Hi guys, there is a problem at my site (have no idea that suddenly can’t connect to database even though I didn’t do anything). But, if Allah willed it, I will try my best to recover it. So, stay tune!
- Next story From Recon to Optimizing RCE Results – Simple Story with One of the Biggest ICT Company in the World
- Previous story 5,000 USD XSS Issue at Avast Desktop AntiVirus for Windows (Yes, Desktop!)
- From Recon to Bypassing MFA Implementation in OWA by Using EWS Misconfiguration
- From 3,99 to 1,650 USD (Part I) – Simple Vertical Privilege Escalation by Changing HTTP Response
- From Recon to Optimizing RCE Results – Simple Story with One of the Biggest ICT Company in the World
- If Allah willed it, will be back soon!
- 5,000 USD XSS Issue at Avast Desktop AntiVirus for Windows (Yes, Desktop!)
- CVE-2019–18624 – Illegal Rendered at Download Feature in Several Apps (including Opera Mini) that Lead to Extension Manipulation (with RTLO)
- Race Condition that could Result to RCE – (A story with an App that temporary stored an uploaded file within 2 seconds before moving it to Amazon S3)
Bertahap, perlahan-lahan, semoga kondisi kembali normal dan kaum muslimin dapat kembali shalat memenuhi di Masjidil Haramain Asy-Syarifain, aamiin.2
We Need To Talk About MACL https://blog.xpnsec.com/we-need-to-talk-about-macl/
I've finally updated my getting started as a penetration tester guide for 2020, have a read and share with anyone you know that wants to get into industry https://www.linkedin.com/pulse/getting-started-penetration-tester-nz-2020-edition-simon-howard #cybersmartweek #getcybersmart
1/n - When you have successfully gained access to the target dashboard and can see the accounts that have access to it, make sure you pay attention to each account using the public email service. InshaAllah you will find something interesting.