CVE-2021-44076: Cross-Site Scripting (XSS) in CrushFTP 14 Sep 2022 During the course of our work, Nettitude have identified a stored Cross-Site Scripting (XSS) vulnerability within the CrushFTP... Read more
Network Relaying Abuse in a Windows Domain 31 Aug 2022 Network relaying abuse in the context of a legacy Windows authentication protocol is by no means a novel... Read more
CVE-2022-30211: Windows L2TP VPN Memory Leak and Use after... 17 Aug 2022 Nettitude discovered a Memory Leak turned Use after Free (UaF) bug in the Microsoft implementation of the L2TP... Read more
Offensive Security: From OSCE to OSCE3 8 Aug 2022 OSCE3 (Offensive Security Certified Expert 3) is a certification from Offensive Security which has replaced the (now retired)... Read more
Logparser Query Files 7 Aug 2022 We have created a set of queries for sysmon log files that will process each of the Event... Read more
CVE-2022-24004 & CVE-2022-24127: Vanderbilt REDCap - Stored Cross Site... 15 Jun 2022 Nettitude identified two stored Cross Site Scripting (XSS) vulnerabilities within Vanderbilt REDCap. These have been assigned CVE-2022-24004... Read more
How we found a second critical Microsoft vpn vulnerability 11 May 2022 Our latest blog delves into how we found a second critical Microsoft VPN vulnerability, and exactly how you... Read more
CVE-2022-23270 - Windows Server VPN Remote Kernel Use After... 11 May 2022 Following yesterday’s Microsoft VPN vulnerability, today we’re presenting CVE-2022-23270, which is another windows VPN Use after Free (UaF)... Read more
CVE-2022-21972: Windows Server VPN Remote Kernel Use After Free... 10 May 2022 CVE-2022-21972 is a Windows VPN Use after Free (UaF) vulnerability that was discovered through reverse engineering the raspptp.sys... Read more
Introducing SharpWSUS 5 May 2022 Today, we’re releasing a new tool called SharpWSUS. This is a continuation of existing WSUS attack tooling... Read more
Best seller New Price from Limited availability Course type Course length Dates and location x *PLEASE NOTE: Course is available in more countries, languages and dates*