OpenStego is a tool implemented in Java for generic steganography, with support for password-based encryption of the data. It supports plugins for various steganographic algorithms (currently, only Least Significant Bit algorithm is supported for images).
78284dcabe5c74ab22916b872a7e897a67c64df7efe222e69ef5b62b53b18834
Debian Linux Security Advisory 4173-1 - Marcin Noga discovered multiple vulnerabilities in readxl, a GNU R package to read Excel files (via the integrated libxls library), which could result in the execution of arbitrary code if a malformed spreadsheet is processed.
1d7d8fb28a3b7dec254e36257e45b6cc0ed4128477d57b28b37a5159b6b76ddb
Ubuntu Security Notice 3626-1 - It was discovered that Ruby incorrectly handled certain inputs. An attacker could possibly use this to execute arbitrary code. It was discovered that Ruby incorrectly handled certain inputs. An attacker could possibly use this to access sensitive information. It was discovered that Ruby incorrectly handled certain inputs. An attacker could possibly use this to connect to an unintended socket. Various other issues were also addressed.
ef0daac817c814813e6e0872b534f7551f133d2e4eb2b05ea2a0500948d6d3a1
Ansvif is "A Not So Very Intelligent Fuzzer". It feeds garbage arguments and data into programs trying to induce a fault.
5cadf0ed2373636137cac4f25fb26de7d52672f89c3498a780239f53cb6690bb
Ubuntu Security Notice 3625-1 - It was discovered that Perl incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause Perl to hang, resulting in a denial of service. This issue only affected Ubuntu 14.04 LTS. It was discovered that Perl incorrectly loaded libraries from the current working directory. A local attacker could possibly use this issue to execute arbitrary code. This issue only affected Ubuntu 14.04 LTS and Ubuntu 16.04 LTS. Various other issues were also addressed.
993c5bb2d33be22423d12dee38b8e4e9644059fd1ff976ebca463d5df813a5ad
Ubuntu Security Notice 3624-2 - USN-3624-1 fixed a vulnerability in Patch. This update provides the corresponding update for Ubuntu 12.04 ESM. It was discovered that Patch incorrectly handled certain files. An attacker could possibly use this to cause a denial of service. Various other issues were also addressed.
4eb09490350a27c78c5232f94be0eabd7eade58f0a9efd7083e1670a0ca1f4f6
Gentoo Linux Security Advisory 201804-12 - A vulnerability in Go allows remote attackers to execute arbitrary commands. Versions less than 1.10.1 are affected.
9d75c7e3e16756f3d75be17021f9ef28b11d0284f2c89266ece3762c0aa160d0
aircrack-ng is a set of tools for auditing wireless networks. It's an enhanced/reborn version of aircrack. It consists of airodump (an 802.11 packet capture program), aireplay (an 802.11 packet injection program), aircrack (static WEP and WPA-PSK cracking), airdecap (decrypts WEP/WPA capture files), and some tools to handle capture files (merge, convert, etc.).
794ffed5400f35cb78f3466eabb47546f050e0ac35287c174acce60763a0fa7c
testssl.sh is a free command line tool which checks a server's service on any port for the support of TLS/SSL ciphers, protocols as well as recent cryptographic flaws, and much more. It is written in (pure) bash, makes only use of standard Unix utilities, openssl and last but not least bash sockets.
836a7b45455c95f17c4d7eec9468028a7fc6b613fd4b3c8e8e125b7b8206b89d
OpenSSL Security Advisory 20180416 - The OpenSSL RSA Key generation algorithm has been shown to be vulnerable to a cache timing side channel attack. An attacker with sufficient access to mount cache timing attacks during the RSA key generation process could recover the private key.
581c7fa15f265616cc367ae71f6de43d4bb9e454c88eb4259b677109a01c9944
Zortam MP3 Media Studio version 23.45 suffers from a local buffer overflow vulnerability.
772ce4e60aa34cc31b6b092cfbe3df07f71513456777922a54194354a00b364b
Whitepaper called Polymorph: A Real-Time Network Packet Manipulation Framework.
118f42ea90b2cc6b9facac454524602580cde922f0c07097d8bf647d67feb837
Cobub Razor version 0.8.0 suffers from a remote SQL injection vulnerability.
db934d71e673421da3f439f7a8ebb2d03908b9c368099529d6a88f66ca0b9606
Barco ClickShare CSE-200 suffers from a remote denial of service vulnerability.
dfbf9dbd25f544cbe3b653b9b398731180ead3982b8f5b543bd9cfbbe1a27bee
Sophos Cyberoam UTM CR25iNG version 10.6.3 MR-5 suffers from an insecure direct object reference vulnerability.
12ccae607b132949abc39072d304170f4626266c86f72ea0788314fe1231ca94
CloudMe Sync version 1.11.0 suffers from a local buffer overflow vulnerability.
ffa2f7b0e9e66fea02490472dcd145bde3099868b72285cf6718bc545245c3aa