⤷ Title: Pivot and Persist: Ligolo-ng & Sliver Integration Guide
════════════════════════
𐀪 Author: Alan francis
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 00:15:29 GMT
════════════════════════
⌗ Tags: #pivoting #c2 #ethical_hacking #setup
════════════════════════
𐀪 Author: Alan francis
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 00:15:29 GMT
════════════════════════
⌗ Tags: #pivoting #c2 #ethical_hacking #setup
Medium
Pivot and Persist: Ligolo-ng & Sliver Integration Guide
If you’re anything like me and absolutely can’t stand using Chisel, you’re in luck — I’ve put together a quick guide on how to use my…
⤷ Title: Bypassing an Akamai WAF to Achieve Self-XSS via CSRF Chain
════════════════════════
𐀪 Author: Kariiem Gamal
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 01:57:47 GMT
════════════════════════
⌗ Tags: #waf_bypass #akamai #bug_bounty_writeup #csrf
════════════════════════
𐀪 Author: Kariiem Gamal
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 01:57:47 GMT
════════════════════════
⌗ Tags: #waf_bypass #akamai #bug_bounty_writeup #csrf
Medium
Bypassing an Akamai WAF to Achieve Self-XSS via CSRF Chain
Disclaimer: All URLs and service names have been redacted for security reasons, as the vulnerability is still unpatched at the time of…
⤷ Title: Stifle: .NET Post-Exploitation Utility for Abusing Explicit Certificate Mappings in ADCS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:35:08 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET Post_Exploitation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:35:08 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET Post_Exploitation
Penetration Testing Tools
Stifle: .NET Post-Exploitation Utility for Abusing Explicit Certificate Mappings in ADCS
Introducing Stifle, an extremely simple .NET post-exploitation utility that uses a passed certificate to set explicit certificate mapping on a target object
⤷ Title: SRUM Dump: extracts information from the System Resource Utilization Management Database
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 00:09:56 +0000
════════════════════════
⌗ Tags: #Data Forensics #SRUM Dump
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 00:09:56 +0000
════════════════════════
⌗ Tags: #Data Forensics #SRUM Dump
Penetration Testing Tools
SRUM Dump: extracts information from the System Resource Utilization Management Database
SRUM Dump extracts information from the System Resource Utilization Management Database and creates a Excel spreadsheet.
⤷ Title: SonicWall Patches Multi Vulnerabilities in NetExtender VPN Client
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:03:31 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23008 #CVE_2025_23009 #CVE_2025_23010 #NetExtender #Remote Access #security #SonicWall #vpn
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:03:31 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23008 #CVE_2025_23009 #CVE_2025_23010 #NetExtender #Remote Access #security #SonicWall #vpn
Daily CyberSecurity
SonicWall Patches Multi Vulnerabilities in NetExtender VPN Client
SonicWall has patched three vulnerabilities (CVE-2025-23008, CVE-2025-23009, CVE-2025-23010) in its NetExtender VPN client. Update to version 10.3.2 or later to prevent privilege escalation and unauthorized access.
⤷ Title: CISA Warns of Actively Exploited Linux Kernel Vulnerabilities (CVE-2024-53197, CVE-2024-53150)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:16:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #Android security #CISA #CVE_2024_53150 #CVE_2024_53197 #cybersecurity #Exploit #Linux Kernel
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:16:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #Android security #CISA #CVE_2024_53150 #CVE_2024_53197 #cybersecurity #Exploit #Linux Kernel
Daily CyberSecurity
CISA Warns of Actively Exploited Linux Kernel Vulnerabilities (CVE-2024-53197, CVE-2024-53150)
CISA has added Linux kernel vulnerabilities CVE-2024-53197 and CVE-2024-53150 to its KEV catalog, warning of active exploitation. Learn how these flaws are used in Android device exploits and what steps to take.
⤷ Title: “Termux, Ngrok & The Day I Got Access to 100+ Facebook Accounts (And Why I Didn’t Misuse It)”
════════════════════════
𐀪 Author: Naman Raghuwanshi
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:31:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #self_taught_programmers #phishing #hacking
════════════════════════
𐀪 Author: Naman Raghuwanshi
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:31:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #self_taught_programmers #phishing #hacking
Medium
🔥 “Termux, Ngrok & The Day I Got Access to 100+ Facebook Accounts (And Why I Didn’t Misuse It)”
“All I had was a mobile phone, curiosity, and the internet. No mentor. No roadmap. Just a desire to learn.”
