#Threat_Research
CVE-2021-28474:
SharePoint RCE via Server-Side Control Interpretation Conflict
https://www.zerodayinitiative.com/blog/2021/7/7/cve-2021-28474-sharepoint-remote-code-execution-via-server-side-control-interpretation-conflict
CVE-2021-28474:
SharePoint RCE via Server-Side Control Interpretation Conflict
https://www.zerodayinitiative.com/blog/2021/7/7/cve-2021-28474-sharepoint-remote-code-execution-via-server-side-control-interpretation-conflict
Zero Day Initiative
Zero Day Initiative — CVE-2021-28474: SharePoint Remote Code Execution via Server-Side Control Interpretation Conflict
In May of 2021, Microsoft released a patch to correct CVE-2021-28474 , a remote code execution bug in supported versions of Microsoft SharePoint Server. This bug was reported to ZDI by an anonymous researcher and is also known as ZDI-21-574 . This blog…
venom - C2 shellcode generator,compiler and handler
#Metasploit #PAYLOADS #crypter #Hacker #MSFvenom #powersploit #C2
https://reconshell.com/venom-c2-shellcode-generatorcompiler-and-handler/
#Metasploit #PAYLOADS #crypter #Hacker #MSFvenom #powersploit #C2
https://reconshell.com/venom-c2-shellcode-generatorcompiler-and-handler/
Tor también se une a la fiebre de Rust y pretende reemplazar a C en un futuro | Linux Adictos
https://www.linuxadictos.com/tor-tambien-se-une-a-la-fiebre-de-rust-y-pretende-reemplazar-a-c-en-un-futuro.html
https://www.linuxadictos.com/tor-tambien-se-une-a-la-fiebre-de-rust-y-pretende-reemplazar-a-c-en-un-futuro.html
Linux Adictos
Tor también se une a la fiebre de Rust y pretende reemplazar a C en un futuro
Sus desarrolladores presentaron el proyecto Arti, dentro del cual se está trabajando para crear una implementación de Tor en el lenguaje Rust.
¿Cómo hacer ataques DDos en sitios web .onion con solo 4 comandos?
https://noticiasseguridad.com/tutoriales/como-hacer-ataques-ddos-en-sitios-web-onion-con-solo-4-comandos/
https://noticiasseguridad.com/tutoriales/como-hacer-ataques-ddos-en-sitios-web-onion-con-solo-4-comandos/
Noticias de seguridad informática, ciberseguridad y hacking
¿Cómo hacer ataques DDos en sitios web .onion con solo 4 comandos?
¿Cómo hacer ataques DDos en sitios web .onion con solo 4 comandos? - Tutoriales
📃 "Las 15 mejores herramientas para realizar análisis de vulnerabilidades internas y hackear redes corporativas" https://noticiasseguridad.com/tutoriales/las-15-mejores-herramientas-para-realizar-analisis-de-vulnerabilidades-internas-y-hackear-redes-corporativas/
Noticiasseguridad
Las 15 mejores herramientas para realizar análisis de vulnerabilidades internas y hackear redes corporativas
Las 15 mejores herramientas para realizar análisis de vulnerabilidades internas y hackear redes corporativas - Tutoriales
Robo de cuentas en WhatsApp al burlar la doble autenticación
https://blog.segu-info.com.ar/2021/07/robo-de-cuentas-en-whatsapp-al-burlar.html
https://blog.segu-info.com.ar/2021/07/robo-de-cuentas-en-whatsapp-al-burlar.html
Segu-Info - Ciberseguridad desde 2000
Robo de cuentas en WhatsApp al burlar la doble autenticación
📃 " CrackMapExec: navaja suiza para el pentesting en Windows" https://blog.elhacker.net/2021/05/crackmapexec-navaja-suiza-para-el-pentesting-en-Wnd.html
Blog elhacker.NET
CrackMapExec: navaja suiza para el pentesting en Windows
Blog sobre informática, tecnología y seguridad con manuales, tutoriales y documentación sobre herramientas y programas
HackTheBox — Spectra Machine Walkthrough https://infosecwriteups.com/hackthebox-spectra-machine-walkthrough-9339f01b65a0?source=rss----7b722bfd1b8d---4
Medium
HackTheBox — Spectra Machine Walkthrough
Hello all great hackers and penetration testers out there. My name is Shantanu Kulkarni. I am Security Consultant and part time Bug Bounty Hunter. Recently I have started solving machines on HTB and…
[webapps] Zoo Management System 1.0 - 'Multiple' Stored Cross-Site-Scripting (XSS)
Zoo Management System 1.0 - 'Multiple' Stored Cross-Site-Scripting (XSS)
https://www.exploit-db.com/exploits/50117
Zoo Management System 1.0 - 'Multiple' Stored Cross-Site-Scripting (XSS)
https://www.exploit-db.com/exploits/50117
Exploit Database
Zoo Management System 1.0 - 'Multiple' Persistent Cross-Site-Scripting (XSS)
Zoo Management System 1.0 - 'Multiple' Persistent Cross-Site-Scripting (XSS).. webapps exploit for PHP platform
Mastering Time Series Forecasting with Python
Description 📃 : Learn Python, Time Series Model Additive, Multiplicative, AR, Moving Average, Exponential, ARIMA models
