Can you become a pen tester if you have autism?
https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/
<!-- SC_OFF -->Hi. I'm autistic and I would like to know if I can become a pen tester if I have autism. I was reading an article about the different types of pen testing, and it said something about black box pen testing. During that type of testing they're given little to no knowledge regarding the infrastructure of the business. How would I be able to know what to do during the black box pen testing phase, if I'm given little to no info? Also I have difficulties with interacting with people, socializing/starting conversations, executive dysfunction, organization, being alone, planning things, not getting social cues, and not making eye contact. Those are the hurdles that I struggle with as an autistic person. I also hate changes, but I prefer a routine. <!-- SC_ON --> submitted by /u/ELIDAL99 (https://www.reddit.com/user/ELIDAL99)
[link] (https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/) [comments] (https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/)
https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/
<!-- SC_OFF -->Hi. I'm autistic and I would like to know if I can become a pen tester if I have autism. I was reading an article about the different types of pen testing, and it said something about black box pen testing. During that type of testing they're given little to no knowledge regarding the infrastructure of the business. How would I be able to know what to do during the black box pen testing phase, if I'm given little to no info? Also I have difficulties with interacting with people, socializing/starting conversations, executive dysfunction, organization, being alone, planning things, not getting social cues, and not making eye contact. Those are the hurdles that I struggle with as an autistic person. I also hate changes, but I prefer a routine. <!-- SC_ON --> submitted by /u/ELIDAL99 (https://www.reddit.com/user/ELIDAL99)
[link] (https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/) [comments] (https://www.reddit.com/r/Pentesting/comments/xhilyw/can_you_become_a_pen_tester_if_you_have_autism/)
Authentication Bypass — Bypass OTP Verification
https://medium.com/@vignesh3004/authentication-bypass-bypass-otp-verification-79c5d6b8dfca?source=rss------bug_bounty-5
Hello everyone, I am Vignesh, a 20-year-old Security Researcher from TamilNadu, India😊.Continue reading on Medium » (https://medium.com/@vignesh3004/authentication-bypass-bypass-otp-verification-79c5d6b8dfca?source=rss------bug_bounty-5)
https://medium.com/@vignesh3004/authentication-bypass-bypass-otp-verification-79c5d6b8dfca?source=rss------bug_bounty-5
Hello everyone, I am Vignesh, a 20-year-old Security Researcher from TamilNadu, India😊.Continue reading on Medium » (https://medium.com/@vignesh3004/authentication-bypass-bypass-otp-verification-79c5d6b8dfca?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
It’s Time to Quit Windows
https://cdn-images-1.medium.com/max/1025/0*vQaSSsNkH0Pic78f.jpg
I recently wiped the SSD on my daily driver PC — deleting the Windows install that was on it as well — and replaced it with Arch Linux…
Continue reading on Medium »
It’s Time to Quit Windows
https://cdn-images-1.medium.com/max/1025/0*vQaSSsNkH0Pic78f.jpg
I recently wiped the SSD on my daily driver PC — deleting the Windows install that was on it as well — and replaced it with Arch Linux…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Uber’s hack, Twitter whistleblower updates and a White House cyber blitz
https://cdn-images-1.medium.com/max/2500/1*16DPrShUbuOdm_DoTkWPmg.png
Welcome to Changelog for 9/18/22, published by Synack! It’s me, Blake, coming up for air after a busy week for cybersecurity news. Let’s…
Continue reading on README_ »
Uber’s hack, Twitter whistleblower updates and a White House cyber blitz
https://cdn-images-1.medium.com/max/2500/1*16DPrShUbuOdm_DoTkWPmg.png
Welcome to Changelog for 9/18/22, published by Synack! It’s me, Blake, coming up for air after a busy week for cybersecurity news. Let’s…
Continue reading on README_ »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
|| SSH Tunnel ||
https://cdn-images-1.medium.com/max/1400/0*Yp6pN-Qy265VxgkE.jpg
A very popular service used by almost all system administrator for remote administration as it is secure encrypted connection. For a…
Continue reading on Medium »
|| SSH Tunnel ||
https://cdn-images-1.medium.com/max/1400/0*Yp6pN-Qy265VxgkE.jpg
A very popular service used by almost all system administrator for remote administration as it is secure encrypted connection. For a…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
|| NetCat: The Swiss Army Knife ||
https://cdn-images-1.medium.com/max/1152/0*N5XyKgSWJfsFUkZY.jpeg
Netcat is a super useful tool for a pentester. It gives you the ability to use the raw sockets. Ncat is similar tool and that can be used…
Continue reading on Medium »
|| NetCat: The Swiss Army Knife ||
https://cdn-images-1.medium.com/max/1152/0*N5XyKgSWJfsFUkZY.jpeg
Netcat is a super useful tool for a pentester. It gives you the ability to use the raw sockets. Ncat is similar tool and that can be used…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HAYSTACK@HTB
https://cdn-images-1.medium.com/max/600/0*H0hw4xWQBoL95iok.png
Haystack is an easy box from hackthebox. Ok let’s start.
