πNew WriteupβοΈ
βββββββββββββββ
πDate: Tue, 10 Oct 2023 07:38:35 GMT
βββββββββββββββ
βοΈTitle: Simple Mail Transfer Protocol
βββββββββββββββ
πLink: https://medium.com/p/5ae7e6089c3e
βββββββββββββββ
Tags: #cybersecurity #smtp
βββββββββββββββ
πDate: Tue, 10 Oct 2023 07:38:35 GMT
βββββββββββββββ
βοΈTitle: Simple Mail Transfer Protocol
βββββββββββββββ
πLink: https://medium.com/p/5ae7e6089c3e
βββββββββββββββ
Tags: #cybersecurity #smtp
Medium
Simple Mail Transfer Protocol
Simple Mail Transfer Protocol(SMTP), bir IP aΔΔ±nda e-posta gΓΆndermek iΓ§in kullanΔ±lan bir protokoldΓΌr. Δ°ki SMTP sunucusu arasΔ±nda ya daβ¦
β€· Title: PII Exposure: The Data Heist You Never Knew Was Possible!
ββββββββββββββββββββββββ
πͺ Author: th3.d1p4k
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 05 Feb 2025 06:09:14 GMT
ββββββββββββββββββββββββ
β Tags: #misconfiguration #hacking #bug_bounty #smtp #api
ββββββββββββββββββββββββ
πͺ Author: th3.d1p4k
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 05 Feb 2025 06:09:14 GMT
ββββββββββββββββββββββββ
β Tags: #misconfiguration #hacking #bug_bounty #smtp #api
Medium
PII Exposure: The Data Heist You Never Knew Was Possible!
Hey there, fellow security enthusiasts! Today, weβre going to talk about something that might blow your mind. How an SMTP conversation canβ¦
β€· Title: Networking Core Protocols
ββββββββββββββββββββββββ
πͺ Author: Demegorash
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 10 Feb 2025 00:15:48 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #cybersecurity #whois #ftp
ββββββββββββββββββββββββ
πͺ Author: Demegorash
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 10 Feb 2025 00:15:48 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #cybersecurity #whois #ftp
Medium
Networking Core Protocols
Learn about the core TCP/IP protocols.
β€· Title: Starting My CodePath Cybersecurity Journey: Hands-On Learning with Real-World Security Challenges
ββββββββββββββββββββββββ
πͺ Author: Mateo Flores
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 24 Feb 2025 02:10:37 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #wireshark #smtp #ethical_hacking #pcap_analysis
ββββββββββββββββββββββββ
πͺ Author: Mateo Flores
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 24 Feb 2025 02:10:37 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #wireshark #smtp #ethical_hacking #pcap_analysis
Medium
Starting My CodePath Cybersecurity Journey: Hands-On Learning with Real-World Security Challenges
February 2025 | By Mateo Flores
β€· Title: Dorking My Way In: How I Uncovered Mail Server Flaws
ββββββββββββββββββββββββ
πͺ Author: Ganesh Balaji V
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 07 Mar 2025 23:57:11 GMT
ββββββββββββββββββββββββ
β Tags: #email #cybersecurity #smtp #openrelay #ethical_hacking
ββββββββββββββββββββββββ
πͺ Author: Ganesh Balaji V
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 07 Mar 2025 23:57:11 GMT
ββββββββββββββββββββββββ
β Tags: #email #cybersecurity #smtp #openrelay #ethical_hacking
Medium
Dorking My Way In: How I Uncovered Mail Server Flaws π‘
During my recent research on Google dorking and email protocols, I stumbled upon an intriguing question: Is it possible to combine theβ¦
β€· Title: οΈββοΈ How I Got Access to a UK Government Organizationβs SMTP Server?
ββββββββββββββββββββββββ
πͺ Author: B4LOGI
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 30 Mar 2025 17:40:24 GMT
ββββββββββββββββββββββββ
β Tags: #infosec #unauthorized #smtp_server #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: B4LOGI
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 30 Mar 2025 17:40:24 GMT
ββββββββββββββββββββββββ
β Tags: #infosec #unauthorized #smtp_server #cybersecurity
Medium
π΅οΈββοΈ How I Got Access to a UK Government Organizationβs SMTP Server? π§π¨
While researching Google Dorking over my favorite cup of coffee β, I stumbled upon something unexpectedβββan exposed mail server belongingβ¦
β€· Title: How I Found an SMTP Injection Bug & Earned $800 in Just 30 Minutes!
ββββββββββββββββββββββββ
πͺ Author: TheIndianNetwork
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 02 Apr 2025 06:42:02 GMT
ββββββββββββββββββββββββ
β Tags: #smtp_injection #bug_bounty #email_spoofing #bug_bounty_tips #smtp
ββββββββββββββββββββββββ
πͺ Author: TheIndianNetwork
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 02 Apr 2025 06:42:02 GMT
ββββββββββββββββββββββββ
β Tags: #smtp_injection #bug_bounty #email_spoofing #bug_bounty_tips #smtp
Medium
How I Found an SMTP Injection Bug & Earned $800 in Just 30 Minutes!