Course Category 📰 : Development
Course Length 📏 : 11.5 hours
Enroll Now 👉 : https://www.udemy.com/course/complete-practical-time-series-forecasting-in-python?source=@udemyCoursesFreeTelegram&couponCode=28F592A2D8974526A5B9
Description 📃 : Learn Python, Time Series Model Additive, Multiplicative, AR, Moving Average, Exponential, ARIMA models
Course Category 📰 : Development
Course Length 📏 : 11.5 hours
Enroll Now 👉 : https://www.udemy.com/course/complete-practical-time-series-forecasting-in-python?source=@udemyCoursesFreeTelegram&couponCode=28F592A2D8974526A5B9
Udemy
Mastering Time Series Forecasting with Python
Learn Python, Time Series Model Additive, Multiplicative, AR, Moving Average, Exponential, ARIMA models
📃 "Network Hacking con Impacket – Parte 1" https://thehackerway.com/2021/04/26/network-hacking-con-impacket-parte-1/
📃 "Network Hacking con Impacket – Parte 2" https://thehackerway.com/2021/05/13/network-hacking-con-impacket-parte-2/
📃 "Network Hacking con Impacket – Parte 3" https://thehackerway.com/2021/05/20/network-hacking-con-impacket-parte-3/
📃 "Network Hacking con Impacket – Parte 4" https://thehackerway.com/2021/05/27/network-hacking-con-impacket-parte-4/
📃 "Network Hacking con Impacket – Parte 5" https://thehackerway.com/2021/05/31/network-hacking-con-impacket-parte-5/
📃 "Network Hacking con Impacket – Parte 2" https://thehackerway.com/2021/05/13/network-hacking-con-impacket-parte-2/
📃 "Network Hacking con Impacket – Parte 3" https://thehackerway.com/2021/05/20/network-hacking-con-impacket-parte-3/
📃 "Network Hacking con Impacket – Parte 4" https://thehackerway.com/2021/05/27/network-hacking-con-impacket-parte-4/
📃 "Network Hacking con Impacket – Parte 5" https://thehackerway.com/2021/05/31/network-hacking-con-impacket-parte-5/
The Hacker Way
Network Hacking con Impacket - Parte 1 - The Hacker Way
Demostración en vídeo de este post
Windows Print Spooler Remote Code Execution Vulnerability
CVE-2021-34527
Security Vulnerability
Released: Jul 1, 2021
Last updated: Jul 8, 2021
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34527
CVE-2021-34527
Security Vulnerability
Released: Jul 1, 2021
Last updated: Jul 8, 2021
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34527
#PythonPRACTICA
https://youtu.be/chPhlsHoEPo
*INDICE DEL CURSO:*
1. Introducción: 00:32
2. Hola Mundo: 12:51
3. Typos de datos en Python: 26:14
4. Variables: 51:08
5. Strings 01:02:46
6. Numeros en Python: 01:26:48
7. Listas 01:38:10
8. Tuplas 01:59:20
9. Sets 02:07:08
10. Diccionarios 02:11:50
11. Condicionales 02:19:54
12. Bucles (For & while) 02:36:27
13 Funciones 02:46:52
14. Modulos en Python 02:56:24
https://youtu.be/chPhlsHoEPo
*INDICE DEL CURSO:*
1. Introducción: 00:32
2. Hola Mundo: 12:51
3. Typos de datos en Python: 26:14
4. Variables: 51:08
5. Strings 01:02:46
6. Numeros en Python: 01:26:48
7. Listas 01:38:10
8. Tuplas 01:59:20
9. Sets 02:07:08
10. Diccionarios 02:11:50
11. Condicionales 02:19:54
12. Bucles (For & while) 02:36:27
13 Funciones 02:46:52
14. Modulos en Python 02:56:24
YouTube
Curso Python para Principiantes
¡Gracias a Kite por patrocinar esta sección del vídeo! Kite es un asistente de autocompletado gratuito con tecnología de IA que te ayudará a codificar de forma más rápida e inteligente:
Haz clic aquí ➞ https://bit.ly/3dPzXHe ➞ para saber más.
Python es uno…
Haz clic aquí ➞ https://bit.ly/3dPzXHe ➞ para saber más.
Python es uno…
Pre-Denial Of Service (set-up 2FA on unverified account) https://medium.com/@vkmrocks1000/pre-denial-of-service-set-up-2fa-on-unverified-account-8399af52ea2d
Medium
Pre-Denial Of Service (set-up 2FA on unverified account)
This is my first write-up , I’ll try to keep it short and simple.
Diccionario personalizados de contraseñas para organizaciones
https://blog.segu-info.com.ar/2021/07/diccionario-personalizados-de.html
https://blog.segu-info.com.ar/2021/07/diccionario-personalizados-de.html
Microsoft SharePoint Server Remote Code Execution Vulnerability
In a network-based attack, an authenticated attacker can gain access to create a site and could execute code remotely within the Sharepoint Server.
Security updates:
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-28474
In a network-based attack, an authenticated attacker can gain access to create a site and could execute code remotely within the Sharepoint Server.
Security updates:
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-28474