alien keric (@alienkeric) 's Twitter Profile
alien keric

@alienkeric

CRTA |CEH |nerd 👨‍💻 |CTF player|member at @urchinsec_ & @5h4d0wbr0k3r5

ID: 1520545995393806341

linkhttps://hackmd.io/@alienX/H1HJ8-cjh calendar_today30-04-2022 23:31:12

1,1K Tweet

1,1K Takipçi

1,1K Takip Edilen

0xdf (@0xdf_) 's Twitter Profile Photo

BigBang from Hack The Box starts off with a very tricky vuln chaining a file read in a WordPress plugin to a buffer overflow in Glibc to get RCE. Then there's Grafana and an Android APK. 0xdf.gitlab.io/2025/05/03/htb…

ippsec (@ippsec) 's Twitter Profile Photo

#HackTheBox BigBang Video is up! And it shows something I didn't know was possible, getting RCE on a file_get_contents call within PHP. It is patched as of PHP 8.3.8 (~June 2024) but I'm sure there are unpatched webservers out there. youtube.com/watch?v=Xta6fG…

Alex Neff (@al3x_n3ff) 's Twitter Profile Photo

A new module has been merged into NetExec: change-password🔥 Accounts with STATUS_PASSWORD_EXPIRED aren't a problem anymore, just reset their password. You can also abuse ForceChangePassword to reset another user's password. Made by FaganAfandiyev, Mehmetcan TOPAL and me

A new module has been merged into NetExec: change-password🔥

Accounts with STATUS_PASSWORD_EXPIRED aren't a problem anymore, just reset their password.
You can also abuse ForceChangePassword to reset another user's password.

Made by <a href="/kriyosthearcane/">FaganAfandiyev</a>, <a href="/mehmetcanterman/">Mehmetcan TOPAL</a> and me
Jack Rhysider 🏴‍☠️ (@jackrhysider) 's Twitter Profile Photo

💥New Ep 158: "MalwareTech"💥 👀 He finally tells all. You're not going to believe it. I've been waiting for this one for a long time. I'm so happy it's finally here. darknetdiaries.com/episode/158

💥New Ep 158: "MalwareTech"💥

👀 He finally tells all.

You're not going to believe it. I've been waiting for this one for a long time. I'm so happy it's finally here.

darknetdiaries.com/episode/158
alien keric (@alienkeric) 's Twitter Profile Photo

piece of cake 🍰. Easy box are always 1-2 steps and ur in, the same with root just few steps and ur done. Used my military technique to get the flag 😁, I was bored with that cleanup script.

piece of cake 🍰. Easy box are always 1-2 steps and ur in, the same with root just few steps and ur done. Used my military technique to get the flag 😁, I was bored with that cleanup script.
Hack The Box (@hackthebox_eu) 's Twitter Profile Photo

Looks can be deceiving 😶‍🌫️ 2 new labs are coming to the #HackTheBox platforms this week! 🔵 Trojan, a Sherlock where you analyze the different pieces of evidence to extract IOCs and reconstruct the phases of the infection, created by MrManj 🔴 Puppy, an #HTB Seasons Machine

Looks can be deceiving 😶‍🌫️
2 new labs are coming to the #HackTheBox platforms this week!
🔵 Trojan, a Sherlock where you analyze the different pieces of evidence to extract IOCs and reconstruct the phases of the infection, created by MrManj
🔴 Puppy, an #HTB Seasons Machine
Alex Neff (@al3x_n3ff) 's Twitter Profile Photo

A new NetExec module just got merged: eventlog_creds🔥 It parses Windows Event ID 4688 logs (from "Audit Process Creation") to extract credentials from CMD and PowerShell commands. E.g. "net user username password /add" will be detected. Made by Lodos2005

A new NetExec module just got merged: eventlog_creds🔥

It parses Windows Event ID 4688 logs (from "Audit Process Creation") to extract credentials from CMD and PowerShell commands. E.g. "net user username password /add" will be detected. Made by <a href="/lodos2005/">Lodos2005</a>
Berry Your Network 👨🏾‍💻🖤🌹 (@abdulmalik_ttg) 's Twitter Profile Photo

Things I need right now; A congratulations email or I just might lose it (Not Spams). A 2-5k$ a month role An offensive security role that I'll actually love and will learn so much on.

alien keric (@alienkeric) 's Twitter Profile Photo

Well this was very interesting machine for the weekend, but with my opinion this was supposed atleast to be medium 😁. anyway Ggs #htb #fluffy #urchinsec

Well this was very interesting machine for the weekend, but with my opinion this was supposed atleast to be medium 😁. anyway Ggs #htb #fluffy #urchinsec
Security BSides Ahmedabad (@bsidesahmedabad) 's Twitter Profile Photo

🚨 OSCP GIVEAWAY ALERT🚨 We’re giving away 3 OSCP vouchers to supercharge your pentesting journey – proudly sponsored by OffSec ! 💥🙌 To enter: 1.✅ Follow Us 2.🔁 Retweet this post 3.❤️ Like this post 4.💬 Reply with your funniest cybersecurity meme 🎯 We’ll pick 3

🚨 OSCP GIVEAWAY ALERT🚨

We’re giving away 3 OSCP vouchers to supercharge your pentesting journey – proudly sponsored by <a href="/offsectraining/">OffSec</a> ! 💥🙌

To enter:
1.✅ Follow Us
2.🔁 Retweet this post
3.❤️ Like this post
4.💬 Reply with your funniest cybersecurity meme

🎯 We’ll pick 3
OffSec (@offsectraining) 's Twitter Profile Photo

🔍⬆️ Ready to level up your PEN-200 skills? Join us for our next #OffSecLive session where we’ll walk through the PG Practice Apex machine, step by step. From information gathering to public exploits, fixing code, and tackling password attacks, this session is packed with

🔍⬆️ Ready to level up your PEN-200 skills? 

Join us for our next #OffSecLive session where we’ll walk through the PG Practice Apex machine, step by step.

From information gathering to public exploits, fixing code, and tackling password attacks, this session is packed with
nich0laus 🎭 (@nicl4ssic) 's Twitter Profile Photo

"Quitting is not a solution. Phishing is the solution." 😂😂🫵 cc Tahaa Farooq alien keric urchinsec I just pwned Sorcery on Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Alex Neff (@al3x_n3ff) 's Twitter Profile Photo

How to find the Entra ID sync server - A new NetExec module🔎 Inspired by the great Entra ID talks at #Troopers25, I looked into how to find the Entra ID sync server. Results: The description of the MSOL account, as well as the ADSyncMSA service account reference this server🚀

How to find the Entra ID sync server - A new NetExec module🔎

Inspired by the great Entra ID talks at #Troopers25, I looked into how to find the Entra ID sync server.
Results: The description of the MSOL account, as well as the ADSyncMSA service account reference this server🚀