Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @limbernie
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @limbernie
-
Bernie Lim proslijedio/la je Tweet
RE just retired from
@hackthebox_eu. As the creator of the box, I tried to bring phishing/macro obfuscation concepts to the initial access. The intended privescs were the WinRar ACE file exploit, and XXE in Ghidra. I'll show two unintended privescs too.https://0xdf.gitlab.io/2020/02/01/htb-re.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here's my write-up for the retired
#RE from HTB. Created by@0xdf_. Dropping web shells from EvilWinRar, yo!https://hackso.me/re-htb-walkthrough/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Here's my PoC for Curveball (CVE-2020-0601). Sorry for the wait! It's implemented in C so might be a little messy :)https://github.com/ioncodes/Curveball …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
I just added my scanner script for the Remote Desktop Gateway exploit (CVE-2020-0609 & CVE-2020-0610) to my repository! It allows you to check whether a server is vulnerable or not!https://github.com/ioncodes/BlueGate#scanner …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here's my write-up for the retired
#AI from HTB. An excellent box with a pretty novel idea for SQL injection: Text-to-Speech and Speech Recognitionhttps://hackso.me/ai-htb-walkthrough/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Here my GitHub with many scripts useful for red teamers - Enjoy! https://github.com/BankSecurity/Red_Team …
#redteamHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Player from
@hackthebox_eu required enumeration and several interesting exploits to slowly build a full shell. Root was a good chance to play with PHP deserialization. There were several alternative paths as well.https://0xdf.gitlab.io/2020/01/18/htb-player.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here's my write-up for the retired
#Player from HTB. I learned some important lessons: 1) Try harder, and don’t give up. 2) Never overlook the information gathering phase.https://hackso.me/player-htb-walkthrough/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
My blog post about CVE-2020-0601 is online! I hope you guys enjoy it, I didn't sleep for 2 days now, pardon me if I made some mistakes :) Feel free to point out any mistakes!https://blog.layle.io/uncovering-cve-2020-0601/ …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Gonna start writing about CVE-2020-0601 tonight/tomorrow, I'll be showing off my PoC with a little demonstration how it can be applied to code signing for malicious binaries and how it can be used to fake a trusted certificate over HTTPS.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Here's a picture of CVE-2020-0601, don't forget to patch! Took some inspiration from
@saleemrash1d :)pic.twitter.com/rr0cmLjP1b
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Released a little tool to perform lateral movement that hide the command you are executing by registering a protocol handler. The protocol handler is executed over WMI by simply running start customhandler:// https://github.com/Mr-Un1k0d3r/PoisonHandler …
#redteam#pentest
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Bitlab from
@hackthebox_eu was an opportunity to play with CICD, and to do some simple windows RE / debugging. https://0xdf.gitlab.io/2020/01/11/htb-bitlab.html … In Beyond Root, I'll show an alternative path from www-data to root, and look at how the exe mis-calls `GetUsernameW`.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here's my write-up for the retired
#Bitlab from HTB. Excellent box to get acquainted with git hooks.https://hackso.me/bitlab-htb-walkthrough/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
First of 2020! To those who are bold enough to knock
OpenAdmin will go live 4 January 2020 at 19:00:00 UTC. Craft will be retired! You still have time to #hack your way in at http://www.hackthebox.eu/#join pic.twitter.com/eHzdfQjESh
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
Ever wondered what makes a CTF challenge good? I've asked myself that many times. I wrote this to help me answer that question based on discussions with others in the communityhttps://bit.ly/ctf-design
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
I've been super busy and haven't gotten time to record Smasher2, but I did record a video I've wanted to do for a while... Introduction into PHP Deserialization, hopefully it helps people understand other deserialization attacks toohttps://www.youtube.com/watch?v=HaW15aMzBUM …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
New blog post outlining how to use my .NET RPC Client tooling from PowerShell and C# to test and exploit local RPC security vulnerabilities. Also an early xmas present for those who enjoy long standing design flaws in UAC :-) https://googleprojectzero.blogspot.com/2019/12/calling-local-windows-rpc-servers-from.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Bernie Lim proslijedio/la je Tweet
There are a lot of changes coming with the upcoming Python2 EOL. Here we break down what’s going on and how it impacts Kali. Along with some guidance on how you can contribute to help the community in this transition. https://www.kali.org/news/python-2-end-of-life/ …pic.twitter.com/7wPsX26UJM
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Here's my write-up for the retired
#Smasher2 from HTB. My first Linux kernel driver exploitation.https://hackso.me/smasher2-htb-walkthrough/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.