SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							a38ee8954c
							
						
					 | 
					
						
						
							
							Merge pull request #1187 from HackTricks-wiki/update_CVE-2025-27136___LocalS3_CreateBucketConfiguration_20250725_183004
						
						
						
						
						
						
						
						CVE-2025-27136 – LocalS3 CreateBucketConfiguration XXE Injec... 
						
						
					 | 
					
						2025-07-28 14:02:40 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							9056828a04
							
						
					 | 
					
						
						
							
							Merge pull request #1189 from HackTricks-wiki/update_Make_Sure_to_Use_SOAP_y____An_Operators_Guide_to_S_20250726_012531
						
						
						
						
						
						
						
						Make Sure to Use SOAP(y) – An Operators Guide to Stealthy AD... 
						
						
					 | 
					
						2025-07-28 14:02:34 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							af4e75a8c8
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-07-28 12:57:24 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							71b9eb4ca7
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-28 12:56:40 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							19a33fbce4
							
						
					 | 
					
						
						
							
							Merge pull request #1190 from HackTricks-wiki/research_update_src_mobile-pentesting_android-app-pentesting_bypass-biometric-authentication-android_20250726_012858
						
						
						
						
						
						
						
						Research Update Enhanced src/mobile-pentesting/android-app-p... 
						
						
					 | 
					
						2025-07-28 12:01:57 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							095c65072e
							
						
					 | 
					
						
						
							
							Merge pull request #1191 from HackTricks-wiki/update_The_Homograph_Illusion__Not_Everything_Is_As_It_Se_20250726_013005
						
						
						
						
						
						
						
						The Homograph Illusion Not Everything Is As It Seems 
						
						
					 | 
					
						2025-07-28 12:01:48 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							b8413f5f9e
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/ios-pentesti...
						
						
						
						
						
						
					 | 
					
						2025-07-28 08:31:28 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							80cabb3009
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/AI/AI-Unsupervised-Learning-Al...
						
						
						
						
						
						
					 | 
					
						2025-07-28 01:49:04 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							36ee055bcc
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-07-27 16:26:15 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							22aa5b03a5
							
						
					 | 
					
						
						
							
							Add content from: YSoNet: .NET Deserialization Payload Generator
						
						
						
						
						
						
					 | 
					
						2025-07-27 12:39:35 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							4f1ff84595
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/linux-hardening/privilege-esca...
						
						
						
						
						
						
					 | 
					
						2025-07-27 08:26:49 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e128c591ce
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/todo/radio-hacking/infrared.md
						
						
						
						
						
						
					 | 
					
						2025-07-27 01:50:21 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e025964d61
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/generic-hacking/reverse-shells...
						
						
						
						
						
						
					 | 
					
						2025-07-26 16:24:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7780f1adaa
							
						
					 | 
					
						
						
							
							Add content from: The Homograph Illusion: Not Everything Is As It Seems
						
						
						
						
						
						
					 | 
					
						2025-07-26 01:31:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e3daecf92e
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/android-app-...
						
						
						
						
						
						
					 | 
					
						2025-07-26 01:30:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							61aa93dec4
							
						
					 | 
					
						
						
							
							Add content from: Make Sure to Use SOAP(y) – An Operators Guide to Stealthy AD...
						
						
						
						
						
						
					 | 
					
						2025-07-26 01:29:57 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							eb270d7e87
							
						
					 | 
					
						
						
							
							Add content from: CVE-2025-27136 – LocalS3 CreateBucketConfiguration XXE Injec...
						
						
						
						
						
						
					 | 
					
						2025-07-25 18:32:48 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							ac02b2826b
							
						
					 | 
					
						
						
							
							Add content from: Android Services 101
						
						
						
						
						
						
					 | 
					
						2025-07-25 18:29:51 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							d825b848ce
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-07-25 16:29:00 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							b4049f4ac7
							
						
					 | 
					
						
						
							
							Add content from: Exploiting zero days in abandoned hardware
						
						
						
						
						
						
					 | 
					
						2025-07-25 12:45:44 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							408ec6e06c
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/android-app-...
						