⤷ Title: SAL1 (Security Analyst Level 1) — Cert. ใหม่สาย Blue Team จาก THM
════════════════════════
𐀪 Author: Songpon TEERAKANOK
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:39:36 GMT
════════════════════════
⌗ Tags: #sal1 #cybersecurity #stsj_certifications #tryhackme
════════════════════════
𐀪 Author: Songpon TEERAKANOK
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:39:36 GMT
════════════════════════
⌗ Tags: #sal1 #cybersecurity #stsj_certifications #tryhackme
Medium
SAL1 (Security Analyst Level 1) — Cert. ใหม่สาย Blue Team จาก THM
ล่าสุดผมเพิ่งสอบผ่าน Cert. น้องใหม่ Security Analyst Level 1 (SAL1) จากทาง TryHackMe ซึ่งการสอบครั้งนี้ได้รับการสนับสนุน voucher…
⤷ Title: ️ Here I Tried: Advanced Python Libraries for Cybersecurity That Made Me Feel Like a Hacker
════════════════════════
𐀪 Author: Sivaprakash Sivakumar
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:31:23 GMT
════════════════════════
⌗ Tags: #ai #programming #tech #cybersecurity #python
════════════════════════
𐀪 Author: Sivaprakash Sivakumar
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:31:23 GMT
════════════════════════
⌗ Tags: #ai #programming #tech #cybersecurity #python
Medium
🛡️ Here I Tried: Advanced Python Libraries for Cybersecurity That Made Me Feel Like a Hacker
So, here I tried dipping my toes into the deep, dark waters of cybersecurity using Python. Not just the basic stuff — I’m talking about the…
⤷ Title: Understanding Likelihood and Impact in Vendor Risk Management
════════════════════════
𐀪 Author: Jad Elahmad
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:03:03 GMT
════════════════════════
⌗ Tags: #vendor_risk_management #cybersecurity #it_security #grc
════════════════════════
𐀪 Author: Jad Elahmad
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:03:03 GMT
════════════════════════
⌗ Tags: #vendor_risk_management #cybersecurity #it_security #grc
Medium
Understanding Likelihood and Impact in Vendor Risk Management
Vendor Risk Management (VRM) is a critical part of protecting an organization’s data, operations, and reputation in today’s interconnected…
⤷ Title: Breaking Crypto the Simple Way | TryHackMe en Español
════════════════════════
𐀪 Author: Binyamin
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:02:00 GMT
════════════════════════
⌗ Tags: #hashcat #python #cybersecurity #hash #tryhackme_walkthrough
════════════════════════
𐀪 Author: Binyamin
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:02:00 GMT
════════════════════════
⌗ Tags: #hashcat #python #cybersecurity #hash #tryhackme_walkthrough
Medium
Breaking Crypto the Simple Way | TryHackMe en Español
Hoy vamos a realizar un walkthrough en TryHackMe, donde exploraremos los principales enfoques de la criptografía y cómo esta disciplina es…
⤷ Title: A Beginner’s Guide to C2 (Command and Control) Detection
════════════════════════
𐀪 Author: Htut Aung Hlaing
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:42:27 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #command_and_control #defence_and_security
════════════════════════
𐀪 Author: Htut Aung Hlaing
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:42:27 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #command_and_control #defence_and_security
Medium
A Beginner’s Guide to C2 (Command and Control) Detection
Introduction
⤷ Title: Dark Web Monitoring: The Night My Credit Card Partied Without Me
════════════════════════
𐀪 Author: Ahmad Javed
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:38:45 GMT
════════════════════════
⌗ Tags: #cybersecurity_training #cybersecurity #darkweb #password_shame #cyber_security_awareness
════════════════════════
𐀪 Author: Ahmad Javed
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:38:45 GMT
════════════════════════
⌗ Tags: #cybersecurity_training #cybersecurity #darkweb #password_shame #cyber_security_awareness
Medium
Dark Web Monitoring: The Night My Credit Card Partied Without Me
How a $3,000 Charge for a Vegas Stripper (I’ve Never Met) Taught Me to Spy on My Own Data
⤷ Title: Blind SQL Injection — Easy Stuff
════════════════════════
𐀪 Author: Saswath Vel
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:15:37 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #cybersecurity #sql_injection #vapt #webapplicationpentest
════════════════════════
𐀪 Author: Saswath Vel
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:15:37 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #cybersecurity #sql_injection #vapt #webapplicationpentest
Medium
Blind SQL Injection — Easy Stuff
