A small tool to view real-world ActivityPub objects as JSON! Enter a URL
or username from Mastodon or a similar service below, and we'll send a
request with
the right
Accept
header
to the server to view the underlying object.
{
"@context": [
"https://www.w3.org/ns/activitystreams",
{
"ostatus": "http://ostatus.org#",
"atomUri": "ostatus:atomUri",
"inReplyToAtomUri": "ostatus:inReplyToAtomUri",
"conversation": "ostatus:conversation",
"sensitive": "as:sensitive",
"toot": "http://joinmastodon.org/ns#",
"votersCount": "toot:votersCount",
"litepub": "http://litepub.social/ns#",
"directMessage": "litepub:directMessage",
"blurhash": "toot:blurhash",
"focalPoint": {
"@container": "@list",
"@id": "toot:focalPoint"
},
"Hashtag": "as:Hashtag"
}
],
"id": "https://infosec.exchange/users/dfncert/outbox?page=true",
"type": "OrderedCollectionPage",
"next": "https://infosec.exchange/users/dfncert/outbox?max_id=113011722923971995&page=true",
"prev": "https://infosec.exchange/users/dfncert/outbox?min_id=113366750126632473&page=true",
"partOf": "https://infosec.exchange/users/dfncert/outbox",
"orderedItems": [
{
"id": "https://infosec.exchange/users/dfncert/statuses/113366750126632473/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-25T06:55:26Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/shadowserver",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://infosec.exchange/users/shadowserver/statuses/113364367715156611"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113366749647642108/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-25T06:55:19Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mastodon.social/users/DFN",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mastodon.social/users/DFN/statuses/113366631934200311"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-24T15:03:11Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113363005718282452",
"type": "Note",
"summary": null,
"inReplyTo": "https://social.bund.de/users/certbund/statuses/113361972481526633",
"published": "2024-10-24T15:03:11Z",
"url": "https://infosec.exchange/@dfncert/113363005718282452",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113363005718282452",
"inReplyToAtomUri": "https://social.bund.de/users/certbund/statuses/113361972481526633",
"conversation": "tag:social.bund.de,2024-10-24:objectId=3443737:objectType=Conversation",
"content": "<p>Fortinet Advisory for CVE-2024-47575 in FortiManager (RCE via fgfmsd daemon):<br /><a href=\"https://www.fortiguard.com/psirt/FG-IR-24-423\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://www.</span><span class=\"ellipsis\">fortiguard.com/psirt/FG-IR-24-</span><span class=\"invisible\">423</span></a></p><p>Mandiant has details:<br /><a href=\"https://cloud.google.com/blog/topics/threat-intelligence/fortimanager-zero-day-exploitation-cve-2024-47575\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">cloud.google.com/blog/topics/t</span><span class=\"invisible\">hreat-intelligence/fortimanager-zero-day-exploitation-cve-2024-47575</span></a></p><p><a href=\"https://infosec.exchange/tags/FortiJump\" class=\"mention hashtag\" rel=\"tag\">#<span>FortiJump</span></a> <a href=\"https://infosec.exchange/tags/UNC5820\" class=\"mention hashtag\" rel=\"tag\">#<span>UNC5820</span></a> <a href=\"https://infosec.exchange/tags/RCE\" class=\"mention hashtag\" rel=\"tag\">#<span>RCE</span></a></p>",
"contentMap": {
"de": "<p>Fortinet Advisory for CVE-2024-47575 in FortiManager (RCE via fgfmsd daemon):<br /><a href=\"https://www.fortiguard.com/psirt/FG-IR-24-423\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://www.</span><span class=\"ellipsis\">fortiguard.com/psirt/FG-IR-24-</span><span class=\"invisible\">423</span></a></p><p>Mandiant has details:<br /><a href=\"https://cloud.google.com/blog/topics/threat-intelligence/fortimanager-zero-day-exploitation-cve-2024-47575\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">cloud.google.com/blog/topics/t</span><span class=\"invisible\">hreat-intelligence/fortimanager-zero-day-exploitation-cve-2024-47575</span></a></p><p><a href=\"https://infosec.exchange/tags/FortiJump\" class=\"mention hashtag\" rel=\"tag\">#<span>FortiJump</span></a> <a href=\"https://infosec.exchange/tags/UNC5820\" class=\"mention hashtag\" rel=\"tag\">#<span>UNC5820</span></a> <a href=\"https://infosec.exchange/tags/RCE\" class=\"mention hashtag\" rel=\"tag\">#<span>RCE</span></a></p>"
