@Phantasm_Lab – Telegram
@Phantasm_Lab
2.56K subscribers
712 photos
34 videos
671 files
2.71K links
- Red x Blue Security
- Bug Bounty 💷 💵
- Exploitable tools
- Programming Languages
- Malware Analysis

🇺🇸 🇧🇷 🇪🇸

since 2017 ©


Parceiros:
@TIdaDepressaoOficial @acervoprivado @ReneGadesx @G4t3w4y
Download Telegram
3 Steps to Implement Simple CSRF Token in PHP

Welcome to a step-by-step tutorial on how to implement simple CSRF token in PHP. In this tutorial, we will walk through an example of what cross-site request forgery is, and how we can prevent that with a simple trick – In just 3 steps. Read on to find out!

https://code-boxx.com/simple-csrf-token-php/

🦠 @Phantasm_Lab
Channel photo updated
7 Online Port Scanners to Find Opened Ports on Server, IP

Here are online FREE tools, which will help you to find out what all ports are opened so you can review and block them if not needed.

https://geekflare.com/port-scanner-server/

🧬 @Phantasm_Lab
Abusing ImageMagick to obtain RCE

Remote Code Execution because of an image source? Is it Possible? Yes! Definitely. Here in this blog post, a Strynx team member found a variation of Remote Code Execution AKA RCE through ImageMagick which earned him a generous bounty of $5000. Amazingly, some tweaks inside the image source exfiltrated the data over DNS (also called side-channel attacks). Let’s see how was it done after a short introduction to ImageMagick.

https://strynx.org/imagemagick-rce/

🦠 @Phantasm_Lab
How we hacked one of the worlds largest Cryptocurrency Website

One of the world’s largest cryptocurrency site was hacked by the Strynx team to find a flaw exposing multiple vulnerabilities that could to lead loss of millions of dollars. One of the team members shared his point of view on how we discovered such a critical issue involving data of millions of users.

https://strynx.org/insecure-crypto-code-execution/

🦠 @Phantasm_Lab
Forwarded from @Phantasm_Lab
Forwarded from @Phantasm_Lab
The Hacker Playbook 2 - Practical Guide To Penetration Testing | PDF/EPUB/MOBI | 23/18/53 MB |

https://drive.google.com/open?id=0B-OpLAp8EyTfV0JpS1MtX015aEU

🕴 @Phantasm_Lab
Forwarded from @Phantasm_Lab