Continue reading on Medium »
HAYSTACK@HTB
https://cdn-images-1.medium.com/max/600/0*H0hw4xWQBoL95iok.png
Haystack is an easy box from hackthebox. Ok let’s start.
Continue reading on Medium »
Hacking on Medium
TRAVERXEC@HTB
https://cdn-images-1.medium.com/max/600/0*5xiF3GGAHGmn9E8R.png
Traverxec is an easy box from hackthebox. Ok let’s start.
Continue reading on Medium »
TRAVERXEC@HTB
https://cdn-images-1.medium.com/max/600/0*5xiF3GGAHGmn9E8R.png
Traverxec is an easy box from hackthebox. Ok let’s start.
Continue reading on Medium »
Medium
TRAVERXEC@HTB
Traverxec is an easy box from hackthebox. Ok let’s start.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
b3dr0ck — Tryhackme
https://cdn-images-1.medium.com/max/1920/1*9VDSALv2pFezj40kebkaxg.png
Hi! Yesterday I finally jumped back to work on boxes on Tryhackme.com and decided to start with an easy box. It was quite an interesting…
Continue reading on Medium »
b3dr0ck — Tryhackme
https://cdn-images-1.medium.com/max/1920/1*9VDSALv2pFezj40kebkaxg.png
Hi! Yesterday I finally jumped back to work on boxes on Tryhackme.com and decided to start with an easy box. It was quite an interesting…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
DeathSleep : A PoC Implementation For An Evasion Technique To Terminate The Current Thread And Restore
DeathSleep, a PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution. IntroSleep and obfuscation methods are well known in the maldev community, with different implementations, they have the objective of hiding from memory scanners while sleeping, usually changing page protections and even adding cool features like encrypting the shellcode, but there is another important point to hide our shellcode, and is hiding the current execution thread. Spoofing the stack is cool, but after thinking a little about it I thought that there is no need to spoof the stack… if there is no stack https://s.w.org/images/core/emoji/14.0.0/72x72/1f642.png
The usability of this technique is left to the reader to assess, but in any case, I think it is a cool way to review some topics, and learn some maldev for those who, like me, are starting in this world.
The main implementation showed here holds everything that we need to take out of the stack in the data section, as global variables, but an impletementation moving everything to the heap will be published soon. It aims to show some key modifications that needs to be done to make this code pic and injectable.
This repository is mirrored between GitHub and GitLab. Whats going on?First of allEverything stated here comes from my understanding of the different topics covered, either from reading or experience during development. Im aware that Im not an expert and the last thing I want to do is spread misinformation, so if you think that something is not correct, I would love you to make me aware of it, you can contact me on twitter, or opening issues in this repo. Thank you very much for your understanding. https://s.w.org/images/core/emoji/14.0.0/72x72/1f642.png BasicsThe main objective of this technique is clear, terminating the current thread and restoring it before resuming execution, but what exactly does this mean, and which new constraints it puts in place?