Bug bounty hunting is full of surprises, and sometimes, the easiest vulnerabilities can pay the most. This is the story of how I stumbledβ¦
β€· Title: Malicious Python Packages Exploited Gmail as Covert Command-and-Control Channels
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 02 May 2025 00:20:40 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Command and Control #gmail #malware #PyPI #Python #SMTP tunneling #Socket #supply chain attack
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 02 May 2025 00:20:40 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Command and Control #gmail #malware #PyPI #Python #SMTP tunneling #Socket #supply chain attack
Daily CyberSecurity
Malicious Python Packages Exploited Gmail as Covert Command-and-Control Channels
Socket discovers Python packages abusing Gmail SMTP for covert C2 tunnels, evading firewalls and exfiltrating data through trusted email infrastructure.
β€· Title: HTB Solution: SMTP
ββββββββββββββββββββββββ
πͺ Author: Nabin Saru
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 21 May 2025 01:31:32 GMT
ββββββββββββββββββββββββ
β Tags: #htb #cybersecurity #smtp #htb_academy #solutions
ββββββββββββββββββββββββ
πͺ Author: Nabin Saru
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 21 May 2025 01:31:32 GMT
ββββββββββββββββββββββββ
β Tags: #htb #cybersecurity #smtp #htb_academy #solutions
Medium
HTB Solution: SMTP
Solution for the Footprinting: SMTP module.
β€· Title: Postfish (Proving Grounds)βββOSEP-Focused Write-Up
ββββββββββββββββββββββββ
πͺ Author: Amatheusfeitosam
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 08 Jun 2025 01:29:33 GMT
ββββββββββββββββββββββββ
β Tags: #linux_priv_esc #proving_grounds_practice #penetration_testing #smtp_server #post_exploitation
ββββββββββββββββββββββββ
πͺ Author: Amatheusfeitosam
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 08 Jun 2025 01:29:33 GMT
ββββββββββββββββββββββββ
β Tags: #linux_priv_esc #proving_grounds_practice #penetration_testing #smtp_server #post_exploitation
Medium
Postfish (Proving Grounds) β OSEP-Focused Write-Up
Goal: Document a realistic and practical approach aligned with the OSEP mindset. Focused on post-exploitation, lateral movement, andβ¦
β€· Title: Internal Penetration Test Report
ββββββββββββββββββββββββ
πͺ Author: Amatheusfeitosam
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 09 Jun 2025 14:19:35 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #penetration_testing #cybersecurity #kali #linux_privesc
ββββββββββββββββββββββββ
πͺ Author: Amatheusfeitosam
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 09 Jun 2025 14:19:35 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #penetration_testing #cybersecurity #kali #linux_privesc
Medium
Internal Penetration Test Report
Initial Access & EnumerationβββSMTP Vuln
β€· Title: Opossum Attack: New Vulnerability Compromises Encrypted TLS Connections, Allowing MitM & Data Injection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 10 Jul 2025 00:26:40 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #cybersecurity #Desynchronization #FTP #http #Man in the Middle #mitm #Opossum Attack #Opportunistic TLS #SMTP #tls #Transport Layer Security #Vulnerability
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 10 Jul 2025 00:26:40 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #cybersecurity #Desynchronization #FTP #http #Man in the Middle #mitm #Opossum Attack #Opportunistic TLS #SMTP #tls #Transport Layer Security #Vulnerability
Daily CyberSecurity
Opossum Attack: New Vulnerability Compromises Encrypted TLS Connections, Allowing MitM & Data Injection
The Opossum Attack is a new desynchronization flaw exploiting implicit/opportunistic TLS in protocols like HTTP, allowing MitM to compromise encrypted connections. Over 3M servers affected.
β€· Title: Opossum Attack: New TLS Flaw Injects Malicious Data Into Encrypted Sessions
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 11 Jul 2025 03:23:25 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #cybersecurity #Encryption #ftp #HTTP #man_in_the_middle #Opossum #POP3 #security flaw #SMTP #TLS #vulnerability
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 11 Jul 2025 03:23:25 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #cybersecurity #Encryption #ftp #HTTP #man_in_the_middle #Opossum #POP3 #security flaw #SMTP #TLS #vulnerability
Penetration Testing Tools
Opossum Attack: New TLS Flaw Injects Malicious Data Into Encrypted Sessions
A new TLS vulnerability, "Opossum," allows attackers to inject malicious messages into encrypted sessions by desynchronizing client and server views.
