<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Shelby Pace &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/author/shelby-pace/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 14 Apr 2023 18:13:48 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2023/04/14/metasploit-weekly-wrap-up-53/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 14 Apr 2023 18:13:48 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=84b2f1e1cc7bc0800aecc51ff56fd089</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Rocket Software UniRPC Exploits</h2>
<p><a href="https://github.com/rbowes-r7">Ron Bowes</a> submitted two exploit <a href="https://github.com/rapid7/metasploit-framework/pull/17832">modules</a> for vulnerabilities he <a href="https://www.rapid7.com/blog/post/2023/03/29/multiple-vulnerabilities-in-rocket-software-unirpc-server-fixed/">discovered</a> in the UniRPC server for Rocket Software’s UniData product. The first exploit module, <code>exploit/linux/misc/unidata_udadmin_auth_bypass</code> exploits an authentication bypass to ultimately gain remote code execution as the <code>root</code> user. The</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/04/metasploit-ascii-1-2.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2023/01/27/metasploit-weekly-wrap-up-44/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 27 Jan 2023 21:17:01 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e7e9fc1b3a3f8500d4661294fca127e3</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Cacti Unauthenticated Command Injection</h2>
<p>Thanks to community contributor <a href="https://github.com/ErikWynter">Erik Wynter</a>, Metasploit Framework now has an exploit <a href="https://github.com/rapid7/metasploit-framework/pull/17407">module</a> for an unauthenticated command injection vulnerability in the Cacti network-monitoring software. The vulnerability is due to a <code>proc_open()</code> call that accepts unsanitized user input in <code>remote_agent.php</code>. Provided that the target</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/01/metasploit-sky-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-UP</title>
		<link>https://noise.getoto.net/2022/10/28/metasploit-weekly-wrap-up-34/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 28 Oct 2022 17:45:29 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=312a82a6647e0b124a58bb6576f210f9</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>GLPI htmLawed PHP Command Injection</h2>
<p>Our very own <a href="https://github.com/bwatters-r7">bwatters-r7</a> wrote a module for an unauthenticated PHP command injection vulnerability that exists in various versions of GLPI. The vulnerability is due to a third-party vendor test script being present in default installations. A POST request to <code>vendor/htmlawed/htmlawed/htmLawedTest.php</code></p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/10/metasploit-sky.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Wrap-Up</title>
		<link>https://noise.getoto.net/2022/08/27/metasploit-wrap-up-45/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 26 Aug 2022 21:47:13 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=559e0e8d2a3ccc9876788213e94e36a4</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Zimbra Auth Bypass to Shell</h2>
<p><a href="https://github.com/rbowes-r7">Ron Bowes</a> added an exploit <a href="https://github.com/rapid7/metasploit-framework/pull/16922">module</a> that targets multiple versions of Zimbra Collaboration Suite. The module leverages an authentication bypass (CVE-2022-37042) and a directory traversal vulnerability (CVE-2022-27925) to gain code execution as the <code>zimbra</code> user. The auth bypass functionality correctly checks for a valid session;</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/08/metasploit-ascii-1-2-1.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2022/08/05/metasploit-weekly-wrap-up-25/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 05 Aug 2022 18:50:07 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=fbee52cb3c438e4c42d6212e07befea9</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><h2>Log4Shell in MobileIron Core</h2>
<p>Thanks to <a href="https://github.com/jbaines-r7">jbaines-r7</a> we have yet another Log4Shell <a href="https://github.com/rapid7/metasploit-framework/pull/16837">exploit</a>. Similar to the other Log4Shell exploit modules, the exploit works by sending a JNDI string that once received by the server will be deserialized, resulting in unauthenticated remote code execution as the <code>tomcat</code> user. Vulnerable versions of</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/08/metasploit-ascii-1-2.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Wrap-Up</title>
		<link>https://noise.getoto.net/2022/04/29/metasploit-wrap-up-42/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 29 Apr 2022 20:09:07 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=91ac7b9895bc3dd0b895fdcdde44c63b</guid>

					<description><![CDATA[Module additions this week to enumerate all installed AV products on Windows and escape sandboxes on certain Debian-specific Redis versions. Plus, a new place for Metasploit docs focused on pen testing workflows.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/04/metasploit-blg-3-copy-2.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Weekly Wrap-Up</title>
		<link>https://noise.getoto.net/2022/03/04/metasploit-weekly-wrap-up-6/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 04 Mar 2022 21:52:42 +0000</pubDate>
				<category><![CDATA[exploits]]></category>
		<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4bfd931715758c7b7e2711a580bfea5e</guid>

					<description><![CDATA[<!--kg-card-begin: markdown--><p>This week’s Metasploit Framework release brings us seven new modules.</p>
<h2>IP Camera Exploitation</h2>
<p>Rapid7’s <a href="https://github.com/jbaines-r7">Jacob Baines</a> was busy this week with two exploit modules that target IP cameras. The <a href="https://github.com/rapid7/metasploit-framework/pull/16190">first</a> module exploits an authenticated file upload on Axis IP cameras. Due to lack of proper sanitization, an attacker</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/03/metasploit-fence.png" length="0" type="" />

			</item>
		<item>
		<title>Metasploit Wrap-Up</title>
		<link>https://noise.getoto.net/2021/06/25/metasploit-wrap-up-11/</link>
		
		<dc:creator><![CDATA[Shelby Pace]]></dc:creator>
		<pubDate>Fri, 25 Jun 2021 16:15:03 +0000</pubDate>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Metasploit Weekly Wrapup]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=a17a1dcd8325d40a01af23debe1352eb</guid>

					<description><![CDATA[Three fresh modules for Cisco targets and rConfig, plus new enhancements and fixes.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/06/metasploit-ascii-1-2.png" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 71/73 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2026-02-09 11:51:51 by W3 Total Cache
-->