						
						
						
						
						
					 | 
					
						2025-07-25 08:29:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							d753b3ed2f
							
						
					 | 
					
						
						
							
							Merge pull request #1175 from HackTricks-wiki/update_Deobfuscating_Android_Apps_with_Androidmeda__A_Sma_20250723_124048
						
						
						
						
						
						
						
						Deobfuscating Android Apps with Androidmeda A Smarter Way to... 
						
						
					 | 
					
						2025-07-24 20:02:27 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e2cff2bd2c
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/deserialization...
						
						
						
						
						
						
					 | 
					
						2025-07-24 16:24:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							8cb6933fef
							
						
					 | 
					
						
						
							
							Merge pull request #1176 from HackTricks-wiki/research_update_src_pentesting-web_xss-cross-site-scripting_integer-overflow_20250723_162518
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/xss-cross-site-s... 
						
						
					 | 
					
						2025-07-24 18:01:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							b0cdc73de2
							
						
					 | 
					
						
						
							
							Merge pull request #1177 from HackTricks-wiki/update_Legless__IPv6_Penetration_Testing_20250724_013022
						
						
						
						
						
						
						
						Legless IPv6 Penetration Testing 
						
						
					 | 
					
						2025-07-24 18:01:42 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							e214bc497a
							
						
					 | 
					
						
						
							
							Merge pull request #1179 from HackTricks-wiki/research_update_src_windows-hardening_active-directory-methodology_ad-dns-records_20250724_082730
						
						
						
						
						
						
						
						Research Update Enhanced src/windows-hardening/active-direct... 
						
						
					 | 
					
						2025-07-24 16:02:48 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							5be23e3320
							
						
					 | 
					
						
						
							
							Merge pull request #1180 from HackTricks-wiki/update_The_Dark_Side_of_Romance__SarangTrap_Extortion_Cam_20250724_124015
						
						
						
						
						
						
						
						The Dark Side of Romance SarangTrap Extortion Campaign 
						
						
					 | 
					
						2025-07-24 16:02:43 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							f36ea4547e
							
						
					 | 
					
						
						
							
							Add content from: The Dark Side of Romance: SarangTrap Extortion Campaign
						
						
						
						
						
						
					 | 
					
						2025-07-24 12:42:10 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							56ac3096b3
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/windows-hardening/active-direc...
						
						
						
						
						
						
					 | 
					
						2025-07-24 08:30:03 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							3237c2a4fd
							
						
					 | 
					
						
						
							
							Add content from: Legless: IPv6 Penetration Testing
						
						
						
						
						
						
					 | 
					
						2025-07-24 01:33:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a48ba411d6
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/xss-cross-site-...
						
						
						
						
						
						
					 | 
					
						2025-07-23 16:27:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							236d9b7376
							
						
					 | 
					
						
						
							
							Merge pull request #1158 from HackTricks-wiki/research_update_src_generic-methodologies-and-resources_basic-forensic-methodology_specific-software-file-type-tricks_pdf-file-analysis_20250720_082412
						
						
						
						
						
						
						
						Research Update Enhanced src/generic-methodologies-and-resou... 
						
						
					 | 
					
						2025-07-23 16:02:30 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							69549ea013
							
						
					 | 
					
						
						
							
							Add content from: Deobfuscating Android Apps with Androidmeda: A Smarter Way t...
						