},
"updated": "2024-10-24T15:08:14Z",
"attachment": [
{
"type": "Document",
"mediaType": "image/png",
"url": "https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/363/003/337/939/519/original/9dfafc41c5b32695.png",
"name": null,
"blurhash": "U4Ss88IV~qxtE1M|t7oJ4nWERjjYM{RjRjay",
"width": 926,
"height": 935
}
],
"tag": [
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/rce",
"name": "#rce"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/fortijump",
"name": "#fortijump"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/unc5820",
"name": "#unc5820"
}
],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/likes",
"type": "Collection",
"totalItems": 1
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113363005718282452/shares",
"type": "Collection",
"totalItems": 1
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113362987172806738/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-24T14:58:28Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://social.bund.de/users/certbund",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://social.bund.de/users/certbund/statuses/113361972481526633"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-24T08:13:03Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113361392971008159",
"type": "Note",
"summary": null,
"inReplyTo": null,
"published": "2024-10-24T08:13:03Z",
"url": "https://infosec.exchange/@dfncert/113361392971008159",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113361392971008159",
"inReplyToAtomUri": null,
"conversation": "tag:infosec.exchange,2024-10-24:objectId=206062098:objectType=Conversation",
"content": "<p>SOAP-Client Version 4.4.5 <a href=\"https://blog.pki.dfn.de/2024/10/soap-client-version-4-4-5/?utm_source=dlvr.it&utm_medium=mastodon\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.pki.dfn.de/2024/10/soap-c</span><span class=\"invisible\">lient-version-4-4-5/?utm_source=dlvr.it&utm_medium=mastodon</span></a></p>",
"contentMap": {
"en": "<p>SOAP-Client Version 4.4.5 <a href=\"https://blog.pki.dfn.de/2024/10/soap-client-version-4-4-5/?utm_source=dlvr.it&utm_medium=mastodon\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.pki.dfn.de/2024/10/soap-c</span><span class=\"invisible\">lient-version-4-4-5/?utm_source=dlvr.it&utm_medium=mastodon</span></a></p>"
},
"attachment": [],
"tag": [],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/likes",
"type": "Collection",
"totalItems": 1
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113361392971008159/shares",
"type": "Collection",
"totalItems": 1
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113315945126390367/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-16T07:35:04Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mstdn.social/users/geant",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mstdn.social/users/geant/statuses/113312082885693627"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113310280273367465/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-15T07:34:25Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mastodon.social/users/DFN",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mastodon.social/users/DFN/statuses/113310036883295595"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113271913178188186/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-08T12:57:09Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mstdn.social/users/geant",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mstdn.social/users/geant/statuses/113270394456779042"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113270459354244632/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-08T06:47:26Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mastodon.social/users/DFN",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mastodon.social/users/DFN/statuses/113270458900238217"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-08T06:45:03Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113270449967811930",
"type": "Note",
