2fa.cn: Two-Factor Authentication Bypass Tool
2fa.cn is a tool used for passing two-factor authentication codes between operators. It was observed in the undercover operation, replacing previously used…
2fa.cn is a tool used for passing two-factor authentication codes between operators. It was observed in the undercover operation, replacing previously used…
A vulnerability in Zimbra that allows authenticated users to bypass mail forwarding restrictions and exfiltrate email. Discovered by Rapid7 researcher Jonah Burgess.
A file-handling flaw in MSHTML that could be exploited for bypassing security controls, used in smaller test sets by the operator.
Gatekeeper is a macOS security feature that is bypassed by ClickLock Stealer by killing NotificationCenter, preventing security warnings from appearing.
CVE-2026-50661 is a publicly disclosed BitLocker bypass vulnerability that requires physical access to the device. It is not under active attack but…
VPC Service Controls, a Google Cloud security perimeter, was bypassed by the unrestricted outbound internet access from the Dialogflow CX Code Block…
AMSI is a Windows feature that allows antivirus to scan scripts before execution. The new ClickFix delivery method is designed to bypass…
A vulnerability in Google's Quick Share for Windows that bypassed fixes for CVE-2024-38271 and CVE-2024-38272, reported by SafeBreach in 2025.
Security researcher Chaotic Eclipse (aka Nightmare-Eclipse and MSNightmare) has released a new Windows BitLocker bypass exploit named GreatXML, discovered accidentally while researching…
Windows BitLocker, Microsoft's full-disk encryption feature, is vulnerable to a new bypass exploit called GreatXML. The exploit uses XML files placed in…