Rhino Security Labs

Technical Blog

New Pacu Module:
Secret Enumeration in Elastic Beanstalk

Tyler Ramsbey
April 22, 2025

During a recent AWS penetration test, the client was using a service I do not see very often: AWS Elastic Beanstalk (EBN). This is a service that makes it easy to deploy web applications without managing the underlying infrastructure. The…

CVE-2024-55963: Unauthenticated RCE in Default-Install of Appsmith

CVE-2025-0693: AWS IAM User Enumeration

CVE-2024-46506: Unauthenticated RCE in NetAlertx

Chebuya

NetAlertX is an open-source Wi-Fi / Local Area Network (LAN) intruder detector that scans for devices connected to your network and alerts you if new and unknown devices are found.
As stated on their website, it offers “a user-friendly…