irajsharath's profile picture. Security Analyst

raj sharath

@irajsharath

Security Analyst

raj sharath reposted

Sweet! If you use Cloud Security Benchmarks to help guide your security planning, we have just released a huuuge reference for Azure Storage: docs.microsoft.com/en-us/azure/st… Azure Security Benchmark: docs.microsoft.com/en-us/azure/se…


raj sharath reposted

#XSS: Please share your #XSS payload (no matter how simple or complex) that you used recently or in your last report & got a #bounty reward. I start with mine. It was '"></title></script><img src=x onerror=confirm(1)> & I was awarded 3K USD for the report. #BugBounty #XSS


raj sharath reposted

Windows Privilege Escalation Guide #infosec #pentest #redteam absolomb.com/2018-01-26-Win…


raj sharath reposted

I created an #OSCP Exam Report Template in Markdown so LaTeX, MS Word, LibreOffice Writter are no longer needed! github.com/noraj/OSCP-Exa…


raj sharath reposted

anatomy of a HTTP request

b0rk's tweet image. anatomy of a HTTP request

raj sharath reposted

CollabOzark: CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers. github.com/securityidiots…


raj sharath reposted

How can @zaproxy automatically authenticate via forms? github.com/zaproxy/zaprox…


raj sharath reposted

A hacker named Light Leafon, who claimed to be 14, was responsible for a new IoT worm called Silex, which targets any system that looks like UNIX when trying to... The post A New Malware Called Silex Targets IoT Devices appeared fir... twib.in/l/nXx5byrxRGeL via @InfoSecHotSpot

InfoSecHotSpot's tweet image. A hacker named Light Leafon, who claimed to be 14, was responsible for a new IoT worm called Silex, which targets any system that looks like UNIX when trying to... The post A New Malware Called Silex Targets IoT Devices appeared fir... twib.in/l/nXx5byrxRGeL via @InfoSecHotSpot

raj sharath reposted

SMB Enumeration Checklist, by @0xdf_ 0xdf.gitlab.io/2018/12/02/pwk…


raj sharath reposted

Web Services and API Penetration Testing:- Part 1:- blog.securelayer7.net/web-services-a… Part 2:- blog.securelayer7.net/web-services-a…

Alra3ees's tweet image. Web Services and API Penetration Testing:-

Part 1:-
blog.securelayer7.net/web-services-a…

Part 2:-
blog.securelayer7.net/web-services-a…

raj sharath reposted

#bugbountytip Here's a regular expression for extracting variable names from JS. I'll be using the results for parameter fuzzing. /(?<=(var|const|let) )([A-Za-z0-9_]+?)(?=(;|,|=| ))/g It's far from perfect, but I'm not great with regex.


Loading...

Something went wrong.


Something went wrong.