"summary": null,
"inReplyTo": null,
"published": "2024-10-08T06:45:03Z",
"url": "https://infosec.exchange/@dfncert/113270449967811930",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113270449967811930",
"inReplyToAtomUri": null,
"conversation": "tag:infosec.exchange,2024-10-08:objectId=201013159:objectType=Conversation",
"content": "<p>Java RA-Oberfläche Version 4.1 <a href=\"https://blog.pki.dfn.de/2024/10/java-ra-oberflaeche-version-4-1/?utm_source=dlvr.it&utm_medium=mastodon\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.pki.dfn.de/2024/10/java-r</span><span class=\"invisible\">a-oberflaeche-version-4-1/?utm_source=dlvr.it&utm_medium=mastodon</span></a></p>",
"contentMap": {
"en": "<p>Java RA-Oberfläche Version 4.1 <a href=\"https://blog.pki.dfn.de/2024/10/java-ra-oberflaeche-version-4-1/?utm_source=dlvr.it&utm_medium=mastodon\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.pki.dfn.de/2024/10/java-r</span><span class=\"invisible\">a-oberflaeche-version-4-1/?utm_source=dlvr.it&utm_medium=mastodon</span></a></p>"
},
"attachment": [],
"tag": [],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/likes",
"type": "Collection",
"totalItems": 0
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113270449967811930/shares",
"type": "Collection",
"totalItems": 0
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-03T17:45:43Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113244736263894845",
"type": "Note",
"summary": null,
"inReplyTo": "https://infosec.exchange/users/dfncert/statuses/113237764109103470",
"published": "2024-10-03T17:45:43Z",
"url": "https://infosec.exchange/@dfncert/113244736263894845",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113244736263894845",
"inReplyToAtomUri": "https://infosec.exchange/users/dfncert/statuses/113237764109103470",
"conversation": "tag:infosec.exchange,2024-10-02:objectId=199268461:objectType=Conversation",
"content": "<p>Zimbra's recommendation for CVE-2024-45519</p><p><a href=\"https://blog.zimbra.com/2024/10/zimbra-cve-2024-45519-vulnerability-stay-secure-by-updating/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.zimbra.com/2024/10/zimbra</span><span class=\"invisible\">-cve-2024-45519-vulnerability-stay-secure-by-updating/</span></a></p><p><a href=\"https://infosec.exchange/tags/patch\" class=\"mention hashtag\" rel=\"tag\">#<span>patch</span></a> <a href=\"https://infosec.exchange/tags/zimbra\" class=\"mention hashtag\" rel=\"tag\">#<span>zimbra</span></a> <a href=\"https://infosec.exchange/tags/rce\" class=\"mention hashtag\" rel=\"tag\">#<span>rce</span></a> <a href=\"https://infosec.exchange/tags/nondefaultconfiguration\" class=\"mention hashtag\" rel=\"tag\">#<span>nondefaultconfiguration</span></a></p>",
"contentMap": {
"en": "<p>Zimbra's recommendation for CVE-2024-45519</p><p><a href=\"https://blog.zimbra.com/2024/10/zimbra-cve-2024-45519-vulnerability-stay-secure-by-updating/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.zimbra.com/2024/10/zimbra</span><span class=\"invisible\">-cve-2024-45519-vulnerability-stay-secure-by-updating/</span></a></p><p><a href=\"https://infosec.exchange/tags/patch\" class=\"mention hashtag\" rel=\"tag\">#<span>patch</span></a> <a href=\"https://infosec.exchange/tags/zimbra\" class=\"mention hashtag\" rel=\"tag\">#<span>zimbra</span></a> <a href=\"https://infosec.exchange/tags/rce\" class=\"mention hashtag\" rel=\"tag\">#<span>rce</span></a> <a href=\"https://infosec.exchange/tags/nondefaultconfiguration\" class=\"mention hashtag\" rel=\"tag\">#<span>nondefaultconfiguration</span></a></p>"
},
"attachment": [
{
"type": "Document",
"mediaType": "image/png",
"url": "https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/244/732/406/853/853/original/91d321ae896d4080.png",
"name": null,
"blurhash": "UCR:1xrq%LniJ:s.xuayl.t,jZbcxuWBRkbH",
"width": 940,
"height": 788
}
],
"tag": [
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/zimbra",
"name": "#zimbra"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/rce",
"name": "#rce"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/nondefaultconfiguration",
"name": "#nondefaultconfiguration"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/patch",
