🇷🇴 cristi(@CristiVlad25) 's Twitter Profile Photo

What happens when devs forget to modify the secret key...

This is from a recent pentest for a client. This misconfiguration compromised the password reset feature.

What happens when devs forget to modify the secret key...

This is from a recent pentest for a client. This misconfiguration compromised the password reset feature.

#pentesting #appsec #cybersecurity #infosec
account_circle
Rachel Tobac(@RachelTobac) 's Twitter Profile Photo

To reach the ~youth~ we're going to have to make infosec sea shanties, aren't we? Guess so!
Behold the tale of kid who reuses their passwords & ends up pwn'd, then learns how to stay safe. We're on a mission to encourage unique passwords stored in a password manager with MFA on.

account_circle
0xor0ne(@0xor0ne) 's Twitter Profile Photo

Windows kernel exploitation, a beginners introduction

Part 1: mdanilor.github.io/posts/hevd-0/
Part 2: mdanilor.github.io/posts/hevd-1/
Part 3: mdanilor.github.io/posts/hevd-2/
Part 4: mdanilor.github.io/posts/hevd-3/
Part 5: mdanilor.github.io/posts/hevd-4/

Windows kernel exploitation, a beginners introduction

Part 1: mdanilor.github.io/posts/hevd-0/
Part 2: mdanilor.github.io/posts/hevd-1/
Part 3: mdanilor.github.io/posts/hevd-2/
Part 4: mdanilor.github.io/posts/hevd-3/
Part 5: mdanilor.github.io/posts/hevd-4/

#windows #infosec
account_circle