Q5Ca

238 posts

Q5Ca banner
Q5Ca

Q5Ca

@_q5ca

Chief Remote Work Officer at @u0Kplusplus

Vietnam Katılım Kasım 2017
389 Takip Edilen958 Takipçiler
Zack Korman
Zack Korman@ZackKorman·
Microsoft isn’t paying a bounty because this related to “enterprise copilot” which apparently isn’t covered? I don’t even know what that means… I have an M365 copilot license and a P1 license lol. What are they talking about.
Zack Korman tweet media
Zack Korman@ZackKorman

Microsoft isn’t disclosing this so: M365 Copilot allowed users to access files without producing an audit log. All you had to do was ask Copilot to not link to the file. You don’t even have to ask; it sometimes just happens. If your org uses Copilot your audit log is likely wrong

English
14
22
257
19.3K
s1r1us (mohan)
s1r1us (mohan)@S1r1u5_·
@_q5ca yeah, you can just set a flag in protobuf request
English
1
0
1
417
s1r1us (mohan)
s1r1us (mohan)@S1r1u5_·
Hacking Windsurf: I asked the AI for the shell, it said yes. new video’s out. I show how I could’ve hacked you… just by getting you to click my link. Link posted below.
s1r1us (mohan) tweet media
English
19
77
414
66.9K
Zeeshan M.
Zeeshan M.@by6153·
@haxor31337 @_q5ca Hi @haxor31337 it was a great talk loved it totally 🙌 also I have a question when you used ActivitySurrogateSelector gadget it prompted almost 16k+ characters payload and you mentioned that the querystring supports 2048 characters did you tried to use -minify option in ysoserial
English
1
0
0
98
Tuan Anh Nguyen⚡️ 🇻🇳
From SSRF to RCE and transfer money in core banking. It is really cool red team case. A perfect combination of external and internal vulnerabilities for each other to bypass the monitoring and detection of the blue team. Present by my colleague @_q5ca youtu.be/xBnMrNCuO_w?si…
YouTube video
YouTube
English
6
69
353
30.8K
Hussein Daher
Hussein Daher@HusseiN98D·
Burn out, platforms not always playing the right game , some programs scamming you.. it's not all beautiful in Bug Bounty. Find a backup plan ;) only the wise will start diversifying. The next years will become very hard.
English
1
3
56
5.7K
Q5Ca
Q5Ca@_q5ca·
Happy to share that my colleague @vudq16 and I will be speaking at PHDays in Moscow 🇷🇺 next week, May 24th. I’ll share a story from one of our red team projects, with techniques to maximize stealth during the operation. Hope to make new connections there:D phdays.com/en/forum/progr…
English
5
4
49
3.6K
Q5Ca
Q5Ca@_q5ca·
@tuo4n8 @vudq16 Nao có dịp ae mình giao lưu a nhé 🤣
Tiếng Việt
0
0
1
81