MurthyCode's profile picture. Information Security Consultant. I secure Mobile & Web applications,Blogger and Visionary Entrepreneur. #0day #vulns #Infosec #OWASP #VAPT #AppSec #OSCP #Secops

Murthycode

@MurthyCode

Information Security Consultant. I secure Mobile & Web applications,Blogger and Visionary Entrepreneur. #0day #vulns #Infosec #OWASP #VAPT #AppSec #OSCP #Secops

Murthycode reposted

I discovered a code execution prompt injection in ChatGPT yesterday. I was trying to execute the file.py that was a reverse shell. Kudos to the @OpenAI security team for creating a self-healing security system! After experimenting for a few hours, the system now…

MarcoFigueroa's tweet image. I discovered a code execution prompt injection in ChatGPT yesterday. I was trying to execute the file.py that was a reverse shell. Kudos to the @OpenAI security team for creating a self-healing security system!

After experimenting for a few hours, the system now…

Murthycode reposted

Testing Forgot Password Functionality: 1. Host Header Injection - Password Reset Poisoning (1/n)


Murthycode reposted

This week, we updated the ENTIRE section of Active Directory in our PEH course, so we're releasing the original AD content on our YouTube Channel for FREE. You can watch it here: ow.ly/9tlz50PsUO2 PEH Course with updated AD section: ow.ly/q9WT50PsUNW

TCMSecurity's tweet image. This week, we updated the ENTIRE section of Active Directory in our PEH course, so we're releasing the original AD content on our YouTube Channel for FREE.  You can watch it here: ow.ly/9tlz50PsUO2

PEH Course with updated AD section: ow.ly/q9WT50PsUNW

Murthycode reposted

CVE-2023-24488 Citrix XSS subfinder -d target.com -silent | nuclei -t http/cves/2023/CVE-2023-24488.yaml Nuclei Template lnkd.in/dnD4eWMs Shodan ssl: title:"Citrix gateway" Dork intitle:"Citrix Gateway" -site:citrix.com


Spammers are targeting fake job offers, be aware before you share any information @WiproCareers @Wipro

MurthyCode's tweet image. Spammers are targeting fake job offers, be aware before you share any information @WiproCareers @Wipro

Murthycode reposted

403 Bypass techniques #BugBounty #403bypass #bugbountytip

bughuntar's tweet image. 403 Bypass techniques

#BugBounty #403bypass #bugbountytip

Murthycode reposted

Folks, NucleiFuzzer is an automation tool that combines ParamSpider and Nuclei to bugbounty. It uses ParamSpider to identify potential entry points and Nuclei's templates to scan for vulnerabilities. github.com/0xkayala/nucle… #BugBounty #bugbountytip #bugbountytips #nuclei

adrielsec's tweet image. Folks, NucleiFuzzer is an automation tool that combines ParamSpider and Nuclei to bugbounty. It uses ParamSpider to identify potential entry points and Nuclei's templates to scan for vulnerabilities.

github.com/0xkayala/nucle…

#BugBounty #bugbountytip #bugbountytips #nuclei

Murthycode reposted

🔥Web3 Security Onboarding Since the last time, 70+ DMs and many people who join the community often ask the same question: "How can I learn web3 security?" So, I have created an onboarding channel and added a lot of resources for them. 🤟discord.com/invite/Fjyngak…

1nf0s3cpt's tweet image. 🔥Web3 Security Onboarding

Since the last time, 70+ DMs and many people who join the community often ask the same question: 
"How can I learn web3 security?"

So, I have created an onboarding channel and added a lot of resources for them.
🤟discord.com/invite/Fjyngak…

Murthycode reposted

12. Arithmetic Overflow/Underflow 13. Flash Loan Attack 14. Unchecked Return Value 15. Oracle Manipulation 16. DAO/Governance Attacks 17. Floating Pragma 18. Unexpected Ether 19. Unprotected Ether 20. Fakestable Coins 21. Arbitrage-Related Attacks 22. External Contract Reference


Murthycode reposted

1. Reentrancy 2. Access Control 3. Default Function Visibility 4. Front Running Attack 5. Signature Replay 6. Signature Malleability 7. Timestamp Manipulation 8. Phishing via Tx.Origin 9. Storage Collision 10. Unprotected Self-Destruct Function 11. Untrusted Delegate Call


Murthycode reposted

Hi @cyph3r_asr this blog might help to get start with hands on your AWS Security Journey:) dhiyaneshgeek.github.io/cloud/security…


Murthycode reposted

Something I found interesting in online. Here are 10 use cases #ChatGPT 📍 1. Connect your ChatGPT with your Whatsapp: bit.ly/3ZfmyzC 2. ChatGPT Writer : It use ChatGPT to generate emails or replies based on your prompt!: bit.ly/3vGB3if #infosec #Hacking


Murthycode reposted

Interested in learning #iOS #penetrationtesting ? Here is how you can start: Requirements: - Mac (Intel/M1/M2) Or Mobexler virtual machine (Apple proprietary tools not available) - Jailbroken iPhone Or Corellium virtual iOS device


Murthycode reposted

Top 25 Browser Extensions for Pentesters and Bugbounty Hunters (2022) p1boom.com/2022/02/top25-… #BugBounty #infosec #cybersecurity


Murthycode reposted

Offensive Security has banned ChatGPT from the OSCP exam

whitecyberduck's tweet image. Offensive Security has banned ChatGPT from the OSCP exam

Murthycode reposted

API security best practices 👇 { 1 / 6 }

Rapid_API's tweet image. API security best practices 👇

{ 1 / 6 }

Loading...

Something went wrong.


Something went wrong.