hackspace
@hackspace
157
subscribers
279
photos
75
videos
23
files
998
links
hackspace
Download Telegram
Join
hackspace
157 subscribers
hackspace
https://github.com/eversinc33/CredGuess?s=35
GitHub
GitHub - eversinc33/CredGuess: Generate password spraying lists based on the pwdLastSet-attribute of users.
Generate password spraying lists based on the pwdLastSet-attribute of users. - GitHub - eversinc33/CredGuess: Generate password spraying lists based on the pwdLastSet-attribute of users.
hackspace
https://github.com/mandiant/gocrack?s=35
GitHub
GitHub - mandiant/gocrack: GoCrack is a management frontend for password cracking tools written in Go
GoCrack is a management frontend for password cracking tools written in Go - GitHub - mandiant/gocrack: GoCrack is a management frontend for password cracking tools written in Go
hackspace
https://github.com/intrudir/BypassFuzzer?s=35
GitHub
GitHub - intrudir/BypassFuzzer: Fuzz 401/403/404 pages for bypasses
Fuzz 401/403/404 pages for bypasses. Contribute to intrudir/BypassFuzzer development by creating an account on GitHub.
hackspace
hackspace
https://starlabs.sg/blog/2023/09-sharepoint-pre-auth-rce-chain/?s=35
STAR Labs
[P2O Vancouver 2023] SharePoint Pre-Auth RCE chain (CVE-2023–29357 & CVE-2023–24955)
Brief I may have achieved successful exploitation of a SharePoint target during Pwn2Own Vancouver 2023. While the live demonstration lasted only approximately 30 seconds, it is noteworthy that the process of discovering and crafting the exploit chain consumed…
hackspace
hackspace
https://youtu.be/61kf4CEnOZk?si=axk5ORCpONMkD7yI
YouTube
SQL Injecting Beyond Strict Filters - Union Without Comma
00:00 - Introduction
01:57 - Showing the trick and explaining why its important to understand the methodology behind finding the technique and not just the technique itself
03:50 - Going over the Flask App
05:45 - Showing Snyk highlighting the SQL Injection…
🔥
1
hackspace
https://muhdaffa.medium.com/tips-and-tricks-for-effective-sql-injection-testing-using-sqlmap-tamper-noscripts-ed4bfa5717e7?s=35
Medium
Tips and Tricks for Effective SQL Injection Testing using SQLMap Tamper Scripts
Hello, in this post, I will be sharing information about SQLMap tamper noscripts. So, what is SQLMap? What are tamper noscripts in SQLMap? And…
hackspace
https://github.com/win3zz/CVE-2023-43261?s=35
GitHub
GitHub - win3zz/CVE-2023-43261: CVE-2023-43261 - Credential Leakage Through Unprotected System Logs and Weak Password Encryption
CVE-2023-43261 - Credential Leakage Through Unprotected System Logs and Weak Password Encryption - GitHub - win3zz/CVE-2023-43261: CVE-2023-43261 - Credential Leakage Through Unprotected System Log...
hackspace
0:20
This media is not supported in your browser
VIEW IN TELEGRAM
🙄
hackspace
https://github.com/mazen160/shennina
GitHub
GitHub - mazen160/shennina: Automating Host Exploitation with AI
Automating Host Exploitation with AI. Contribute to mazen160/shennina development by creating an account on GitHub.
hackspace
hackspace
hackspace
https://github.com/icyguider/LatLoader
GitHub
GitHub - icyguider/LatLoader: PoC module to demonstrate automated lateral movement with the Havoc C2 framework.
PoC module to demonstrate automated lateral movement with the Havoc C2 framework. - icyguider/LatLoader
hackspace
https://www.blackhillsinfosec.com/abusing-active-directory-certificate-services-part-one/
Black Hills Information Security, Inc.
Abusing Active Directory Certificate Services (Part 1) - Black Hills Information Security, Inc.
Active Directory Certificate Services (ADCS) is used for public key infrastructure in an Active Directory environment. ADCS is widely used in enterprise Active Directory environments for managing certificates for systems, users, applications, and more.
hackspace
https://github.com/Kitsun3Sec/Pentest-Cheat-Sheets?s=35
GitHub
GitHub - Kitsun3Sec/Pentest-Cheat-Sheets: A collection of snippets of codes and commands to make your life easier!
A collection of snippets of codes and commands to make your life easier! - GitHub - Kitsun3Sec/Pentest-Cheat-Sheets: A collection of snippets of codes and commands to make your life easier!
hackspace
hackspace
https://github.com/ErikWynter/CVE-2023-22515-Scan
GitHub
GitHub - ErikWynter/CVE-2023-22515-Scan: Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence
Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence - ErikWynter/CVE-2023-22515-Scan
hackspace
https://github.com/berylliumsec/nebula?s=35
GitHub
GitHub - berylliumsec/nebula: AI-powered penetration testing assistant for automating recon, note-taking, and vulnerability analysis.
AI-powered penetration testing assistant for automating recon, note-taking, and vulnerability analysis. - berylliumsec/nebula
hackspace
https://assume-breach.medium.com/home-grown-red-team-lnk-phishing-revisited-in-2023-364daf70a06a?s=35
Medium
Home Grown Red Team: LNK Phishing Revisited In 2023
All right so macros are out, ISOs, zips and password protected zips are all getting flagged. What’s an APT to do? Well, LNK files are still…
hackspace
https://github.com/zer0condition/mhydeath?s=35
GitHub
GitHub - zer0condition/mhydeath: Abusing mhyprotect to kill AVs / EDRs / XDRs / Protected Processes.
Abusing mhyprotect to kill AVs / EDRs / XDRs / Protected Processes. - GitHub - zer0condition/mhydeath: Abusing mhyprotect to kill AVs / EDRs / XDRs / Protected Processes.
TWeb.init({scrollToPost:'hackspace/1012'});