Archive

Archive

1481 bookmarks
Custom sorting
XSS in Gmail's Amp4Email
XSS in Gmail's Amp4Email
Background AMP is most commonly used as a framework to develop fast-loading content on the web. One of AMP's projects, AMP4Email has been adopted in recent years by many of the leading mail services as a way to provide Dynamic Emails (essentially a subset of regular HTML with a few default components to handle things like layouts, templates, forms, and such). When I first heard about this feature a few years ago, my initial reaction (like many of you I’m sure) was “This can’t be secured! How did
·adico.me·
XSS in Gmail's Amp4Email
CVE-2022-30333 | AttackerKB
CVE-2022-30333 | AttackerKB
On May 6, 2022, Rarlab released version 6.17, which addresses CVE-2022-30333, a path traversal vulnerability reported to them by Sonar, who posted a write-up a…
·attackerkb.com·
CVE-2022-30333 | AttackerKB
Phân tích lỗ hổng Zimbra pre auth rce CVE-2022-30333
Phân tích lỗ hổng Zimbra pre auth rce CVE-2022-30333
Tổng quan * Tháng 5/2022, Rarlab công bố lỗ hổng CVE-2022-30333 của phần mềm unrar các phiên bản trước 6.12 hoặc trước 6.1.7 chạy trên hệ điều hành Linux hoặc UNIX. Lỗ hổng trên cho phép attacker có thể ghi file ra các thư mục tùy ý
·dev2sec.tech·
Phân tích lỗ hổng Zimbra pre auth rce CVE-2022-30333
The Best Bug Bounty Recon Methodology - securibee
The Best Bug Bounty Recon Methodology - securibee
A curated list of videos by established bug bounty hunters, showing you their recon methodologies, tools, and automation.
·securib.ee·
The Best Bug Bounty Recon Methodology - securibee
Bypassing Firefox's HTML Sanitizer API
Bypassing Firefox's HTML Sanitizer API
The HTML Sanitizer is a great new API that allows web developers to filter untrusted HTML natively in the browser rather than use a JavaScript library such as DOM Purify. Microsoft created a similar A
·portswigger.net·
Bypassing Firefox's HTML Sanitizer API
От новой партии вредоносных пакетов NPM пострадали сотни приложений и сайтов
От новой партии вредоносных пакетов NPM пострадали сотни приложений и сайтов
Около двух десятков пакетов NPM воровали данные из форм, встроенных в мобильные приложения и сайты, с декабря 2021 года. Эксперты дали этой кампании название IconBurst, так как в основном малварь маскировалась под популярные пакеты ionic.
·xakep.ru·
От новой партии вредоносных пакетов NPM пострадали сотни приложений и сайтов
Banking, money transfer company hacking, and bypassing Sophos firewall (with hards rules) and the IPS/IDS systems
Banking, money transfer company hacking, and bypassing Sophos firewall (with hards rules) and the IPS/IDS systems
Translated version ( Russian version ) is in the comments hello boys, This is my first post in the forum and in the contest, so I wanted to make it something good. Sorry I am writing this article in English but If you have any question or anything unclear don't hesitate to ask me and I will...
·xss.is·
Banking, money transfer company hacking, and bypassing Sophos firewall (with hards rules) and the IPS/IDS systems
[0day] Золотая рыбка... -- GoldFish Exploit x86/x64 (for the Kaspersky Secure Connection)
[0day] Золотая рыбка... -- GoldFish Exploit x86/x64 (for the Kaspersky Secure Connection)
Это логическое продолжение первой части шестой статьи: https://xss.is/threads/67021/ Название статьи для голосования пусть будет взято из этой части, так как CobaltStrike от А до Я уже было использовано в прошлом конкурсе, и повторяться как-то не в рамках приличия... То есть: [0day] Золотая...
·xss.is·
[0day] Золотая рыбка... -- GoldFish Exploit x86/x64 (for the Kaspersky Secure Connection)
BitTorrent ботнет - от дизайна до реализации
BitTorrent ботнет - от дизайна до реализации
Пару слов о ботнетах Все современные ботнет сети страдают одной проблемой - абузами на сервера управления, чем больше ваша сеть тем быстрее блокируют управляющий сервер. Разработчики прибегают к разным хитростям: делают списки серверов, генерацию доменов от фазы луны, fast-flux техники, .bit...
·xss.is·
BitTorrent ботнет - от дизайна до реализации
Interesting Attack Vectors in PHP - Part 1
Interesting Attack Vectors in PHP - Part 1
Hello everyone! I will be posting a series of articles regarding different attack vectors in PHP which can be exploited. Part 1 we will look at different interesting PHP functions. Buckle up, here we go! Before starting, there are a few prerequisites that has to be fulfilled if you want to...
·xss.is·
Interesting Attack Vectors in PHP - Part 1
Can I access Remote Desktop shared drive from command prompt?
Can I access Remote Desktop shared drive from command prompt?
I am using Windows Remote Desktop to connect to a server. I have enabled access to a local drive as per http://support.microsoft.com/kb/313292 but I'm trying to figure out how to access the drive ...
·superuser.com·
Can I access Remote Desktop shared drive from command prompt?
Your cloud? My cloud now | Pen Test Partners
Your cloud? My cloud now | Pen Test Partners
A true story on taking over a client’s Azure tenant via a successful phish. TL;DR A tempting phish got lots of users to disclose their passwords, and a lack of […]
·pentestpartners.com·
Your cloud? My cloud now | Pen Test Partners
Zimbra “zmslapd” Local Root Exploit.
Zimbra “zmslapd” Local Root Exploit.
This exploit was brought to you by “reading the manual”, mostly. It is the second local privilege escalation I found while doing an extremely low effort audit of Zimbra. You should read…
·darrenmartyn.ie·
Zimbra “zmslapd” Local Root Exploit.
Arbitrary File Upload Tricks In Java
Arbitrary File Upload Tricks In Java
0x01 ForewordsRecently I see some discussions about arbitrary file upload in Java environment on Internet. The main takling points are how to bypass file name detection when uploading arbitrary file.
·pyn3rd.github.io·
Arbitrary File Upload Tricks In Java
MSDT DLL Hijack UAC bypass - Sevagas
MSDT DLL Hijack UAC bypass - Sevagas
UAC Bypass via DLL hijacking of Microsoft Support Diagnostic Tool (MSDT). The UAC bypass method described here is based on DLL hijacking which happens when loading the Bluetooth diagnostic package.
·blog.sevagas.com·
MSDT DLL Hijack UAC bypass - Sevagas
Spoofing SaaS Vanity URLs for Social Engineering Attacks
Spoofing SaaS Vanity URLs for Social Engineering Attacks
SaaS vanity URLs can be spoofed and used for phishing campaigns and other attacks. In this article, we’ll showcase two Box link types, two Zoom link types, and two Google Docs link type that we were able to spoof.
·varonis.com·
Spoofing SaaS Vanity URLs for Social Engineering Attacks
Отключаем Windows Defender (+ UAC Bypass, + Повышение до уровня SYSTEM)
Отключаем Windows Defender (+ UAC Bypass, + Повышение до уровня SYSTEM)
Windows Defener... как много боли в этом слове. Вероятнее всего, если вы хоть краем уха были связаны с распространением ВПО -- данный антивирус уже успел доставить вам массу неудобств. Имеющий самую обширную облачную базу в мире АВ не мог остаться без внимания крипторов и малварщиков, в...
·xss.is·
Отключаем Windows Defender (+ UAC Bypass, + Повышение до уровня SYSTEM)