Server-Side Spreadsheet Injection – Formula Injection to Remote Code Execution
https://www.bishopfox.com/blog/2018/06/server-side-spreadsheet-injections/
https://www.bishopfox.com/blog/2018/06/server-side-spreadsheet-injections/
Bypass all anti-viruses by Encrypted Payloads with C#
https://www.peerlyst.com/posts/bypass-all-anti-viruses-by-encrypted-payloads-with-c-damon-mohammadbagher-1
https://www.peerlyst.com/posts/bypass-all-anti-viruses-by-encrypted-payloads-with-c-damon-mohammadbagher-1
Peerlyst
Bypass all anti-viruses by Encrypted Payloads with C#
Some people asked me about how you can bypass all AV anti-viruses?My answer is: very simple. But this is Secretly Technique and the most pentester or hackers never share that for other people. They have their reason for that like me and I can tell yo
Merry Christmas. I hope nobody buys you a spy device this year. (they probably did)
echo -e 'MERRY\n CHRISTMAS!' | toilet -w130 | boxes -d santa | grep --color .
CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability
https://github.com/WyAtu/CVE-2018-8581/
https://github.com/WyAtu/CVE-2018-8581/
GitHub
GitHub - WyAtu/CVE-2018-8581: CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability - WyAtu/CVE-2018-8581
Remote_elf.py (Remote binary execution) source code ⬇️
https://github.com/JusticeRage/FFM/commit/b9a5c787ec7fa99cf8eb2d72c90fed35f592a323
PDF ⬇️
https://2018.zeronights.ru/wp-content/uploads/materials/09-ELF-execution-in-Linux-RAM.pdf
https://github.com/JusticeRage/FFM/commit/b9a5c787ec7fa99cf8eb2d72c90fed35f592a323
PDF ⬇️
https://2018.zeronights.ru/wp-content/uploads/materials/09-ELF-execution-in-Linux-RAM.pdf
GitHub
A new command, !elf, can run local binaries on the remote machine in … · JusticeRage/FFM@b9a5c78
…memory.
Cleaned up the output of the remote python script command.
Cleaned up the output of the remote python script command.
EUD Security Guidance: Windows 10 - 1803
https://www.ncsc.gov.uk/guidance/eud-security-guidance-windows-10-1803
https://www.ncsc.gov.uk/guidance/eud-security-guidance-windows-10-1803
ss7MAPer – A SS7 pen testing toolkit
https://insinuator.net/2016/02/ss7maper-a-ss7-pen-testing-toolkit/
https://insinuator.net/2016/02/ss7maper-a-ss7-pen-testing-toolkit/
Forwarded from امنیت اطلاعات
This media is not supported in your browser
VIEW IN TELEGRAM
Here’s wishing you all the joy of the season. Have a Happy New Year!
تیم امنیت اطلاعات سال میلادی سرشار از موفقیت و امنیت را برای شما همراهان آرزو میکند.
@sec_nerd
تیم امنیت اطلاعات سال میلادی سرشار از موفقیت و امنیت را برای شما همراهان آرزو میکند.
@sec_nerd