To be able to restore the execution, we need to save two things before terminating the thread, first, the CPU state, and secondly the stack, and effectively set them up again after the new thread is launched.
I talked about new constraints that will appear in this techniche, and there are two big ones: First we need to store outside the stack anything that is needed from the moment the thread terminates until the stack is restored, and as you will see, it creates some new challenges.
Second, we always need at least another thread running in our process, since we are terminating our thread, if there are no other threads the process will end. I don’t think this a big problem, since most agents are injected in other processes, we can assume that this process will keep at least one thread running. DeathSleep componentsWe can view on this POC 4 core functions:
* Main program: This is where you would write your agent code, and it’s the portion of the code that will make use of DeathSleep
* Awake function: this is the entry point of all our threads, and it’s in charge of saving the starting point of the stack that we will be restoring. Also, it’s in charge of restoring the stack and CPU context when it’s needed, or just launching our main program.
* DeathSleep: this is the main function of this technique, and is in charge of backing up the thread context and stack, and also setting everything up for the magic to happen.
* Rebirth: A simple function only in charge of launching our new threads. Saving the stackWhen we are about to save the stack, a question is raised: how much of the stack needs to be saved?
Lets review first what is in the stack after we called the DeathSleep function (this is the function that saves t[...]
DeathSleep : A PoC Implementation For An Evasion Technique To Terminate The Current Thread And Restore
DeathSleep, a PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution. IntroSleep and obfuscation methods are well known in the maldev community, with different implementations, they have the objective of hiding from memory scanners while sleeping, usually changing page protections and even adding cool features like encrypting the shellcode, but there is another important point to hide our shellcode, and is hiding the current execution thread. Spoofing the stack is cool, but after thinking a little about it I thought that there is no need to spoof the stack… if there is no stack https://s.w.org/images/core/emoji/14.0.0/72x72/1f642.png
The usability of this technique is left to the reader to assess, but in any case, I think it is a cool way to review some topics, and learn some maldev for those who, like me, are starting in this world.
The main implementation showed here holds everything that we need to take out of the stack in the data section, as global variables, but an impletementation moving everything to the heap will be published soon. It aims to show some key modifications that needs to be done to make this code pic and injectable.
This repository is mirrored between GitHub and GitLab. Whats going on?First of allEverything stated here comes from my understanding of the different topics covered, either from reading or experience during development. Im aware that Im not an expert and the last thing I want to do is spread misinformation, so if you think that something is not correct, I would love you to make me aware of it, you can contact me on twitter, or opening issues in this repo. Thank you very much for your understanding. https://s.w.org/images/core/emoji/14.0.0/72x72/1f642.png BasicsThe main objective of this technique is clear, terminating the current thread and restoring it before resuming execution, but what exactly does this mean, and which new constraints it puts in place?
To be able to restore the execution, we need to save two things before terminating the thread, first, the CPU state, and secondly the stack, and effectively set them up again after the new thread is launched.
I talked about new constraints that will appear in this techniche, and there are two big ones: First we need to store outside the stack anything that is needed from the moment the thread terminates until the stack is restored, and as you will see, it creates some new challenges.
Second, we always need at least another thread running in our process, since we are terminating our thread, if there are no other threads the process will end. I don’t think this a big problem, since most agents are injected in other processes, we can assume that this process will keep at least one thread running. DeathSleep componentsWe can view on this POC 4 core functions:
* Main program: This is where you would write your agent code, and it’s the portion of the code that will make use of DeathSleep
* Awake function: this is the entry point of all our threads, and it’s in charge of saving the starting point of the stack that we will be restoring. Also, it’s in charge of restoring the stack and CPU context when it’s needed, or just launching our main program.
* DeathSleep: this is the main function of this technique, and is in charge of backing up the thread context and stack, and also setting everything up for the magic to happen.
* Rebirth: A simple function only in charge of launching our new threads. Saving the stackWhen we are about to save the stack, a question is raised: how much of the stack needs to be saved?
Lets review first what is in the stack after we called the DeathSleep function (this is the function that saves t[...]