Real profit
2.88K subscribers
107 photos
4 videos
155 files
3.37K links
Just invest your time
Download Telegram
Safely detect whether a FortiGate SSL VPN is vulnerable to CVE-2024-21762
https://github.com/BishopFox/cve-2024-21762-check
PoC for CVE-2023-50386
Apache Solr Backup/Restore APIs RCE
https://github.com/vvmdx/Apache-Solr-RCE_CVE-2023-50386_POC
APT37's ROKRAT HWP Object Linking and Embedding
https://www.0x0v1.com/rearchive-rokrat-hwp
OWASP Top 10 explained (3) : SQL Injection
https://lab.scub.net/owasp-top-10-3-sql-injection-78a59edba83b
Passing arguments via rundll32.exe to function exported by DLL
https://stmxcsr.com/micro/rundll-parse-args.html
Taking a deep dive into SmokeLoader
https://farghlymal.github.io/SmokeLoader-Analysis
pmesh: is an all-in-one service manager, reverse proxy, and enterprise service bus. It is designed to be a simple and powerful all-in-one replacement for a wide variety of tools commonly deployed in web services
https://github.com/pme-sh/pmesh
sebel: is a Go package that provides functionality for checking SSL/TLS certificates against malicious connections, by identifying and blacklisting certificates used by botnet command and control (C&C) servers
https://github.com/teler-sh/sebel
F31:Tool for hiding Kali Linux on the network
https://github.com/casterbyte/F31
Cyber-security-practice: ALL cyber-security-practice, include exploit loophole , web attack ,cryptographic, system explotation, developing tools and so on
https://github.com/Stander-by/Cyber-security-practice
ComPromptMized: Unleashing Zero-click Worms that Target GenAI-Powered Applications
https://github.com/StavC/ComPromptMized
linjector-rs: Code injection on Android without ptrace
https://github.com/erfur/linjector-rs
Trojan written in C++ for Windows
https://github.com/sergiLopez/Flanders-Trojan
Exploit for CVE-2024-27198 - TeamCity Server
https://github.com/yoryio/CVE-2024-27198
CVE-2024-27198 and CVE-2024-27199: JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities (FIXED)
https://www.rapid7.com/blog/post/2024/03/04/etr-cve-2024-27198-and-cve-2024-27199-jetbrains-teamcity-multiple-authentication-bypass-vulnerabilities-fixed
SharpThief: Steal a file's icon, resource information, version information, modification time, and digital signature with one click to reduce program entropy
https://github.com/INotGreen/SharpThief