"name": "#patch"
}
],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/likes",
"type": "Collection",
"totalItems": 0
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113244736263894845/shares",
"type": "Collection",
"totalItems": 0
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113244642490099053/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-03T17:21:52Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/shadowserver",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://infosec.exchange/users/shadowserver/statuses/113244350742428195"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-02T12:12:36Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113237764109103470",
"type": "Note",
"summary": null,
"inReplyTo": null,
"published": "2024-10-02T12:12:36Z",
"url": "https://infosec.exchange/@dfncert/113237764109103470",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113237764109103470",
"inReplyToAtomUri": null,
"conversation": "tag:infosec.exchange,2024-10-02:objectId=199268461:objectType=Conversation",
"content": "<p>Details for critical vulnerability CVE-2024-45519 in Zimbra's postjournal service provided by ProjectDiscovery:</p><p><a href=\"https://blog.projectdiscovery.io/zimbra-remote-code-execution/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.projectdiscovery.io/zimbr</span><span class=\"invisible\">a-remote-code-execution/</span></a></p><p>They recommend:<br />- Verify that postjournal is disabled if not required.<br />- Ensure that mynetworks is correctly configured to prevent unauthorised access.<br />- Apply the latest security updates provided by Zimbra.</p><p>This was patched in early September along other vulns, so check those as well:</p><p><a href=\"https://blog.zimbra.com/2024/09/patch-release-multiple-security-issues-related-to-cross-site-scripting-xss-addressed-and-resolved/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.zimbra.com/2024/09/patch-</span><span class=\"invisible\">release-multiple-security-issues-related-to-cross-site-scripting-xss-addressed-and-resolved/</span></a></p><p>Patched in: <br />- Zimbra Daffodil 10.1.1<br />- Zimbra Daffodil 10.0.9<br />- Zimbra 9.0.0 Patch-41</p><p>and special appearance of</p><p>- Zimbra 8.8.15 Patch-46</p><p><a href=\"https://infosec.exchange/tags/rce\" class=\"mention hashtag\" rel=\"tag\">#<span>rce</span></a> <a href=\"https://infosec.exchange/tags/zimbra\" class=\"mention hashtag\" rel=\"tag\">#<span>zimbra</span></a></p>",
"contentMap": {
"en": "<p>Details for critical vulnerability CVE-2024-45519 in Zimbra's postjournal service provided by ProjectDiscovery:</p><p><a href=\"https://blog.projectdiscovery.io/zimbra-remote-code-execution/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.projectdiscovery.io/zimbr</span><span class=\"invisible\">a-remote-code-execution/</span></a></p><p>They recommend:<br />- Verify that postjournal is disabled if not required.<br />- Ensure that mynetworks is correctly configured to prevent unauthorised access.<br />- Apply the latest security updates provided by Zimbra.</p><p>This was patched in early September along other vulns, so check those as well:</p><p><a href=\"https://blog.zimbra.com/2024/09/patch-release-multiple-security-issues-related-to-cross-site-scripting-xss-addressed-and-resolved/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">blog.zimbra.com/2024/09/patch-</span><span class=\"invisible\">release-multiple-security-issues-related-to-cross-site-scripting-xss-addressed-and-resolved/</span></a></p><p>Patched in: <br />- Zimbra Daffodil 10.1.1<br />- Zimbra Daffodil 10.0.9<br />- Zimbra 9.0.0 Patch-41</p><p>and special appearance of</p><p>- Zimbra 8.8.15 Patch-46</p><p><a href=\"https://infosec.exchange/tags/rce\" class=\"mention hashtag\" rel=\"tag\">#<span>rce</span></a> <a href=\"https://infosec.exchange/tags/zimbra\" class=\"mention hashtag\" rel=\"tag\">#<span>zimbra</span></a></p>"
},
"updated": "2024-10-02T12:14:06Z",
"attachment": [
{
"type": "Document",
"mediaType": "image/png",
"url": "https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/237/762/085/181/585/original/611bfa31ca5d80b0.png",
"name": null,
"blurhash": "U35Xu.%NEMt7_3xvn,t7.Tt7wMt8=|a#I:oL",
