Cyber Crime NEWS

109.9K posts

Cyber Crime NEWS

Cyber Crime NEWS

@CyberCrimeNEWS

Nothing better than a good morning cup of tea and the world at your fingertips!!

cyberspace Katılım Kasım 2010
2K Takip Edilen9.8K Takipçiler
Cyber Crime NEWS retweetledi
NXTL Solutions
NXTL Solutions@NXTLSolutions·
[+] CVE-2024-34070 NXTL Solutions offensive security team is dedicated to securing cyberspace with advanced vulnerability research. Recently dicovered a critical Blind XSS vulnerability > Froxlor leading to potential app compromise. #Bugbountytips #NXTLSolutions #bugbountytip
NXTL Solutions tweet media
English
1
5
11
1.6K
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
AEM guideContainer XXE? guideState={"guideState"%3a{"guideDom"%3a{},"guideContext"%3a{"xsdRef"%3a"","guidePrefillXml"%3a"<%3fxml+version%3d\"1.0\"+encoding%3d\"utf-8\"%3f><!DOCTYPE+afData+[<!ENTITY+a+SYSTEM+\"file%3a///etc/passwd\">]><afData>%26a%3b</afData>"}}} #AEMSecurity
AEMSecurity tweet media
English
6
76
523
33.8K
Cyber Crime NEWS retweetledi
NXTL Solutions
NXTL Solutions@NXTLSolutions·
Giving back to the community is a core part of who we are. This month, our team hosted free #SecureCoding workshops for local developers, promoting safer code practices across the UAE. Together, we can raise the bar for security standards! #NXTLSolutions #CyberSecurity
NXTL Solutions tweet media
English
1
2
8
944
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
[+] Using Google dorks for unique subdomains? Try this: site:*-*-*.yourtarget.com site:*-*.*.yourtarget.com site:*.*.*.yourtarget.com #bugbountytips #bugbountytip #AEMSecurity
English
1
5
22
1.1K
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
[+] HTTP Request Smuggling: Recently while playing with HTTP Request Smuggling I came across an instance where the usual HTTP verbs e.g. POST, HEAD etc did not have any affect However using "TEST" as HTTP verb <--- worked and resulted in two different headers in the HTTP response anyone else experienced this ever? #bugbountytips #AEMSecurity #bugbountytip
English
1
3
26
4.6K
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
[+] Dont ignore those out of scope domains! Recently, I saw an application. This domain was listed as out of scope unfortunately.. More recon on target assets, I noticed very same application hosted on an IP owned by the same org Result: 4 IDOR's, 4 SXSS's #bugbountytips
AEMSecurity tweet media
English
3
15
165
11.3K
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
POC: https://targetdomain/api/endpoint <-- Access Denied https://targetdomain/api/endpoint/? <--- Access to entire customer database
English
0
4
22
1.7K
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
[+] Another awesome Adobe AEM Dispatcher filter bypass technique? oh okay Hunting for JSON GET Servlet on /content.1.json however result = 404? Try this: /conten/.1.json /conten/t.1.json /content.tidy.1.json /conten/.tidy.infinity.json #AEMSecurity #bugbountytips #pentesting
English
4
87
255
34.8K
Cyber Crime NEWS retweetledi
Litigator Nimshay Bareen
Litigator Nimshay Bareen@Nimmi__Baloch·
Litigator Nimshay Bareen@Nimmi__Baloch

چند لمحات پہلے علم ہوا کہ سر @Aasifiqbalpak جو کہ @FIA_Agency کے اسسٹنٹ ڈائریکٹر ہیں، کے جوہر ٹاؤن میں واقع گھر پر فائرنگ کی گئی ہے الحمدالله سر اور اُنکی فیملی محفوظ ہے اور اُس حملہ آور کی تحقیقات جاری ہے انشاءاللہ بہت جلد نتائج سامنے آئیں گے #BreakingNews @PunjabPoliceCPO

QAM
0
2
2
0
Cyber Crime NEWS retweetledi
AEMSecurity
AEMSecurity@AEMSecurity·
[+] #bugbountytips You really need to analyze logs manually via "Logger" when Using Burp Suite. I confirmed 4 HTTP Request smuggling issues + 2 SSRF's and these issues were not flagged by Burp scanner so yup! see what I mean? #AEMSecurity #bugbountytip
English
3
29
141
0
Cyber Crime NEWS retweetledi
Rajveer
Rajveer@R4JVE3R·
Thanks to @0ang3el & @AEMSecurity for sharing their research with us. @ThisIsDK999 has very good knowledge about AEM Testing, if you stuck somewhere, you can ask him like I did. In case I've missed any other resources, please drop them below.
English
2
4
11
0