⤷ Title: CMESS WALKTHROUGH : TRYHACKME
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 23 Mar 2025 22:32:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf #ctf_writeup #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 23 Mar 2025 22:32:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf #ctf_writeup #tryhackme_walkthrough #tryhackme
Medium
CMESS WALKTHROUGH : TRYHACKME
To access the machine, click on the link given below:
⤷ Title: [THM] Tech_Supp0rt: 1 Walkthrough
════════════════════════
𐀪 Author: aw0k3n
════════════════════════
ⴵ Time: Sun, 23 Mar 2025 23:45:05 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #ctf_walkthrough #tryhackme #ctf_writeup
════════════════════════
𐀪 Author: aw0k3n
════════════════════════
ⴵ Time: Sun, 23 Mar 2025 23:45:05 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #ctf_walkthrough #tryhackme #ctf_writeup
Medium
[THM] Tech_Supp0rt: 1 Walkthrough
The “Tech_Supp0rt: 1” TryHackMe room can be found here.
⤷ Title: EarlyCascade: A PoC for Early Cascade process injection technique
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:23 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Early Cascade process injection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:23 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Early Cascade process injection
Penetration Testing Tools
EarlyCascade: A PoC for Early Cascade process injection technique
It's a modern and stealthy process injection technique that involves injecting and executing code in the early stages of process creation
⤷ Title: Arjun: HTTP parameter discovery suite
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:53 +0000
════════════════════════
⌗ Tags: #Web AppSec #Arjun #HTTP parameter discovery #HTTP Parameter Discovery Suite
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:53 +0000
════════════════════════
⌗ Tags: #Web AppSec #Arjun #HTTP parameter discovery #HTTP Parameter Discovery Suite
Penetration Testing Tools
Arjun: HTTP parameter discovery suite
Arjun is HTTP Parameter Discovery Suite. This is what Arjun does, it finds valid HTTP parameters with a huge default dictionary of 25,890 parameter names.
⤷ Title: tamago: provide compilation and execution of unencumbered Go applications
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:29 +0000
════════════════════════
⌗ Tags: #Network Defense #TamaGo
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:29 +0000
════════════════════════
⌗ Tags: #Network Defense #TamaGo
Penetration Testing Tools
tamago: provide compilation and execution of unencumbered Go applications
TamaGo is a project that aims to provide compilation and execution of unencumbered Go applications for bare metal ARM System-on-Chip (SoC) components.
⤷ Title: medusa: automates processes and techniques practised
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:20:14 +0000
════════════════════════
⌗ Tags: #Mobile Hacking #Binary instrumentation framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:20:14 +0000
════════════════════════
⌗ Tags: #Mobile Hacking #Binary instrumentation framework
Penetration Testing Tools
medusa: automates processes and techniques practised
Medusa is an extensible framework for Android applications which automates processes and techniques practised during the malware dynamic analysis
⤷ Title: Urgent: Patch Your Next.js for Authorization Bypass (CVE-2025-29927)
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:50:42 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29927 #middleware #Next.js #Next.js middleware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:50:42 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29927 #middleware #Next.js #Next.js middleware
Daily CyberSecurity
Urgent: Patch Your Next.js for Authorization Bypass (CVE-2025-29927)
Learn about CVE-2025-29927, a critical vulnerability in Next.js that impacts authorization checks in middleware.
⤷ Title: Inside Hunters International Group: How a Retailer Became the Latest Ransomware Victim
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:34 +0000
════════════════════════
⌗ Tags: #Malware #CVE_2024_55591 #Fortinet #Hunters International group #VPN Jantit
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:34 +0000
════════════════════════
⌗ Tags: #Malware #CVE_2024_55591 #Fortinet #Hunters International group #VPN Jantit
Cybersecurity News
Inside Hunters International Group: How a Retailer Became the Latest Ransomware Victim
Explore the evolving tactics of the Hunters International group in ransomware attacks and their impact on businesses.
⤷ Title: Critical Vulnerability Discovered in Popular WordPress Security Plugin WP Ghost
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26909 #WP Ghost
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:45:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26909 #WP Ghost
Daily CyberSecurity
Critical Vulnerability Discovered in Popular WordPress Security Plugin WP Ghost
Stay informed about CVE-2025-26909, a critical flaw in the WP Ghost plugin affecting security across WordPress sites.
⤷ Title: CVE-2025-29922: Critical Flaw in kcp Lets Attackers Manipulate Any Workspace
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:42:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29922 #kcp #Kubernetes
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:42:29 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29922 #kcp #Kubernetes
Daily CyberSecurity
CVE-2025-29922: Critical Flaw in kcp Lets Attackers Manipulate Any Workspace
Learn about CVE-2025-29922, a high-severity vulnerability in the kcp project impacting Kubernetes-like control planes.
⤷ Title: Unmasking ALTDOS, DESORDEN, GHOSTR, and Omid16B: The Saga of a Cybercriminal
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #ALTDOS #DESORDEN #GHOSTR #Omid16B
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #ALTDOS #DESORDEN #GHOSTR #Omid16B
Daily CyberSecurity
Unmasking ALTDOS, DESORDEN, GHOSTR, and Omid16B: The Saga of a Cybercriminal
Uncover the story of a cybercriminal apprehended after a four-year chase, exploiting victims for financial gain.
