Trickster from @hackthebox_eu showcases vulnerabilities in PrestaShop, ChangeDetectionIO, and Prusaslicer! In Beyond Root I'll show a ModSecurity configuration that was blocking by user-agent string.
https://t.co/Fh3zzRHyrA
Interesting to see my work used in academic research training LLMs to hack. They had very kind things to say about my writeups ☺️ https://t.co/jvAVTyLIHF
I have just released a new memory scanner bypass technique.
This is an improved version of Voidgate, but without all of the previous limitations.
It is compatible with reflecive loaders, multi-threaded payloads and most C2 beacons.
https://t.co/EabHTXL12B
Advanced SQL Injection Techniques now available in GitBook. Make a copy/ Archive / Convert to PDF before they report this too :).
#bugbountytip#BugBounty#SQLInjection#SQLi
https://t.co/APxU4CULCt
Crafty from @hackthebox_eu is about exploiting a Minecraft server. I'll use an open source client to send a Log4Shell payload, and get a shell. Then I'll find admin creds in a custom plugin. In Beyond Root, I'll explore the web.config file.
https://t.co/5YRtrF1U48
Noted is a quick Sherlock from @hackthebox_eu that involves analysis of the files used by Notepad++. I'll recover backup copies of files and use the metadata collected by NotePad++ to determine when the attack happened.
https://t.co/mbGRhxpInV
Chaining N-days to Compromise All :
Part 6 — Windows Kernel LPE: Get SYSTEM : https://t.co/uNuI4ac1Rh
Part 4 — VMware Workstation Information leakage : https://t.co/jm3kcNF4Aa
Part 5 — VMware Workstation Guest-to-Host Escape : https://t.co/ZwN3Tt78Zt
Part 3 — Windows Driver LPE: Medium to System : https://t.co/hfh1mDqX3S
Part 2 — Windows Kernel LPE (a.k.a Chrome Sandbox Escape) : https://t.co/sCMx0aHg7I
Part 1 — Chrome Renderer RCE : https://t.co/z2Xaap9Cg7
Not sure what took me so long but created a new Playlist to help people study for the CPTS. The boxes are primarily easy/medium, with a focus on common vulnerabilities you'd find on a pentest.
https://t.co/g31fomWymG
Learned about a neat tool for tracing Windows API calls from Golang binaries - gftrace. Quick blog post to apply it to the binary from Napper, and the look at how it works.
https://t.co/WxMpYzkRGt