AKMD

479 posts

AKMD banner
AKMD

AKMD

@414b4d44

pwning & nirvana || Security Consultant, Security Research, CTF player, artist, gamer, not bugbounty hunter ||

Katılım Temmuz 2020
899 Takip Edilen140 Takipçiler
AKMD retweetledi
7h3h4ckv157
7h3h4ckv157@7h3h4ckv157·
How to Hack AI Agents & Application by @NahamSec, inspired by @rez0__ (Follow Them for more) 📍 🧵 👇🏻
7h3h4ckv157 tweet media
English
11
265
1.2K
51.4K
AKMD retweetledi
sysxplore
sysxplore@sysxplore·
Bash scripting crash course
sysxplore tweet media
English
7
306
2.4K
167.9K
AKMD retweetledi
Akash Ghosh
Akash Ghosh@myselfakash20·
Bug bounty is not just about finding bugs You need to understand what’s not meant to be seen. Here’s a usefull JS ENUMERATION to break into buried endpoints, logic, and secrets. 👇 A thread for the bug-bounty hunters #BugBounty #JavaScript #Recon #BurpSuite #websecurity
Akash Ghosh tweet media
English
3
50
270
24.7K
AKMD retweetledi
S3cur3Th1sSh1t
S3cur3Th1sSh1t@ShitSecure·
After today’s talk at #TROOPERS25 I’m releasing BitlockMove, a PoC to execute code on remote systems in the context of a loggedon user session 🔥 github.com/rtecCyberSec/B… No need to steal credentials, no impersonation, no injection needed 👌
English
8
172
439
43.9K
AKMD retweetledi
Tom Dörr
Tom Dörr@tom_doerr·
Run a Linux virtual machine in your browser,no server needed
Tom Dörr tweet media
English
58
707
6.3K
445.6K
AKMD retweetledi
GitHub Projects Community
GitHub Projects Community@GithubProjects·
They call it troubleshooting. We call it divine intervention.
English
14
97
1.2K
52.9K
AKMD retweetledi
0b1d1
0b1d1@_0b1d1·
🔧 What is CrackMapExec (CME)? CrackMapExec is a powerful post-exploitation tool built to automate Active Directory (AD) assessments. It allows red teamers and pentesters to perform user enumeration, credential validation, command execution, hash dumping, and lateral movement
0b1d1 tweet media
English
4
71
385
17.4K
AKMD retweetledi
2OURC3
2OURC3@2ourc3·
Just launched Code Auditor CTF — auditor.codes A web platform to practice finding real-world C/C++ vulnerabilities • 8000+ challenges • Progress tracking + leaderboard • Beginner-friendly • Fully open source (beta): github.com/20urc3/auditor…
English
12
141
570
34.2K
AKMD retweetledi
NCIIPC India
NCIIPC India@NCIIPC·
Multiple Critical, High and Medium Severity Vulnerabilities have been discovered in #Jenkins. Users are advised to follow OEM Security Advisories to remain safe! jenkins.io/security/advis…
English
0
2
17
1.2K
AKMD retweetledi
André Baptista
André Baptista@0xacb·
This @bishopfox tool is next level! 🚀 Eyeballer uses AI to analyze screenshots and sorts them into categories based on appearance, including: 👀 Old-looking pages, 👀 Login pages, 👀 404 responses 👀 Web apps 👀 Parked domains Get your eyeballs around this👇
English
5
106
468
24K
AKMD retweetledi
Stephen Sims
Stephen Sims@Steph3nSims·
An Introduction to using Artificial Intelligence (AI) for Vulnerability Research x.com/i/broadcasts/1…
English
8
225
740
58.6K
AKMD retweetledi
7h3h4ckv157
7h3h4ckv157@7h3h4ckv157·
Penetration Testing For - Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network Pentesting, etc... Credit URL: github.com/m14r41/Pentest…
English
4
157
612
23.2K
AKMD retweetledi
MS8
MS8@MohammedShine8·
My little sister just surprised me with this amazing homemade sticker of the @CarHackVillage ☠️ #HomemadeArt
MS8 tweet media
English
0
3
19
1.4K
AKMD retweetledi
JS0N Haddix
JS0N Haddix@Jhaddix·
🧙‍♀️ CISO Story Time This is not exaggeration. I have a good friend. He's a CISO of a multinational organization in the technology sector. We talk often. Market trends, sales, and business regulations had the business decide to open an facility in China. a 🧵 👇
English
26
239
984
487.2K
AKMD retweetledi
Bytebytego
Bytebytego@bytebytego·
Top 4 Forms of Authentication Mechanisms 1. SSH Keys: Cryptographic keys are used to access remote systems and servers securely 2. OAuth Tokens: Tokens that provide limited access to user data on third-party applications 3. SSL Certificates: Digital certificates ensure secure and encrypted communication between servers and clients 4. Credentials: User authentication information is used to verify and grant access to various systems and services Over to you: How do you manage those security keys? Is it a good idea to put them in a GitHub repository? — Subscribe to our weekly newsletter to get a Free System Design PDF (158 pages): bit.ly/3KCnWXq
Bytebytego tweet media
English
23
644
2.7K
378.2K
AKMD
AKMD@414b4d44·
@RobertMi81 @itsfoss That's my list ! 🫰🏼
Abu Dhabi, United Arab Emirates 🇦🇪 English
0
0
2
31
RM
RM@McFire__·
@itsfoss vim screen grep awk sed zless zgrep dd ps ip
English
1
0
3
647
AKMD retweetledi
Thalium Team
Thalium Team@thalium_team·
Rooting Wi-Fi routers! Julien and Marin investigated Xiaomi routers and identified a few vulnerabilities along the way, leading to RCE on several models. Read more about their approach on our blog : blog.thalium.re/posts/rooting-…
English
0
62
131
11.7K
AKMD retweetledi
Rohit
Rohit@sec_r0·
🌟 Today, we're delving deep into OAuth 2.0! Expanding on our previous OAuth flyer, let's dissect the core of OAuth - the four pivotal authorization flows and their intricacies. 💡 Ever pondered over the gears that drive secure app access? The choice of OAuth flow is crucial! 1️⃣ Authorization Code Flow: Pros - Highly secure, allows for token refresh, and doesn't expose tokens. Cons - Slightly complex, requires a backend server. 2️⃣ Implicit Flow: Pros - Simple for client-side apps, no token exchange, and faster. Cons - Not suitable for sensitive data, no token refresh. 3️⃣ Password Flow: Pros - Simplicity, suitable for trusted apps, no need for redirects. Cons - Highly sensitive, not recommended due to security risks. 4️⃣ Client Credentials Flow: Pros - Simplicity, suitable for machine-to-machine communication. Cons - No user involvement, not for accessing user-specific data. Each has its strengths and trade-offs, balancing security and user experience. Stay tuned for our upcoming flyer, where we'll decode these OAuth flows, giving you a technical perspective and helping you choose the right flow for your app's security needs! 🛡️💻 #OAuthFlows #AppSecurity #TechInnovation
Rohit tweet media
English
3
25
100
13.2K