Rhino Security Labs

Strategic & Technical Blog

CVE-2022-26113: FortiClient Arbitrary File Write As SYSTEM

David Yesland

Forticlient is Fortinet’s basic VPN client which offers SSL VPN and IPSecVPN VPN connectivity. It also contains utility features which allow importing and exporting of VPN configurations and profiles…

CVE-2021-41577:
MITM to RCE
in EVGA Precision X1

CVE-2020-5377: Dell OpenManage Server Administrator File Read

CloudGoat ECS_EFS_Attack Walkthrough

Sebastian Mora

Cloudgoat is a tool that can build vulnerable Capture-the-Flag style AWS environments to help security assessors learn about AWS security and AWS vulnerabilities. This walkthrough will cover the CloudGoat attack simulation “ecs_efs_attack…