Quantcast
Channel: Shielder
Browsing index pages (27 articles)
↧

Image may be NSFW.
Clik here to view.

Sometimes they come back: exfiltration through MySQL and CVE-2020-11579

Let’s jump straight to the strange behavior: up until PHP 7.2.16 it was possible by default to exfiltrate local files via the MySQL LOCAL INFILE feature through the connection to a malicious MySQL...

View Article


Image may be NSFW.
Clik here to view.

1-click RCE on Keybase

TL;DR Keybase clients allowed to send links in chats with arbitrary schemes and arbitrary display text. On Windows it was possible to send an apparently harmless link which, when clicked, could...

View Article


Image may be NSFW.
Clik here to view.

NotSoSmartConfig: broadcasting WiFi credentials Over-The-Air

During one of our latest Penetration Tests we tested an IoT device based on the ESP32 SoC by EspressIF. While assessing the activation procedure we faced for the first time a beautiful yet dangerous...

View Article

Protected: 1-click RCE on Keybase

This content is password protected. To view it please enter your password below: Password: L'articolo Protected: 1-click RCE on Keybase sembra essere il primo su Shielder.

View Article

Image may be NSFW.
Clik here to view.

Don’t open that XML: XXE to RCE in XML plugins for VS Code, Eclipse, Theia, …

TL;DR LSP4XML, the library used to parse XML files in VSCode-XML, Eclipse’s wildwebdeveloper, theia-xml and more, was affected by an XXE (CVE-2019-18213) which lead to RCE (CVE-2019-18212) exploitable...

View Article


Image may be NSFW.
Clik here to view.

Exploiting an old noVNC XSS (CVE-2017-18635) in OpenStack

TL;DR: noVNC had a DOM-based XSS that allowed attackers to use a malicious VNCserver to inject JavaScript code inside the web page.As OpenStack uses noVNC and its patching system doesn’t update third...

View Article

Image may be NSFW.
Clik here to view.

Exploiting Apache Solr through OpenCMS

Tl;dr It’s possible to exploit a known Apache Solr vulnerability through OpenCMS. During one of my last Penetration Test I was asked to analyze some OpenCMS instances. Before the assessment I wasn’t...

View Article

Image may be NSFW.
Clik here to view.

Nagios XI 5.5.10: XSS to #

Tl;dr A remote attacker could trick an authenticated victim (with “autodiscovery job” creation privileges) to visit a malicious URL and obtain a remote root shell via a reflected Cross-Site Scripting...

View Article


Image may be NSFW.
Clik here to view.

WebTech, identify technologies used on websites

Introduction We’re very proud to release WebTech as open-source software.WebTech is a Python software that can identify web technologies by visiting a given website, parsing a single response file or...

View Article


Image may be NSFW.
Clik here to view.

FridaLab – Writeup

Today I solved FridaLab, a playground Android application for playing with Frida and testing your skills. The app is made of various challenges, with increasing difficulty, that will guide you through...

View Article

Image may be NSFW.
Clik here to view.

SOLUZIONE Seeweb Hacking Contest 2017: Music Of The Atoms

Da Lunedì 15 Maggio 2017 alle ore 10:00 a Mercoledì 31 Maggio 2017 alle ore 10:00 si è svolto l’hacking contest di Seeweb al quale abbiamo avuto l’onore di partecipare. Anche per questa edizione siamo...

View Article

Image may be NSFW.
Clik here to view.

XSSGame by Google at #HITB2017AMS – Writeup

During the last edition of HITB in Amsterdam we took part into the XSSGame by Google: 8 XSS challenges to win a Nexus 5X. The various levels exposed common vulnerabilities present in modern web apps....

View Article

Image may be NSFW.
Clik here to view.

SOLUZIONE HiB CTF 2017 Spring Edition

Dalle 23:59 del 31/03/2017 alle 23:59 del 02/04/2017 è stato possibile partecipare alla CTF di HackInBo, organizzata da Voidsec e dagli amici di Hacktive Security. I primi 45 in classifica avranno la...

View Article


Image may be NSFW.
Clik here to view.

Ransomware: FUD DLL via Javascript

Introduzione Nel corso dell’ultima settimana abbiamo ricevuto 5 mail molto simili e di natura evidentemente sospetta, le quali oltre ad un testo evidentemente fasullo, ma sempre diverso, avevano...

View Article

Image may be NSFW.
Clik here to view.

CTF – Hands off my money

Shielder è lieta di presentare, grazie alla collaborazione con Daniele Linguaglossa, la sua prima Capture The Flag intitolata “Hands off my money“, la quale avrà inizio Venerdì 22 Aprile 2016 ore...

View Article


Image may be NSFW.
Clik here to view.

Quando, come e perché Google cancella una notizia?

Nel maggio del 2014, a seguito del caso Google Spain contro Agencia Española de Protección de Datos (AEPD) e Mario Costeja González, la Corte UE ha obbligato il motore di ricerca Google a deindicizzare...

View Article

Image may be NSFW.
Clik here to view.

Chi risponde in caso di danni derivanti da un Penetration Test?

Definire legalmente i limiti di responsabilità in attività quali vulnerability assessment e penetration testing non sempre è facile. In questo articolo si andrà ad analizzare ed eliminare alcuni dubbi...

View Article


Image may be NSFW.
Clik here to view.

Analisi Documento Word con Macro malevole

Qualche giorno fa abbiamo ricevuto una mail da un indirizzo legittimo di uno store online, la quale, a primo acchito, appariva completamente pulita (salvo per il fatto che non abbiamo mai ordinato...

View Article

Image may be NSFW.
Clik here to view.

Meglio insicuri che erroneamente protetti

Oggi mi sono trovato a testare un form di ricerca per valutare l’eventuale presenza di vettori d’attacco. Il test era di tipo blackbox, quindi non avevo accesso ai sorgenti del file PHP, che...

View Article

Image may be NSFW.
Clik here to view.

SOLUZIONE Hacking Contest Spring Break Seeweb

Siamo lieti di presentarvi la nostra soluzione della seconda edizione dell’hacking contest di Seeweb. Purtroppo a causa dell’apertura del nostro ufficio non abbiamo avuto modo di partecipare in modo...

View Article
Browsing index pages (27 articles)