Msfcode @msfcode
路漫漫其修远兮,吾将上下而求索。 People's Republic of China Joined April 2018-
Tweets193
-
Followers174
-
Following314
-
Likes120
github.com/elastic/otel-p… 可以直接支持JAVA、PHP、Python、GO等高级语言程序的可观测性。不依赖高级语言的符号表、DWARF信息,直接解析到JAVA层的语言符号。 笔者稍微实验了一下,甚至可以作为未来RASP的技术方案。规避了Java Agent动态注入带来STW性能抖动的问题。强得可...可...可...怕...怕...。
We've analyzed the patch diffs for CVE-2023-3519 (Citrix Pre-Auth RCE) and have published our findings so far on our blog post here: blog.assetnote.io/2023/07/21/cit… So far, we haven't found an endpoint where this issue is exploitable without SAML being enabled. Will update blog if we…
既然有朋友问如何入门 Web3 安全(尤其是智能合约安全),我简单列点当下觉得还不错的资源吧。牢记下:这玩意,最重要的是实战,是需要你一天到晚长期在这个领域积累,才可能有些成就。另外,兴趣一定是最大的驱动力,三天打鱼两天撒网,那不叫兴趣,那叫自欺欺人...
What would you do if you could spend 1 week with the creators of the most widely-used bug finding tools? * AFL++ * LibFuzzer / ASAN * Syzkaller * KLEE * OSSFuzz * OneFuzz * SQLancer * FuzzingBook / DebuggingBook * Infer * Clang SA * Findbugs / Tricorder * Soot / FlowDroid ...
"VMware Authentication Bypass Vulnerability (CVE-2022-22972) Technical Deep Dive" #infosec #redteam #redteam horizon3.ai/vmware-authent…
2 years have passed and he still didn't crack none of them! Lol! ("Multi One Password" is indeed a Real and The Most Secure #PasswordManager!) . @TerahashCorp @jmgosney @L0phtCrackLLC #Infosec #netsec #cybersec #cybersecurity #hashcat #bcrypt #defcon
2 years have passed and he still didn't crack none of them! Lol! ("Multi One Password" is indeed a Real and The Most Secure #PasswordManager!) . @TerahashCorp @jmgosney @L0phtCrackLLC #Infosec #netsec #cybersec #cybersecurity #hashcat #bcrypt #defcon https://t.co/RbmcwNtYrV
LDAP Injection 💥 1/3 Payloads : * *)(& *))%00 )(cn=))\x00 *()|%26' *()|&' *(|(mail=*)) *(|(objectclass=*)) *)(uid=*))(|(uid=* */* *| / // //* @* | admin* admin*)((|userpassword=*) admin*)((|userPassword=*) x' or name()='username' or 'x'='y #bugbountytips #shieldindia
A vector by @cure53berlin <xss onbeforescriptexecute=alert(1)><script>1</script>
A CSS transition-based one by @PortSwiggerRes <style>:target {color:red;}</style><xss id=x style="transition:color 1s" onwebkittransitionend=alert(1)>
Playing with GZIP! All versions of GLPI, an open source IT asset management app, released in the last 10 years are vulnerable to an RCE (CVE-2020-11060) flaw through backup feature. offsec.almond.consulting/playing-with-g… The bug has been patched with the release of v9.4.6. via @AlmondOffSec
6000+ hackerone disclosed reports docs.google.com/spreadsheets/d… #bugbountytips #bugbountytip #bugbounties #hackerone #vulnerabilities #xxe #xss #sqli #ssrf #RCE
🔒New CryptoTester v1.4.0.2 for #ransomware analysis 🔎: TONS of fixes/additions to hexboxes, grouped algorithms in dropdown, flip endianness of keys, AES XTS mode, HMAC key derives, raw RSA (provide n + d/e, no padding), redesigned bruteforce key tool, lots of bugfixes.
