fa
Feedback
İbrahim BALOĞLU - Siber Güvenlik Paylaşımları

İbrahim BALOĞLU - Siber Güvenlik Paylaşımları

رفتن به کانال در Telegram

Mevcut grup, Siber Güvenlik alanında paylaşımlar yapmak için oluşturulmuştur.

نمایش بیشتر
1 107
مشترکین
+224 ساعت
اطلاعاتی وجود ندارد7 روز
+1330 روز

در حال بارگیری داده...

جذب مشترکین
اوت '26
اوت '26
+34
در 0 کانال‌ها
ژوئیه '26
+45
در 0 کانال‌ها
Get PRO
ژوئن '26
+29
در 0 کانال‌ها
Get PRO
مه '26
+57
در 0 کانال‌ها
Get PRO
آوریل '26
+65
در 0 کانال‌ها
Get PRO
مارس '26
+45
در 0 کانال‌ها
Get PRO
فوریه '26
+38
در 1 کانال‌ها
Get PRO
ژانویه '26
+46
در 0 کانال‌ها
Get PRO
دسامبر '25
+30
در 0 کانال‌ها
Get PRO
نوامبر '250
در 0 کانال‌ها
Get PRO
اکتبر '250
در 0 کانال‌ها
Get PRO
سپتامبر '250
در 0 کانال‌ها
Get PRO
اوت '250
در 0 کانال‌ها
Get PRO
ژوئیه '250
در 0 کانال‌ها
Get PRO
ژوئن '250
در 0 کانال‌ها
Get PRO
مه '250
در 0 کانال‌ها
Get PRO
آوریل '250
در 0 کانال‌ها
Get PRO
مارس '250
در 0 کانال‌ها
Get PRO
فوریه '250
در 0 کانال‌ها
Get PRO
ژانویه '250
در 0 کانال‌ها
Get PRO
دسامبر '240
در 0 کانال‌ها
Get PRO
نوامبر '24
+88
در 0 کانال‌ها
Get PRO
اکتبر '24
+129
در 0 کانال‌ها
Get PRO
سپتامبر '24
+53
در 0 کانال‌ها
Get PRO
اوت '24
+48
در 0 کانال‌ها
Get PRO
ژوئیه '24
+54
در 0 کانال‌ها
Get PRO
ژوئن '24
+46
در 0 کانال‌ها
Get PRO
مه '24
+53
در 0 کانال‌ها
Get PRO
آوریل '24
+48
در 0 کانال‌ها
Get PRO
مارس '24
+68
در 0 کانال‌ها
Get PRO
فوریه '24
+83
در 0 کانال‌ها
Get PRO
ژانویه '24
+70
در 0 کانال‌ها
Get PRO
دسامبر '23
+264
در 0 کانال‌ها
تاریخ
رشد مشترکین
اشارات
کانال‌ها
27 اوت+1
26 اوت+2
25 اوت+5
24 اوت0
23 اوت0
22 اوت+1
21 اوت0
20 اوت0
19 اوت+1
18 اوت+2
17 اوت+2
16 اوت+3
15 اوت+1
14 اوت0
13 اوت+2
12 اوت+2
11 اوت0
10 اوت0
09 اوت+2
08 اوت+3
07 اوت0
06 اوت+2
05 اوت+2
04 اوت0
03 اوت+1
02 اوت+2
01 اوت0
پست‌های کانال
2
Herkese selam, Bugün saat 20.00’da, grubu takip eden aktif üyelerimize özel “Siber Olaylara Müdahale Eğitimi (Windows Forensics)” eğitimi için ücretsiz kayıt linkini paylaşacağım. Yayınlanacak link üzerinden yalnızca ilk 9 kişi ücretsiz kayıt olabilecek. Eğitim Udemy üzerinde yer almakta olup detaylarına aşağıdaki linkten ulaşabilirsiniz. https://www.udemy.com/course/siber-olaylara-mudahale-egitimi-windows-forensics/
241
3
#Threat_Research #WebApp_Security Attack of The Extensions https://specterops.io/blog/2026/08/13/chromium-extension-c2-persistence // Browser extensions can turn Chromium into a persistent foothold. This post introduces a way to silently install extensions turning Chromium browsers into a command and control (C2) platform for persistent cookie theft
237
4
CVE-2026-18963 KeyCloak * reset-credentials bypass → unauthenticated account takeover PoCexploit
CVE-2026-18963 KeyCloak * reset-credentials bypass → unauthenticated account takeover PoCexploit
240
5
CVE-2026-20217 File Drop to RCE * full WriteUP + PoC
CVE-2026-20217 File Drop to RCE * full WriteUP + PoC
489
6
#Analytics #Threat_Research An analytical review of the main cybersecurity events (Aug 08 - 15, 2026) 0⃣ DEF CON 34 1⃣ Bypassing Android Hardware Attestation from the Analyst's Chair 2⃣ Zoom Vulnerablities CVE-2026-53413, CVE-2026-53414, and CVE-2026-53415 3⃣ Rogue Inflight Wifi 4⃣ Why AI-generated vulnerability patches still require expert human review 5⃣ Gunra Ransomware 6⃣ Neo4J/GraphQL Vulnerability (CVE-2026-5423) 7⃣ Ruby 4.0 Universal RCE Deserialization Gadget Chain 8⃣ OpenSSH 10.5 released 9⃣ Citrix NetScaler Pre-Auth RCE (CVE-2026-8452) 🔟 SCTPhantom - vulnerability in the Linux kernel that allows root access and container escape
687
7
#tools #Hardware_Security CPU Privilege Escalation https://github.com/xoreaxeaxeax/smiiiiiiiiiiiiiiii ]-> DEF CON 2026 - Weaponizing Uselessness (.pdf) ]-> Unlocking everything on the CPU with DRAM scrambling - PSP, C6, microcode, SMM, and anything else the specs left out
543
8
CVE-2026-41452 Krayin CRM * Auth Bypass → Admin Takeover PoC
CVE-2026-41452 Krayin CRM * Auth Bypass → Admin Takeover PoC
508
9
defcon 34 * media server
defcon 34 * media server
779
10
Продолжаем делиться интересным * DEFCON: New Red Team Tactic - EvilFontTool