"width": 758,
"height": 1038
}
],
"tag": [
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/rce",
"name": "#rce"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/zimbra",
"name": "#zimbra"
}
],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/replies?min_id=113244736263894845&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/replies",
"items": [
"https://infosec.exchange/users/dfncert/statuses/113244736263894845"
]
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/likes",
"type": "Collection",
"totalItems": 0
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113237764109103470/shares",
"type": "Collection",
"totalItems": 0
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113231215912357352/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-10-01T08:27:18Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mastodon.social/users/DFN",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mastodon.social/users/DFN/statuses/113230765096687583"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113225610669912511/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-09-30T08:41:49Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/malwaretech",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://infosec.exchange/users/malwaretech/statuses/113211527388632554"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-09-27T16:49:44Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113210542286505298",
"type": "Note",
"summary": null,
"inReplyTo": null,
"published": "2024-09-27T16:49:44Z",
"url": "https://infosec.exchange/@dfncert/113210542286505298",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113210542286505298",
"inReplyToAtomUri": null,
"conversation": "tag:infosec.exchange,2024-09-27:objectId=197867886:objectType=Conversation",
"content": "<p>Wochenendtipp zur Dramabewältigung: die lieben Kollegen vom KIT-CERT haben einen Scanner für cups-browsed veröffentlicht.</p><p><a href=\"https://gitlab.kit.edu/kit/kit-cert/tools/cups-browsed-scanner\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">gitlab.kit.edu/kit/kit-cert/to</span><span class=\"invisible\">ols/cups-browsed-scanner</span></a></p><p>1. 631/udp außen dicht m̶a̶c̶h̶e̶n̶ haben<br />2. Scanner innen an<br />3. Profit</p><p><a href=\"https://infosec.exchange/tags/CUPS\" class=\"mention hashtag\" rel=\"tag\">#<span>CUPS</span></a> <a href=\"https://infosec.exchange/tags/infosec\" class=\"mention hashtag\" rel=\"tag\">#<span>infosec</span></a> <a href=\"https://infosec.exchange/tags/drama\" class=\"mention hashtag\" rel=\"tag\">#<span>drama</span></a></p>",
"contentMap": {
"en": "<p>Wochenendtipp zur Dramabewältigung: die lieben Kollegen vom KIT-CERT haben einen Scanner für cups-browsed veröffentlicht.</p><p><a href=\"https://gitlab.kit.edu/kit/kit-cert/tools/cups-browsed-scanner\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"ellipsis\">gitlab.kit.edu/kit/kit-cert/to</span><span class=\"invisible\">ols/cups-browsed-scanner</span></a></p><p>1. 631/udp außen dicht m̶a̶c̶h̶e̶n̶ haben<br />2. Scanner innen an<br />3. Profit</p><p><a href=\"https://infosec.exchange/tags/CUPS\" class=\"mention hashtag\" rel=\"tag\">#<span>CUPS</span></a> <a href=\"https://infosec.exchange/tags/infosec\" class=\"mention hashtag\" rel=\"tag\">#<span>infosec</span></a> <a href=\"https://infosec.exchange/tags/drama\" class=\"mention hashtag\" rel=\"tag\">#<span>drama</span></a></p>"
},
"attachment": [
{
"type": "Document",
"mediaType": "image/png",
"url": "https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/210/524/234/344/303/original/f80cd56017e05df3.png",
"name": null,
"blurhash": "U4S$ov00oexuIoIUjExa?vt7RPWVD*oLs:Rk",
"width": 924,
"height": 833
}
],
"tag": [
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/cups",
"name": "#cups"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/infosec",
"name": "#infosec"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/drama",
"name": "#drama"
}
],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/likes",
"type": "Collection",
"totalItems": 8
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113210542286505298/shares",
"type": "Collection",
"totalItems": 11