CVE-2020-10204 Nexus Repository Manager 3 - Remote Code Execution Well, EL Injection support.sonatype.com/hc/en-us/secti…
xueqiu.com/9455873430/143… $微博(WB)$ #新浪微博、微博借钱 就是骗子公司,套路贷和高利贷# 英语不好,谁有能力投诉到美国证监会,以及apple,让其下架? 翻译投诉等我可以适当付费。
A WAF killer variant of the previous vector by @zseano <imsofake onpointerrawupdate=alert(1)>test
[+] #BugbountyTip: CVE-2016-0956 - Apache Sling Core Framework Information Disclosure Vulnerability <-- You can still find many vulnerable AEM Instances (free to contact me if you need help understanding this one) #Bugbounty #TogetherWeHitHarder #BugbountyTip
My list of 137 publicly reported Chinese espionage cases against🇺🇸since 2000. The list doesn't include 4🇨🇳PLA hackers charged 4 hacking into credit reporting agency Equifax today. shorturl.at/nRTU3 Now I share both w/ you & Consul General @ZhaLiyou. csis-prod.s3.amazonaws.com/s3fs-public/19…
My list of 137 publicly reported Chinese espionage cases against🇺🇸since 2000. The list doesn't include 4🇨🇳PLA hackers charged 4 hacking into credit reporting agency Equifax today. shorturl.at/nRTU3 Now I share both w/ you & Consul General @ZhaLiyou. csis-prod.s3.amazonaws.com/s3fs-public/19…
Got a new CVE 😃 Title: phpList Authentication Bypass CVE ID: CVE-2020-8547 Vulnerability Type: PHP type Juggling / Loose Comparison

MabelHuggins @Ueduu7K4LYc88qI
2 Followers 375 Following
Emily @e_hayes91
250 Followers 3K Following
Jason Z @jason17730
89 Followers 3K Following Serial Entrepreneur, $TSLA shareholder since 2013, Invest with common sense and see trading as a way to chill.我自言自语,没有Debate服务。 View more
全国高端外围美... @DaveGoodma63453
0 Followers 2K Following 【至高享乐,非凡体验】 全网顶流美女,数万资源,随时为你提供专属定制服务! 每一位美女都将为你带来无法形容的奢华体验,超越你的所有幻想! 你的每一次需求,都能被瞬间满足! 飞机频道💕:https://t.co/xCAQYfK1jQ 飞机客服💕:https://t.co/n6zSXstlFv
Kiel Lesch @KielLesch7846
0 Followers 91 Following
__noir__ @RGanehsa87150
20 Followers 719 Following
AL20 @CcElliot09
6 Followers 394 Following
2jyDod @Z2jyqh9Q
6 Followers 82 Following
lol @loOOo00oO0ol
0 Followers 1K Following
一冰 王 @tom1234eodd
6 Followers 131 Following
哈哈 @e7aXowrWJG50837
15 Followers 600 Following
joker21 @joker2194060979
19 Followers 943 Following
renren @renren256693
4 Followers 314 Following
lojm @lojm720430
0 Followers 79 Following
nomad @nomad10086
3 Followers 2K Following
mrv @mrxmann1
12 Followers 8K Following 輕微戀足,喜歡18的,重度眼鏡妹愛好。現在的女孩都好嫩好漂亮好可愛。開始喜歡御姐了。女人也就那麼回事。科幻|太空|新科技。
luxunnn @1uxunnn
11 Followers 2K Following
xiaoyun @dym518518
4 Followers 727 Following
liport10 @liport1011
119 Followers 4K Following
ruserdow @ruserdow
0 Followers 106 Following
Happier1736 @enigmaGlow
2 Followers 2K Following
Hattie @agrela_hattie41
181 Followers 3K Following
Alyssa @olsen_alyssa91
283 Followers 3K Following
duox1ing @duox1ing
11 Followers 332 Following
Dorothy @dorothy_gonser4
259 Followers 3K Following
王瑞 @N3QA2U3cHNIw3ST
132 Followers 2K Following
Kay @grollimund_kay7
260 Followers 3K Following
Prisci Salvitti @PrisciSalv45017
0 Followers 7 Following
51pwn @Hktalent3135773
923 Followers 4K Following #infosec #RCE #poc #exploit #0day #zero-day #ZDI #Cybersecurity #payload #CVE-2022- #0-Dau #NDay #N-Day
bluE0 @bluE012138
250 Followers 71 Following
S7iter @S7iter_
2K Followers 518 Following Founder/dev in @VectorBits || 创业ing||Dev&Web2/3Security兼最垃圾的散户韭菜。不要放弃定投ETH
kolten @Merl1ng
125 Followers 4K Following
zhanyi @sakura_kali
18 Followers 465 Following
Nathan Barlow @Natedawg1976
32 Followers 245 Following I have been a Jets/Coyotes/Bombers Fan since 1980/81 my tweets are my own personal opinions only and if you dont like them then dont follow me!
