Time to dox some . This company is hosting to get free work by applicants!

#infosec #frauds #fake #ctfs #linkedin #recruiter

Last updated 1 year ago

rffuste · @rffuste
14 followers · 17 posts · Server infosec.exchange

<strong>HTB Funnel</strong>
$ nmap -v -sV -p- 10.129.74.179 --min-rate 5000

Starting Nmap 7.93 ( nmap.org ) at 2023-03-04 10:15 CET
NSE: Loaded 45 scripts for scanning.
Initiating Ping Scan at 10:15
Scanning 10.129.74.179 [2 ports]
Completed Ping Scan at 10:15, 0.04s elapsed (1 total hosts)
Initiating Parallel DNS resolution of 1 host. at 10:15
Completed Parallel DNS resolution of 1 host. at 10:15, 0.02s elapsed
Initiat
rffuste.com/2023/03/06/htb-fun

#ctfs #htb

Last updated 1 year ago

Jeff the Alien · @hackdefendr
326 followers · 3104 posts · Server defenders.town

I wanna be super for a moment.

If you are engaging or competing in like the one's run by @RealTryHackMe - then pay attention to this.

I totally and absolutely envy you.

I cannot focus long enough to write this toot, much less to do a full on exercise like capture the flags usually requires.

#cereal #ctfs #adhdtax

Last updated 2 years ago

Jeff the Alien · @hackdefendr
326 followers · 3104 posts · Server defenders.town

I wanna be super for a moment.

If you are engaging or competing in like the one's run by @RealTryHackMe - then pay attention this this.

I totally and absolutely envy you.

I cannot focus long enough to write this toot, much less to do a full on exercise like capture the flags usually requires.

#cereal #ctfs #adhdtax

Last updated 2 years ago

rffuste · @rffuste
14 followers · 13 posts · Server infosec.exchange

Burp Suite Academy Lab – Reflected XSS into attribute with angle brackets HTML-encoded
This lab contains a reflected cross-site scripting vulnerability in the search blog functionality where angle brackets are HTML-encoded. To solve this lab, perform a cross-site scripting attack that injects an attribute and calls the alert function.

rffuste.com/2023/02/06/burp-su

#ctfs #burpsuiteacademy

Last updated 2 years ago

rffuste · @rffuste
14 followers · 10 posts · Server infosec.exchange

<strong>BurpSuite Lab – DOM XSS in jQuery selector sink using a hashchange event</strong>
This lab contains a DOM-based cross-site scripting vulnerability on the home page. It uses jQuery's $() selector function to auto-scroll to a given post, whose title is passed via the location.hash property.

To solve the lab, deliver an exploit to the victim that ca
rffuste.com/2023/01/16/burpsui

#ctfs #burpsuiteacademy

Last updated 2 years ago

rffuste · @rffuste
14 followers · 9 posts · Server infosec.exchange

BurpSuite Lab – DOM XSS in jQuery anchor `href` attribute sink using `location.search` source
This lab contains a DOM-based cross-site scripting vulnerability in the submit feedback page. It uses the jQuery library's $selector function to find an anchor element, and changes its href attribute using data from location.search.

To solve thi
rffuste.com/2023/01/09/burpsui

#ctfs #burpsuiteacademy

Last updated 2 years ago

Yashwant Singh 🐧 · @earthtoyash
9 followers · 83 posts · Server infosec.exchange

I completed my weekend goal. 🥳🎉
Wreath from @RealTryHackMe has been successful pwned! It was a huge room with various challenges. Learned a lot. It comes with a sweet badge too. tryhackme.com/Scott.Lang/badge

#cybersecurity #tryhackme #wreath #infosec #av_exploitation #ctfs

Last updated 2 years ago

rffuste · @rffuste
14 followers · 7 posts · Server infosec.exchange

<strong>BurpAcademy Lab – DOM XSS in innerHTML sink using source location.search</strong>
This lab contains a DOM-based cross-site scripting vulnerability in the search blog functionality. It uses an innerHTML assignment, which changes the HTML contents of a div element, using data from location.search.

To solve this lab, perform a cross-site scripting a
rffuste.com/2023/01/02/burpaca

#ctfs #burpsuiteacademy

Last updated 2 years ago

rffuste · @rffuste
12 followers · 5 posts · Server infosec.exchange

Burp Suite Academy lab – DOM XSS in document.write sink using source location.search
This lab contains a DOM-based cross-site scripting vulnerability in the search query tracking functionality. It uses the JavaScript document.write function, which writes data out to the page. The document.write function is called with data from location.searc
rffuste.com/2022/12/19/burp-su

#ctfs #burpsuiteacademy

Last updated 2 years ago

rffuste · @rffuste
7 followers · 3 posts · Server infosec.exchange

HTB Synced
Today we return with a new of the very easy HTB boxes to try to finish them all.

