TheCS_Student's profile picture. Software developer during the day and cyber-security pentester at night.

TheCS_Student

@TheCS_Student

Software developer during the day and cyber-security pentester at night.

TheCS_Student reposted

I’ve had people asking for a solid year about this but had to keep my mouth shut. Here is your answer about OMG Cables and new 🍎 phone


TheCS_Student reposted

🚩It's almost time for our mid-year capture the flag! offs.ec/43mrHru The tournament is open to individuals of all skill levels. 🧠 Exploit vulnerabilities, analyze code, decrypt messages, and overcome obstacles to obtain flags and demonstrate your skills.

offsectraining's tweet image. 🚩It's almost time for our mid-year capture the flag!  offs.ec/43mrHru

The tournament is open to individuals of all skill levels. 

🧠 Exploit vulnerabilities, analyze code, decrypt messages, and overcome obstacles to obtain flags and demonstrate your skills.

TheCS_Student reposted

The MOVEit Transfer exploitation is not just SQL injection(👀) We uncovered the very last stage of the attack chain to drop human2.aspx ultimately ends up gaining remote code execution ‼ We fully recreated the attack chain with a demo achieving a reverse shell & ransomware!


TheCS_Student reposted

👉 Let ChatGPT visit a website and have your email stolen. Plugins, Prompt Injection and Cross Plug-in Request Forgery. Not sharing “shell code” but… 🤯 Why no human in the loop? @openai Would mitigate the CPRF at least #OPENAI #ChatGPT #plugins #infosec #ai #humanintheloop

wunderwuzzi23's tweet image. 👉 Let ChatGPT visit a website and have your email stolen.

Plugins, Prompt Injection and Cross Plug-in Request Forgery.

Not sharing “shell code” but… 🤯

Why no human in the loop? @openai Would mitigate the CPRF at least

#OPENAI #ChatGPT #plugins #infosec #ai #humanintheloop

TheCS_Student reposted

Powershell tips to make you a ✨better✨ 😈 hacker and person 👼 Might make this my deskmat ha

I_Am_Jakoby's tweet image. Powershell tips to make you a ✨better✨ 
😈 hacker and person 👼 

Might make this my deskmat ha

Doing a little challenge from picoCTF. Relative Paths vs Absolute Paths Challenge -> "Forbidden Paths" from @picoCTF youtu.be/jgW127teLDY #cybersecurity #Pentesting #Hacking #webdevelopment

TheCS_Student's tweet image. Doing a little challenge from picoCTF.
Relative Paths vs Absolute Paths 
Challenge -> "Forbidden Paths" from @picoCTF 
youtu.be/jgW127teLDY 
#cybersecurity #Pentesting #Hacking #webdevelopment

TheCS_Student reposted

Above is a good example for this @wdormann: 13 detections for the .lnk inside, but the .vhd has 0...


TheCS_Student reposted

🔒 Beware! A new phishing technique called "file archiver in the browser" has emerged. It cleverly imitates legitimate file archiver software, like WinRAR, right in your web browser using a .ZIP domain. Read details: thehackernews.com/2023/05/dont-c… #infosec #cybersecurity #hacking


🔐 Navigating the digital world requires constant vigilance - now more than ever. Recent times have seen the release of .ZIP domains, this means a higher risk of phishing attacks and malware spread, making the web a potentially treacherous terrain. 🎣💻🐛

TheCS_Student's tweet image. 🔐 Navigating the digital world requires constant vigilance - now more than ever. Recent times have seen the release of .ZIP domains, this means a higher risk of phishing attacks and malware spread, making the web a potentially treacherous terrain. 🎣💻🐛
TheCS_Student's tweet image. 🔐 Navigating the digital world requires constant vigilance - now more than ever. Recent times have seen the release of .ZIP domains, this means a higher risk of phishing attacks and malware spread, making the web a potentially treacherous terrain. 🎣💻🐛
TheCS_Student's tweet image. 🔐 Navigating the digital world requires constant vigilance - now more than ever. Recent times have seen the release of .ZIP domains, this means a higher risk of phishing attacks and malware spread, making the web a potentially treacherous terrain. 🎣💻🐛
TheCS_Student's tweet image. 🔐 Navigating the digital world requires constant vigilance - now more than ever. Recent times have seen the release of .ZIP domains, this means a higher risk of phishing attacks and malware spread, making the web a potentially treacherous terrain. 🎣💻🐛

TheCS_Student reposted

🔥🔥30 New Azure Queries for BloodHound🔥🔥 github.com/LuemmelSec/Cus… Gather general and valuable Information Attack Paths from OnPrem -> Cloud Identify High Value Targets and Attack Paths inside Azure Lots of them were build following @inversecos Azure Attack course @XintraOrg


Doing a little challenge from picoCTF. Challenge -> "Inspect HTML" from @picoCTF Nothing really special, just cleaning challenges.


