HackerByHobby (@hackerbyhobby) 's Twitter Profile
HackerByHobby

@hackerbyhobby

Just trying to learn security with the rest of you. Tweets are not representative of my employer or reality.

ID: 375234660

calendar_today17-09-2011 19:08:10

883 Tweet

201 Takipçi

668 Takip Edilen

Kolleen (@littlewhitty) 's Twitter Profile Photo

In Texas, Lake Highlands High School valedictorian, Paxton Smith, switched out her approved speech to talk about abortion rights.

Rémi Escourrou (@remiescourrou) 's Twitter Profile Photo

Finally finished testing it, it's quite brutal! Network access to full AD takeover... I really underestimated the impact of NTLM relay on PKI #ESC8 😱The combo with PetitPotam is awesome ! Everything is already published to quickly exploit it ...

Finally finished testing it, it's quite brutal! Network access to full AD takeover... I really underestimated the impact of NTLM relay on PKI #ESC8 😱The combo with PetitPotam is awesome !
Everything is already published to quickly exploit it ...
Rémi Escourrou (@remiescourrou) 's Twitter Profile Photo

▶️ Time to harden your AD CS HTTP interface to fully block this path, a pretty good recommendation in SpecterOps paper (take a look at page 113) specterops.io/assets/resourc…

James Kettle (@albinowax) 's Twitter Profile Photo

I don't normally aim to drop 0-day, but pre-recording makes it tricky. If you've got an Apache front-end that supports HTTP/2 and enforces any important security rules, please watch this talk. x.com/albinowax/stat…

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Find evidence of log4j usage on Linux servers with these 3 commands ps aux | egrep '[l]og4j' find / -iname "log4j*" lsof | grep log4j Find places to which your applications write logs lsof | grep '\.log' #log4shell #log4j

Devansh (⚡, 🥷) (@0xasm0d3us) 's Twitter Profile Photo

Template Injection in Action: 2-hour workshop on Template Injection (SSTI) gosecure.github.io/template-injec… #ssti #hacking #cybersecurity #bughunting

Template Injection in Action:  2-hour workshop on Template Injection (SSTI)

gosecure.github.io/template-injec…

#ssti #hacking #cybersecurity #bughunting
James Kettle (@albinowax) 's Twitter Profile Photo

The recordings from #BHEU have just landed on youtube! If you're going to watch just one, I'd recommend "Practical HTTP Header Smuggling: Sneaking Past Reverse Proxies to Attack AWS and Beyond" by Daniel Thatcher/Intruder youtube.com/watch?v=RAtpG6…

Horizon3 Attack Team (@horizon3attack) 's Twitter Profile Photo

And finally, a technical analysis on how James Horseman and Zach Hanley reversed the patch and developed the POC for CVE-2022-1388: horizon3.ai/f5-icontrol-re… #f5 #CyberSecurity

Poonam Soni (@codebypoonam) 's Twitter Profile Photo

Anthropic has released Free AI courses on: - Prompt Engineering - Building agents - Best practices for Agentic Coding - Collaborate with AI systems .... and so much more! 9 best guides you don’t want to miss:

Anthropic has released Free AI courses on:

- Prompt Engineering
- Building agents
- Best practices for Agentic Coding
- Collaborate with AI systems

.... and so much more!

9 best guides you don’t want to miss: