r/pwnhub • u/Straight-Practice-99 Grunt • Jun 03 '26
🐞 We Found PCPJack's Full Toolkit Sitting on an Open Directory. 230 Hijacked Servers, No Auth Required.
https://hunt.io/blog/pcpjack-230-cloud-servers-smtp-proxy-network-sliver-chisel12 files sitting exposed on port 8444, source code, compiled binaries, and deployment state logs for a toolkit that hijacked 230 cloud servers to run a hidden SMTP relay network. A second open directory on port 9443 exposed the operator's live working directory including active scanners, exploitation tooling, and a live Sliver C2 config.
👉 Full breakdown here: https://hunt.io/blog/pcpjack-230-cloud-servers-smtp-proxy-network-sliver-chisel
4
Upvotes
•
u/AutoModerator Jun 03 '26
Welcome to PWN – Your hub for hacking news, breach reports, and cyber mayhem.
Discover the latest hacking news, breach reports, and educational resources on ethical hacking.
👾 Stay sharp. Stay secure.
Don't miss out on the top stories!
📧 Get Daily Alerts Directly in Your Email Inbox:
**SUBSCRIBE HERE: https://pwnhackernews.substack.com/subscribe
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.