LinuxSec
@linuxsec
890
subscribers
613
links
LinuxSec Telegram Channel
Download Telegram
Join
LinuxSec
890 subscribers
LinuxSec
https://www.linuxsec.org/2020/05/memberi-password-pada-usb-flashdisk.html
LinuxSec
Memberi Password pada USB Flashdisk di Debian dan Ubuntu
Memberi Password pada USB Flashdisk di Debian dan Ubuntu . Di tutorial ini saya akan sharing sedikit bagaimana cara memberikan password pada...
LinuxSec
https://medium.com/swlh/mastering-the-skills-of-bug-bounty-2201eb6a9f4
Medium
Mastering the Skills of Bug Bounty
Your syllabus for going from newbie to top hacker
LinuxSec
https://medium.com/@win3zz/how-i-made-31500-by-submitting-a-bug-to-facebook-d31bb046e204
Medium
How I made $31500 by submitting a bug to Facebook
How did I found SSRF in Facebook — the story of my first bug bounty
LinuxSec
https://www.linuxsec.org/2020/06/mengoptimalkan-ssd-pada-linux.html
LinuxSec
Mengoptimalkan SSD di Sistem Operasi Linux
Solid-state drive adalah perangkat penyimpanan solid-state yang menggunakan rangkaian sirkuit terintegrasi untuk menyimpan data secara terus...
LinuxSec
https://www.infosecmatter.com/top-10-vulnerabilities-internal-infrastructure-pentest/
InfosecMatter
Top 10 Vulnerabilities: Internal Infrastructure Pentest - InfosecMatter
Top #10 vulnerabilities found during internal infrastructure penetration tests. Weak and default passwords, outdated software, insufficient network segregation..
LinuxSec
https://blog.compactbyte.com/2020/06/05/mengenal-scripting-zed-attack-proxy-zap/
Amazing Grace
Mengenal Scripting Zed Attack Proxy (ZAP)
Zed Attack Proxy (ZAP/Zaproxy) adalah intercepting proxy untuk pentesting aplikasi berbasis web. ZAP bisa dipakai untuk aplikasi web maupun aplikasi mobile/desktop yang memakai HTTP/HTTPS/Websocket. Jika belum mengenai ZAP, saya pernah menuliskan dasarnya…
LinuxSec
http://www.firstsight.me/2020/06/from-399-to-1650-usd-part-i-simple-vertical-privilege-escalation-by-changing-http-response/
LinuxSec
https://news.linuxsec.org/subdomain-situs-kemdikbud-diretas-hacker/
LinuxSec News
Subdomain Situs Kemdikbud Diretas Hacker
Baru-baru ini defacer atau peretas dengan codename KimiHmei7 mengusili subdomain dari website kemdikbud.go.id. Pelaku yang berasal dari kelompok
LinuxSec
https://blog.matthieud.me/2019/microservices-considered-harmful/
LinuxSec
https://www.linuxsec.org/2020/06/konfigurasi-torrent-leech-transmission.html
LinuxSec
Konfigurasi Torrent Leech Transmission di Server Ubuntu
Konfigurasi Torrent Leech Transmission di Server Ubuntu . Bagi para tukang download torrent tentu sangat paham tentang leech dan seed pada ...
LinuxSec
https://medium.com/bugbountywriteup/zippy-challenge-writeup-cyberhack-ctf-80eb1d422249
Medium
Zippy Challenge writeup CyberHack CTF
Zippy was one the challenge for CybeHhack CTF under Web category. It was very interesting challenge as we need to exploit the PHP zip file…
LinuxSec
https://www.linuxsec.org/2020/06/cara-mudah-install-rust-di-gnulinux.html
LinuxSec
Cara Mudah Install Rust di GNU/Linux
Cara Install Rust di GNU/Linux . Di tutorial ini saya akan sharing sedikit mengenai bagaimana cara instalasi Rust di Linux. Rust sendiri mer...
LinuxSec
https://www.linuxsec.org/2020/06/spotify-cli.html
LinuxSec
Mendengarkan Musik Spotify dari Terminal Linux
Mendengarkan Musik Spotify dari Terminal Linux . Beberapa waktu yang lalu saya sempat membahas bagaimana cara instal Spotify di Linux . Spot...
LinuxSec
https://exploit.linuxsec.org/rce-pada-redis-via-master-slave-replication/
LinuxSec Exploit
RCE pada Redis via Master-Slave Replication
RCE pada Service Redis via Master-Slave Replication. Service Redis yang terekspos ke publik sangat berbahaya karena selain kita bisa melihat informasi
LinuxSec
https://www.linuxsec.org/2020/06/cara-melihat-ip-publik-melalui-terminal.html
LinuxSec
Cara Melihat IP Publik melalui Terminal Linux
Cara Melihat IP Publik melalui Terminal Linux. Di tutorial ini saya akan sharing sedikit bagaimana cara melihat IP publik dari koneksi kita...
LinuxSec
https://medium.com/@aseem.shrey/one-token-to-leak-them-all-the-story-of-a-8000-npm-token-79b13af182a3
Medium
One Token to leak them all : The story of a $8000 NPM_TOKEN
Not long ago, I started a youtube channel, HackingSimplified.
LinuxSec
https://medium.com/@thibeaultchenu/how-did-i-get-access-to-server-and-database-of-a-french-bank-6bab0ed30463
LinuxSec
https://medium.com/@keshavaarav22/bypassing-rate-limit-like-a-pro-5f3e40250d3c
Medium
Bypassing Rate Limit like a PRO !
Hello Bug Bounty Hunters!
LinuxSec
https://medium.com/@avanishpathak46/an-interesting-account-takeover-vulnerability-f5bf6a89152c
Medium
An Interesting Account Takeover Vulnerability
Introduction :
LinuxSec
https://blog.deteact.com/csp-bypass/
Deteact - continuous information security services
Bypassing Content Security Policy
About XSS mitigation and the security of Content Security Policy
LinuxSec
https://blog.appsecco.com/getting-shell-and-data-access-in-aws-by-chaining-vulnerabilities-7630fa57c7ed
Medium
Getting shell and data access in AWS by chaining vulnerabilities
Slides from a talk on using mis-configurations, overtly permissive IAM policies and application security vulnerabilities to get shells in…