Pentester
2.92K subscribers
119 photos
3 videos
163 files
2.77K links
- Offensive Security (Red Teaming / PenTesting)
- BlueTeam (OperationSec, TreatHunting, DFIR)
- Reverse Engineering / Malware Analisys
- Web Security
Download Telegram
CVE-2019-8372: Local Privilege Elevation in LG Kernel Driver - @Jackson_T
http://www.jackson-t.ca/lg-driver-lpe.html
WordPress 5.0.0 Remote Code Execution – A combination of a Path Traversal and Local File Inclusion vulnerability lead to RCE Remote Code Execution in the WordPress core. The vulnerability was present for over 6 years. Check out how we found it! https://t.co/H8uZceNTel
How-To: Cloud Cracker

1) Create AWS EC2 Instance
2) Choose p3.16xlarge
3) Install nVidia drivers
4) Install Hashcat
5) Crack Password Hashes

Alt) Choose an upToDate AMI from nVidia in the AWS Marketplace that already has nvidia drivers & configs installed. Then install Hashcat.
Need to steal the password to a wireless network? Have access to Windows 8 or 10 box?

1) netsh wlan show profiles
2) netsh wlan show profile name=WIFI_NAME key=clear
3) Look for the “Key Content” line, the cleartext password will be there.