De momento solo se ha montado contenido de Azure: https://discord.gg/5JRzRhyc
Discord
Join the Anonimo501 Discord Server!
Check out the Anonimo501 community on Discord - hang out with 44 other members and enjoy free voice and text chat.
๐ "Cรณmo buscar vulnerabilidades en SmartContracts, SQL Injection, XSS o bugs Python con ChatGPT" https://www.elladodelmal.com/2023/01/como-buscar-vulnerabilidades-en.html
Elladodelmal
Cรณmo buscar vulnerabilidades en SmartContracts, SQL Injection, XSS o bugs Python con ChatGPT
Blog personal de Chema Alonso (CDO Telefรณnica, 0xWord, MyPublicInbox, Singularity Hackers) sobre seguridad, hacking, hackers y Cรกlico Electrรณnico.
OWASP API Security 2023:
- Broken object level authorization
- Broken authentication
- Broken object property level authorization
- Unrestricted resource consumption
- Broken function level authorization
- Server side request forgery
- Security misconfiguration
- Lack of protection from authentication threats
- Improper assets management
- Unsafe consumption of APIs
https://github.com/OWASP/API-Security/tree/master/2023/en/src
- Broken object level authorization
- Broken authentication
- Broken object property level authorization
- Unrestricted resource consumption
- Broken function level authorization
- Server side request forgery
- Security misconfiguration
- Lack of protection from authentication threats
- Improper assets management
- Unsafe consumption of APIs
https://github.com/OWASP/API-Security/tree/master/2023/en/src
๐2
Decider: herramienta gratuita para generar informes de MITRE ATT&CK
https://blog.segu-info.com.ar/2023/03/decider-herramienta-gratuita-para.html
https://blog.segu-info.com.ar/2023/03/decider-herramienta-gratuita-para.html
๐ "10 Herramientas esenciales para pentesting en Active Directory โ Parte 1 de 2" https://thehackerway.com/2023/01/18/10-herramientas-imprescindibles-para-pentesting-en-active-directory/
๐ "10 Herramientas esenciales para pentesting en Active Directory โ Parte 2 de 2" https://thehackerway.com/2023/01/25/10-herramientas-esenciales-para-pentesting-en-active-directory-parte-2-de-2/
๐ Evil-WinRM https://t.me/seguridadinformatic4/2984
๐ GhostPack https://t.me/seguridadinformatic4/3708
๐ CrackMapExec https://t.me/seguridadinformatic4/2659
๐ ADReaper https://github.com/AidenPearce369/ADReaper
๐ Certify https://github.com/GhostPack/Certify y Certipy https://github.com/ly4k/Certipy
๐ BloodHound https://github.com/BloodHoundAD/BloodHound y SilentHound https://github.com/layer8secure/SilentHound
๐ PingCastle https://www.pingcastle.com/
๐ Impacket https://github.com/fortra/impacket
๐ WinPEAS https://github.com/carlospolop/PEASS-ng/tree/master/winPEAS
๐ Mimikatz https://github.com/gentilkiwi/mimikatz
๐ "10 Herramientas esenciales para pentesting en Active Directory โ Parte 2 de 2" https://thehackerway.com/2023/01/25/10-herramientas-esenciales-para-pentesting-en-active-directory-parte-2-de-2/
๐ Evil-WinRM https://t.me/seguridadinformatic4/2984
๐ GhostPack https://t.me/seguridadinformatic4/3708
๐ CrackMapExec https://t.me/seguridadinformatic4/2659
๐ ADReaper https://github.com/AidenPearce369/ADReaper
๐ Certify https://github.com/GhostPack/Certify y Certipy https://github.com/ly4k/Certipy
๐ BloodHound https://github.com/BloodHoundAD/BloodHound y SilentHound https://github.com/layer8secure/SilentHound
๐ PingCastle https://www.pingcastle.com/
๐ Impacket https://github.com/fortra/impacket
๐ WinPEAS https://github.com/carlospolop/PEASS-ng/tree/master/winPEAS
๐ Mimikatz https://github.com/gentilkiwi/mimikatz
The Hacker Way
10 Herramientas esenciales para pentesting en Active Directory - Parte 1 de 2 - The Hacker Way
Demostraciรณn en vรญdeo de รฉste post:
Researchers Released MS Office Zero-Day Vulnerability Details and Exploit Code https://www.cyberkendra.com/2023/03/researchers-released-ms-office-zero-day.html
Cyber Kendra
Researchers Released MS Office Zero-Day Vulnerability Details and Exploit Code
Microsoft fixed MS Word RCE vulnerability (CVE-2023-21716) that can lead to remote code execution.
