Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @MrR3boot
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @MrR3boot
-
MrR3boot proslijedio/la je Tweet
CVE-2019-18426 From Persistent-XSS in Whatsapp to Reading from the File System on Mac/Windows with a potential for RCE Bounty: $12,500
#bugbounty https://www.perimeterx.com/tech-blog/2020/whatsapp-fs-read-vuln-disclosure/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
@ngalongc,@EdOverflow, and I are starting a new security blog. In our first write-up, we will discuss the impact of "SameSite by default" and how it affects web app sec. Feel free to request future topics you would like us to cover. https://blog.reconless.com/samesite-by-default/ …pic.twitter.com/5R23YmpksT
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
One more writeup for AI from
@hackthebox_eu is up: https://snowscan.io/htb-writeup-ai/ That SQL injection using text-to-speech gave me a hard time.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
#HackTheBox AI video is now online. A really cool "out of band" style of an SQL Injection using "Speech To Text". So you need to Verbally Speak out the injection. Once on the box do a pretty cool privesc via Java Debugging.https://www.youtube.com/watch?v=7n7YRntu3bc …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
AI just retired from HTB. It was a neat theme exploiting an AI / smart home like device using audio to perform an SQL injection. Then I'll use Java Debug to escalate to root.https://0xdf.gitlab.io/2020/01/25/htb-ai.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
AI retired today from
@hackthebox_eu and here is my official walkthrough of ithttps://github.com/MrR3boot/HackTheBox/blob/master/Boxes/AI/AI.pdf …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
Cross-Site Websocket Hijacking bug in Facebook that leads to account takeover By
@Samm0uda https://ysamm.com/?p=363 Bounty: $12500#bugbountyHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
Here is the link to the SpecterOps Adversary Tactics: PowerShell course material: https://github.com/specterops/at-ps … Enjoy! For information about our current training offerings, information can be found here: https://specterops.io/how-we-help/training-offerings … (4/4)
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
What an amazing
#Hackthebox challenge from@MrR3boot!! My write-up on Player is online. On the menu: a lot of enumeration, JWT token crafting, some slick FFMpeg exploit, a restricted shell bypass, a Codiad exploit and a PHP Object Injection!https://medium.com/@noobintheshell/htb-player-499a60c5d16d …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here is my official walkthrough of Playerhttps://github.com/MrR3boot/HackTheBox/tree/master/Boxes/Player …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
Player from
@hackthebox_eu required enumeration and several interesting exploits to slowly build a full shell. Root was a good chance to play with PHP deserialization. There were several alternative paths as well.https://0xdf.gitlab.io/2020/01/18/htb-player.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
I had a hard time finding the initial source code file for the launcher page on the Player box but I liked the LFI part using ffmpeg and the PHP deserialization priv esc at the end. https://snowscan.io/htb-writeup-player/ …
#HackTheBoxHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
MrR3boot owned root on Monteverde ! http://hackthebox.eu via
@hackthebox_eu As usual great content from@egre55. Thanks for it. User is trivial but root part taught me very good lesson about Azure AD concepts. Keep them coming.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
Have reproduced Citrix SSL VPN pre-auth RCE successfully on both local and remote. Interesting bug!https://www.tripwire.com/state-of-security/vert/citrix-netscaler-cve-2019-19781-what-you-need-to-know/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Learned a ton solving this challenge. Definitely the best SQLi i solved till date.https://github.com/MrR3boot/CTF/blob/master/TetCTF-2020/Secure-System/README.md …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
#bugbountytips Protip: Use ffuf/wfuzz to look for public S3 buckets rather than s3recon or bucket finder. I went from 5-10 tests per second to almost 300. Just check for status code 200.pic.twitter.com/H0epBngqiz
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je Tweet
Introducing MemLabs - Educational, CTF-styled labs for individuals interested in Memory Forensics, is now released. Link: https://github.com/stuxnet999/MemLabs … Author:
@_abhiramkumar#ctf#dfir#memoryforensics#infosec#cybersecurityHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
MrR3boot proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
MrR3boot proslijedio/la je Tweet
use this burp extensionhttps://portswigger.net/bappstore/0902e34e38be4dfc82475d7b47774a48 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
The BEST is yet to come...
Comment below your favorite