β€· Title: Urgent Sophos Firewall Update: Two Critical RCE Flaws (CVE-2025-6704, CVE-2025-7624) Patched via Hotfixes
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 22 Jul 2025 02:07:48 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2025_6704 #CVE_2025_7624 #cybersecurity #HA Mode #Hotfix #rce #Remote Code Execution #SMTP Proxy #Sophos Firewall #SPX #Vulnerability
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 22 Jul 2025 02:07:48 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2025_6704 #CVE_2025_7624 #cybersecurity #HA Mode #Hotfix #rce #Remote Code Execution #SMTP Proxy #Sophos Firewall #SPX #Vulnerability
Daily CyberSecurity
Urgent Sophos Firewall Update: Two Critical RCE Flaws (CVE-2025-6704, CVE-2025-7624) Patched via Hotfixes
Sophos patched five flaws in Sophos Firewall, including two critical RCEs (CVE-2025-6704, CVE-2025-7624) allowing remote attackers to take control under specific conditions.
β€· Title: βοΈSMTP Enumeration: The Ethical Hackerβs Guide to Uncovering Email Vulnerabilities
ββββββββββββββββββββββββ
πͺ Author: Rajkumar Kumawat
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 02 Aug 2025 15:21:40 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #penetration_testing #red_team #ethical_hacking #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: Rajkumar Kumawat
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 02 Aug 2025 15:21:40 GMT
ββββββββββββββββββββββββ
β Tags: #smtp #penetration_testing #red_team #ethical_hacking #cybersecurity
Medium
βοΈSMTP Enumeration: The Ethical Hackerβs Guide to Uncovering Email Vulnerabilities
By Rajkumar Kumawat π GitHub: Rjkumarkumawat
β€· Title: Broadcom Fixes Multiple VMware vCenter and NSX Vulnerabilities
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 30 Sep 2025 02:04:18 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Broadcom #CVE_2025_41250 #cybersecurity #NSX #security update #SMTP Header Injection #Username Enumeration #vCenter #vmware
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 30 Sep 2025 02:04:18 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Broadcom #CVE_2025_41250 #cybersecurity #NSX #security update #SMTP Header Injection #Username Enumeration #vCenter #vmware
Daily CyberSecurity
Broadcom Fixes Multiple VMware vCenter and NSX Vulnerabilities
Broadcom patches three vulnerabilities in VMware vCenter and NSX. The flaws could lead to SMTP header injection and username enumeration, increasing the risk of unauthorized access.
β€· Title: Room 109-SMTP: The Hidden Recon Goldmine Every Hacker Uses
ββββββββββββββββββββββββ
πͺ Author: blackXmask
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 19 Nov 2025 19:30:29 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #viral #hacking #smtp_server #reconnaissance
ββββββββββββββββββββββββ
πͺ Author: blackXmask
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 19 Nov 2025 19:30:29 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #viral #hacking #smtp_server #reconnaissance
Medium
Room 109-SMTP: The Hidden Recon Goldmine Every Hacker Uses
A beginnerβfriendly guide covering how SMTP works, why itβs still used today, and how attackers leverage VRFY/EXPN, open relays, andβ¦
β€· Title: Phantom v3.5 Alert: New Info-Stealer Disguised as Adobe Update Uses SMTP to Loot Digital Lives
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 19 Dec 2025 00:11:31 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Adobe Installer #Credential Theft #crypto wallet #info_stealer #JavaScript malware #K7 Security Labs #malware #Phantom Stealer #powershell #SMTP Exfiltration
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 19 Dec 2025 00:11:31 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Adobe Installer #Credential Theft #crypto wallet #info_stealer #JavaScript malware #K7 Security Labs #malware #Phantom Stealer #powershell #SMTP Exfiltration
Daily CyberSecurity
Phantom v3.5 Alert: New Info-Stealer Disguised as Adobe Update Uses SMTP to Loot Digital Lives
Phantom v3.5 info-stealer targets passwords and crypto via a fake Adobe installer. It uses SMTP to exfiltrate data directly to attackers.
β€· Title: Eximβs Poisoned Record: How a Failed Patch and SQL Injection Lead to Critical Heap Overflows
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 22 Dec 2025 00:43:21 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2025_67896 #Exim #Heap Buffer Overflow #Mail Transfer Agent #memory corruption #NIST #Ratelimit ACL #SMTP Security #sql injection #SQLite
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 22 Dec 2025 00:43:21 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2025_67896 #Exim #Heap Buffer Overflow #Mail Transfer Agent #memory corruption #NIST #Ratelimit ACL #SMTP Security #sql injection #SQLite
Daily CyberSecurity
Eximβs Poisoned Record: How a Failed Patch and SQL Injection Lead to Critical Heap Overflows
NIST warns of a critical Exim 4.99 flaw. A failed SQLi patch allows attackers to poison SQLite records and trigger a 1.5MB heap buffer overflow.