rvrshell's profile picture. Strategist, Builder and Breaker, System and Process Creator, Analyzer, Optimizer, Thief, AppSec, OffSec, Speaker @ Derbycon 9, Texas Cyber Summit, Bugcrowd LE

Matt Szymanski

@rvrshell

Strategist, Builder and Breaker, System and Process Creator, Analyzer, Optimizer, Thief, AppSec, OffSec, Speaker @ Derbycon 9, Texas Cyber Summit, Bugcrowd LE

Matt Szymanski a reposté

1) What a busy summer! We're excited to announce the experimental release of our DNS over HTTPS (DoH) resolver for @ensdomains! DNS is a widely supported protocol which enables us to provide ENS resolution for all kinds of different platforms and clients.


Matt Szymanski a reposté

Abortion is now illegal in Missouri. No exceptions for rape or incest. Right before I was elected, I met a pregnant 11 year old who has been raped by her uncle. What about HER rights?


Matt Szymanski a reposté

This is wild: Juniper had a back door in its gear—placed at the request of the NSA—compromised by a hostile foreign government. NSA informed @RonWyden they wrote a "lessons learned" report after the episode, but now says it cannot locate that document. reuters.com/article/us-usa…

dnvolz's tweet image. This is wild: Juniper had a back door in its gear—placed at the request of the NSA—compromised by a hostile foreign government. 

NSA informed @RonWyden they wrote a "lessons learned" report after the episode, but now says it cannot locate that document.

reuters.com/article/us-usa…

Matt Szymanski a reposté

NTLMRawUnHide - A Python3 Script Designed To Parse Network Packet Capture Files And Extract NTLMv2 Hashes In A Crackable Format feedproxy.google.com/~r/PentestTool…


Matt Szymanski a reposté

Check and verify for possible vulnerabilities on ASP .NET applications using a grey-box approach. Source Code Review & Dynamic Analysis voidsec.com/net-grey-box-a…


Matt Szymanski a reposté

Many companies send data via POST data (json), I found a lot bugs like Request Arbitrary Path (IDORs), LFI, CRLF,… Example:

m4ll0k's tweet image. Many companies send data via POST data (json), I found a lot bugs like Request Arbitrary Path (IDORs), LFI, CRLF,…
Example:

Matt Szymanski a reposté

Got a pre-release for the new NVIDIA 3090. Anyone know what kind of power supply I'll need?

SteveD3's tweet image. Got a pre-release for the new NVIDIA 3090. Anyone know what kind of power supply I'll need?

Matt Szymanski a reposté

To get the #defconsafemode party started, we’re releasing some content early. On the #defcon media server, we’ve got all of the main stage talks, soundtrack, demo labs, art , CTF, music - take what you like. Completists out there, we see you. There’s a v. thicc torrent as well.

defcon's tweet image. To get the #defconsafemode party started, we’re releasing some content early. On the #defcon media server, we’ve  got all of the main stage talks, soundtrack, demo labs, art , CTF, music - take what you like. Completists out there, we see you. There’s a v. thicc torrent as well.

Matt Szymanski a reposté

Sporting this shirt today bc apparently this is the theme of the day at work

H3KTlC's tweet image. Sporting this shirt today bc apparently this is the theme of the day at work

Matt Szymanski a reposté

We don't know who needs to hear this right now, but #defconsafemode is free to attend. You don't have to register. It starts in one week. You should join us. defcon.org

defcon's tweet image. We don't know who needs to hear this right now, but #defconsafemode is free to attend. You don't have to register. It starts in one week. You should join us.

defcon.org

Matt Szymanski a reposté

if a bruteforce knocks your production webserver offline that's a conversation to have with your infrastructure team not me


Matt Szymanski a reposté

I saw this on LinkedIn, and gave the rare literal laugh out loud.

apporima's tweet image. I saw this on LinkedIn, and gave the rare literal laugh out loud.

Matt Szymanski a reposté

The real reason why the launch got scrubbed... #SpaceLaunchLIVE #NASA

TJ_Null's tweet image. The real reason why the launch got scrubbed...
#SpaceLaunchLIVE #NASA

Matt Szymanski a reposté

Did you know that LinkedIn has a directory? linkedin.com/directory/peop…


Matt Szymanski a reposté

ParamSpider : Parameter miner for humans Got a nice SSRF last week using this : - paramspider found a url with parameter ?file_url= - The parameter was deprecated long back from the production - luckily the parameter was vulnerable to SSRF Github : github.com/devanshbatham/…

0xAsm0d3us's tweet image. ParamSpider : Parameter miner for humans

Got a nice SSRF last week using this : 
- paramspider found a url with parameter ?file_url=
- The parameter was deprecated long back from the production
- luckily the parameter was vulnerable to SSRF

Github : github.com/devanshbatham/…

Matt Szymanski a reposté

Did you know that Scheduled Tasks stored credentials in the SYSTEM Credential Store? Did you also knew that even when you delete a Scheduled Task they remain there? ;)

Carlos_Perez's tweet image. Did you know that Scheduled Tasks stored credentials in the SYSTEM Credential Store? Did you also knew that even when you delete a Scheduled Task they remain there? ;)

Matt Szymanski a reposté

#RIP #SXSW In happier news, Return of the Ohm is OUT NOW wherever you get your music (Bandcamp, Spotify, Amazon, Apple Music, iTunes, Google Play). Enjoy! distrokid.com/hyperfollow/oh… mcohmi.bandcamp.com/album/return-o… amazon.com/Return-Ohm-Exp…

mcohmi's tweet card. Return of the Ohm, by Ohm-I

mcohmi.bandcamp.com

Return of the Ohm, by Ohm-I


Matt Szymanski a reposté

Companies looking for remote freelancers: Reply to this thread with a job link or a job spec and contact details Remote freelancers: 👀 Can't have people going without work can we? #coronavirus


Loading...

Something went wrong.


Something went wrong.