HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							2e78574fc1
							
						
					 | 
					
						
						
							
							Add content from: HTB Reaper: Format-string leak + stack BOF → VirtualAlloc RO...
						
						
						
						
						
						
						
						- Remove searchindex.js (auto-generated file) 
						
						
					 | 
					
						2025-08-27 17:11:32 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							8a3275fb2b
							
						
					 | 
					
						
						
							
							Add content from: HTB Zero: .htaccess ErrorDocument LFI → credential reuse → r...
						
						
						
						
						
						
						
						- Remove searchindex.js (auto-generated file) 
						
						
					 | 
					
						2025-08-27 15:29:12 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							b3881abe2d
							
						
					 | 
					
						
						
							
							Add content from: HTB: Rainbow
						
						
						
						
						
						
						
						- Remove searchindex.js (auto-generated file) 
						
						
					 | 
					
						2025-08-27 15:12:01 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							9c0d8a464c
							
						
					 | 
					
						
						
							
							Add content from: HTB: TheFrizz
						
						
						
						
						
						
						
						- Remove searchindex.js (auto-generated file) 
						
						
					 | 
					
						2025-08-27 14:56:20 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							4501b98594
							
						
					 | 
					
						
						
							
							Add content from: Start hacking Bluetooth Low Energy today! (part 2)
						
						
						
						
						
						
					 | 
					
						2025-08-27 12:43:40 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							3c0908f8eb
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/binary-exploitation/libc-heap/...
						
						
						
						
						
						
					 | 
					
						2025-08-27 08:30:10 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e43a1147c1
							
						
					 | 
					
						
						
							
							Add content from: From "Low-Impact" RXSS to Credential Stealer: A JS-in-JS Wal...
						
						
						
						
						
						
					 | 
					
						2025-08-27 06:35:05 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Build master
							
						 
					 | 
					
						
						
						
						
							
						
						
							3b7175379a
							
						
					 | 
					
						
						
							
							Update searchindex (purged history; keep current)
						
						
						
						
						
						
					 | 
					
						2025-08-27 04:04:57 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7b609aef63
							
						
					 | 
					
						
						
							
							Merge pull request #1332 from HackTricks-wiki/research_update_src_mobile-pentesting_android-app-pentesting_insecure-in-app-update-rce_20250825_013931
						
						
						
						
						
						
						
						Research Update Enhanced src/mobile-pentesting/android-app-p... 
						
						
					 | 
					
						2025-08-27 06:02:03 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							3e51e24fbb
							
						
					 | 
					
						
						
							
							Merge pull request #1333 from HackTricks-wiki/research_update_src_binary-exploitation_stack-overflow_ret2win_ret2win-arm64_20250825_082821
						
						
						
						
						
						
						
						Research Update Enhanced src/binary-exploitation/stack-overf... 
						
						
					 | 
					
						2025-08-27 04:28:22 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e3c5f26a1a
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/windows-hardening/windows-loca...
						
						
						
						
						
						
					 | 
					
						2025-08-27 01:29:39 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							74a1ba247c
							
						
					 | 
					
						
						
							
							Add content from: GhostPack/Certify: Abusing Active Directory Certificate Serv...
						
						
						
						
						
						
					 | 
					
						2025-08-27 01:26:07 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							365e44e13e
							
						
					 | 
					
						
						
							
							Merge pull request #1334 from HackTricks-wiki/update_Countering_EDRs_With_The_Backing_Of_Protected_Proc_20250825_123951
						
						
						
						
						
						
						
						Countering EDRs With The Backing Of Protected Process Light ... 
						
						
					 | 
					
						2025-08-27 02:05:24 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							f28318eeaa
							
						
					 | 
					
						
						
							
							Merge pull request #1335 from HackTricks-wiki/update_CreateProcessAsPPL__launch_a_Windows_Protected_Pro_20250825_124827
						
						
						
						
						
						
						
						CreateProcessAsPPL launch a Windows Protected Process Light 
						
						
					 | 
					
						2025-08-27 00:01:53 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							93b11a0c65
							
						
					 | 
					
						
						
							
							Merge pull request #1336 from HackTricks-wiki/update_ELEGANTBOUNCER__When_You_Can_t_Get_the_Samples_but_20250825_125341
						
						
						
						
						
						
						
						ELEGANTBOUNCER When You Can't Get the Samples but Still Need... 
						
						
					 | 
					
						2025-08-26 22:02:01 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							d81ff58ade
							
						
					 | 
					
						
						
							
							Add content from: ZipLine Campaign: A Sophisticated Phishing Attack Targeting ...
						
						
						
						
						
						
					 | 
					
						2025-08-26 18:39:45 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							3acbdf095c
							
						
					 | 
					
						
						
							
							Add content from: Inline Style Exfiltration: leaking data with chained CSS con...
						
						
						
						
						
						
					 | 
					
						2025-08-26 18:34:43 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							dd01833124
							
						
					 | 
					
						
						
							
							Merge pull request #1337 from HackTricks-wiki/update_SpearSpray___Pattern-driven__Kerberos-based_AD_pas_20250825_182847
						
						
						
						
						
						
						
						SpearSpray — Pattern-driven, Kerberos-based AD password spra... 
						
						
					 | 
					
						2025-08-26 20:02:10 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7210f6a397
							
						
					 | 
					
						
						
							
							Merge pull request #1330 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_macos-proces-abuse_macos-dirty-nib_20250824_082236
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-08-26 18:02:32 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7eb24f3148
							
						
					 | 
					
						
						
							
							Merge pull request #1340 from HackTricks-wiki/update_VTENEXT_25_02___a_three-way_path_to_RCE_20250826_125221
						
