 10 Mar 2023 19:00:00 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=a7e1c05842df5c07d9b1ba23b2235727</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Wowza, a new credential gatherer and login scanner!</h2>
<p>This week Metasploit Framework gained a credential gatherer for Wowza Streaming Engine Manager. Credentials for this application are stored in a file named <code>admin.password</code> in a known location and the file is readable by default by <code>BUILTIN\Users</code> on Windows and</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/03/metasploit-fence.png" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 26/159 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2026-02-09 01:37:14 by W3 Total Cache
-->