⤷ Title: Lookup CTF Writeup — TryHackMe Easy Box
════════════════════════
𐀪 Author: Error
════════════════════════
ⴵ Time: Tue, 25 Mar 2025 22:11:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #tryhackme #capture_the_flag
════════════════════════
𐀪 Author: Error
════════════════════════
ⴵ Time: Tue, 25 Mar 2025 22:11:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #tryhackme #capture_the_flag
Medium
Lookup CTF Writeup — TryHackMe Easy Box
Firstly, I did an NMAP Scan to find ports that are open. One of which is port 80 that is where the HTTP server is running and the other is…
⤷ Title: HTB Sense Walkthrough
════════════════════════
𐀪 Author: The Cyber Outpost
════════════════════════
ⴵ Time: Tue, 25 Mar 2025 22:31:09 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #pfsense #openbsd #hackthebox_writeup #hackthebox
════════════════════════
𐀪 Author: The Cyber Outpost
════════════════════════
ⴵ Time: Tue, 25 Mar 2025 22:31:09 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #pfsense #openbsd #hackthebox_writeup #hackthebox
Medium
HTB Sense Walkthrough
In this article, we’re going to explore the retired easy box of Granny, following the guided mode.
⤷ Title: SQL Injection in Food Store
════════════════════════
𐀪 Author: Youssefhussein
════════════════════════
ⴵ Time: Sat, 01 Mar 2025 23:14:06 GMT
════════════════════════
⌗ Tags: #android #mobile_pentesting #penetration_testing #sqli #hacking
════════════════════════
𐀪 Author: Youssefhussein
════════════════════════
ⴵ Time: Sat, 01 Mar 2025 23:14:06 GMT
════════════════════════
⌗ Tags: #android #mobile_pentesting #penetration_testing #sqli #hacking
Medium
SQL Injection in Food Store
Introduction
⤷ Title: cloudpeass: Cloud Privilege Escalation Awesome Script Suite
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:00:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec #Cloud Privilege Escalation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:00:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec #Cloud Privilege Escalation
Penetration Testing Tools
cloudpeass: Cloud Privilege Escalation Awesome Script Suite
Once you manage to get some credentials to access Azure, GCP or AWS, use different techniques to get the permissions the principal has and highlight all the potential attacks
⤷ Title: Shelter: ROP-based sleep obfuscation to evade memory scanners
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:50:15 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #evade memory scanners #Shelter #sleep obfuscation technique
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:50:15 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #evade memory scanners #Shelter #sleep obfuscation technique
Penetration Testing Tools
Shelter: ROP-based sleep obfuscation to evade memory scanners
Shelter is a weaponized sleep obfuscation technique that allows you to fully encrypt your in-memory payload making extensive use of ROP
⤷ Title: PortEx: Java library for static malware analysis of Portable Executable files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:40:56 +0000
════════════════════════
⌗ Tags: #Malware Defense #Java malware analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:40:56 +0000
════════════════════════
⌗ Tags: #Malware Defense #Java malware analysis
Penetration Testing Tools
PortEx v4.0.7 releases: Java library for static malware analysis of Portable Executable files
PortEx is a Java library for static malware analysis of Portable Executable files. Its focus is on PE malformation robustness, and anomaly detection.
⤷ Title: CVE-2025-30091: Critical RCE Flaw Found in MoxieManager
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:05:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30091 #MoxieManager #Remote Code Execution
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:05:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30091 #MoxieManager #Remote Code Execution
Daily CyberSecurity
CVE-2025-30091: Critical RCE Flaw Found in MoxieManager
Discover the critical CVE-2025-30091 vulnerability in MoxieManager. Learn how it can allow remote code execution attacks.
⤷ Title: VMware Tools for Windows Hit by CVE-2025-22230 Auth Bypass Flaw
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:00:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #Broadcom #CVE_2025_22230 #VMware Tools #VMware Tools for Windows #windows
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:00:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #Broadcom #CVE_2025_22230 #VMware Tools #VMware Tools for Windows #windows
Daily CyberSecurity
VMware Tools for Windows Hit by CVE-2025-22230 Auth Bypass Flaw
Understand CVE-2025-22230: a serious authentication bypass in VMware Tools for Windows that needs immediate attention.