Doing a little challenge from picoCTF. This one plays with HTTP Headers such as User-Agent Challenge -> "picobrowser" from @picoCTF youtu.be/Prw70T-YrpI #cybersecuritytips #infosec #Pentesting #picoctf

TheCS_Student's tweet image. Doing a little challenge from picoCTF. This one plays with HTTP Headers such as User-Agent
Challenge -> "picobrowser" from 
@picoCTF
 
youtu.be/Prw70T-YrpI 
#cybersecuritytips #infosec #Pentesting #picoctf

Can you identify the potential vulnerability? #CyberSecurity #Pentesting #hacking #hacker #web

TheCS_Student's tweet image. Can you identify the potential vulnerability?

#CyberSecurity #Pentesting #hacking #hacker #web

Absolute vs. Relative Paths: Unveiling Security Vulnerabilities! In the world of software development, the choice between absolute and relative paths has a significant impact on application security. 🚧💻 #AbsolutePaths #RelativePaths #SecurityLoopholes #SecureCoding

TheCS_Student's tweet image. Absolute vs. Relative Paths: Unveiling Security Vulnerabilities!

In the world of software development, the choice between absolute and relative paths has a significant impact on application security. 🚧💻

#AbsolutePaths #RelativePaths #SecurityLoopholes #SecureCoding
TheCS_Student's tweet image. Absolute vs. Relative Paths: Unveiling Security Vulnerabilities!

In the world of software development, the choice between absolute and relative paths has a significant impact on application security. 🚧💻

#AbsolutePaths #RelativePaths #SecurityLoopholes #SecureCoding
TheCS_Student's tweet image. Absolute vs. Relative Paths: Unveiling Security Vulnerabilities!

In the world of software development, the choice between absolute and relative paths has a significant impact on application security. 🚧💻

#AbsolutePaths #RelativePaths #SecurityLoopholes #SecureCoding
TheCS_Student's tweet image. Absolute vs. Relative Paths: Unveiling Security Vulnerabilities!

In the world of software development, the choice between absolute and relative paths has a significant impact on application security. 🚧💻

#AbsolutePaths #RelativePaths #SecurityLoopholes #SecureCoding

Doing a little challenge from picoCTF. Never store is_admin in the cookies 😄 Challenge -> "Power Cookie" from @picoCTF youtu.be/1I0ATenz_ew

TheCS_Student's tweet image. Doing a little challenge from picoCTF. Never store is_admin in the cookies 😄 
Challenge -> "Power Cookie" from 
@picoCTF
 
youtu.be/1I0ATenz_ew

I am definitely buying a couple of these for engagements. .zip domains are the new danger for almost everyone, before you click on a “zip” file in your email, make sure it’s not a link :) Stay safe folks #CyberSecurity #pentest #CyberSecurityAwareness

Google's .zip, .mov Domains Give Social Engineers a Shiny New Tool: bit.ly/3MRXZVc by @roblemos



JWT CRACKING New little video from @picoctf showing JWT vulnerabilities Challenge: "JaWT Scratchpad" Video -> youtu.be/DUWB38YFlBk #cybersecurity #pentest #web #infosec

TheCS_Student's tweet image. JWT CRACKING
New little video from @picoctf showing JWT vulnerabilities

Challenge: "JaWT Scratchpad"

Video -> youtu.be/DUWB38YFlBk 

#cybersecurity #pentest #web #infosec

Another day, another CTF

It is time 🔥 Registrations for #BusinessCTF2023 are now open! This year, escaping the planet is the only way to survive... Register now: bit.ly/42PiG9s #HackTheBox #CTF #CaptureTheFlag

hackthebox_eu's tweet image. It is time 🔥 
Registrations for #BusinessCTF2023 are now open! This year, escaping the planet is the only way to survive...

Register now: bit.ly/42PiG9s

#HackTheBox #CTF #CaptureTheFlag


Loading...

Something went wrong.


Something went wrong.