Hey There, Blind SQL injection occurs when an application is vulnerable to SQL injection💉, but it doesn’t show the database error or…
⤷ Title: What Is NIST 800–53? (A Beginner-Friendly Guide for 2025)
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:15:27 GMT
════════════════════════
⌗ Tags: #information_security #nist #cybercrime #cybersecurity #cyber_security_awareness
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 02:15:27 GMT
════════════════════════
⌗ Tags: #information_security #nist #cybercrime #cybersecurity #cyber_security_awareness
Medium
What Is NIST 800–53? (A Beginner-Friendly Guide for 2025)
Ever wondered how big names like Microsoft, Amazon, or the U.S. government keep their systems secure? One key framework they often use is…
⤷ Title: Writeup HTB “Suspicious Threat”
════════════════════════
𐀪 Author: Arifkaguai
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:36:33 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #ctf_writeup #forensik #htb_writeup #suspicious_threat
════════════════════════
𐀪 Author: Arifkaguai
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:36:33 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #ctf_writeup #forensik #htb_writeup #suspicious_threat
Medium
Writeup HTB “Suspicious Threat”
okay teman-teman semua disini saya mau memberikan writeup seputar tantantang forensik kali ini saya mencoba tantangan di HackTheBox kali…
⤷ Title: Cryptography great cheat-sheet for CTF’s
════════════════════════
𐀪 Author: Rishav anand
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 05:10:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #crypto #cybersecurity #ctf #hacking
════════════════════════
𐀪 Author: Rishav anand
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 05:10:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #crypto #cybersecurity #ctf #hacking
Medium
Cryptography great cheat-sheet for CTF’s
What Even Is a Crypto CTF Challenge?
⤷ Title: Stop XSS in React Before Hackers Win
════════════════════════
𐀪 Author: Rendiero
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:56:20 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty #hacking #react #xss_attack
════════════════════════
𐀪 Author: Rendiero
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:56:20 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty #hacking #react #xss_attack
Medium
Stop XSS in React Before Hackers Win
Learn how to write React code that protects against XSS attacks
⤷ Title: Critical XXE Vulnerability Found in an Indian Government Website
════════════════════════
𐀪 Author: Hack-Bat
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:56:07 GMT
════════════════════════
⌗ Tags: #pentesting #red_team #bug_bounty #cybersecurity #hacking
════════════════════════
𐀪 Author: Hack-Bat
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:56:07 GMT
════════════════════════
⌗ Tags: #pentesting #red_team #bug_bounty #cybersecurity #hacking
Medium
Critical XXE Vulnerability Found in an Indian Government Website
During a routine security assessment, I discovered a critical XML External Entity (XXE) Injection vulnerability in an Indian government…
⤷ Title: SQL injection attack, listing the database contents on non-Oracle databases — Portswigg
════════════════════════
𐀪 Author: RayofHope
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:31:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #web_penetration_testing #cyber_security_training #ethical_hacking
════════════════════════
𐀪 Author: RayofHope
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 04:31:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #web_penetration_testing #cyber_security_training #ethical_hacking
Medium
SQL injection attack, listing the database contents on non-Oracle databases — Portswigg
Hi, my fellow hackers. This is Rayofhope. I have over 5 years of experience and am currently working as a consultant with a Big 4 firm.
⤷ Title: CloudFlare Rate Limit Bypass — OTP Bruteforce using probabilistics leads to ATO
════════════════════════
𐀪 Author: ph4nt0mbyt3
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:58:42 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #information_security #pentest #bug_bounty
════════════════════════
𐀪 Author: ph4nt0mbyt3
════════════════════════
ⴵ Time: Thu, 10 Apr 2025 03:58:42 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #information_security #pentest #bug_bounty
Medium
CloudFlare Rate Limit Bypass — OTP Bruteforce using probabilistics leads to ATO
The interesting functionallity is a OTP code as unique factor of authentication on