Archive

Archive

1481 bookmarks
Custom sorting
How the Twitter App Bypasses Paywalls | Elaine's Idle Mind
How the Twitter App Bypasses Paywalls | Elaine's Idle Mind
by Isoroku Yamamoto Wall Street Journal ended its practice of allowing special access for search engines. This means that a human visitor can no longer bypass the paywall by spoofing Google’s HTTP …
·elaineou.com·
How the Twitter App Bypasses Paywalls | Elaine's Idle Mind
Analyzing CVE-2017-0190: WMF Flaws Can Lead to Data Theft, Code Execution |
Analyzing CVE-2017-0190: WMF Flaws Can Lead to Data Theft, Code Execution |
CVE-2017-0190 is a recently patched vulnerability related to Windows metafiles (WMFs), a portable image format mainly used by 16-bit Windows applications. Recently we have seen an increase in the number of vulnerabilities related to WMFs and EMFs (enhanced metafiles) in the GDI32 library. Most often, these
·securingtomorrow.mcafee.com·
Analyzing CVE-2017-0190: WMF Flaws Can Lead to Data Theft, Code Execution |
How we invented the Tesla DOM DOOM XSS
How we invented the Tesla DOM DOOM XSS
Many have seen the video where vexal modifies his Porsche 911 to run DOOM. It is the same guy who used a toaster to control a PC game a few years ago. How technically accurate these videos are can be discussed, but the underlying creativity is hard to question. Naturally, when we saw the video, we did not want to lag behind, but what is the best way to respond to something like this? Inventing the DOM DOOM XSS, of course!
·labs.detectify.com·
How we invented the Tesla DOM DOOM XSS
Проникновение через субтитры. Полный разбор нашумевших атак на PopcornTime,
Проникновение через субтитры. Полный разбор нашумевших атак на PopcornTime,
В мае этого года исследователи Check Point Software Technologies обнаружили совершенно новый вектор атак — атаки через субтитры. Злоумышленники могут использовать файлы субтитров для получения контроля над компьютерами пользователей, при этом избегая обнаружения. В этой статье мы расскажем, как это у них получилось (обязательно запасись кофе – статья вышла большая :) – прим. ред.)
·xakep.ru·
Проникновение через субтитры. Полный разбор нашумевших атак на PopcornTime,
Modern Alchemy: Turning XSS into RCE · Doyensec's Blog
Modern Alchemy: Turning XSS into RCE · Doyensec's Blog
Doyensec's Blog :: Doyensec is an independent security research and development company focused on vulnerability discovery and remediation.
·blog.doyensec.com·
Modern Alchemy: Turning XSS into RCE · Doyensec's Blog
Автоматизация рыбной ловли для World of Warcraft / Хабрахабр
Автоматизация рыбной ловли для World of Warcraft / Хабрахабр
Познакомился с World of Warcraft очень давно и люблю его весь, но одна вещь больше всего не давала мне покоя — рыбная ловля. Это нудное повторяющееся действие,...
·habrahabr.ru·
Автоматизация рыбной ловли для World of Warcraft / Хабрахабр
CVE to PoC - CVE-2017-0059
CVE to PoC - CVE-2017-0059
CVE-2017-0059 Internet Explorer “There is an use-after-free bug in IE which can lead to info leak / memory disclosure. The bug was confirmed on Internet Explorer version 11.0.9600.18537 (update version 11.0.38). [...] The root cause of a bug is actually a use-after-free on the textarea text value,
·redr2e.com·
CVE to PoC - CVE-2017-0059
CVE to Exploit - CVE-2017-[0037 and 0059]
CVE to Exploit - CVE-2017-[0037 and 0059]
CVE-2017-[0037 and 0059] Internet Explorer 11 Following the last 2 blog posts for both CVE-2017-0037 and CVE-2017-0059 here's a full working exploit for IE11 <= 11.0.37 for Windows 7 (32 and 64 bit). I tested it only on two (not too) different machines so please if you
·redr2e.com·
CVE to Exploit - CVE-2017-[0037 and 0059]
Sniffly2
Sniffly2
·diracdeltas.github.io·
Sniffly2
A Forgotten HTTP Invisibility Cloak
A Forgotten HTTP Invisibility Cloak
This presentation illustrates a number of techniques to smuggle and reshape HTTP requests using features such as HTTP Pipelining that are not normally used by …
·slideshare.net·
A Forgotten HTTP Invisibility Cloak
Mousejacking | To Shell And Back: Adventures In Pentesting
Mousejacking | To Shell And Back: Adventures In Pentesting
On internal engagements, poisoning name resolution requests on the local network (à la Responder) is one of the tried and true methods of obtaining that coveted set of initial Domain credentials.  While this approach has worked on many clients, what if Link Local Multicast Name Resolution (LLMNR) and NetBIOS Name Service (NTB-NS) protocols are configured securely or disabled?  Or, what if Responder was so successful that you now want to prove other means of gaining that initial foothold? There are a multitude of attacks a penetration tester can leverage when conducting physical walkthrough...
·toshellandback.com·
Mousejacking | To Shell And Back: Adventures In Pentesting
Как работает Android, часть 1
Как работает Android, часть 1
В этой серии статей я расскажу о внутреннем устройстве Android  —  о процессе загрузки, о содержимом файловой системы, о Binder и Android Runtime, о том, из...
·habrahabr.ru·
Как работает Android, часть 1
Hack Patch!: PWA - Progressive Web Attack
Hack Patch!: PWA - Progressive Web Attack
Today, I'm going to blog about PWA (Progressive Web Apps)🙂 These days, web is getting bit secure by the help of CSP, which turns XSS i...
·shhnjk.blogspot.ru·
Hack Patch!: PWA - Progressive Web Attack
Guest Blog: Don’t Leave your Grid Wide Open
Guest Blog: Don’t Leave your Grid Wide Open
Our guest blogger and Detectify Crowdsource hacker Peter Jaric explains how Selenium Grid could be exploited to read files on the server.
·labs.detectify.com·
Guest Blog: Don’t Leave your Grid Wide Open