Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @c0d3xpl0it
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @c0d3xpl0it
-
Prikvačeni tweet
My experience with "Domain-Specific Fuzzing with Waypoints using FuzzFactory" https://bit.ly/2Yrhyc8
#Fuzzing#Fuzzfactory#DomainSpecificHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Analyzing WhatsApp Calls with Wireshark, radare2 and Frida
#MobileSecurity#iOSsecurity by Marvin Schirrmacher
https://medium.com/@schirrmacher/analyzing-whatsapp-calls-176a9e776213 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Had fun playing with
@tiraniddo fantastic ntobjectmanager :-)https://decoder.cloud/2020/02/05/the-strange-rpc-interface-ms-are-you-trolling-me/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
If you use the cs2modrewrite project to build your C2 redirector rules, it is now updated to support CS <=4.0 profiles (multi-variants).
#specterops#redteam@joevesthttps://github.com/threatexpress/cs2modrewrite …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
I had some fun exploiting LDAP this week. I'm far from an LDAP expert, so please, bear with me as I try to make some sense of how I went to went from what seemed to be near complete lockdown to owning the domain.https://www.n00py.io/2020/02/exploiting-ldap-server-null-bind/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
The slides of my Android banking malware talk at
@kpnsecurity's Secure[ID] are now available in Dutch and English! English: http://maxkersten.nl/wp-content/uploads/2020/02/SecureID_AndroidBankingMalware_ENG.pdf … Dutch: http://maxkersten.nl/wp-content/uploads/2020/02/SecureID_AndroidBankingMalware_NL.pdf …pic.twitter.com/lx3jobGLtv
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Here's a quick video of the
#twitchguard multi-factor authentication bypass that@dafthack and I found to on the@Twitch platform. Submitted to@Bugcrowd and labeled a "won't-fix". Enjoy. https://vimeo.com/389476383#ittakesacrowdHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
CVE-2019-18426 From Persistent-XSS in Whatsapp to Reading from the File System on Mac/Windows with a potential for RCE Bounty: $12,500
#bugbounty https://www.perimeterx.com/tech-blog/2020/whatsapp-fs-read-vuln-disclosure/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
So much fun presenting this! Happy to share my slides for "Don't Cross Me! Same Origin Policy and all the 'cross' vulns". SOP is an important topic I feel is not adequately explained and understood by many developers and security pros.https://speakerdeck.com/ropnop/dont-cross-me-same-origin-policy-and-all-the-cross-vulns-xss-csrf-and-cors …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Pralhad Chaskar proslijedio/la je Tweet
As promised, here is the follow up defensive blog to last weeks post on Attacking Azure.https://posts.specterops.io/detecting-attacks-within-azure-bdc40f8c0766 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Do you know
#aflplusplus? It brings interesting add-ons to AFL.@nosoynadiemas used it during his fuzzing research to create custom instrumentation whitelists, increasing AFL code coveragehttps://securitylab.github.com/research/fuzzing-challenges-solutions-1 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Really glad to finally get a blogpost out about this. Hopefully this is useful and gives Red Teamers ideas on how to use the BYOI concept in their own payloads. If anyone is interested in a few more follow up posts about this will gladly oblige :)https://www.blackhillsinfosec.com/red-teamers-cookbook-byoi-bring-your-own-interpreter/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
If anyones interested I got some
#redteam#se#pentesting how-to vids herehttps://youtube.com/user/myexploit2600 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
I'll be running my Windows Kernel Exploitation Advanced course (2 days) twice at BlackHat USA 2020
@BlackHatEvents. Register for kernel pwning https://www.blackhat.com/us-20/training/schedule/#windows-kernel-exploitation-advanced--18547 … https://www.blackhat.com/us-20/training/schedule/#windows-kernel-exploitation-advanced--185471578436380 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
FakeLogonScreen - A utility to fake the Windows logon screen in order to obtain the user's password. The password entered is validated against the Active Directory or local machine to make sure it is correct and is then saved to disk.https://github.com/bitsadmin/fakelogonscreen …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
I was tired of outdated XSS cheat sheets that don't touch on frameworks, html5, filter bypasses and other important stuff, so I made my own. I hope you find it as useful as I do. :) https://netsec.expert/2020/02/01/xss-in-2020.html …
#bugbountytipspic.twitter.com/Mdygq1PI9Z
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
This month I learnt how to analyse the JavaScript of a React Native application while bounty hunting. I wanted to share what I found out with everyone else.https://blog.assetnote.io/bug-bounty/2020/02/01/expanding-attack-surface-react-native/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Load encrypted PE from XML Attribute. MSBuild is still the best.
https://github.com/XwingAngel/PELoader/ …
MSBuild sets Property then calls Execute.
Use this example to decouple payloads & prove that all security products have a "Single File Bias".
Decouple payloads to subvert detection.pic.twitter.com/648rujlLQn
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Some essential process execution/cmd lines to monitor for initial access/persist. powershell cmd rundll32 control wscript javaw csc regsvr32 reg certutil bitsadmin schtasks wmic eqnedt32 msiexec cmstp mshta hh curl installutil regsvcs/regasm at msbuild sc cscript msxsl runonce
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Pralhad Chaskar proslijedio/la je Tweet
Wrote a post on how to use GadgetToJScript with Covenant & Donut https://3xpl01tc0d3r.blogspot.com/2020/02/gadgettojscript-covenant-donut.html …
#Covenant#Donut#GadgetToJScript#redteam#processinjection Thanks to@med0x2e for the answering my queries and helping me while exploring#GadgetToJScript tool
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.