In this video walkthrough, we break down the basic info of CVE-2023-23397 the zero-day, zero-touch vulnerability that was rated 9.8 on the #CVSS scale.
Follow this thread as we detail the general exploitation routine of this #vulnerability. research.trendmicro.com/cve202323397
We've just published a quick write up on CVE-2023-23397, which allows a remote adversary to leak NetNTLMv2 hashes: mdsec.co.uk/2023/03/exploi… by @domchell
Learning from others is amazing, but how do you find the content you're looking for?
@payloadartist solved that problem by creating the Bug Bounty Hunting Search Engine!
hubs.li/Q01B0C100#bugbounty#bugbountytips 👇
After an unhealthy amount of hours put into this, I finally managed to get RCE on Cobalt Strike. I would recommend avoiding it for a while as CVE-2022-39197 is not sufficient.
The individual who breached Rockstar Games states they got initial access by social engineering an employee.
They are currently on 4chan sharing material and chatting.
boards.4channel.org/v/thread/61249…
The individual who breached Rockstar Games states they got initial access by social engineering an employee.
They are currently on 4chan sharing material and chatting.
boards.4channel.org/v/thread/61249…
Bug Bounty Hint
If you have found that server is running PHP - you can try to test it for RCE vulnerability.
Append following header to request:
User-Agentt: zerodiumsystem("id")
If PHP version is vulnerable - you will execute system("id") command on a server.
391 Followers 1K FollowingInterested in Software Security | Life Long Learner | Love to learn, how things work under the hood | Always Philosophically intrigued.
0 Followers 98 FollowingRecruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interes ted, please contact https://t.co/nYmxl3stq0
9 Followers 177 FollowingGraphic designer✍ , Digital Artist | I am a Certified logo designer and Graphic designer , Check My latest NFTs on my profile..
230 Followers 4K FollowingIndependent Researcher and Open Source SWE ~ I primarily work on all things Web, Security, Algorithms, Design & Architecture, etc.
263 Followers 1K Following✨ Information Security Professional ✨
Constantly learning & adapting to stay one step ahead.
Helping organizations fortify their defenses and mitigate risk.
190K Followers 0 FollowingWe make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
233K Followers 1K FollowingCofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
15K Followers 5 FollowingOfficial announcements (low vol) for ZAP by @Checkmarx - the worlds most popular web app scanner. Free and open source. https://t.co/pxO8zZ6usH
302 Followers 40 FollowingYoungest weather blogger from tirupati.Follow me for quick weather updates.Chennai weather updates also will be given.For official updates follow IMD.
16K Followers 0 FollowingTips and tricks for Burp Suite Pro
Managed by @Agarri_FR | Not affiliated with @Portswigger
More free resources at https://t.co/MWqXmV66lr
2K Followers 283 FollowingOfficial Twitter account of #EPAM in #India, a leading global provider of #productdevelopment and #software engineering #solutions.
554K Followers 431 FollowingStarted a social media account and used it to leave my job and spend more time with my family. Helping you do the same thing. As seen in WSJ.
15K Followers 0 FollowingConsultancy and Training from a trusted supplier of offensive security. Red Team and Adversary Simulation by ActiveBreach team | https://t.co/fqpbJ9WDXD | https://t.co/UvOhGA4Zou
71K Followers 462 FollowingFollower of Christ. Cybersecurity Educator and Bootcamp Founder. Job ready in 90 days. 120+ FIRST tech jobs. Cybersecurity by professionals, for professionals.
9K Followers 828 FollowingOfficial global Twitter account of EPAM Systems Inc. (EPAM), a leading #DigitalTransformation services and #ProductEngineering company.
52K Followers 616 FollowingGrzegorz Niedziela - a hacker who documents his hacking journey by creating and curating the best content about bug bounty and offensive security.
6K Followers 350 FollowingRock N Rolla who's out chasing rainbows in the most remote & beautiful places known to man on my motorcycle. Red Bull Athlete & Cross Country Rally Pilot.
43K Followers 0 FollowingDarkFeed: Cyber Threat Intelligence Platform, Putting things at order in the ransomware crazy world
#OSINT | #Ransomware | #Cyberattacks | #Hacktivism
30K Followers 684 FollowingChief Research Officer (opinions are my own) / #1 & #2 at Ignite 2018 / Best Session - NIC x 5 / MVP Windows OS / https://t.co/YcBqnFQOur / PluralsightAuthor
101K Followers 145 FollowingA portable multi-tool device in a toy-like body for pentesters and hardware geeks. Buy worldwide here ➡️ https://t.co/n09EKVnqri
36K Followers 184 FollowingNuclei uses a vast templating library to scan applications, cloud infrastructure, and networks to find and remediate vulnerabilities.