⤷ Title: Don’t Click! Fake Chat Used in Meta Business Account Phishing
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:36:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #Meta Business Account Phishing
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:36:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #Meta Business Account Phishing
Daily CyberSecurity
Don't Click! Fake Chat Used in Meta Business Account Phishing
Protect your marketing infrastructure from Meta Business Account phishing. Learn how to identify these sophisticated scams.
⤷ Title: Critical Remote Code Execution Vulnerability in vLLM via Mooncake Integration
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29783 #machine_learning #Mooncake #Open Source Security #Pickle #Python #rce #Remote Code Execution #vLLM #ZMQ
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_29783 #machine_learning #Mooncake #Open Source Security #Pickle #Python #rce #Remote Code Execution #vLLM #ZMQ
Daily CyberSecurity
Critical Remote Code Execution Vulnerability in vLLM via Mooncake Integration
Learn about CVE-2025-29783, a critical vulnerability in vLLM affecting LLM deployments and remote code execution risks.
⤷ Title: AMOS Stealer Reloaded: Inside a Fully Undetected macOS Data Heist
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:33 +0000
════════════════════════
⌗ Tags: #Malware #AMOS Stealer
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:35:33 +0000
════════════════════════
⌗ Tags: #Malware #AMOS Stealer
Daily CyberSecurity
AMOS Stealer Reloaded: Inside a Fully Undetected macOS Data Heist
Stay safe from the AMOS Stealer. Learn how this undetected malware targets macOS and steals your personal data.
⤷ Title: Nuxt Users Beware: CVE-2025-27415 Opens the Door to Cache Poisoning Attacks
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2024_46982 #CVE_2025_27415
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2024_46982 #CVE_2025_27415
Daily CyberSecurity
Nuxt Users Beware: CVE-2025-27415 Opens the Door to Cache Poisoning Attacks
Explore CVE-2025-27415, a new vulnerability in Nuxt that can lead to cache poisoning and disrupt Vue.js applications.
⤷ Title: ABYSSWORKER: The EDR-Killing Driver Lurking in the Shadows
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:10:43 +0000
════════════════════════
⌗ Tags: #Malware #ABYSSWORKER #malicious driver #Medusa Ransomware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:10:43 +0000
════════════════════════
⌗ Tags: #Malware #ABYSSWORKER #malicious driver #Medusa Ransomware
Daily CyberSecurity
ABYSSWORKER: The EDR-Killing Driver Lurking in the Shadows
Explore the threat posed by ABYSSWORKER, a driver used to disable EDR systems after being deployed by MEDUSA ransomware.
⤷ Title: Authentication
════════════════════════
𐀪 Author: Hazem
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:20:14 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger_lab #authentication #pentester #pentesting
════════════════════════
𐀪 Author: Hazem
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:20:14 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger_lab #authentication #pentester #pentesting
Medium
Authentication
1. Definition
⤷ Title: How to Find Hidden API Endpoints That Lead to Critical Bugs
════════════════════════
𐀪 Author: Spectat0rguy
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:02:58 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #programming #ai_generated_content #cybersecurity
════════════════════════
𐀪 Author: Spectat0rguy
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:02:58 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #programming #ai_generated_content #cybersecurity
Medium
1. Why Hidden API Endpoints Matter in Bug Bounty
Unlocking Hidden APIs: The Secret Weapon for Bug Bounty Hunters
⤷ Title: Malware va Spyware: Sizning qurilmangizni sezilmasdan kuzatayotgan xavf!
════════════════════════
𐀪 Author: Umidxon Po'latxonov
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:05:07 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #network_security #hacking #spyware
════════════════════════
𐀪 Author: Umidxon Po'latxonov
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 00:05:07 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #network_security #hacking #spyware
Medium
Malware va Spyware: Sizning qurilmangizni sezilmasdan kuzatayotgan xavf!
Ushbu maqolada hozirgi kunda juda ko’p duch kelishingiz mumkin bo’lgan xavfsizlik muammolaridan biri bo’lgan malware va spyware dasturlari…
⤷ Title: Emerging Cyber Capabilities in Developing Nations
════════════════════════
𐀪 Author: CCD-IS
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:31:13 GMT
════════════════════════
⌗ Tags: #policy #cybersecurity #cyber #cyberdiplomacy #cyber_policy
════════════════════════
𐀪 Author: CCD-IS
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:31:13 GMT
════════════════════════
⌗ Tags: #policy #cybersecurity #cyber #cyberdiplomacy #cyber_policy
Medium
Emerging Cyber Capabilities in Developing Nations
Vladimir Tsakanyan
⤷ Title: Memory Analysis Q4
════════════════════════
𐀪 Author: Luis Gutierrez Sanchez
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:15:44 GMT
════════════════════════
⌗ Tags: #capture_the_flag #cybersecurity #memory_analysis #penetration_testing
════════════════════════
𐀪 Author: Luis Gutierrez Sanchez
════════════════════════
ⴵ Time: Mon, 24 Mar 2025 01:15:44 GMT
════════════════════════
⌗ Tags: #capture_the_flag #cybersecurity #memory_analysis #penetration_testing
Medium
Memory Analysis Q4
This challenge was developed by Stefan Vömel, Consulting Director at Palo Alto Networks Unit 42.