ippsec

@ippsec

Vrijeme pridruživanja: prosinac 2016.

Medijski sadržaj

  1. prije 8 sati
    Odgovor korisnicima

    Because you said beach balls. My view right now

  2. 4. velj
    Odgovor korisniku/ci
  3. 2. velj

    Airport round 2. Are all Turkish airline lounges serve yourself?

  4. 1. velj
    Odgovor korisnicima

    Thanks! But doesn’t look good and no more flights until tmw. Hope there’s something fun in Miami I guess.

  5. 27. sij
    Odgovor korisnicima

    Interesting - Sounds a lot like the Mantis box (). You debugged it much better than I had.

  6. 25. sij

    The "Quick Wins" intro was really quick to do. There's an for everything

    Prikaži ovu nit
  7. 25. sij

    Started working on the prep for the PrivEsc video. Can't wait to show it off.

    Prikaži ovu nit
  8. 25. sij

    AI video is now online. A really cool "out of band" style of an SQL Injection using "Speech To Text". So you need to Verbally Speak out the injection. Once on the box do a pretty cool privesc via Java Debugging.

  9. 19. sij

    So I got an Apple Watch and started using the AutoSleep app to track my sleep. Apparently a hibernation is required to fix my sleep debt. I had no idea how little sleep I got, or how people can sleep for 8+ hours.

  10. 18. sij

    Player has been retired. This was a really fun box, discovering the backups on the webserver was surprisingly difficult so I added a new module to GoBuster. The unintended privesc was also super cool.

  11. 16. sij
    Odgovor korisniku/ci

    Why not make you're door open via a secret knock? - Chances of successful door opening are much higher as unlike the bf it doesn't have selective hearing.

  12. 13. sij
    Odgovor korisnicima

    If only there was a guide on securing crappy vendor webapps somewhere. :-p

  13. 11. sij

    Bitlab video is up! A medium level linux box with two ways to root. .

  14. 4. sij

    Craft video is now online. A fun linux box that involved pillaging old git commits to find a JWT Token, then doing some source code analysis to exploit a Eval() vulnerability.

  15. 28. pro 2019.
    Odgovor korisniku/ci

    Yeah it was amazing had me rewatch the CH Troopers skits as every time I start RvB I lose days.

  16. 22. pro 2019.

    Just uploaded "Advanced PHP Deserialization - PHAR Files", It's pretty much just me walking through the PHP Deserialization exploit presented at last year.

  17. 21. pro 2019.

    For reference here is the video I did as an intro to php deserialization / object injection

    Prikaži ovu nit
  18. 21. pro 2019.
    Odgovor korisniku/ci

    Continual game of going days of going on do not disturb and trying to be as productive as possible... downside is you come back to this

  19. 21. pro 2019.

    I've been super busy and haven't gotten time to record Smasher2, but I did record a video I've wanted to do for a while... Introduction into PHP Deserialization, hopefully it helps people understand other deserialization attacks too

    Prikaži ovu nit
  20. 16. pro 2019.
    Odgovor korisnicima

    It only I had went home would of been wearing one!

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·