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113191824570895087/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-09-24T09:29:34Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/shadowserver",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://infosec.exchange/users/shadowserver/statuses/113191792043241452"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/activity",
"type": "Create",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-09-23T12:59:06Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers",
"https://infosec.exchange/users/jkopriva"
],
"object": {
"id": "https://infosec.exchange/users/dfncert/statuses/113186986147072752",
"type": "Note",
"summary": null,
"inReplyTo": null,
"published": "2024-09-23T12:59:06Z",
"url": "https://infosec.exchange/@dfncert/113186986147072752",
"attributedTo": "https://infosec.exchange/users/dfncert",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/dfncert/followers",
"https://infosec.exchange/users/jkopriva"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/dfncert/statuses/113186986147072752",
"inReplyToAtomUri": null,
"conversation": "tag:infosec.exchange,2024-09-23:objectId=196562802:objectType=Conversation",
"content": "<p>Friendly reminder by <span class=\"h-card\" translate=\"no\"><a href=\"https://infosec.exchange/@jkopriva\" class=\"u-url mention\">@<span>jkopriva</span></a></span>: RFC 3986 based <a href=\"https://infosec.exchange/tags/phishing\" class=\"mention hashtag\" rel=\"tag\">#<span>phishing</span></a> links with @ sign are still a thing!</p><p>Info and some <a href=\"https://infosec.exchange/tags/awareness\" class=\"mention hashtag\" rel=\"tag\">#<span>awareness</span></a> hints in the latest ISC diary: <a href=\"https://isc.sans.edu/diary/31288\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"\">isc.sans.edu/diary/31288</span><span class=\"invisible\"></span></a></p>",
"contentMap": {
"en": "<p>Friendly reminder by <span class=\"h-card\" translate=\"no\"><a href=\"https://infosec.exchange/@jkopriva\" class=\"u-url mention\">@<span>jkopriva</span></a></span>: RFC 3986 based <a href=\"https://infosec.exchange/tags/phishing\" class=\"mention hashtag\" rel=\"tag\">#<span>phishing</span></a> links with @ sign are still a thing!</p><p>Info and some <a href=\"https://infosec.exchange/tags/awareness\" class=\"mention hashtag\" rel=\"tag\">#<span>awareness</span></a> hints in the latest ISC diary: <a href=\"https://isc.sans.edu/diary/31288\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" translate=\"no\"><span class=\"invisible\">https://</span><span class=\"\">isc.sans.edu/diary/31288</span><span class=\"invisible\"></span></a></p>"
},
"attachment": [
{
"type": "Document",
"mediaType": "image/png",
"url": "https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/186/985/524/176/777/original/6223e9169f0736ee.png",
"name": null,
"blurhash": "UASF*7D4DPwJpJTJS~Sh9ttlx]X8vgmlm,rr",
"width": 1054,
"height": 561
}
],
"tag": [
{
"type": "Mention",
"href": "https://infosec.exchange/users/jkopriva",
"name": "@jkopriva"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/phishing",
"name": "#phishing"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/awareness",
"name": "#awareness"
}
],
"replies": {
"id": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/likes",
"type": "Collection",
"totalItems": 2
},
"shares": {
"id": "https://infosec.exchange/users/dfncert/statuses/113186986147072752/shares",
"type": "Collection",
"totalItems": 1
}
}
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113146520631537606/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-09-16T09:28:11Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://mastodon.social/users/DFN",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://mastodon.social/users/DFN/statuses/113089297190312532"
},
{
"id": "https://infosec.exchange/users/dfncert/statuses/113011722923971995/activity",
"type": "Announce",
"actor": "https://infosec.exchange/users/dfncert",
"published": "2024-08-23T14:07:21Z",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/adulau",
"https://infosec.exchange/users/dfncert/followers"
],
"object": "https://infosec.exchange/users/adulau/statuses/113011478132615107"
}
]
}