Community : @Sec0x01 @Bug0x Admin : @Offensive
https://twitter.com/mcdaidc/status/1765414534414483757
Читать полностью…https://nokline.github.io/bugbounty/2024/02/04/ChatGPT-ATO.html
Читать полностью…icebre4ker/analysis-of-an-info-stealer-chapter-3-the-android-app-54ba3068b537" rel="nofollow">https://medium.com/@icebre4ker/analysis-of-an-info-stealer-chapter-3-the-android-app-54ba3068b537
Читать полностью…https://m4dm0e.github.io/blog/2023/01/06/cognito-misconfig.html
Читать полностью…The ART of Chaining Vulnerabilities
https://ahmdhalabi.medium.com/the-art-of-chaining-vulnerabilities-e65382b7c627
♾️ Collection of DevSecOps Notes + Resources + Tools
https://github.com/nxenon/DevSecOps
#DevSecOps #SDLC #application_security
harsh8v/ssl-search-a-tool-to-identify-infrastructure-and-discover-attack-surfaces-449c83269574" rel="nofollow">https://medium.com/@harsh8v/ssl-search-a-tool-to-identify-infrastructure-and-discover-attack-surfaces-449c83269574
Читать полностью…https://certitude.consulting/blog/en/using-cloudflare-to-bypass-cloudflare/
Читать полностью…HTTP/2 Rapid Reset Attack ( cve-2023-44487 )
Concept of the attack in code:
Https://github.com/nxenon/cve-2023-44487
#dos #ddos #http2 #cve_2023_44487
H2SpaceX - HTTP/2 Single Packet Attack (Race Condition) low level library:
https://github.com/nxenon/h2spacex
Read More:
Portswigger Research: https://portswigger.net/research/smashing-the-state-machine#single-packet-attack
#single_packet_attack #http2 #race_condition #racecondition
https://twitter.com/FIRSTdotOrg/status/1719765366648304051?t=_q7LZOuA5ZKbzzifEQj9pA&s=35
Читать полностью…Verify HackerOne and BugCrowd accounts with desired name and country
@Offensive
https://github.com/Textualize/toolong?tab=readme-ov-file
Читать полностью…https://github.com/Ignitetechnologies/Mindmap/tree/main/Subdomain%20Enumeration
Читать полностью…https://github.com/SpiralBL0CK/-CVE-2023-35985
1-day exploit
https://labs.taszk.io/articles/post/full_chain_bb_part1/
Читать полностью…nxenon/dive-into-single-packet-attack-3d3849ffe1d2" rel="nofollow">https://medium.com/@nxenon/dive-into-single-packet-attack-3d3849ffe1d2
#race_condition
Splunk RCE PoC
https://github.com/nathan31337/Splunk-RCE-poc
https://twitter.com/Amir0x01/status/1722661003089920145
#FA
#WorldSkills2023
#CyberSecurity
https://twitter.com/hetmehtaa/status/1719094594187792441?t=__liOMxbAQiNtNIo3nR7sQ&s=35
Читать полностью…