<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Ahmad Ashraff on Aura Research Division</title><link>https://research.aurainfosec.io/authors/ahmad-ashraff/</link><description>Recent content in Ahmad Ashraff on Aura Research Division</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>Aura Information Security © 2026</copyright><lastBuildDate>Thu, 26 Apr 2018 00:00:00 +0000</lastBuildDate><atom:link href="https://research.aurainfosec.io/authors/ahmad-ashraff/index.xml" rel="self" type="application/rss+xml"/><item><title>Automating a Thorny SQL Injection With SQLMap</title><link>https://research.aurainfosec.io/pentest/automating-thorny-sqli/</link><pubDate>Thu, 26 Apr 2018 00:00:00 +0000</pubDate><guid>https://research.aurainfosec.io/pentest/automating-thorny-sqli/</guid><description>SQLMap is one of the best tool in exploiting sql injection. However, there are moments where this tool will not produce the expected results if we do not supplying the correct options. This post covers a tricky SQL Injection vulnerability that I found in a recent assessment.</description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://research.aurainfosec.io/pentest/automating-thorny-sqli/featured.png"/></item><item><title>VMware Horizon DaaS - Improper IP Address Validation</title><link>https://research.aurainfosec.io/disclosure/vmware_horizon_daas/CVE-2017-4897/</link><pubDate>Fri, 10 Mar 2017 00:00:00 +0000</pubDate><guid>https://research.aurainfosec.io/disclosure/vmware_horizon_daas/CVE-2017-4897/</guid><description>&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;CVE(s):&lt;/strong&gt; VMSA-2017-0002, CVE-2017-4897&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Vendor:&lt;/strong&gt; VMware&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Product:&lt;/strong&gt; Horizon Daas Platform&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Version(s) affected:&lt;/strong&gt; 6.1.x&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Fixed version:&lt;/strong&gt; 7.0.0&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;A security advisory was released by the VMware Security Team on the 3rd of March 2017 in their &lt;a href="https://blogs.vmware.com/security/2017/03/new-vmware-security-advisory-vmsa-2017-0002.html" target="_blank" rel="noreferrer"&gt;Security Blog&lt;/a&gt;.&lt;/p&gt;</description></item></channel></rss>