en
Feedback
Pentester

Pentester

Open in Telegram

- Offensive Security (Red Teaming / PenTesting) - BlueTeam (OperationSec, TreatHunting, DFIR) - Reverse Engineering / Malware Analisys - Web Security

Show more
2 644
Subscribers
No data24 hours
+77 days
+3030 days
Posts Archive
A public secret : Research on the CVE-2024-30051 privilege escalation vulnerability in the wild https://ti.qianxin.com/blog/articles/public-secret-research-on-the-cve-2024-30051-privilege-escalation-vulnerability-in-the-wild-en/

CVE-2024-37084: #Spring Cloud Remote Code Execution https://blog.securelayer7.net/spring-cloud-skipper-vulnerability/

Analysis of CVE-2024-43044 — From file read to RCE in #Jenkins through agents https://blog.convisoappsec.com/en/analysis-of-cve-2024-43044/

CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6 https://malwaretech.com/2024/08/exploiting-CVE-2024-38063.html

Back to School - Exploiting a Remote Code Execution Vulnerability in Moodle https://blog.redteam-pentesting.de/2024/moodle-rce/

iSniff GPS - Passive sniffing tool for capturing and visualising WiFi location data disclosed by iOS devices https://github.com/hubert3/iSniff-GPS

#redteam Cobalt Strike - CDN / Reverse Proxy Setup https://redops.at/en/blog/cobalt-strike-cdn-reverse-proxy-setup

#Mobile_Security "Android App Usage and Cell Tower Location: Private. Sensitive. Available to Anyone?", 2024.

CVE-2024-38063: Windows TCP/IP RCE https://github.com/Sachinart/CVE-2024-38063-POC

Mixing watering hole attacks with history leak via CSS https://adepts.of0x.cc/css-history-leaks/

#SCCMSecrets.py aims at exploiting #SCCM policies distribution for credentials harvesting, initial access and lateral movement. https://github.com/synacktiv/SCCMSecrets

#malware A command and control framework written in rust. https://github.com/Teach2Breach/Tempest