hatich_hacker's profile picture. security researcher

hatich_hacker

@hatich_hacker

security researcher

Pinned

ערוץ יוטיוב ללימוד האקינג youtube.com/@user-fh7nj9jo…


hatich_hacker reposted

You can bypass path-based WAF restrictions by appending raw/unencoded non-printable and extended-ASCII characters like \x09 (Spring), \xA0 (Express), and \x1C-1F (Flask):

zakfedotkin's tweet image. You can bypass path-based WAF restrictions by appending raw/unencoded non-printable and extended-ASCII characters like \x09 (Spring), \xA0 (Express), and \x1C-1F (Flask):

פלליליסט לקורס ההאקינג youtube.com/playlist?list=…


hatich_hacker reposted

19 questions @JR0ch17 asks himself when looking through requests in order to identify and document potential vulnerabilities: 1. What methods of authentication are supported?


hatich_hacker reposted

I've made $500k+ from SSRF vulnerabilities. Here are my tricks:

hacker_'s tweet image. I've made $500k+ from SSRF vulnerabilities.

Here are my tricks:

hatich_hacker reposted

To verify the single-packet attack is working for you: - Load examples/benchmark-h2-race.py - Hit attack, then verify ‘Best/Median’ are 0/1 via Extensions>Turbo Intruder>Output - This shows a typical execution spread of 1ms when sending groups of 20 requests to Ireland

albinowax's tweet image. To verify the single-packet attack is working for you:
- Load examples/benchmark-h2-race.py
- Hit attack, then verify ‘Best/Median’ are 0/1 via  Extensions>Turbo Intruder>Output
- This shows a typical execution spread of 1ms when sending groups of 20 requests to Ireland

hatich_hacker reposted

I've made over 100k on SSRF vulnerabilities. They aren't always as simple as pointing it at localhost or AWS Metadata service. Here are some tricks I've picked up over the past 5 years of web app testing:

Rhynorater's tweet image. I've made over 100k on SSRF vulnerabilities.

They aren't always as simple as pointing it at localhost or AWS Metadata service. 

Here are some tricks I've picked up over the past 5 years of web app testing:

hatich_hacker reposted

The impact achieved here is neat: labs.hakaioffsec.com/nginx-alias-tr… - I remember first reading about this from @fransrosen - blog.detectify.com/2020/11/10/com…


United States Trends

Loading...

Something went wrong.


Something went wrong.