qt_merlyn1 (@qt_merlynn) 's Twitter Profile
qt_merlyn1

@qt_merlynn

Learning to have a career in pentesting/red teaming. Blue belt pwn.college | HTB CPTS | CRTO | HTB CWEE 🇻🇳

ID: 1048131250173530112

calendar_today05-10-2018 08:42:18

1,1K Tweet

361 Takipçi

505 Takip Edilen

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

Completed path Senior Web Penetration Tester in HTB Academy! academy.hackthebox.com/achievement/28… #hackthebox #htbacademy #cybersecurity

Gi7w0rm (@gi7w0rm) 's Twitter Profile Photo

A list of +1400 websites making use of #Polyfill , which apparently has been used for a supplychain attack. Some stats: -26 gov sites - several bank pages ( 4 x santander) - times news pages for several US mil branches - +21 edu pages Let's hope it was just mobile ads...

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

I always recommend the use of Fail2ban for everything, including web services The good news is that it comes with a default config for sshd, which prevents the exploitation of CVE-2024-6387 & brute force attacks in general DigitalOcean has a tutorial digitalocean.com/community/tuto…

vx-underground (@vxunderground) 's Twitter Profile Photo

As we continue to do our daily news check up, we can confirm that CrowdStrike has performed a colossal oopsie and has done catastrophic damage. We have never witnessed an oopsie of this magnitude

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

Officially passed the CWEE 🥳 It was a challenging yet incredibly informative learning experience. Looking forward to what's next!

Officially passed the CWEE 🥳 It was a challenging yet incredibly informative learning experience. Looking forward to what's next!
qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

C2 Operations with Sliver offers a great introduction to the framework. However, the labs miss out on integrating security controls, which also feels like a missed opportunity to teach evasion techniques. academy.hackthebox.com/achievement/28… #hackthebox #htbacademy #cybersecurity

Sonar Research (@sonar_research) 's Twitter Profile Photo

Critical XSS in Roundcube webmail⚠ A victim only has to view a malicious email. As reported by ESET Research, APTs have exploited similar vulns in the past to steal government emails. Our announcement: sonarsource.com/blog/governmen… (CVE-2024-42008, CVE-2024-42009, CVE-2024-42010)

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

Awesome post about various techniques on lateral movements and their Opsec/IOCs. It also touches on the double-hop problem. posts.specterops.io/offensive-late…

Graham Helton (@grahamhelton3) 's Twitter Profile Photo

5. How did I learn about this? I was reading this article by Zachary Reichert, Daniel Stein, and Joshua Pivirotto about how this technique was utilized in the wild by a "financially motivated threat actor" aon.com/en/insights/cy…

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just completed module Windows Lateral Movement in HTB Academy! academy.hackthebox.com/achievement/28… #hackthebox #htbacademy #cybersecurity

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just completed module Secure Coding 101: JavaScript in HTB Academy! academy.hackthebox.com/achievement/28… #hackthebox #htbacademy #cybersecurity

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned Chemistry in Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned Sightless in Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned Sea in Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned Instant in Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned MonitorsThree in Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I just pwned EscapeTwo on Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting