AfroSec
605 subscribers
317 photos
22 videos
6 files
161 links
hello friend
am AfroSec | AASTU dropout | cybersecurity enthusiast | CRTOM | CRTA | passionate abt Red Teaming :)))

portifolio : soon....
file : @Afr0Files
Download Telegram
Forwarded from AASTU CSC (ใ…ค)
๐Ÿ”ฅ Saturday CYberNight is BACK!๐Ÿ”ฅ

Yo fam after a long break, our SaturdayCYber Night sessions are finally making a comeback tomorrow night at 8:30 PM (EAT)๐Ÿ˜Ž

And guess what? Weโ€™re kicking it off *big* this time โ€” with a special guest joining us, a real hacker & red team engineer whoโ€™s been deep in the trenches of offensive security. Expect raw stories, mindset talk, and some serious red team wisdom.

๐Ÿ“ Where: Here on Telegram
๐Ÿ•— When: Saturday, 8:30 PM EAT


Bring your snacks, your curiosity, and your questions โ€” itโ€™s gonna be one of those nights again ๐Ÿ’€
#Cybersecurity #RedTeam #HackerTalk

@AASTU_Cyberclub
๐Ÿ”ฅ4โคโ€๐Ÿ”ฅ2๐Ÿค—1
This media is not supported in your browser
VIEW IN TELEGRAM
kidame new zare hangout enaregalen ๐Ÿ˜‚๐Ÿ˜‚

lool the most azg music fr๐Ÿ˜‚

@Afrosec
๐Ÿคฃ11๐Ÿ˜3
sometimes i think then i forget ughh๐Ÿ˜ญ

@AfroSec
๐Ÿ˜11๐Ÿคฃ2๐Ÿ˜ญ2โค1
ep2
AASTU CSC
recorded session audio
enjoy ๐Ÿ˜Ž

@AASTU_Cyberclub
โšก2โค2๐Ÿณ1
AfroSec
AASTU CSC โ€“ ep2
do u think am a good host or ? eski check it out, cyber night session with ELIEZER (brutal panda) it was soo lit tho ๐Ÿ”ฅ๐Ÿ”ฅ

@AfroSec
๐Ÿ”ฅ5โค1๐Ÿ’ฏ1
was reading a course called control system cuz ur boi has mid exam and was trynna relate it wiz cybersec :)

From Blue Team perspective ๐Ÿ™ƒ
Control: Cybersecurity:
Sensor Measurements โ†โ†’ SIEM Logs/Telemetry
Controller Action โ†โ†’ Security Automation
Setpoint โ†โ†’ Security Policy
Disturbance โ†โ†’ Attack/Threat

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
SECURITY CONTROL LOOP

THREAT โ†’ DETECTION โ†’ RESPONSE โ†’
โ†‘ โ”‚
โ””โ”€โ”€โ”€ FEEDBACK โ†โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

like SOC team isn't just monitoring - it's running a massive feedback control system. Every alert is a sensor reading, every playbook is a control algorithm

@AfroSec
๐Ÿ”ฅ2๐Ÿ‘2๐Ÿ˜ญ1
Forwarded from Brut Security (DarkShadowโœจ ShellSec)
Hey Hunter's,
Darkshadow here back again, dropping a really very interesting Method.

๐Ÿ’€Web cache to RCE!๐Ÿ˜

While i normally visit the web application i noticed, the website actively makes cache file from clint side to store errors.

Now The idea is, if we able to make any custom error then it will be cached, and if any how the error execute on the system we might see the output.

โœ…Exploit to reproduce final RCE:

1. The webapp was sending request from client side in a array based parameter.

2. Change the valid Input to a PHP code using system function. Here we just try to making a error using the invalid input.

3. Now the web application is not able to handle this input and makes error and store in a cache file.

4. After visiting the cache file, The error message reflecting on the cache file.

5. But wait, it's also execute my PHP code and store the command output in the file. Means we can execute OS commands output in cache file via making error. Means RCE!

Follow me for more methods x.com/darkshadow2bd
โšก2๐Ÿ‘1
lately am jst addicted to this song besmeam wtf ๐Ÿ˜ฎโ€๐Ÿ’จ๐Ÿ˜ฎโ€๐Ÿ’จ

@AfroSec
โคโ€๐Ÿ”ฅ3โค1
Forwarded from Mira
was learning sveltekit and thought it'd be cool to experiment with vercel ai-sdk as well... so, i find making decisions overwhelming. and i wanted to make it a bit gamified and actually helps me consider every possible outcomes. that's why i built pathly.

features:

- smart context aware AI chat with your decisions
- parallel selves and timelines from realstic POV
- timeline events simulation for possible outcomes
- AI decision analysis
- journal entries for your decisions
- beautiful dashboard and analytics page
- cool settings and keyboard shortcuts

it's customizable and you can even pass custom prompts for AI generations.

try it out:

- https://pathly-way.vercel.app

tech stack: SvelteKit, TypeScript, Better-Auth, Drizzle, Shadcn, Superforms

repo:

- https://github.com/AmanuelCh/Pathly

#MyProjects
๐Ÿ”ฅ4
We just wrapped up an amazing cybersecurity event organized by the AASTU Cyber Security Club (AASTU CSC) collaboration with INSA โ€” and we couldnโ€™t be more proud of the energy, excitement everyone brought today!

Huge thanks to everyone who showed up, engaged. Your presence truly fuels our passion to keep pushing the limits of cybersecurity learning at AASTU. ๐Ÿ™Œ

Today was mainly a talk session โ€” and yeah, time kinda ran away from us ๐Ÿ˜… โ€” but donโ€™t worry, this is just the beginning. Weโ€™ve got way more deep-dive technical sessions, live demos, and hands-on experiences lined up for the future.

#AASTUCSC #INSA #CYBERSECURITY

@AfroSec
โค5๐ŸŽ‰3๐Ÿ”ฅ1