Effrite - CyberDjinn

47 posts

Effrite - CyberDjinn banner
Effrite - CyberDjinn

Effrite - CyberDjinn

@_effrite

Internet Security addict

Katılım Mart 2018
86 Takip Edilen25 Takipçiler
Effrite - CyberDjinn retweetledi
Alex Xu
Alex Xu@alexxubyte·
Popular interview question: how to diagnose a mysterious process that’s taking too much CPU, memory, IO, etc? The diagram below illustrates helpful tools in a Linux system. 🔹‘vmstat’ - reports information about processes, memory, paging, block IO, traps, and CPU activity.
Alex Xu tweet media
English
25
943
4.1K
0
Effrite - CyberDjinn retweetledi
Yanir Tsarimi
Yanir Tsarimi@Yanir_·
I found a vulnerability in #Azure allowing me to access Azure accounts of companies worth billions We all know vulnerabilities exist. This isn't an injection, XSS, or RCE. But the crazy thing about it? It took 2 hours to discover. 🤯 Here's the story of #AutoWarp👇 (1/10)
English
65
1.2K
4.1K
0
Effrite - CyberDjinn retweetledi
CySuite
CySuite@CySuite_·
Yet another Account Takeover technique. Seperator: email=victim@mail.com,hacker@mail.com email=victim@mail.com%20hacker@mail.com email=victim@mail.com|hacker@mail.com Array: {"email":["victim@mail.com","hacker@mail.com"]} Follow for more #infosec updates and #bugbountytips
CySuite tweet media
English
0
156
306
0
Effrite - CyberDjinn retweetledi
shubs
shubs@infosec_au·
My colleague @seanyeoh wrote up his security research on H2C smuggling and the various cloud providers he successfully exploited (Cloudflare, Azure). He also released a tool called h2csmuggler! Check it out at blog.assetnote.io/2021/03/18/h2c…
English
0
112
338
0
Effrite - CyberDjinn retweetledi
Intigriti
Intigriti@intigriti·
First one to misspell 'Intigriti' in the comments will get blocked 👇
English
46
3
61
0
Effrite - CyberDjinn retweetledi
Orange Tsai  🍊
Orange Tsai 🍊@orange_8361·
An RCE blog is scheduled and will be published soon :P
English
34
86
1.1K
0
Effrite - CyberDjinn retweetledi
chivato
chivato@SecGus·
Calling eval without "eval" or "import" amongst others: __builtins__.__dict__['\x65\x76\x61\x6C']("\x5F\x5F\x69\x6D\x70\x6F\x72\x74\x5F\x5F\x28\x22\x6F\x73\x22\x29\x2E\x73\x79\x73\x74\x65\x6D\x28\x22" + "COMMAND" + "\x22\x29")
English
7
157
599
0
Effrite - CyberDjinn retweetledi
@securitymb@infosec.exchange
@[email protected]@SecurityMB·
This release also fixes a bypass if somebody does DOMPurify.sanitize(html).toLowerCase(). Check this example: jsbin.com/subocetuce/1/e… Hint: in blocKquote - K = U+212A (KELVIN SIGN) which is lowercased to ASCII "k".
@securitymb@infosec.exchange tweet media
English
0
23
90
0