Implementation of YOLO Reflective Loader, Indirect Syscalls, SWAPPALA and SLEAPING for improved in-memory obfuscation in the context of Reflective DLL. All the researches this code is based on are in the README, as well as little summary and demo.
https://www.reddit.com/r/redteamsec/comments/1dcg9b0/implementation_of_yolo_reflective_loader_indirect/
submitted by /u/oldboy21 (https://www.reddit.com/user/oldboy21)
[link] (https://github.com/oldboy21/RflDllOb) [comments] (https://www.reddit.com/r/redteamsec/comments/1dcg9b0/implementation_of_yolo_reflective_loader_indirect/)
https://www.reddit.com/r/redteamsec/comments/1dcg9b0/implementation_of_yolo_reflective_loader_indirect/
submitted by /u/oldboy21 (https://www.reddit.com/user/oldboy21)
[link] (https://github.com/oldboy21/RflDllOb) [comments] (https://www.reddit.com/r/redteamsec/comments/1dcg9b0/implementation_of_yolo_reflective_loader_indirect/)
POC — CVE-2024–4956 -Unauthenticated Path Traversal
POC — CVE-2024–4956 — Nexus Repository Manager 3 Unauthenticated Path TraversalContinue reading on Medium »
Read more...
POC — CVE-2024–4956 — Nexus Repository Manager 3 Unauthenticated Path TraversalContinue reading on Medium »
Read more...
Medium
POC — CVE-2024–4956 -Unauthenticated Path Traversal
POC — CVE-2024–4956 — Nexus Repository Manager 3 Unauthenticated Path Traversal
I reported Zero-Day (CVE-2024–24919) … and got informative.
Executive Summary :Continue reading on Medium »
Read more...
Executive Summary :Continue reading on Medium »
Read more...
Medium
I reported Zero-Day (CVE-2024–24919) … and got informative.
Executive Summary :
Why Bad Reviews Can Kill Your Software
By Joseph Lacsamana | June 10, 2024Continue reading on Medium »
Read more...
By Joseph Lacsamana | June 10, 2024Continue reading on Medium »
Read more...
Medium
Why Bad Reviews Can Kill Your Software
By Joseph Lacsamana | June 10, 2024
Does Preventing XSS prevents HTML injection automatically?
https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/
<!-- SC_OFF -->I was having one doubt when i found xss and html injection both in one application then I thought why give them seperately? If remediating xss will remediate HTML Injection? Do we report both separately or give xss only? <!-- SC_ON --> submitted by /u/2000_vijay (https://www.reddit.com/user/2000_vijay)
[link] (https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/) [comments] (https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/)
https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/
<!-- SC_OFF -->I was having one doubt when i found xss and html injection both in one application then I thought why give them seperately? If remediating xss will remediate HTML Injection? Do we report both separately or give xss only? <!-- SC_ON --> submitted by /u/2000_vijay (https://www.reddit.com/user/2000_vijay)
[link] (https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/) [comments] (https://www.reddit.com/r/Pentesting/comments/1dcfcrz/does_preventing_xss_prevents_html_injection/)
POC — CVE-2024–4956 -Unauthenticated Path Traversal
https://medium.com/@verylazytech/poc-cve-2024-4956-unauthenticated-path-traversal-f24b1a595e0e?source=rss------bug_bounty-5
https://medium.com/@verylazytech/poc-cve-2024-4956-unauthenticated-path-traversal-f24b1a595e0e?source=rss------bug_bounty-5
POC — CVE-2024–4956 — Nexus Repository Manager 3 Unauthenticated Path TraversalContinue reading on Medium » (https://medium.com/@verylazytech/poc-cve-2024-4956-unauthenticated-path-traversal-f24b1a595e0e?source=rss------bug_bounty-5)
I reported Zero-Day (CVE-2024–24919) … and got informative.
https://systemweakness.com/i-reported-zero-day-cve-2024-24919-and-got-informative-25409fac9765?source=rss------bug_bounty-5
https://systemweakness.com/i-reported-zero-day-cve-2024-24919-and-got-informative-25409fac9765?source=rss------bug_bounty-5
Executive Summary :Continue reading on System Weakness » (https://systemweakness.com/i-reported-zero-day-cve-2024-24919-and-got-informative-25409fac9765?source=rss------bug_bounty-5)
Why Bad Reviews Can Kill Your Software
https://medium.com/@joseph_52850/why-bad-reviews-can-kill-your-software-928f4af30a53?source=rss------bug_bounty-5
https://medium.com/@joseph_52850/why-bad-reviews-can-kill-your-software-928f4af30a53?source=rss------bug_bounty-5
By Joseph Lacsamana | June 10, 2024Continue reading on Medium » (https://medium.com/@joseph_52850/why-bad-reviews-can-kill-your-software-928f4af30a53?source=rss------bug_bounty-5)
Bug Bounty Programs: How Outsourcing Can Help Your Project
Integritee is kickstarting a bug bounty program, encouraging ethical hackers and developers interested in our technology to help us…Continue reading on Integritee Network »
Read more...
Integritee is kickstarting a bug bounty program, encouraging ethical hackers and developers interested in our technology to help us…Continue reading on Integritee Network »
Read more...
Medium
Bug Bounty Programs: How Outsourcing Can Help Your Project
Integritee is kickstarting a bug bounty program, encouraging ethical hackers and developers interested in our technology to help us enhance…
Bug Bounty Programs: How Outsourcing Can Help Your Project
https://medium.com/integritee/bug-bounty-programs-how-outsourcing-can-help-your-project-644539de575a?source=rss------bug_bounty-5
https://medium.com/integritee/bug-bounty-programs-how-outsourcing-can-help-your-project-644539de575a?source=rss------bug_bounty-5
Integritee is kickstarting a bug bounty program, encouraging ethical hackers and developers interested in our technology to help us…Continue reading on Integritee Network » (https://medium.com/integritee/bug-bounty-programs-how-outsourcing-can-help-your-project-644539de575a?source=rss------bug_bounty-5)
How I Found My First Bug Through Simple Fuzzing
https://medium.com/@hashimamin/how-i-found-my-first-bug-through-simple-fuzzing-c7d694a59a6b?source=rss------bug_bounty-5
https://medium.com/@hashimamin/how-i-found-my-first-bug-through-simple-fuzzing-c7d694a59a6b?source=rss------bug_bounty-5