Продолжаем делиться интересным * DEFCON: New Red Team Tactic - EvilFontTool
729
11
#exploit #Kernel_Security #Mobile_security IonStack Vulnerability Chain Part 1 - Unsound IonBanana Peel in Ion Compiler, Slip
#exploit #Kernel_Security #Mobile_security IonStack Vulnerability Chain Part 1 - Unsound IonBanana Peel in Ion Compiler, Slipping Through Firefox's SpiderMonkey JIT // IonMonkey CVE-2026-10702 Part 2 - GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years // GhostLock (CVE-2026-43499) + CVE-2026-53166 Part 3 - Rooting Android 17 with GhostLock // Using GhostLock to develop the world's first public root for Android 17 // Disclaimer
728
12
#tools #WebApp_Security #Offensive_security "Can AI do novel security research? Meet the HTTP Terminator", Black Hat USA 2026. ]-> web version of the publication ]-> HTTP Terminator ]-> Burp Suite param-miner ]-> Burp Suite Turbo Intruder ]-> HTTP Request Smuggler (upd) // The paper presents HTTP Terminator, an AI-driven system for autonomous security research that generates, evaluates, and weaponizes novel HTTP desync exploits, introduces the concept of Shared-Parser Confusion to expand attack surfaces, and offers practical tools and defense strategies
872
13
MariaDB 13.0.1-rc RCE Lab * All in ONE
MariaDB 13.0.1-rc RCE Lab * All in ONE
850
14
#AppSec 1⃣ Jellyfin RCE (CVE-2026-35033) https://www.sonarsource.com/blog/jellyfin-remote-code-execution 2⃣ Exploiting Langflow's validate_code() Endpoint for RCE (CVE-2026-0770) https://www.resecurity.com/blog/article/exploiting-langflows-validatecode-endpoint-for-remote-code-execution 3⃣ Cruising for Shells in Flowise: 6 RCEs https://www.elttam.com/blog/cruising-for-shells-in-flowise 4⃣ Check Point SmartConsole Authentication Bypass Technical Analysis (CVE-2026-16232) https://www.rapid7.com/blog/post/ra-check-point-smartconsole-authentication-bypass-technical-analysis-cve-2026-16232
654
15
#Analytics #Threat_Research An analytical review of the main cybersecurity events (July 25 - Aug 01, 2026) 1⃣ IPMI Admin Password Hash Leak // Why BMC Compromise Is Especially Dangerous in AI Infrastructure 2⃣ Escaping Linux Sandboxes via PipeWire // CVE-2026-5674 3⃣ SourTrade: Browser-Assembled Malware Delivered Through Malvertising 4⃣ Cisco Secure Firewall Management Center Software Static Credential Vulnerability Exploited CVE-2026-20316 // This vulnerability (CVE-2026-20316) is due to the presence of static user credentials for a low-privileged account 5⃣ OpenWRT Patch, odhcpd vulnerability CVE-2026-53921 // Stack buffer overflow in DHCPv6 IA reply serialization 6⃣ Foxit PDF Reader LPE // exploit for CVE-2026-3775/CVE-2026-3780/ CVE-2026-57239 which lets you obtain NT AUTHORITY\SYSTEM rights via the Foxit PDF Reader updater service 7⃣ ServiceNow RCE Mass Exploitation (CVE-2026-6875) // A critical RCE vulnerability in the ServiceNow platform has become a global disaster 8⃣ PureLogs, PureRAT and misleading zgRAT // Despite the similar names PureLogs and PureRAT are not the same type of malware
607
16
#Malware_analysis 1⃣ copilot-mcp/apex: A macOS Infostealer Re-Published on npm After Takedown https://safedep.io/malicious-copilot-mcp-apex-npm-macos-infostealer 2⃣ Flying Eagle Android RAT https://hunt.io/blog/flying-eagle-android-rat-170-servers-night-dragon 3⃣ PolinRider Caused Dozens of npm, Go, PHP Compromises https://opensourcemalware.com/blog/polinrider-caused-dozens-of-npm-and-go-compromises
590
17
#DFIR #Whitepaper "Reconstructing Deleted File Activity Using FSEvents from macOS", Jun 2026. // This paper examines the role of FSEvents as a source of historical file system activity, particularly in scenarios where files are no longer present on disk
559
18
Bilgilendirme: Grup içerisinde görünen reklamlar telegram tarafından otomatik yayınlanmaktadır. İsteğim ve bilgim dışındadır.
Bilgilendirme: Grup içerisinde görünen reklamlar telegram tarafından otomatik yayınlanmaktadır. İsteğim ve bilgim dışındadır.
616
19
https://lnkd.in/p/dJa3Ckij
576
20
CVE-2026-42533 Nginx * heap buffer overflow PoC
CVE-2026-42533 Nginx * heap buffer overflow PoC
564