Lu3ky13
СтатистикаSecurity Researcher And Security Developer #CAPen #CAP #ewpt #ccna #CCSP-AWS #eCPPT/ Top 1 h1
- Последний пост
- 14 авг.
- Последнее чтение
- 14:25
- Постов за неделю
- 3
- Всего постов
- 84
- Тип
- открытый
- Язык
- английский
- Категория
- Новости и СМИ (по похожим)
- В каталоге с
- 13 авг.
- 1/24сутки в ленте
- 215
- 1/48двое суток
- 246
- 1/72трое суток
- 265
Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.
Посты
One of the most interesting bugs we discovered a few days ago affected an American company with more than 7 million users. We reported the vulnerability to the company after discovering several ways to achieve one-click RCE. In one scenario, an attacker could send a specially crafted link to another person. Simply opening the link could result in remote code execution on the victim’s computer—without requiring any further interaction. We also discovered another attack path involving port forwarding over the network, which could similarly lead to remote code execution. A very interesting and serious finding. 🔥
30% discount is back
After two days, I completed the POC: public IP address > victim’s browser > execute RCE, and successfully open the calculator.
JWT access token lifetime ~10 years :grin:
Testing gRPC-Web APIs? Binary protobuf = pain in Burp 😤 Built a Burp extension that: → Decodes protobuf → JSON → Edit any field → Auto re-encodes on send → Works without .proto files IDOR hunting on modern apps just got easier. https://github.com/Lu3ky13/gRPC…
Testing gRPC-Web APIs? Binary protobuf = pain in Burp 😤 Built a Burp extension that: → Decodes protobuf → JSON → Edit any field → Auto re-encodes on send → Works without .proto files IDOR hunting on modern apps just got easier. https://github.com/Lu3ky13/gRPC-Web-Burp-Repeater
🚀 Released: gRPC-Web Burp Repeater Decode, edit & replay gRPC-Web protobuf traffic in Burp Suite. ✅ Auto decode/encode ✅ Edit JSON, not binary ✅ No schema needed ✅ Full repeater functionality Perfect for bug bounty on modern APIs. 🔗 https://github.com/Lu3ky13/gRPC…
🚀 Released: gRPC-Web Burp Repeater Decode, edit & replay gRPC-Web protobuf traffic in Burp Suite. ✅ Auto decode/encode ✅ Edit JSON, not binary ✅ No schema needed ✅ Full repeater functionality Perfect for bug bounty on modern APIs. 🔗 https://github.com/Lu3ky13/gRPC-Web-Burp-Repeater #BugBounty
I have reported more than 50 bags with this extension
new Version coming soon one click crawling all web https://addons.mozilla.org/en-US/firefox/addon/js-deep-scraper-pro/
new Version coming soon one click crawling all web https://addons.mozilla.org/en-US/firefox/addon/js-deep-scraper-pro/
running #Kimi #K3 locally need $235,000–$370,000 8× NVIDIA H100 GPUs $200,000–$280,000 Server (CPU, RAM, motherboard, storage, networking) $30,000–$70,000 Rack, UPS, switches $5,000–$20,000 Total purchase $235,000–$370,000
i used Antigravity to crack http debugger
This new model is now free to try, just create an account and you can use it. This model may be available for a while. We want your feedback Depending on the response and usage, you may see some slowdown in usage because we expect over 5,000 people to use it after the post Create an account and try it now. We look forward to your feedback https://obsidianlabs.cloud
🚀 New module release on Obsidian Labs! We’ve just shipped 4 new active tools to simplify your offensive workflow: 1️⃣ Hash Identifier 2️⃣ SQLi Payload Generator 3️⃣ SSRF / XXE Generator 4️⃣ Targeted Wordlist Generator https://obsidianlabs.cloud
New Update SSRF , SQLI , XXE , Hash Identifier and more https://obsidianlabs.cloud/
New Update SSRF , SQLI , XXE , Hash Identifier and more https://obsidianlabs.cloud/
🏆 Mission accomplished! Our team of only 2 people successfully solved all challenges in the competition. 136/136 Flags Captured 70,950 Points Ranked 27th Worldwide Proof that determination, teamwork, and persistence can compete with much larger teams.
видео или голосовое, без подписи
видео или голосовое, без подписи