						
						
						
						
						
					 | 
					
						2025-07-23 12:42:25 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							b647f2fa25
							
						
					 | 
					
						
						
							
							Merge pull request #1161 from HackTricks-wiki/research_update_src_todo_hardware-hacking_side_channel_analysis_20250721_014619
						
						
						
						
						
						
						
						Research Update Enhanced src/todo/hardware-hacking/side_chan... 
						
						
					 | 
					
						2025-07-23 14:02:30 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							f4a5ca8191
							
						
					 | 
					
						
						
							
							Merge pull request #1162 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_graphql_20250721_082948
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-07-23 14:02:24 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							68c0d397ae
							
						
					 | 
					
						
						
							
							Merge pull request #1170 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_symphony_20250722_082840
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-07-23 12:01:49 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							73c1d73eb9
							
						
					 | 
					
						
						
							
							Merge pull request #1171 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_macos-proces-abuse_macos-ipc-inter-process-communication_macos-thread-injection-via-task-port_20250722_162611
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-07-23 12:01:43 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							5887ddc8d8
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-07-23 11:09:50 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							7b0e4aea80
							
						
					 | 
					
						
						
							
							check sleep mergeable
						
						
						
						
						
						
					 | 
					
						2025-07-23 11:09:19 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							df17dc7eda
							
						
					 | 
					
						
						
							
							Merge pull request #1173 from HackTricks-wiki/research_update_src_generic-methodologies-and-resources_basic-forensic-methodology_image-acquisition-and-mount_20250723_014117
						
						
						
						
						
						
						
						Research Update Enhanced src/generic-methodologies-and-resou... 
						
						
					 | 
					
						2025-07-23 11:05:51 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							afd1a6d5ae
							
						
					 | 
					
						
						
							
							Merge pull request #1164 from HackTricks-wiki/update_Android_Manifest_Misconfiguration_Leading_to_Task__20250721_124723
						
						
						
						
						
						
						
						Android Manifest Misconfiguration Leading to Task Hijacking ... 
						
						
					 | 
					
						2025-07-23 08:02:12 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							5a4a275d89
							
						
					 | 
					
						
						
							
							Merge pull request #1166 from HackTricks-wiki/research_update_src_pentesting-web_web-vulnerabilities-methodology_20250721_162521
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/web-vulnerabilit... 
						
						
					 | 
					
						2025-07-23 04:39:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							771c26f2f9
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/generic-methodologies-and-reso...
						
						
						
						
						
						
					 | 
					
						2025-07-23 01:43:46 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							1c0120e8db
							
						
					 | 
					
						
						
							
							Merge pull request #1157 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_php-tricks-esp_php-useful-functions-disable_functions-open_basedir-bypass_disable_functions-bypass-imagick-less-than-3.3.0-php-greater-than-5.4-exploit_20250720_014819
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-07-22 23:41:33 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							deb4b63597
							
						
					 | 
					
						
						
							
							Merge pull request #1154 from HackTricks-wiki/research_update_src_todo_rust-basics_20250719_082358
						
						
						
						
						
						
						
						Research Update Enhanced src/todo/rust-basics.md 
						
						
					 | 
					
						2025-07-22 23:41:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							105a29a015
							
						
					 | 
					
						
						
							
							Merge pull request #1165 from HackTricks-wiki/update_SharePoint_0-day_uncovered__CVE-2025-53770__20250721_124850
						
						
						
						
						
						
						
						SharePoint 0-day uncovered (CVE-2025-53770) 
						
						
					 | 
					
						2025-07-22 22:01:42 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							cc48228a9d
							
						
					 | 
					
						
						
							
							Merge pull request #1169 from HackTricks-wiki/research_update_src_mobile-pentesting_cordova-apps_20250722_014118
						
						
						
						
						
						
						
						Research Update Enhanced src/mobile-pentesting/cordova-apps.... 
						
						
					 | 
					
						2025-07-22 20:02:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							77715d8ade
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-07-22 16:36:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							a0a9c59bb7
							
						
					 | 
					
						
						
							
							Merge pull request #1167 from HackTricks-wiki/update_Active_Exploitation_of_Microsoft_SharePoint_Vulner_20250722_012819
						
						
						
						
						
						
						
						Active Exploitation of Microsoft SharePoint Vulnerabilities ... 
						
						
					 | 
					
						2025-07-22 16:02:53 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							aefca42aeb
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-22 14:24:57 +02:00 | 
					
					
						
						
							
							
							
						
					 |