⤷ Title: Unmasking Kimsuky’s Latest Tactics: A Deep Dive into Malicious Scripts and Payloads
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:45:10 +0000
════════════════════════
⌗ Tags: #Cyber Security #Black Banshee #Kimsuky
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:45:10 +0000
════════════════════════
⌗ Tags: #Cyber Security #Black Banshee #Kimsuky
Daily CyberSecurity
Unmasking Kimsuky's Latest Tactics: A Deep Dive into Malicious Scripts and Payloads
Explore the tactics of the North Korean APT group Kimsuky, also known as Black Banshee. Discover their latest attack strategies.
⤷ Title: Beware Brand Deals: “Clickflix” Malware Targets YouTube
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:40:34 +0000
════════════════════════
⌗ Tags: #Malware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:40:34 +0000
════════════════════════
⌗ Tags: #Malware
Daily CyberSecurity
Beware Brand Deals: "Clickflix" Malware Targets YouTube
A new report from CloudSEK highlights a sophisticated malware campaign targeting YouTube content creators through spearphishing tactics. The attackers are leveraging trusted brand names and offers of professional collaborations to deliver malicious payloads…
⤷ Title: SectopRAT: A Deep Dive into a Stealthy .NET-Based Trojan
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:30:03 +0000
════════════════════════
⌗ Tags: #Malware #javascript #SecTopRAT #SectopRAT malware
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:30:03 +0000
════════════════════════
⌗ Tags: #Malware #javascript #SecTopRAT #SectopRAT malware
Daily CyberSecurity
SectopRAT: A Deep Dive into a Stealthy .NET-Based Trojan
Explore the dangers of SectopRAT malware, a sophisticated Remote Access Trojan known for its stealthy data exfiltration techniques.
⤷ Title: NetApp SnapCenter Users at Risk: CVSS 9.9 Privilege Escalation Alert
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:25:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26512 #NetApp #SnapCenter #SnapCenter Software
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:25:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26512 #NetApp #SnapCenter #SnapCenter Software
Daily CyberSecurity
NetApp SnapCenter Users at Risk: CVSS 9.9 Privilege Escalation Alert
Learn about CVE-2025-26512, a serious vulnerability in NetApp SnapCenter that poses risks to user systems and data.
⤷ Title: New Android Malware Campaign Uses .NET MAUI to Evade Detection
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:20:59 +0000
════════════════════════
⌗ Tags: #Malware #.NET MAUI #Android Malware #Android Malware Campaign #Fake Bank App #Fake SNS App #Flutter #React Native
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:20:59 +0000
════════════════════════
⌗ Tags: #Malware #.NET MAUI #Android Malware #Android Malware Campaign #Fake Bank App #Fake SNS App #Flutter #React Native
Cybersecurity News
New Android Malware Campaign Uses .NET MAUI to Evade Detection
Explore the rise of the Android malware campaign leveraging the .NET MAUI framework to evade security measures effectively.
⤷ Title: Apache VCL Hit by SQL Injection (CVE-2024-53678) and XSS (CVE-2024-53679) Vulnerabilities
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:15:19 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache VCL #CVE_2024_53678 #CVE_2024_53679 #sql injection #XSS
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:15:19 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache VCL #CVE_2024_53678 #CVE_2024_53679 #sql injection #XSS
Daily CyberSecurity
Apache VCL Hit by SQL Injection (CVE-2024-53678) and XSS (CVE-2024-53679) Vulnerabilities
Recent advisories have revealed two significant vulnerabilities: an SQLi flaw (CVE-2024-53678) and a cross-site scripting (CVE-2024-53679) vulnerability
⤷ Title: Cybercriminals Target Gamers with Browser-in-the-Browser Phishing Attacks
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:10:37 +0000
════════════════════════
⌗ Tags: #Cyber Security #BitB attack #Browser In The Browser #Browser_in_the_Browser Phishing #Counter_Strike 2
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:10:37 +0000
════════════════════════
⌗ Tags: #Cyber Security #BitB attack #Browser In The Browser #Browser_in_the_Browser Phishing #Counter_Strike 2
Daily CyberSecurity
Cybercriminals Target Gamers with Browser-in-the-Browser Phishing Attacks
Learn about Browser-in-the-Browser phishing tactics targeting online gamers. Stay safe from fake pop-up attacks.
