RandomHt
@pythoncike
security research,red team memeber,code reviewer
내가 좋아할 만한 콘텐츠
发现一款 Chrome 插件,用于将网页文档以原样式保存到本地浏览器数据库,不用担心隐私泄漏,不依赖网络,支持关键词快速搜索和检索功能,节约磁盘空间同时减少浏览器内存的使用。github.com/wvit/web-docum…
New Blog! Exploiting XSS with Javascript/JPEG polyglot. #xss #infosec #javascript medium.com/@Medusa0xf/exp…
A small gift from my side to all bug bounty hunters. My 8 hour long burp suite focused course for free. share to someone who need it. #bugbountytips #bugbounty #infosec (rt & share + enjoy) udemy.com/course/bug-bou…
CVE-2022-0824 Webmin revshell - Post-Auth Reverse. PoC github.com/faisalfs10x/We…
Talk about 2 POC of DirtyPipe(CVE-2022-0847) Original POC: dirtypipe.cm4all.com is able to overwrite arbitrary file with offset like ./exp /etc/passwd 5 ":0:0:rootx" Improved POC: haxx.in/files/dirtypip… is able to overwrite a SUID program like ./exp /usr/bin/su
Top 25 Browser Extensions for Pentesters and Bugbounty Hunters (2022) p1boom.com/2022/02/top25-… Did i miss something? #bugbounty #bugbountytips #infosec #Pentesting
Found an XSS filter that allows SVG-based tags? Try the 'use' element, you can import a SVG via a data url and execute JavaScript automatically! portswigger.net/web-security/c…
Happy year’s 2022, I learning Java code review and codeql.
Most popular key word in #Linux with definitions that’s help u to learn more about who to use it in linux platform. #CyberSecurity #cybercrime #الامن_السيبراني
In this tweet, I will explain to you How to find Leaking AWS Keys.
#update St8out - Extra one-liner for reconnaissance gist.github.com/dwisiswant0/5f… Workflow: metabigor > findomain & amass > filter-resolved > subjack > dig > nmap > webanalyze > dirsearch > LinkFinder > cors-blimey > gowitness > Arjun > meg > gf #bugbountytips
I added a script to generate the PDF & archive for my #OSCP Exam Report Template in Markdown, as I saw a lot of people where creating their own scripts. github.com/noraj/OSCP-Exa…
If you didn't know, you can use Sn1per to retrieve a targets ASN, full subnet list and IP's via 'recon' mode. These can easily be fed into Sn1per using 'discover' mode to scan full subnets and enumerate all hosts. 😎 xerosecurity.com #bugbounty #netsec #infosec #offsec
Are you ready to takeover subdomains? ;) I have developed a tool to scan subdomain takeover vulnerabilities. Found 300+ vulnerable subdomains on Twitter,Yahoo,Pinterest,Periscope,Spotify,HarvardUni,StanfordUni,BerkeleyUni,YaleUni,PrincetonUni... Its free! hackking.net/subdomain-take…
Confirmed. Everyone is affected. Or you are not on the Internet.
I have a major #Databreach announcement tomorrow - 1.2 BILLION people exposed from a single organization. More details soon. @lilyhnewman @troyhunt @MayhemDayOne @DataViperIO
United States 트렌드
- 1. #UFC321 86.3K posts
- 2. Mateer 5,199 posts
- 3. Liverpool 106K posts
- 4. $SWC 2,624 posts
- 5. Ole Miss 12.7K posts
- 6. Dern 58.5K posts
- 7. Almeida 60.1K posts
- 8. Arbuckle 2,767 posts
- 9. Brentford 44.8K posts
- 10. Lane Kiffin 6,370 posts
- 11. Volkov 52.7K posts
- 12. Oklahoma 17.5K posts
- 13. Umar 25.7K posts
- 14. June Lockhart 2,150 posts
- 15. Gophers 2,205 posts
- 16. Kerkez 16.2K posts
- 17. UCLA 8,261 posts
- 18. Hugh Freeze 1,558 posts
- 19. Slot 81K posts
- 20. Arkansas 20.8K posts
Something went wrong.
Something went wrong.