raam @bug_hunter_zoro
34 Followers 384 Following
coffee @coffice_0day
33 Followers 2K Following
Dark Arts Village @darkartsvillage
486 Followers 2K Following Tailored Access Operator: Stealth, Covert, CNE Computer Network Exploitation. Learn to develop exploits, perform #bugbounty #hunts and more. Join us RSAC 2022
知识分享官 @knowledgefxg
191K Followers 2K Following 热爱知识,没事分享点有趣硬核的东西,包含英语学习,AI编程,科技软件,资源网站等等。来都来了,点点关注😘。 合作请DM私信,本人一直在用的vps推荐:https://t.co/84rULlj6Hv
加密大香蕉 @NFTbigbanana
31K Followers 3K Following 判断对错不重要,关键在对的时候赚多少,错的时候亏多少 ✈️TG 群 https://t.co/Iep3uVDC5n
Terry @RichTerry123
15K Followers 90 Following Trader | 私募基金PM 管理资金2亿+ | 10年+港美市场投研 Whatapps群:https://t.co/vN9qPNXNjE
Web3研究院 @Web3Yjy
1K Followers 594 Following 专注才会专业! 电报交流频道:https://t.co/Ua2eyCFngE okx链接:https://t.co/b9Lfyr5SiW
Crypto Rover @rovercrc
1.4M Followers 497 Following #Bitcoin Crypto YouTuber (180K SUBS) | TG: cryptoroveryt | Cryptocurrency investments are high risk, volatile, and can be dangerous. All tweets are NFA.
Murphy @Murphychen888
69K Followers 809 Following 17年老韭菜;研究链上数据和宏观情绪相结合,构建自己的交易思维。保持谨慎乐观!| 近3亿用户的共同选择就在币安:https://t.co/5pQWuny9gU | #OKX web3入口一个就够 https://t.co/YwY7pIgKzB
镰刀判官 @rngzhwn199456
4K Followers 976 Following ALPHA空天军 合约实盘挑战 800U本金,挑战盈利80000U! 挑战市场,激励自己! 键盘政治家 历史发明家 赛博诸葛亮
看不懂的sol @DtDt666
141K Followers 2K Following 一生只搞一个币 $SOL 没有收费群,切勿相信。 币安广场创作者!蓝鸟会成员! 陪兄弟们一起穿越牛熊,通过逃顶和抄底赚更多的币。 #OKX web3入口 一个就够 https://t.co/KejoV0foz5
-Zho- @ZHO_ZHO_ZHO
26K Followers 155 Following Architect | Artist | Ai explorer | Founder of @comfy_community & @comfy_park | [email protected]
Kalshi @Kalshi
156K Followers 2K Following Trade on anything in all 50 states: politics, sports, entertainment, crypto, weather, and so much more. For sports: @KalshiSports For support: @KalshiSupport
Nico投资有道 @tychozzz
40K Followers 208 Following 爱投资的一枚程序员。投资导航作者,必备一站式导航网站:https://t.co/xhaBzx5OyW 美股/比特币长期投资者,持续分享有价值内容。Youtube频道:https://t.co/Mqj49gMmmb okx20%返佣:https://t.co/OPyhN9O8ps
The Kobeissi Letter @KobeissiLetter
991K Followers 570 Following Official X account for The Kobeissi Letter, an industry leading commentary on the global capital markets. Email us: [email protected]
OōEli.eth @ooeli_eth
62K Followers 390 Following 美股|标普500 & 纳斯达克|投资理财常识|读书和学习分享|學思集|小红书号ooeli_eth|私信解答¥25/问题|1v1投资辅导¥199/次
Coco.AI @li12826221
4K Followers 729 Following AI内容探索者 | 内容与版权深耕10+年|经历电视新闻、影视全流程制作与变现、知名作家经纪人、互联网平台|推动AI音色库、AI短故事、有声生产模式落地|相信AI让人人都能成为创作者
