| Tweetovi |
| eax proslijedio/la je tweet | ||
|
Vicki Boykis
@vboykis
|
4. velj |
|
Some MIT faculty have put together a course called "The Missing Semester of Your CS Education." Having looked it over a bit, it looks fantastic and will benefit data science people from non-dev backgrounds fill in a lot of gaps, too. missing.csail.mit.edu
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Nicolas Grégoire
@Agarri_FR
|
4. velj |
|
I published this trick in 2015 agarri.fr/docs/AppSecEU1… twitter.com/thedawgyg/stat…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Nicolas Krassas
@Dinosn
|
3. velj |
|
TeamViewer stored user passwords encrypted, not hashed, and the key is now public
whynotsecurity.com/blog/teamviewe…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Xentropy
@SamuelAnttila
|
1. velj |
|
I was tired of outdated XSS cheat sheets that don't touch on frameworks, html5, filter bypasses and other important stuff, so I made my own. I hope you find it as useful as I do. :)
netsec.expert/2020/02/01/xss…
#bugbountytips pic.twitter.com/Mdygq1PI9Z
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
sailay(valen)
@404death
|
27. sij |
|
I created this repo for the people who want to learn about windows logical privilege escalation bugs.
You can contact me to add good article which I missed.
github.com/sailay1996/awe…
#windows_logical_privilege_escalation pic.twitter.com/nRxvGq40LX
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
spotless
@spotheplanet
|
26. sij |
|
Some study notes on LSASS hooking for harvesting interactive logon credentials.
ired.team/offensive-secu…
Thanks to @_xpn_ for his inspiring posts about mimikatz.
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Leandro Barragan
@lean0x2f
|
28. sij |
|
[Educational] One of the best blog posts that I ever read about going from 0 to unauth RCE in f**king Mikrotik OS step by step: medium.com/@maxi./finding…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Binni Shah
@binitamshah
|
30. sij |
|
TCP/IP Connection Primer : levelup.gitconnected.com/linux-kernel-t… pic.twitter.com/6vbxuS66C2
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Nicolas Krassas
@Dinosn
|
30. sij |
|
Linux Reverse Engineering CTFs for Beginners medium.com/bugbountywrite…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Swissky
@pentest_swissky
|
26. sij |
|
Windows / Linux Local Privilege Escalation Workshop (Materials included !) 🥳
github.com/sagishahar/lpe…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
isis agora lovecruft (they/them)
@isislovecruft
|
30. sij |
|
i believe i just did something no one has ever done before: i wrote a constant-time galois field implementation on a 6502 chipset, which not only does not have a constant-time hardware multiply instruction, but does not have a multiply instruction at all
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
SandboxEscaper
@SandboxBear
|
31. sij |
|
sandboxescaper.blogspot.com/2020/01/chasin… Fuck it, I can't focus at all today. It's a mess, sorry.. I've also uploaded the discussed bug to github. Maybe someone can make sense of it. It's a junction bug that's a little more complicated then a simple "bait and switch". Hope it's useful to someone.
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Quoc Le
@quocleix
|
28. sij |
|
New paper: Towards a Human-like Open-Domain Chatbot. Key takeaways:
1. "Perplexity is all a chatbot needs" ;)
2. We're getting closer to a high-quality chatbot that can chat about anything
Paper: arxiv.org/abs/2001.09977
Blog: ai.googleblog.com/2020/01/toward… pic.twitter.com/5SOBa58qx3
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Marcello
@byt3bl33d3r
|
27. sij |
|
Just pushed a somewhat big update to SILENTTRINITY with a lot of forward compatibility fixes for Python 3.8 and made the PowerShell "stageless" stager public. Plus more modules and bug fixes
github.com/byt3bl33d3r/SI…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Jeff Dean
@JeffDean
|
23. sij |
|
Google Dataset Search is now officially out of beta.
"Dataset Search has indexed almost 25 million of these datasets, giving you a single place to search for datasets & find links to where the data is."
Nice work, Natasha Noy and everyone else involved!
blog.google/products/searc…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Z0F
@0xZ0F
|
11. sij |
|
My courses are going back to GitHub and off of my website. It was really annoying running them on my website. The reverse engineering course is getting a revamp soon and a basic exploit dev course is being worked on.
github.com/0xZ0F/Z0FCours…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Maurício Aniche
@mauricioaniche
|
20. sij |
|
We (@serg_delft) just opened our software testing lecture notes. It currently contains 14 full chapters, 52k words, 63 videos, and 82 exercises. License: CC-BY-NC-SA. Feel free to use it! sttp.site
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Chip Huyen
@chipro
|
20. sij |
|
I analyzed compensation & level details of 19k tech workers to find answers to:
1. How long does it take for SWEs to reach a certain level?
2. Compensations across jobs/levels?
3. Do women get paid less than men in tech?
4. Is there a deadline for SWEs?
huyenchip.com/2020/01/18/tec…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
Ghidra Ninja
@ghidraninja
|
17. sij |
|
I just published a video explaining the details of CVE-2020-0601 aka Curveball: The Microsoft CryptoAPI vulnerability that was reported by the NSA.
youtube.com/watch?v=8RI60a…
|
||
|
|
||
| eax proslijedio/la je tweet | ||
|
MalwareTech
@MalwareTechBlog
|
18. sij |
|
My analysis of Remote Desktop Gateway RCE bugs CVE-2020-0609 & CVE-2020-0610 is up. twitter.com/kryptoslogic/s…
|
||
|
|
||