$ nmap -v -p- 10.129.228.37 --min-rate 5000

Starting Nmap 7.93 ( nmap.org ) at 2022-12-04 11:01 CET
Initiating Ping Scan at 11:01
Scanning 10.129.228.37 [2 ports]
Completed Ping Scan at 11:01, 0.12s elapsed (1 total hosts)
Initiating Parallel DNS resolution of 1 host. at 11:01
Completed Parallel DNS resolution of 1 host. at 1
rffuste.com/2022/12/05/htb-syn

#ctfs #htb

Last updated 2 years ago

· @Greenknight
13 followers · 7 posts · Server infosec.exchange

Hello! This Post: A great fitness tracking app for the life.

As much as it's important for us as to read, learn, and practice ; we also have to ensure that our bodies are in shape in order to endure and be resilient during those long response engagements.

One of the ways I'm keeping track of my fitness / fitness related goals that I wanted to share with you is this site: fitocracy.com/

They help gamify your fitness with style achievements, quests, and have a useable at the gym work-out tracking app.

That's all I got for now. I'm planning to start sharing walkthroughs of some of the that I shared in a previous post. Deep diving into the MITRE ATT&CK framework, and more.

Thank you for reading.

-GK

Music for your Reading Ears: youtube.com/watch?v=JrO46CJd9n

#WeHackHealth #defenders #blueteam #ir #worldofwarcraft #ctfs #fitness #metrics #persistence #resilience

Last updated 2 years ago

Fran · @fran_navarro
3 followers · 3 posts · Server malaga.social

Bueno mastodontes de , estoy interesado en hacer cositas de con gentecilla por malaga (, bug#bounty o similares) en grupo porque todo es más entretenido así. Alguien interesad@ o que conozca a alguien que podría estarlo?

#malaga #ethicalhacking #ctfs

Last updated 2 years ago

LocalAreaKnitwork 🧶 · @KillrBunn3
39 followers · 12 posts · Server defcon.social
Marco Ivaldi · @raptor
810 followers · 165 posts · Server infosec.exchange

If you enjoy cute , this is a fun one! :hecked:​

github.com/BlackwingHQ/FemtoCT

On the top of it, if you solve it you can apply to the position of security researcher currently open at Blackwing.

// h/t @x30n

#ctfs

Last updated 2 years ago

Taz Wake · @tazwake
631 followers · 247 posts · Server infosec.exchange

If you need to generate "realistic" user data for / , this is a really interesting GitHub repo.

It aims to simulate user behaviour and seems pretty awesome.

github.com/cmu-sei/GHOSTS

#infosec #dfir #ctfs

Last updated 2 years ago

alissa · @dnsprincess
1764 followers · 329 posts · Server infosec.exchange

One thing I recommend to a lot of people is PicoCTF and PicoGym. If you're new to it's an awesome place to start; or if you're just new to in general.

Whether you are a cyber security professional, competitive or new to CTFs you will find interesting challenges in the picoGym that you can solve at your own pace.

Try it out! picoctf.org/index.html#picogym

#ctfs #security #hacker

Last updated 2 years ago

Markus Wetzlmayr · @wetphoto
12 followers · 61 posts · Server mastodon.art

A few years ago I had the privilege to shoot artist portraits of a dear friend of mine. Claudia, a.k.a. , is a true multi-talented wonder woman. She sings, paints, coaches vocalists, does poetry, art installations, band interviews, can do intense growls and shouts, and and and.

Here she is among some of her art installations.

#portraitphotography #art #mastodonaustria #mastodonvienna #portrait #metal #vocalcoach #artist #painter #singer #ctfs #crackthefiresister

Last updated 5 years ago

HCS ▋ · @superruserr
1274 followers · 2877 posts · Server infosec.exchange

@bonzoesc Very nice! Thanks

#ctf #ctfs #infosec

Last updated 7 years ago

HCS ▋ · @superruserr
1274 followers · 2877 posts · Server infosec.exchange

On that note, participating in online is a good way to learn and also find some new folks to talk to especially when you end up helping each other with hints etc if someone is stuck.

CTFs come and go all the time, just do a search for one online.

If you are interested also, here's an interesting Github on CTF writeups github.com/VulnHub/ctf-writeup

#ctfs #infosec

Last updated 7 years ago