آسیبپذیری ۱۰ هزار دلاری کشف شده در Shopfy به واسط Server Side Template Injection
https://mahmoudsec.blogspot.com/2019/04/handlebars-template-injection-and-rce.html
https://mahmoudsec.blogspot.com/2019/04/handlebars-template-injection-and-rce.html
Blogspot
Handlebars template injection and RCE in a Shopify app
TL;DR We found a zero-day within a JavaScript template library called handlebars and used it to get Remote Code Execution in the Sh...
بخش brute force بهروز رسانی شد. اگه مطلبی دارید خوشحال میشم کامیت کنید.
https://github.com/Voorivex/pentest-guide
https://github.com/Voorivex/pentest-guide
GitHub
GitHub - Voorivex/pentest-guide: Penetration tests guide based on OWASP including test cases, resources and examples.
Penetration tests guide based on OWASP including test cases, resources and examples. - Voorivex/pentest-guide
بایپس جالب آسیبپذیری در gitlab که ۱۲ هزار دلار بانتی گرفت. کلا داستان path normalization خیلی ترند شده یکی دو سال.
https://hackerone.com/reports/409395
https://hackerone.com/reports/409395
HackerOne
GitLab disclosed on HackerOne: Bypass of GitLab CI runner slash fix...
Hi Gitlab Security,
I notice the bug #301432 that Jobert reported earlier is could be bypassed by setting variable in environment.
The reason is that the fix in place preventing url normalization...
I notice the bug #301432 that Jobert reported earlier is could be bypassed by setting variable in environment.
The reason is that the fix in place preventing url normalization...
بخش XXE و RCE آپدیت شد. سال بانتی اضافه شد، رپوزتهای جدید اضافه شد، اگه گزارشی دیدی جدید میتونید Pull Request بدین.
https://github.com/Voorivex/pentest-guide/tree/master/XML-External-Entity
https://github.com/Voorivex/pentest-guide/tree/master/XML-External-Entity
پست فنی ارائه من توی کنفرانس آفسک راجع به آسیبپذیری کشف شده در علیبابا + فیلم
https://medium.com/@y.shahinzadeh/chaining-multiple-vulnerabilities-waf-bypass-to-account-takeover-in-almost-all-alibabas-websites-f8643eaa2855
https://medium.com/@y.shahinzadeh/chaining-multiple-vulnerabilities-waf-bypass-to-account-takeover-in-almost-all-alibabas-websites-f8643eaa2855
آسیب پذیری کشف شده در
Smartermail
و توضیحات فنی اون
https://www.nccgroup.trust/uk/our-research/technical-advisory-multiple-vulnerabilities-in-smartermail/
@digmemore
Smartermail
و توضیحات فنی اون
https://www.nccgroup.trust/uk/our-research/technical-advisory-multiple-vulnerabilities-in-smartermail/
@digmemore
بررسی دور زدن مکانیزم احزار هویت GWT و توضیحات فنی این آسیب پذیری کشف شده در گوگل گروپ.
https://www.komodosec.com/post/google-groups-authorization-bypass
@digmemore
https://www.komodosec.com/post/google-groups-authorization-bypass
@digmemore
KomodoSec
Discovering Google Groups Auth-Bypass: My Security Research Journey
Tl;dr: I’ve recently been playing around with Google services, poking here and there for security vulnerabilities. It’s been a quite a roller-coaster experience with some interesting results as well as some devastating rejections (I should definitely write…
عذرخواهی مدیرعامل تپسی از هک اخیر این شرکت، اما تا زمانی که برنامه بانتی نداشته باشن، امنیتشون پایین خواهد بود.
https://twitter.com/MMonshipour/status/1119214130794254343
https://twitter.com/MMonshipour/status/1119214130794254343
Cross-Site Request Forgery Cheat Sheet - TrustFoundry
https://trustfoundry.net/cross-site-request-forgery-cheat-sheet/
@digmemore
https://trustfoundry.net/cross-site-request-forgery-cheat-sheet/
@digmemore
TrustFoundry
Cross-Site Request Forgery Cheat Sheet - TrustFoundry
Cross-Site Request Forgery Cheat Sheet The Cross-Site Request Forgery (CSRF) Cheat Sheet is a flowchart...
GitLab 11.4.7 Remote Code Execution
https://liveoverflow.com/gitlab-11-4-7-remote-code-execution-real-world-ctf-2018
@digmemore
https://liveoverflow.com/gitlab-11-4-7-remote-code-execution-real-world-ctf-2018
@digmemore
LiveOverflow
GitLab 11.4.7 Remote Code Execution
Video write-up about the Real World CTF challenge "flaglab" that involved exploiting a GitLab 1day. Actually two CVEs were combined to achieve full remote code execution...
یه محقق امنیتی افشا کرده که اکسپلویتهای Shadow Brokers یک سال قبل توسط یک گروه هکری چینی استفاده میشدن. واقعا قدرت هک لذت بخش.
https://twitter.com/TheHackersNews/status/1125683411627139072?s=19
https://twitter.com/TheHackersNews/status/1125683411627139072?s=19
یارو یه باگ پیدا کرده تعداد آبجوهای موجود توی شرکت رو افشا میکرده، ۸۰۰ دلار بانتی گرفت 😂
https://hackerone.com/reports/419883
@digmemore
https://hackerone.com/reports/419883
@digmemore
HackerOne
Shopify disclosed on HackerOne: H1514 [beerify.shopifycloud.com]...
*Note: This report was submitted during our H1-514 live hacking event, which had an expanded scope compared to our public bug bounty program. The app mentioned in this report is not currently in...