⤷ Title: From Blind XSS to Full Server Takeover
════════════════════════
𐀪 Author: Nuy
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:09:44 GMT
════════════════════════
⌗ Tags: #penetration_testing #rce #bug_bounty_writeup #bug_bounty #web_vulnerabilities
════════════════════════
𐀪 Author: Nuy
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:09:44 GMT
════════════════════════
⌗ Tags: #penetration_testing #rce #bug_bounty_writeup #bug_bounty #web_vulnerabilities
Medium
From Blind XSS to Full Server Takeover
السَّلامُ عَلَيْكُم ورَحْمَةُ اللهِ وَبَرَكاتُه
⤷ Title: HTB — Legacy (OSCP Prep)
════════════════════════
𐀪 Author: serkanbenol
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:01:10 GMT
════════════════════════
⌗ Tags: #hacking #oscp #hackthebox #cybersecurity #oscp_preparation
════════════════════════
𐀪 Author: serkanbenol
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 00:01:10 GMT
════════════════════════
⌗ Tags: #hacking #oscp #hackthebox #cybersecurity #oscp_preparation
Medium
HTB — Legacy (OSCP Prep)
“Authority, without any condition and reservation, belongs to the nation.”
― Mustafa Kemal Atatürk
― Mustafa Kemal Atatürk
⤷ Title: XSS zaifligi
════════════════════════
𐀪 Author: Bucky Byte
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:36:14 GMT
════════════════════════
⌗ Tags: #xss_attack #vulnerability #cybersecurity #xss_vulnerability
════════════════════════
𐀪 Author: Bucky Byte
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:36:14 GMT
════════════════════════
⌗ Tags: #xss_attack #vulnerability #cybersecurity #xss_vulnerability
Medium
XSS zaifligi
Bismillah
⤷ Title: Set Up a Domain Controller with Active Directory and DNS, and Domain Join Windows 11 Virtual…
════════════════════════
𐀪 Author: Ivan Marshutka
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:28:40 GMT
════════════════════════
⌗ Tags: #virtualization #information_technology #cybersecurity #microsoft #homelab
════════════════════════
𐀪 Author: Ivan Marshutka
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:28:40 GMT
════════════════════════
⌗ Tags: #virtualization #information_technology #cybersecurity #microsoft #homelab
Medium
Set Up a Domain Controller with Active Directory and DNS, and Domain Join Windows 11 Virtual…
The Active Directory environment is the backbone of enterprise IT infrastructure. Setting it up in a home lab is essential for developing…
⤷ Title: Next.js : CVE-2025–29927 : TryHackMe Walkthrough, Web Exploitation
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:12:16 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #tryhackme #penetration_testing #tryhackme_walkthrough
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:12:16 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #tryhackme #penetration_testing #tryhackme_walkthrough
Medium
Next.js : CVE-2025–29927 : TryHackMe Walkthrough, Web Exploitation
Explore Security Misconfiguration, API8:2023 learning about an authorisation bypass vulnerability in Next.js.
⤷ Title: Quantum Leap: China Establishes Ultra-Secure Communication Link with South Africa
════════════════════════
𐀪 Author: Kamal Acharya
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:10:30 GMT
════════════════════════
⌗ Tags: #quantum_communication #cybersecurity #quantum_computing #qkd #technology
════════════════════════
𐀪 Author: Kamal Acharya
════════════════════════
ⴵ Time: Wed, 26 Mar 2025 01:10:30 GMT
════════════════════════
⌗ Tags: #quantum_communication #cybersecurity #quantum_computing #qkd #technology
Medium
Quantum Leap: China Establishes Ultra-Secure Communication Link with South Africa
In a landmark development that could reshape the future of global communications, China has extended quantum-secure communication into the…