๐2
QRExfiltrate: exfiltrar datos mediante un QR animado
https://blog.segu-info.com.ar/2023/03/qrexfiltrate-exfiltrar-datos-mediante.html
https://blog.segu-info.com.ar/2023/03/qrexfiltrate-exfiltrar-datos-mediante.html
Quien interesados en presentar un examen de certificacion Microsoft (๐๐จ ๐ข๐ฆ๐ฉ๐จ๐ซ๐ญ๐ ๐๐ฎ๐๐ฅ ๐ฌ๐๐) Se esta ๐จ๐๐ซ๐๐๐ข๐๐ง๐๐จ ๐ฏ๐จ๐ฎ๐๐ก๐๐ซ๐ฌ ๐ช๐ฎ๐ ๐๐ฎ๐๐ซ๐ ๐ฅ๐ ๐ฆ๐ข๐ญ๐๐ ๐๐% ๐๐๐ฅ ๐ฏ๐๐ฅ๐จ๐ซ ๐๐๐ฅ ๐๐ฑ๐ฬ๐ฆ๐๐ง๐๐ฌ ๐๐ข๐๐ซ๐จ๐ฌ๐จ๐๐ญ (๐๐ฑ๐๐ฆ๐๐ง ๐ญ๐จ๐ญ๐๐ฅ ๐ฏ๐๐ฅ๐ ๐๐ ๐๐จ๐ฅ๐๐ซ๐๐ฌ) ๐ฉ๐๐ซ๐จ ๐๐จ๐ง ๐๐ฅ ๐ฏ๐จ๐ฎ๐๐ก๐๐ซ ๐ช๐ฎ๐๐๐ ๐๐ง ๐๐ ๐๐จ๐ฅ๐๐ซ๐๐ฌ, ๐๐ฅ ๐๐จ๐ฌ๐ญ๐จ ๐๐๐ฅ ๐ฏ๐จ๐ฎ๐๐ก๐๐ซ ๐๐ฌ ๐๐ ๐๐๐ ๐ฆ๐ข๐ฅ ๐ฉ๐๐ฌ๐จ๐ฌ ๐๐จ๐ฅ๐จ๐ฆ๐๐ข๐๐ง๐จ๐ฌ, ๐๐ฎ๐ข๐๐ซ๐ ๐๐๐๐ข๐ซ ๐ช๐ฎ๐ ๐ฌ๐จ๐ฅ๐จ ๐ฏ๐๐ฌ ๐ข๐ง๐ฏ๐๐ซ๐ญ๐ข๐ซ ๐๐ฅ๐ซ๐๐๐๐๐จ๐ซ ๐๐ ๐๐ ๐๐จ๐ฅ๐๐ซ๐๐ฌ ๐๐ง ๐ญ๐จ๐ญ๐๐ฅ ๐ฉ๐จ๐ซ ๐๐ฅ ๐๐ฑ๐๐ฆ๐๐ง, ๐๐ฌ๐๐ ๐ช๐ฎ๐ ๐๐ก๐จ๐ซ๐ซ๐๐ฌ ๐๐ ๐๐จ๐ฅ๐๐ซ๐๐ฌ.
Comunicarse por Whastapp: +573147102178
Comunicarse por LinkedIn: https://lnkd.in/ekKZYjw6
Listado Oficial Certificaciones Microsoft:
https://lnkd.in/eD2NpXck
Comunicarse por Whastapp: +573147102178
Comunicarse por LinkedIn: https://lnkd.in/ekKZYjw6
Listado Oficial Certificaciones Microsoft:
https://lnkd.in/eD2NpXck
lnkd.in
LinkedIn
This link will take you to a page thatโs not on LinkedIn
CVE-2023-21716: vulnerabilidad crรญtica en MS Word al abrir documento RTF malicioso (CVE-2023-21716)
https://blog.segu-info.com.ar/2023/03/cve-2023-21716-vulnerabilidad-critica.html
https://blog.segu-info.com.ar/2023/03/cve-2023-21716-vulnerabilidad-critica.html
๐1
CorePlague: vulnerabilidades graves en Jenkins
https://blog.segu-info.com.ar/2023/03/coreplague-vulnerabilidades-graves-en.html
https://blog.segu-info.com.ar/2023/03/coreplague-vulnerabilidades-graves-en.html
os comparto para los nuevos del grupo el canal de youtube perteneciente a este canal de telegram.
Saludos.
https://www.youtube.com/@Anonimo501
Saludos.
https://www.youtube.com/@Anonimo501
๐1
(Otra) vulnerabilidad crรญtica en Fortinet (CVE-2023-25610)
https://blog.segu-info.com.ar/2023/03/otra-vulnerabilidad-critica-en-fortinet.html
https://blog.segu-info.com.ar/2023/03/otra-vulnerabilidad-critica-en-fortinet.html