dontbesilent @dontbesilent12
48K Followers 807 Following 🚀 做生意的第一步是先找到买家 ⚡ 24h 也可以拥有自己的生意 📲 小红书/抖音/B 站/小宇宙(直播回放):dontbesilent 聊赚钱
watchTowr @watchtowrcyber
9K Followers 13 Following watchTowr enables organizations to get ahead of in-the-wild exploitation with Preemptive Exposure Management technology.
菜菜不菜 @btc_cai
31K Followers 1K Following #BTC #OKX 节点前十|vx:btc_cai|OKX Web3钱包现已支持100+公链 提供钱包、多链 Swap、NFT 市场、DeFi 挖矿一站式服务 #web3入口 一个就够https://t.co/nkXjH5pOPZ
Evan @0xseven1
19K Followers 6K Following 相信自己就是最大的ALPHA!!! 一级扫链与交易,GMGN嘎嘎好用: https://t.co/Jf5zcAzhsX https://t.co/QJXLY7vWLy
戈多Godot(🔱,�... @GodotSancho
12K Followers 2K Following Head Research @MantaNetwork Crypto 入口,#OKX 就够:https://t.co/53iuZYqUfb #Binance https://t.co/q9ITYMsGr6 区块链知识图谱(戈多版)👇
Crypto军火库 @CryptoJHK
61K Followers 1K Following 👾 终极加密内幕消息平台 | 即时推送 | 零延误 | 全面信息汇总 | 打破Web3消息茧房 💸 付费社群聚合 https://t.co/2egKtvLAgf 💎 交易所高返佣:https://t.co/4UeDxFlSHQ
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
Mantas Sabeckis @ott3rly
6K Followers 333 Following Bug Bounty Hunger. Helping people to score bounties 💰
Wordless Esonhugh @Skyworship2
4K Followers 1K Following Your sincere exploitation/malware developer, Cloud Hacking Helper and golang developer. Do what noone has ever done Patreon:https://t.co/cJL5qLSGVq
Lyutoon @Lyutoon_
922 Followers 289 Following PhD student | CTF @Nu1L_Team & @StrawHat_CTF | AI + Security | Fuzzing | Collecting xx HoF | BlackHat Speaker | LLM4Shell
Mr. OS @ksg93rd
2K Followers 974 Following To catch an adversary you must become one. Always deliver more than expected !!!!!! All post are educational purposes only. prompt Library ⬇️ URL
Ambionics Security @ambionics
2K Followers 92 Following A @LexfoSecurite service. Ambionics is combining the best of human intelligence and technology to continuously assess the security of your applications.
Mikhail Klyuchnikov @m1ke_n1
5K Followers 148 Following n1 | Security Researcher at Positive Technologies | OSCP, eWPTX
maiky @maikypedia
525 Followers 469 Following 🍊 CS Student | OSCP & OSWE | Security Engineer @ Doyensec
Ptrace Security GmbH @ptracesecurity
59K Followers 867 Following Empowering IT Security Professionals through Hands-On Online Courses.
0xor0ne @0xor0ne
81K Followers 514 Following | CyberSecurity | Reverse Engineering | C and Rust | Exploit | Linux kernel | PhD | My Tweets, My Opinions :) |