Skip navigation

Category Archives: Advisories

Title : Umbra Loader (all versions) multiple Vulnerabilies
Author : Th3breacher
E-mail :
platform : php
Type : SQL Injection / unprotected login bruteforce
Severity : medium
Tested on : ArchLinux
Download : []
Overview : Umbra Loader is a popular HTTP botnet open source project, and version 1.1.1 has been released recently by the developer, Slayer616.
Vulnerabilities :
–POST-authentification Blind SQL Injection
+POC :

–Unprotected POST credentials check (credentials bruteforce is possible)
+POC :