						
						
						
						
						
						
						VTENEXT 25.02 – a three-way path to RCE 
						
						
					 | 
					
						2025-08-26 18:02:02 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							9a09f24243
							
						
					 | 
					
						
						
							
							Merge pull request #1328 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_macos-apps-inspecting-debugging-and-fuzzing_objects-in-memory_20250823_082246
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-08-26 16:50:36 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							bc1ada9454
							
						
					 | 
					
						
						
							
							Merge pull request #1327 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_ruby-tricks_20250823_012514
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-08-26 16:49:16 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7d05801e3f
							
						
					 | 
					
						
						
							
							Add content from: VTENEXT 25.02 – a three-way path to RCE
						
						
						
						
						
						
					 | 
					
						2025-08-26 12:57:50 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							9aab3fb444
							
						
					 | 
					
						
						
							
							Add content from: SpearSpray — Pattern-driven, Kerberos-based AD password spra...
						
						
						
						
						
						
					 | 
					
						2025-08-25 18:31:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							c01eee5608
							
						
					 | 
					
						
						
							
							Add content from: ELEGANTBOUNCER: When You Can't Get the Samples but Still Nee...
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:57:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							6f51e788c2
							
						
					 | 
					
						
						
							
							Add content from: CreateProcessAsPPL: launch a Windows Protected Process Light
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:53:05 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a6041dcc93
							
						
					 | 
					
						
						
							
							Add content from: Countering EDRs With The Backing Of Protected Process Light ...
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:48:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							214aabcdde
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/binary-exploitation/stack-over...
						
						
						
						
						
						
					 | 
					
						2025-08-25 08:31:21 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							1679a66713
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/android-app-...
						
						
						
						
						
						
					 | 
					
						2025-08-25 01:42:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							20b0687358
							
						
					 | 
					
						
						
							
							Add content from: DLL ForwardSideLoading
						
						
						
						
						
						
					 | 
					
						2025-08-24 18:31:52 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							2c09db2658
							
						
					 | 
					
						
						
							
							Merge pull request #1326 from HackTricks-wiki/update_Hosting_security_tested__87_8__of_vulnerability_ex_20250822_124121
						
						
						
						
						
						
						
						Hosting security tested 87.8% of vulnerability exploits bypa... 
						
						
					 | 
					
						2025-08-24 14:02:06 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							c49d9a5dd6
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-08-24 08:25:02 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7a5cdaf066
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/windows-hardening/windows-loca...
						
						
						
						
						
						
					 | 
					
						2025-08-24 01:47:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							21ae8c1c69
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-08-23 08:26:51 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a0a9910aea
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-08-23 01:27:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7291b1bb0d
							
						
					 | 
					
						
						
							
							Add content from: Hosting security tested: 87.8% of vulnerability exploits byp...
						
						
						
						
						
						
					 | 
					
						2025-08-22 12:44:04 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6937d302e7
							
						
					 | 
					
						
						
							
							Merge pull request #1324 from HackTricks-wiki/research_update_src_pentesting-web_xs-search_cookie-bomb-+-onerror-xs-leak_20250822_012707
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/xs-search/cookie... 
						
						
					 | 
					
						2025-08-22 13:07:54 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							50c33567a2
							
						
					 | 
					
						
						
							
							Update proxy-waf-protections-bypass.md
						
						
						
						
						
						
					 | 
					
						2025-08-22 13:06:29 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6f039920c0
							
						
					 | 
					
						
						
							
							Fix reference formatting in HTTP request smuggling README
						
						
						
						
						
						
						
						Updated reference formatting in README for clarity. 
						
						
					 | 
					
						2025-08-22 13:05:45 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							fdce9bdcd2
							
						
					 | 
					
						
						
							
							Update android-anti-instrumentation-and-ssl-pinning-bypass.md
						
						
						
						
						
						
					 | 
					
						2025-08-22 13:05:18 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							f740b52e29
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/xs-search/cooki...
						
						
						
						
						
						
					 | 
					
						2025-08-22 01:29:27 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							1624c21cd4
							
						
					 | 
					
						
						
							
							Merge pull request #1313 from HackTricks-wiki/update_Hunting_Vulnerabilities_in_Keras_Model_Deserializa_20250820_124658
						
						
						
						
						
						
						
						Hunting Vulnerabilities in Keras Model Deserialization 
						
						
					 | 
					
						2025-08-22 02:05:10 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							ed872d22c5
							
						
					 | 
					
						
						
							
							Merge pull request #1314 from HackTricks-wiki/update_Android_Malware_Promises_Energy_Subsidy_to_Steal_F_20250820_125045
						
						
						
						
						
						
						
						Android Malware Promises Energy Subsidy to Steal Financial D... 
						
						
					 | 
					
						2025-08-22 02:05:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							4d90890835
							
						
					 | 
					
						
						
							
							Merge branch 'master' into update_Android_Malware_Promises_Energy_Subsidy_to_Steal_F_20250820_125045
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:49:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							3227cd6089
							
						
					 | 
					
						
						
							
							Merge branch 'master' into update_Hunting_Vulnerabilities_in_Keras_Model_Deserializa_20250820_124658
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:48:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							46178cf629
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:08:19 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							861778aa79
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:08:19 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							59f4c9ecab
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:06:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							df4947385a
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:06:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Build master
							
						 
					 | 
					
						
						
						
						
							
						
						
							af8843516b
							
						
					 | 
					
						
						
							
							Update searchindex (purged history; keep current)
						
						
						
						
						
						
					 | 
					
						2025-08-21 10:30:53 +00:00 | 
					
					
						
						
							
							
							
						
					 |