CTF Community | Hints
Ir al canal en Telegram
This channel has been created to share some of the good stuff in solving the CTF challenges. Our try will be to put writeup to some of the CTF challenges.
Mostrar másEl país no está especificadoEducación99 541
1 254
Suscriptores
Sin datos24 horas
Sin datos7 días
Sin datos30 días
Archivo de publicaciones
Repost from PwnSystem
📣📢 Try new advance #pentesting challenges on @Vulnmachines 👩💻
❌ No VPN required
✔️ Free Access
✔️ Access the lab using your favorite browser
Challenge Name: Family Man 🕵️👩💻
Checkout: https://www.vulnmachines.com
#infosec #cybersecurity #ctf
⭕️ Automated RE of Kernel Configurations
Brandon Miller published an article about his Binary Ninja plugin that analyzes Linux kernel binaries to recover kernel configuration options.
This tool is called bn-kconfig-recover. It can help when a kernel binary has CONFIG_IKCONFIG disabled.
#kernel #linux #binary
@ctfplay
Finding More IDORs – Tips And Tricks
https://www.aon.com/cyber-solutions/aon_cyber_labs/finding-more-idors-tips-and-tricks/
#Web #IDOR #BugBounty
@ctfplay
OWASP API : Broken Authentication
https://medium.com/strike-sh/owasp-api-2-broken-authentication-5d6e8e3b595c
#Web #Api
@ctfplay
OWASP API : Broken Authentication
https://medium.com/strike-sh/owasp-api-2-broken-authentication-5d6e8e3b595c
#Web #Api
@ctfplay
Find Evil – Know Normal
Knowing what’s normal on a Windows host helps cut through the noise to quickly locate potential malware.
Use the information below as a reference to know what’s normal in Windows and to focus your attention on the outliers.
#Forensics
@ctfplay
CRYPTOHACK
a fun platform for learning cryptography. The emphasis is on breaking bad implementations of "modern" crypto, such as AES, RSA, and Elliptic-curve. The format is a series of puzzles that teach small lessons and motivate further research.
#Cryptography
@ctfplay
iOS Security Analysis with MobSF
https://www.netguru.com/codestories/ios-security-analysis-with-mobsf
#Mobile #IOS
@ctfplay
Ghost : Android Debug Bridge To Remotely Access An Android Device.
Ghost Framework is an Android post-exploitation framework that uses an Android Debug Bridge to remotely access an Android device. It Framework gives you the power and convenience of remote Android device administration.
https://github.com/entynetproject/ghost
#Android
@ctfplay
Extended XSS Search
Extended XSS Searcher is the is the extended version based on the initial idea already published as “xssfinder”. This private version allows an attacker to perform not only GET but also POST requests. Additionally its possible to proxy every request through Burp or another tunnel.
https://github.com/Damian89/extended-xss-search#screenshot
#web
@ctfplay
CallObfuscator
Obfuscate windows apis from static analysis tools and debuggers
https://github.com/d35ha/CallObfuscator
#WEB
@ctfplay
