Forwarded from JavaSec
1-place on the international AITU CTF on Kazakhstan π°πΏ
Ikki kun davomida bo'lgan CTFda Team1337 1-o'rinni egalladi!
Cyber polygon judayam qiziq va yaxshi tuzilgan, barcha narsalar bir biriga bog'liq, oddiy bir kichik narsani o'tkazib yuborishlik soatlab "stuck" bo'lib qolishga sabab bo'ladi...
Bizning natijalar:
Hech qaysi jamoa SCADA tizimlarigacha borib SCADA tizimlarini o'chira olmadi. Ammo faqat Team1337 buni uddaladi.
πΊπΏ O'zbekistondan biz yolg'iz emas edik.
Zee jamoasidan Muhammad'ni (mvhhd) Geogusser'da muvaffaqiyatli 2 o'rin bilan tabriklayman.
TuranSecurity'ga aloxida raxmat, qo'llab quvatlagani va doimiy bir jamoa bo'lib ishlaganimiz uchun barchaga raxmatβ οΈ
Telegramπ± Linkedin π±
Ikki kun davomida bo'lgan CTFda Team1337 1-o'rinni egalladi!
Bo'lib o'tgan musoboqada turli xil davlatdan jamoalar kelishdi, ko'pchilik taniydigan HackerLabπ·πΊ ,Kheshigπ²π³ , BunkyoWesternsπ―π΅ , Mimicatsπ°πΏ jamoalari yaxshigini o'zini ko'rsatdi. Bunday kuchli jamoalarga qarshi turish ham oson bo'lmaydi.
Cyber polygon judayam qiziq va yaxshi tuzilgan, barcha narsalar bir biriga bog'liq, oddiy bir kichik narsani o'tkazib yuborishlik soatlab "stuck" bo'lib qolishga sabab bo'ladi...
Bizning natijalar:
Team1337 tomonidan qilingan first bloodlar:
1. SCADA: HOSPITAL
2. Ransomware attack on backup server
3. Leak of confidential data: healthcare service
4. Leak of confidential data: secret company contracts
Hech qaysi jamoa SCADA tizimlarigacha borib SCADA tizimlarini o'chira olmadi. Ammo faqat Team1337 buni uddaladi.
Zee jamoasi ham birinchi kunda o'zlarini juda yaxshi ko'rsatib 2 o'ringa chiqib ancha vaqt buni ushlab turishdi, hardware taskni ham ishlashdi ammo CTFning so'ngida 11-o'rin bo'lib qolishdi. Hech qisi yo'q birinchi marotaba qatnashayotgan teamga bu juda zo'r natija va yaxshi tajriba bo'ldi deb o'ylayman.
Zee jamoasidan Muhammad'ni (mvhhd) Geogusser'da muvaffaqiyatli 2 o'rin bilan tabriklayman.
TuranSecurity'ga aloxida raxmat, qo'llab quvatlagani va doimiy bir jamoa bo'lib ishlaganimiz uchun barchaga raxmat
Telegram
Please open Telegram to view this post
VIEW IN TELEGRAM
π₯9π2β€1
JavaSec
1-place on the international AITU CTF on Kazakhstan π°πΏ Ikki kun davomida bo'lgan CTFda Team1337 1-o'rinni egalladi! Bo'lib o'tgan musoboqada turli xil davlatdan jamoalar kelishdi, ko'pchilik taniydigan HackerLab π·πΊ ,Kheshig π²π³ , BunkyoWesterns π―π΅ , Mimicatsβ¦
Congratulations guys π₯π₯π₯
π€8
Shinyhunters continues to leak data from data owners who have not paid for it. Next target Vimeo...
Example: Udemy 1.4GB data is breached
#DataLeak #Shinyhunters
Example: Udemy 1.4GB data is breached
#DataLeak #Shinyhunters
π±1
Forwarded from Brut Security
π₯ GitHub RCE via single git push!
CVE-2026-3854: Unsanitized push options let attackers run commands on backend servers, bypassing sandboxing (cross-tenant risk).
π Learn how header injection led to full compromise β https://thehackernews.com/2026/04/researchers-discover-critical-github.html?m=1
CVE-2026-3854: Unsanitized push options let attackers run commands on backend servers, bypassing sandboxing (cross-tenant risk).
π Learn how header injection led to full compromise β https://thehackernews.com/2026/04/researchers-discover-critical-github.html?m=1
π₯3