Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @pwnii
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @pwnii
-
PWNI proslijedio/la je Tweet
Fun fact: That job screening company that scans Twitter accounts for bad words has developers that commit plaintext passwords on GitHub. ... Maybe they're scanning the wrong website.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Here is my massive lib db (for ctfs/wargames/blind pwns etc.). It consists of thousands of libs across over a dozen Linux distributions and architectures spanning the last 20 years. It indexes symbols & gadgets (including one gadgets AKA magic gadgets). https://github.com/0xb0bb/karkinos pic.twitter.com/T76K3lkQ3r
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
This is cyberpunk. Changing the physical changes the digital which changes the physical. Power held by governments and corporate powers can be subverted and redirected by regular people who understand how the system feeds upon itself.https://twitter.com/StevenJCrowley/status/1223977380794064897 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Radios do, however, frequently implement the bit of the spec where a multiplex can transmit station art as a JPEG or PNG. This is fun because some DAB receivers, particularly modern head units in cars, run libpng to decode these. Which has an exploitable RCE in older versions.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Me explaining the execution order of my Jupyter notebook cells.pic.twitter.com/dwWt5NzmUL
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Proof of Concept scanner for CVE-2020-0609 & CVE-2020-0610.https://github.com/MalwareTech/RDGScanner …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Ladies and gentlemen, I present you a working Remote Code Execution (RCE) exploit for the Remote Desktop Gateway (CVE-2020-0609 & CVE-2020-0610). Accidentally followed a few rabbit holes but got it to work! Time to write a blog post ;) Don't forget to patch!pic.twitter.com/FekupjS6qG
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
A bit analysis on
#APT33 and#APT34 operations against European energy sector (December 2019), the domains used are the same that used by the operations energy, government, and technology sectors in Saudi Arabia in 2017.pic.twitter.com/sMWuYGt6D6
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Arcana is looking for ELF binary experts; adept in reverse engineering and software engineering in C. Linux kernel internal knowledge a huge plus. Email resumes to engineering, http://arcanacs.com
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Periodic reminder that you should NEVER use MD5 or SHA1 in any new project/system. What to use: - Password hashing: argon2i - Cryptographically secure hashes (most usecases): BLAKE2 (fastest) or SHA3 (if needed for compatibility) - Non-CS hashes: xxhash (faster than MD5)
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Reverse Engineering the BMW Connected Apps Protocol
#MobileSecurity#AndroidSecurity https://hufman.github.io/stories/bmwconnectedapps …pic.twitter.com/M3I1wEznuY
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
RDP to RCE: When Fragmentation Goes Wrong AKA: What we know about CVE-2020-0609 and CVE-2020-0610.https://www.kryptoslogic.com/blog/2020/01/rdp-to-rce-when-fragmentation-goes-wrong/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
CVE-2020-5504 SQLI in phpMyAdmin: A malicious user could inject custom SQL in place of their own username when creating queries to this page https://www.phpmyadmin.net/security/PMASA-2020-1/ … fix: https://github.com/phpmyadmin/phpmyadmin/commit/c86acbf3ed49f69cf38b31879886dd5eb86b6983 …pic.twitter.com/S3a3B1zHz4
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
After a lot of work and some crypto-related delays, I couldn't be more proud to publish
@aionescu's and mine latest research - The complete overview of CET internals on Windows (so far!): http://windows-internals.com/cet-on-windows/Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
If you’re tired of hearing about crypto32, elliptic curves, and other CVE-2020-0601 shenanigans, have a read over our new blog post on Windows’ Intel CET implementation in the face of SetThreadContext and NtContinue. Come for the exploit mitigation, stay for the XState Internals. https://twitter.com/yarden_shafir/status/1217728223355817986 …pic.twitter.com/rfFlA1aZXR
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
A testing site for
#curveball by@KudelskiSec https://chainoffools.wouaib.ch/ (has some availability issues) Results for Chrome on an unpatched win10 vs non-vuln Mac (when you boldly move past warning messages)pic.twitter.com/k8f2SRYKEA
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Today my Head of Department emailed me about something. It sounded urgent, though it's odd he switched to using a Gmail address [thread]pic.twitter.com/w1eyNMit9Z
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
So my company cut the position I was filling and I'm in need of employment. Remote preferred. Otherwise MD/DC area. GREM, GNFA, GCTI, GCIA, GCIH, GSEC, CISSP. Would be happy doing threat intel, and am just learning forensics/malware RE. Anything really.https://www.linkedin.com/in/chrisculling/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je Tweet
Released a little tool to perform lateral movement that hide the command you are executing by registering a protocol handler. The protocol handler is executed over WMI by simply running start customhandler:// https://github.com/Mr-Un1k0d3r/PoisonHandler …
#redteam#pentest
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
PWNI proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
DMs are open