■□□□□ 32-bit Stack-based Buffer Overflow. https://www.ired.team/offensive-security/code-injection-process-injection/binary-exploitation/stack-based-buffer-overflow https://t.me/cKure/9097
All posts by cK-bot
August 28, 2021 at 10:24PM
■■■■■ “XSS in Apple ID Server idmsa. apple .com” Tl;Dr: XSS on Apple ID server allowing an attacker to pop out an Apple login page that autofills apple credentials and 2FA. $10,000 Reward. https://zemnmez.medium.com/how-to-hack-apple-id-f3cc9b483a41 https://t.me/cKure/9096
August 28, 2021 at 09:14PM
■■■■□ SSD Advisory – Samsung S10+/S9 kernel 4.14 (Android 10) Kernel Function Address (.text) and Heap Address Information Leak. https://ssd-disclosure.com/ssd-advisory-samsung-s10-s9-kernel-4-14-android-10-kernel-function-address-text-and-heap-address-information-leak/ https://t.me/cKure/9095
August 28, 2021 at 09:11PM
■■■■■ A list of CTFs and websites to test your skills. https://twitter.com/d4rckh/status/1431519762794827777 https://t.me/cKure/9094
August 28, 2021 at 07:35PM
■■■■■ Pantagrule – Large Hashcat Rulesets Generated From Real-World Compromised Passwords. https://github.com/rarecoil/pantagrule https://t.me/cKure/9092
August 28, 2021 at 03:29PM
■■■□□ Cache Poisoning via SelfXSS + Path Parameter https://0u.ma/m/5 https://t.me/cKure/9091
August 28, 2021 at 03:28PM
● FYI: Our tools website ckure.xyz has an API malfunction and blocks valid requests to the site more often. This is not a behaviour that happens always. So most visitors should not face issues using the utilities. The fault is in the API logic that prevents proxy, TOR or known malicious IPs to connect to…
August 28, 2021 at 01:37PM
■□□□□ A threat actor is selling ATO (account takeover vulnerability) apparently on a well known crypto exchange for 50K USD. The vulnerability as per the attacker can force reset a user’s password. We could not verify this claim. https://t.me/cKure/9089
August 28, 2021 at 01:34PM
■□□□□ Phorpiex botnet shuts down and authors put source code for sale. https://securityaffairs.co/wordpress/121560/malware/phorpiex-botnet.html https://t.me/cKure/9088
August 28, 2021 at 01:31PM
■■□□□ Whoogle Search / OS-Intel: Get Google search results, but without any ads. OSINT https://github.com/benbusby/whoogle-search https://t.me/cKure/9087
