Archive

Archive

1481 bookmarks
Custom sorting
An Introduction to Printer Exploitation #1 - Exploit Development / Tutorial
An Introduction to Printer Exploitation #1 - Exploit Development / Tutorial
> Preface Note: As always the following is just a digest of all the things I could observe by working on printers myself or facts from stuff I read about recently. Since this thread about the HP printer promo videos caught some attention I will try to shed some light onto the field which was displayed there. First of all we should keep in mind this was a promo video made by a company. So always ask yourself this: “How real are the displayed scenarios, or are these just ‘Hollywood fabrications...
·0x00sec.org·
An Introduction to Printer Exploitation #1 - Exploit Development / Tutorial
PortSwigger Web Security Blog: RCE in JXBrowser JavaScript/Java bridge
PortSwigger Web Security Blog: RCE in JXBrowser JavaScript/Java bridge
I recently found myself prototyping an experimental scanning technique using JXBrowser, a library for using a PhantomJS-like browser in Java applications. Whilst creating a JavaScript to Java bridge
·blog.portswigger.net·
PortSwigger Web Security Blog: RCE in JXBrowser JavaScript/Java bridge
TempestSDR: An SDR tool for Eavesdropping on Computer Screens via Unintenti
TempestSDR: An SDR tool for Eavesdropping on Computer Screens via Unintenti
Thanks to RTL-SDR.com reader 'flatflyfish' for submitting information on how to get Martin Marinov's TempestSDR up and running on a Windows system. If you didn't already know by definition "TEMPEST" refers to techniques used by some spy agencies to eavesdrop on electronic equipment via their unintentional radio emissions (as well as via sounds and vibrations). All electronics emit …
·rtl-sdr.com·
TempestSDR: An SDR tool for Eavesdropping on Computer Screens via Unintenti
A penetration tester’s guide to sub-domain enumeration
A penetration tester’s guide to sub-domain enumeration
As a penetration tester or a bug bounty hunter, most of the times you are given a single domain or a set of domains when you start a…
·blog.appsecco.com·
A penetration tester’s guide to sub-domain enumeration
XXE - Things Are Getting Out of Band
XXE - Things Are Getting Out of Band
XXE Out of Band testing, explaining how to execute XXE OOB attacks over HTTP & FTP. Additional explanation on XXE RCE.
·blog.zsec.uk·
XXE - Things Are Getting Out of Band
www.slideshare.net
www.slideshare.net
During the session we will go through different methods of exploiting file upload pages in order to trigger Remote Code Execution, SQL Injection, Directory Tra…
·slideshare.net·
www.slideshare.net
Leveraging web application vulnerabilities to steal NTLM hashes
Leveraging web application vulnerabilities to steal NTLM hashes
Introduction NTLM authentication is the de-facto standard in corporate networks running Windows. There are a plethora of well-understood local attacks that take advantage of the way Windows perform automatic NTLM authentication, and abusing this feature is undoubtedly on the playbook of every penetration tester and red teamer. Here at Blaze
·blog.blazeinfosec.com·
Leveraging web application vulnerabilities to steal NTLM hashes
Yahoo! RCE via Spring Engine SSTI
Yahoo! RCE via Spring Engine SSTI
This is write up in which I’ll explain a vulnerability I recently found, and reported through Yahoo’s bug bounty program. When testing the security of web applications, doing reconnaiss…
·hawkinsecurity.com·
Yahoo! RCE via Spring Engine SSTI
DPI мобильных операторов: от бесплатного интернета до раскрытия номера и ме
DPI мобильных операторов: от бесплатного интернета до раскрытия номера и ме
Системы глубокого анализа трафика (Deep Packet Inspection, DPI) — программно-аппаратные комплексы для классификации проходящего интернет-трафика по типу данных...
·habrahabr.ru·
DPI мобильных операторов: от бесплатного интернета до раскрытия номера и ме
Objective-See
Objective-See
reversing an av engine to compose signatures capable of detecting classified documents
·objective-see.com·
Objective-See
From Markdown to RCE in Atom
From Markdown to RCE in Atom
Recently I took a look at Atom, a text editor by GitHub. With a little bit of work, I was able to chain multiple vulnerabilities in Atom into an actual Remot...
·statuscode.ch·
From Markdown to RCE in Atom
Remote Code Execution on rubygems.org
Remote Code Execution on rubygems.org
tl;dr Remote code execution via a deserialization vulnerability on rubygems.org, a very popular hosting service for ruby dependencies. A fix was rolled out q...
·justi.cz·
Remote Code Execution on rubygems.org