Aggregator
How a Unique Combination Opened the Door to an IDOR
Comprehensive Bug Bounty Hunting Methodology (2024 Edition)
How i earned easy$$$ by deleting user comments on any post
如何使用Locksmith查找和修复AD证书服务中的错误安全配置
CVE-2001-1422 | AT&T WinVNC 3.3.3 Authentication missing encryption (VU#303080 / XFDB-5992)
CVE-2001-1424 | Alcatel Speed Touch Home KHDSAA.108/KHDSAA.132/KHDSBA.133/KHDSAA.134 improper authentication (VU#212088 / Nessus ID 10760)
CVE-2001-1425 | Alcatel Speed Touch Home KHDSAA.108/KHDSAA.132/KHDSBA.133/KHDSAA.134 privileges management (VU#243592 / Nessus ID 10760)
CVE-2001-1423 | Advanced Poll up to 1.60 Flat File Database logged_in privileges management (VU#140723 / XFDB-7861)
CVE-2001-1421 | AOL Instant Messenger up to 4.7 Font denial of service (VU#530299 / XFDB-7757)
Voidmaw: A new bypass technique for memory scanners
VOIDMAW This is a new bypass technique for memory scanners. It is useful in hiding problematic code that will be flagged by the antivirus vendors. This is basically an improved version of Voidgate, but without...
The post Voidmaw: A new bypass technique for memory scanners appeared first on Penetration Testing Tools.
cwe_checker: finds vulnerable patterns in binary executables
cwe_checker cwe_checker is a suite of tools to detect common bug classes such as use of dangerous functions and simple integer overflows. These bug classes are formally known as Common Weakness Enumerations (CWEs). Its main goal is...
The post cwe_checker: finds vulnerable patterns in binary executables appeared first on Penetration Testing Tools.
CVE-2021-40868 | Cloudron 6.2 Login Page returnTo cross site scripting (ID 164183 / EDB-50317)
Sooty: SOC Analysts all-in-one CLI tool to automate and speed up workflow
Sooty The SOC Analysts all-in-one CLI tool to automate and speed up workflow. Feature Sanitise URL’s to be safe to send in emails Perform reverse DNS and DNS lookups Perform reputation checks from:...
The post Sooty: SOC Analysts all-in-one CLI tool to automate and speed up workflow appeared first on Penetration Testing Tools.