Coding_Karma
@karma_coded
Hacker | Founder @DCG91135 | Break apps with @SynackRedTeam / @Hacker0x01 | Play Gwent | Audiophile
You might like
Check out @karma_coded on the #SynackAcropolis! acropolis.synack.com/inductees/Codi… via @SynackRedTeam Huge thanks to @ryanrutan @niksthehacker @rfkrishnan @EdRivah and rest of the VO team for supporting and guiding me! #bugbounty #infosec #security
we have boarded UK818! From BLR to DEL today & found that the Airconditioner wasn’t working. It’s reported to Crew Members twice but no respite through out the delayed flight for 3 hrs. It an horrible experience. @airvistara
"don't read reviews or graphs, just listen to the headphones yourself" 99% of the population:
As promised - part 2 of my WMI blog series. jsecurity101.medium.com/wmi-internals-… In this portion I walk through how to analyze a WMI provider binary and identify the invocation of COM methods.
90% of my Twitter DMs are asking me about how to start getting into Malware development. Well, I love answering them but it's easier to write a small thread about it so here we go. 1/12
Kubernetes Goats 🐐 are ready for @BlackHatEvents and @defcon. Say hi 👋 to grab your goat 🐐 before the limited edition are over 😅 #Kubernetes #CNCF #blackhat2022 #DEFCON30 #infosec #security #CloudNative #DevSecOps #conference
Just had a call with someone on Forbes 30 under 30 list and came away really impressed. He shared with me how he made VP at a top tech company before age 30: 1. 4:30 AM wakeup 2. Cold showers 3. Gratitude journal 4. Meditate 5. Dad owns tech company
Mike Tyson had a coach. Michael Jordan had a coach. Yet, you’re too prideful to ask for help…
I wanted to give a huge shout out to all the amazing contributors, and a lot of other folks who provided great feedback, suggestions and just spreading the word about the Kubernetes Goat project 🙏 👉 github.com/madhuakula/kub… #Kubernetes #Security #CloudNative #CNCF #InfoSec
An informal review of CTF abuse (or how folks try to win CTFs in a not purely ethical way): gynvael.coldwind.pl/?lang=en&id=750 Know more stories like this which I've missed? Please share!
This post talks about : · How to use curl command to exploit mounted socket? · How to use mounted socket to do an escape to host? · How to secure Docker socket via SSH? · How to use secure Docker socket via Docker context? medium.com/@codingkarma/k… #infosec #security #cyber
A “razor” is a rule of thumb that simplifies decision making. The most powerful razors I’ve found:
There's a subtle bug in this code that I learned about today. Do you know what it is?
What an amazing idea it is to disable copy/paste on a "Re-enter New Password" field. I actually did want to type out my 1password generated 30 character password.🤦♂️
The Center for Internet Security released the Supply Chain Security Benchmark! It is SO awesome to see more industry attention on locking down CICD pipelines. Table of contents attached. PDF link: github.com/aquasecurity/c…
I decided to make a homage-post to @homakov and @Nirgoldshlager about different OAuth-token leakage methods I've been researching – ten years after their blog posts that inspired me to start hunt for bugs ♥️ thank you. labs.detectify.com/2022/07/06/acc…
The security research team at @assetnote discovered a high risk SSRF vulnerability in Jira Server and Datacenter - CVE-2022-26135. This SSRF allows attackers to make requests with any HTTP method, headers and body. You can read about it here: blog.assetnote.io/2022/06/26/exp…
assetnote.io
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135)
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135)
The problem with loving what you do is that you end up overworking while you get lost in the details with an insufferable need to make it perfect.
Please share Java web app interesting and complex vulnerabilities identify via source code review
United States Trends
- 1. Lakers 49.9K posts
- 2. #AEWDynamite 45.3K posts
- 3. Epstein 1.49M posts
- 4. Jokic 16K posts
- 5. Shai 14.7K posts
- 6. #AEWBloodAndGuts 5,640 posts
- 7. #Survivor49 3,652 posts
- 8. Darby 5,395 posts
- 9. Kyle O'Reilly 1,819 posts
- 10. Steph 25.5K posts
- 11. Thunder 41.5K posts
- 12. Rory 7,295 posts
- 13. Moxley 2,878 posts
- 14. Kobe Sanders N/A
- 15. Spencer Knight N/A
- 16. Hobbs 28.5K posts
- 17. Warriors 49.2K posts
- 18. Caruso 4,012 posts
- 19. Blood & Guts 25K posts
- 20. #SistasOnBET 2,251 posts
You might like
-
Jasmin Landry
@JR0ch17 -
streaak
@streaak -
pwnmachine 👾
@princechaddha -
Wh11teW0lf
@Wh11teW0lf -
Armaan Pathan
@armaancrockroax -
Paresh
@Paresh_parmar1 -
gujjuboy10x00
@vis_hacker -
John
@JohnH4X00R -
Tabahi
@_tabahi -
Rakesh Mane
@RakeshMane10 -
Hossam Sec
@HossamSec -
CMD - Constantin
@CMD_0_0 -
Arbaz Hussain
@ArbazKiraak -
Splint3r7
@Splint3r7 -
@v!b$123!
@vibs123i
Something went wrong.
Something went wrong.