Filipe Balestra (@filipebalestra) 's Twitter Profile
Filipe Balestra

@filipebalestra

Consultor e IT Security Researcher. Computer Forensics.

ID: 57156924

calendar_today15-07-2009 22:24:31

210 Tweet

2,2K Takipçi

520 Takip Edilen

Rodrigo Branco (@bsdaemon) 's Twitter Profile Photo

#H2HC2018 15th Edition! Talks Announced and Agenda published (thanks to all researchers who submitted). New training announced: The Shellcode Lab (traditional @BlackHatUSA and for the 1st time in Brazil with steep price discount). H2HC

Joao Matos (@joaomatosf) 's Twitter Profile Photo

Reported a new RCE 0day in RichFaces 3.X (all versions). One of those I used in one of my bounties in the PayPal a few months ago. I intend to use this example in my simple talk in the H2HC in some days. (cc: Markus Wulftange Rodrigo Branco Filipe Balestra Manoel Abreu)

H2HC (@h2hconference) 's Twitter Profile Photo

Pulpito H2: preencha a tabela no evento com horario desejado e palestre sobre algum tema de interesse por 15 minutos! #H2HC2018 #H2HClightningtalks H2HC

Projeto CTF-BR (@ctfbr) 's Twitter Profile Photo

As inscrições para o #Pwn2Win 2018 estão oficialmente abertas. Uma edição para entrar para os anais da história! Ajudem na divulgação: pwn2win.party Epic Leet Team #CTF-BR

As inscrições para o #Pwn2Win 2018 estão oficialmente abertas. Uma edição para entrar para os anais da história! 
Ajudem na divulgação: pwn2win.party <a href="/eltctfbr/">Epic Leet Team</a> #CTF-BR
Brenan Keller (@brenankeller) 's Twitter Profile Photo

A QA engineer walks into a bar. Orders a beer. Orders 0 beers. Orders 99999999999 beers. Orders a lizard. Orders -1 beers. Orders a ueicbksjdhd. First real customer walks in and asks where the bathroom is. The bar bursts into flames, killing everyone.

Joao Matos (@joaomatosf) 's Twitter Profile Photo

My talk in H2HC 2018: youtube.com/watch?v=rNTYxZ… This was about code injection in web frameworks and CVE-2018-14667 (unauth RCE I've used in some bugbounties such as PayPal, AT&T, Apple and others) (not paid by apple =/) Thanks Filipe Balestra and Rodrigo Branco o/

Filipe Balestra (@filipebalestra) 's Twitter Profile Photo

Our latest blog post covers turnstiles, highlighting physical security challenges, facial recognition vulnerabilities, and advanced bypass methods. A short reading for people considering security. blog.pridesec.com.br/en/turnstiles-… #hacking #pentest #cybersecurity #infosec #redteam

x0rz (@x0rz) 's Twitter Profile Photo

So FYI, "redteam" doesn't mean "above the laws". A CEO can't allow someone else to hack into your personal email address to prove a point. This is plain wrong, unethical and privacy invasive. IMO, company email address is fair game. Personal email: nope! 🙅‍♂️

So FYI, "redteam" doesn't mean "above the laws". A CEO can't allow someone else to hack into your personal email address to prove a point.
This is plain wrong, unethical and privacy invasive.
IMO, company email address is fair game. Personal email: nope! 🙅‍♂️
UnkL4b (@unkl4b) 's Twitter Profile Photo

Search SSH Servers with root login in Github Dork: extension:json "root" in:file AND "host" in:file filename:mup youtube.com/watch?v=yIJOlK… github.com/UnkL4b/GitMiner #GitMiner #Pwned #[in]security g0t mi1k ☣ KitPloit - Hacker Tools Hacker News Bot Rodrigo Branco Filipe Balestra Matheus Bernardes