If you have task web-pentest with cloudflare you can use it for find original IP of target. It's make help you more findings, good luck!
https://github.com/spyboy-productions/CloakQuest3r
https://github.com/spyboy-productions/CloakQuest3r
Forwarded from Хакер — Xakep.RU
Уязвимости eSIM позволяют клонировать карты и шпионить за пользователями
Исследователи AG Security Research обнаружили уязвимости в технологии eSIM, используемой в современных смартфонах. Проблемы затрагивают программный пакет eUICC компании Kigen, который используют миллиарды устройств.
https://xakep.ru/2025/07/14/esim-problems/
Исследователи AG Security Research обнаружили уязвимости в технологии eSIM, используемой в современных смартфонах. Проблемы затрагивают программный пакет eUICC компании Kigen, который используют миллиарды устройств.
https://xakep.ru/2025/07/14/esim-problems/
Forwarded from Cat Seclist
⭕Top Free Blue Team Courses to Boost Your Cybersecurity Skills
The demand for Blue Team professionals — those focused on defense, detection, and response — is growing fast. If you're starting or leveling up in cybersecurity, here are some of the best free resources to get hands-on and stay ahead:
🔹 Blue Team Level 1 – Security Blue Team
Intro to SOC, SIEM, threat detection, Windows/Linux forensics.
🌐 securityblue.team
🔹 CyberDefenders
Gamified labs for SOC, DFIR, SIEM, and threat hunting.
🌐 cyberdefenders.org
🔹 IBM Cybersecurity Analyst – Coursera
Foundations, network defense, SOC tools, and incident response.
🌐 coursera.org
🔹 TryHackMe – Cyber Defence Path
Labs on Blue Team, malware analysis, SIEM, and more.
🌐 tryhackme.com
🔹 DFIR Training
Free forensics and incident response resources.
🌐 dfir.training
🔹 MITRE ATT&CK Defender Training
Learn how to apply MITRE ATT&CK for real-world defense.
🌐 attack.mitre.org
🔹 EDX – Cybersecurity Fundamentals by RIT
Core concepts and defensive strategies.
🌐 edx.org
🎯 Bonus: Google Cybersecurity Certificate (Coursera – free w/ aid)
🌐 coursera.org
The demand for Blue Team professionals — those focused on defense, detection, and response — is growing fast. If you're starting or leveling up in cybersecurity, here are some of the best free resources to get hands-on and stay ahead:
🔹 Blue Team Level 1 – Security Blue Team
Intro to SOC, SIEM, threat detection, Windows/Linux forensics.
🌐 securityblue.team
🔹 CyberDefenders
Gamified labs for SOC, DFIR, SIEM, and threat hunting.
🌐 cyberdefenders.org
🔹 IBM Cybersecurity Analyst – Coursera
Foundations, network defense, SOC tools, and incident response.
🌐 coursera.org
🔹 TryHackMe – Cyber Defence Path
Labs on Blue Team, malware analysis, SIEM, and more.
🌐 tryhackme.com
🔹 DFIR Training
Free forensics and incident response resources.
🌐 dfir.training
🔹 MITRE ATT&CK Defender Training
Learn how to apply MITRE ATT&CK for real-world defense.
🌐 attack.mitre.org
🔹 EDX – Cybersecurity Fundamentals by RIT
Core concepts and defensive strategies.
🌐 edx.org
🎯 Bonus: Google Cybersecurity Certificate (Coursera – free w/ aid)
🌐 coursera.org
🔥1
Forwarded from BugXplorer (j b)
A Novel Technique for SQL Injection in PDO’s Prepared Statements
https://slcyber.io/assetnote-security-research-center/a-novel-technique-for-sql-injection-in-pdos-prepared-statements/
🪳 @bugxplorer
https://slcyber.io/assetnote-security-research-center/a-novel-technique-for-sql-injection-in-pdos-prepared-statements/
Please open Telegram to view this post
VIEW IN TELEGRAM
👍1
Forwarded from Turan Security
CVE lardan keyin NASAni buzdik🔥
Jamoadoshimiz Jamshid Yergashvoyev NASA da bir necha zaifliklar aniqladi. Zaifliklar orqali NASA Operatsion tizimlarida mavjud fayllarni masofadan yuklab olish, HTML inyeksiya va boshqa hujumlar amalga oshirish mumkin. Zaifliklar Bugcrowd platformasi orqali NASA ga topshirilgan va bartaraf etilgan.
TuranSec uchun bu birinchi natija emas, jamoa NASA da 3 marta *HoF (Hall of Fame) ga kirishgan ulgurgan, birinchi marta 2023-yilda.
HoF - tashkilot xavfsizligini ta'minlashga hissa qo'shgan Xakerlar ro'yxati.
@TuranSecurity | www.turansec.uz | [email protected]
Jamoadoshimiz Jamshid Yergashvoyev NASA da bir necha zaifliklar aniqladi. Zaifliklar orqali NASA Operatsion tizimlarida mavjud fayllarni masofadan yuklab olish, HTML inyeksiya va boshqa hujumlar amalga oshirish mumkin. Zaifliklar Bugcrowd platformasi orqali NASA ga topshirilgan va bartaraf etilgan.
TuranSec uchun bu birinchi natija emas, jamoa NASA da 3 marta *HoF (Hall of Fame) ga kirishgan ulgurgan, birinchi marta 2023-yilda.
HoF - tashkilot xavfsizligini ta'minlashga hissa qo'shgan Xakerlar ro'yxati.
@TuranSecurity | www.turansec.uz | [email protected]
🔥3👍1👨💻1