Sign in

Yeeb

@yeeb.xyz
29 followers 182 following 0 posts

doing things with computers - 🚩 w/ Laniakea

PostsRepliesMedia
Reposted by Yeeb
terjanq @terjanq.me · 14/12/2024
Got sniped into the challenge and ended up doing some cool XSS research :D 11 char XSS with mind-boggling race-conditions. TL;DR the final payload is location=x (10 chars) and the longest is top.Z.x=x.d (11 char) It's shorter than location=name !! terjanq.me/solutions/jo...
terjanq.me
11 char XSS (slow race-condition)
13011
Reposted by Yeeb
Robin @digi.ninja · 29/11/2024
This is a mad vulnerability in Magento. You put XML in JSON and use it to trigger PHP deserialization. A lot of work must have gone into putting all this together. www.vicarius.io/vsociety/pos...
1215
Reposted by Yeeb
Yehuda Smirnov @yudasm.bsky.social · 25/11/2024
Excited to share a tool I've been working on - ShadowHound. ShadowHound is a PowerShell alternative to SharpHound for Active Directory enumeration, using native PowerShell or ADModule (ADWS). As a bonus I also talk about some MDI detections and how to avoid them. blog.fndsec.net/2024/11/25/s...
03110
Reposted by Yeeb
Nathan McNulty @nathanmcnulty.com · 24/11/2024
Torn on sharing this, but I think it's important everyone be aware The Office 365 Management Activity API is awesome, but it's also an incredible persistence location to monitor a victim that is almost invisible once set up Let me explain how it works and what to look for ;)
5537
Reposted by Yeeb
silentwarble @silentwarble.bsky.social · 20/11/2024
Oh yeah guess I should post here as well. New Mythic agent released: github.com/MythicAgents...
github.com
GitHub - MythicAgents/Hannibal: A Mythic Agent written in PIC C.
A Mythic Agent written in PIC C. Contribute to MythicAgents/Hannibal development by creating an account on GitHub.
083
Reposted by Yeeb
Layth Chebbi @laythchebbi.com · 21/11/2024
In this blog post i breaks down how attackers can exploit and abuse service principals and what you can do to defend against it. Check it out here: laythchebbi.com/index.php/20... #AzureSecurity #PrivilegeEscalation #OffensiveSecurity #CloudSecurity #Cybersecurity
shorturl.at
Privilege escalation using Azure Service principal
Introduction In Microsoft Azure, the management of access and permissions is critical for maintaining a secure environment. Azure Service Principals serve as non-human identities that allow applicatio...
0239
Reposted by Yeeb
Andrea P @decoder-it.bsky.social · 20/11/2024
Following my prev tweet, my Kerberos MITM relay/forwarder is almost finished! It targets for example insecure DNS updates in AD, allowing DNS name forgery. It intercepts, relays, and forwards traffic, with the client unaware. Currently supporting smb->smb and smb->http (adcs)
13614
Reposted by Yeeb
Nathan McNulty @nathanmcnulty.com · 20/11/2024
WHOA! 🤯 We can now configure FQDN based filtering in Defender Firewall without Intune/Defender for Endpoint? Looks like we can do create these rules via PowerShell or GPO (likely need to update your ADMX templates) learn.microsoft.com/en-us/window...
15612
Reposted by Yeeb
Paged Out! @pagedout.bsky.social · 19/11/2024
Paged Out! Issue #5 is out now! pagedout.institute?page=issues.... Happy reading!
05833
Reposted by Yeeb
Sy Sinclair @sysinclair.bsky.social · 19/11/2024
In addition to your list, Vulnlab provides another set of labs at (imo) a reasonable price: www.vulnlab.com
vulnlab.com
Vulnlab
091