996
مشترکین
اطلاعاتی وجود ندارد24 ساعت
اطلاعاتی وجود ندارد7 روز
اطلاعاتی وجود ندارد30 روز
آرشیو پست ها
996
⭐️The channel was made public and returned to its previous state. 1651 Private content will not be uploaded to the channel.
Thanks to the Russian supporters🇷🇺
#Sp Thanks FOx Freedom🇷🇺
📱https://t.me/APTANALYSIS
996
⭐️Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation
⭐️POC : https://github.com/im-hanzou/MSAPer
⛔#Scan , #Exploit , #Tools , #Vulnerability
📱@APTANALYSIS
996
🤔CVE-2023-0126 : SonicWALL (SMA1000 firmware version 12.4.2) - Unauthenticated Arbitrary file Read
🤝"Appliance Management Console Login"
⛔#POC , #SonicWALL
📱@APTANALYSIS996
😁Web-Archive - Google Chrome Extension
ℹ️Extension : https://github.com/husseinphp/web-archive
⛔#BugBounty , #Hunting , #Extensions , #TOOLS , #Archive
📱@APTANALYSIS
996
💥Top 50 Vulnerabilities Leading to RCE in Public-Facing Applications(RTC0016)
🔥Blog : https://redteamrecipe.com/top-50-vulnerabilities-rce/
💥All in one (TOOL) : https://github.com/k8gege/K8tools
ℹ️Other Methods : https://redteamrecipe.com
👇Example :
1️⃣ Stealing Password in Browser(RTC0013)
2️⃣ Abuse SVCHost Methods(RTC0017)
3️⃣ File Binding Methods(RTC0015)
4️⃣ Exfiltration Method for Channels(RTC0014)
5️⃣ Methods for Pipeline Attacks(RTC0011)
6️⃣ Methods for Container Attacks(RTC0010)
7️⃣ Kevin Mitnick Lessons(RTC0012)
8️⃣ Awesome Maltego Transforms(RTC0008)
9️⃣ Methods For Cloud Attacks(RTC0009)
🔟 Methods For Execute Mimikatz(RTC0003)
➕ Methods For Lsass Dump(RTC0002)
➕ Methods For Privilege Escalation(RTC0001)
➕ Methods For Fileless Execution(RTC0004)
➕ Finding 0-day vulnerabilities in apps using the Red Team approach(RTC0005)
⛔#Vulnerability ,#CVE , #Top , #Exploited , #TOP_50_CVE , #RCE , #TOOLS , #Methods
📱@APTANALYSIS
996
💥5 Unusual Authentication Bypass Techniques
⭐️Blog : https://www.synack.com/blog/exploits-explained-5-unusual-authentication-bypass-techniques/
⛔#Exploits , #Web , #Unusual
📱@APTANALYSIS
996
🔴Multiple Nation-State Threat Actors Exploit CVE-2022-47966 and CVE-2022-42475
🖥Link : https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-250a
⛔#NEWS , #Threat_Actors , #CISA , #Vulnerability
📱@APTANALYSIS
996
⭐️Konni APT exploits WinRAR vulnerability (CVE-2023–38831) targeting the cryptocurrency industry
📝404 : https://medium.com/@knownsec404team/konni-apt-exploits-winrar-vulnerability-cve-2023-38831-targeting-the-cryptocurrency-industry-d97f6ea7d584
⛔#cryptocurrency , #APT , #Attacks , #Analysis
📱@APTANALYSIS
996
⭐️CVE-2023-2640 , CVE-2023-32629 : Ubuntu Linux Kernel - Local Privilege Escalation
🟢POC : https://github.com/luanoliveira350/GameOverlayFS
🟢POC2 : https://github.com/OllaPapito/gameoverlay
☕️Blog : https://www.wiz.io/blog/ubuntu-overlayfs-vulnerability
🟥NIST : https://nvd.nist.gov/vuln/detail/CVE-2023-2640
✅TEST : Tested on Ubuntu 20.04 with kernel 5.4.0
⛔#LPE , #Kernel , #Exploit , #linux , #Ubuntu , #OverlayFS , #GameOverly
📱@APTANALYSIS
996
🔳Periscope
Fully Integrated Adversarial Operations Toolkit (C2, stagers, agents, ephemeral infrastructure, phishing engine, and automation)
😊Repo : https://github.com/malcomvetter/Periscope
⛔#Offensive , #C2 , #Toolkit
📱@APTANALYSIS
996
🍎CVE-2023-34040 : Spring Kafka - Deserialization Remote Code Execution
🔸Blog : https://pyn3rd.github.io/2023/09/15/CVE-2023-34040-Spring-Kafka-Deserialization-Remote-Code-Execution/
⛔ #Vulnerability , #ANALYSIS
📱@APTANALYSIS
996
🦋Automatic Mass Tool for checking vulnerability in CVE-2022-4060 - WordPress Plugin : User Post Gallery <= 2.19 - Unauthenticated RCE
🎱Repo : https://github.com/im-hanzou/UPGer
⛔#Scan , #Exploit , #Tools , #Vulnerability
📱@APTANALYSIS
996
😏At least read a little about this vulnerability :))
There are no authentication parameters in these published images...
996
👑OmniSpace, from automated 0day XSS to RCE
☀️Blog : https://preprod.patrowl.io/blog-omnispace-from-automated-xss-to-rce-cve-2023-40228/
⛔#Vulnerability
📱@APTANALYSIS
