HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							d81ff58ade
							
						
					 | 
					
						
						
							
							Add content from: ZipLine Campaign: A Sophisticated Phishing Attack Targeting ...
						
						
						
						
						
						
					 | 
					
						2025-08-26 18:39:45 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							3acbdf095c
							
						
					 | 
					
						
						
							
							Add content from: Inline Style Exfiltration: leaking data with chained CSS con...
						
						
						
						
						
						
					 | 
					
						2025-08-26 18:34:43 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							dd01833124
							
						
					 | 
					
						
						
							
							Merge pull request #1337 from HackTricks-wiki/update_SpearSpray___Pattern-driven__Kerberos-based_AD_pas_20250825_182847
						
						
						
						
						
						
						
						SpearSpray — Pattern-driven, Kerberos-based AD password spra... 
						
						
					 | 
					
						2025-08-26 20:02:10 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7210f6a397
							
						
					 | 
					
						
						
							
							Merge pull request #1330 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_macos-proces-abuse_macos-dirty-nib_20250824_082236
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-08-26 18:02:32 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7eb24f3148
							
						
					 | 
					
						
						
							
							Merge pull request #1340 from HackTricks-wiki/update_VTENEXT_25_02___a_three-way_path_to_RCE_20250826_125221
						
						
						
						
						
						
						
						VTENEXT 25.02 – a three-way path to RCE 
						
						
					 | 
					
						2025-08-26 18:02:02 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							9a09f24243
							
						
					 | 
					
						
						
							
							Merge pull request #1328 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_macos-apps-inspecting-debugging-and-fuzzing_objects-in-memory_20250823_082246
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-08-26 16:50:36 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							bc1ada9454
							
						
					 | 
					
						
						
							
							Merge pull request #1327 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_ruby-tricks_20250823_012514
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-08-26 16:49:16 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7d05801e3f
							
						
					 | 
					
						
						
							
							Add content from: VTENEXT 25.02 – a three-way path to RCE
						
						
						
						
						
						
					 | 
					
						2025-08-26 12:57:50 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							9aab3fb444
							
						
					 | 
					
						
						
							
							Add content from: SpearSpray — Pattern-driven, Kerberos-based AD password spra...
						
						
						
						
						
						
					 | 
					
						2025-08-25 18:31:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							c01eee5608
							
						
					 | 
					
						
						
							
							Add content from: ELEGANTBOUNCER: When You Can't Get the Samples but Still Nee...
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:57:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							6f51e788c2
							
						
					 | 
					
						
						
							
							Add content from: CreateProcessAsPPL: launch a Windows Protected Process Light
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:53:05 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a6041dcc93
							
						
					 | 
					
						
						
							
							Add content from: Countering EDRs With The Backing Of Protected Process Light ...
						
						
						
						
						
						
					 | 
					
						2025-08-25 12:48:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							214aabcdde
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/binary-exploitation/stack-over...
						
						
						
						
						
						
					 | 
					
						2025-08-25 08:31:21 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							1679a66713
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/android-app-...
						
						
						
						
						
						
					 | 
					
						2025-08-25 01:42:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							20b0687358
							
						
					 | 
					
						
						
							
							Add content from: DLL ForwardSideLoading
						
						
						
						
						
						
					 | 
					
						2025-08-24 18:31:52 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							2c09db2658
							
						
					 | 
					
						
						
							
							Merge pull request #1326 from HackTricks-wiki/update_Hosting_security_tested__87_8__of_vulnerability_ex_20250822_124121
						
						
						
						
						
						
						
						Hosting security tested 87.8% of vulnerability exploits bypa... 
						
						
					 | 
					
						2025-08-24 14:02:06 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							c49d9a5dd6
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-08-24 08:25:02 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7a5cdaf066
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/windows-hardening/windows-loca...
						
						
						
						
						
						
					 | 
					
						2025-08-24 01:47:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							21ae8c1c69
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/macos-hardening/macos-security...
						
						
						
						
						
						
					 | 
					
						2025-08-23 08:26:51 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a0a9910aea
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-08-23 01:27:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7291b1bb0d
							
						
					 | 
					
						
						
							
							Add content from: Hosting security tested: 87.8% of vulnerability exploits byp...
						
						
						
						
						
						
					 | 
					
						2025-08-22 12:44:04 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6937d302e7
							
						
					 | 
					
						
						
							
							Merge pull request #1324 from HackTricks-wiki/research_update_src_pentesting-web_xs-search_cookie-bomb-+-onerror-xs-leak_20250822_012707
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/xs-search/cookie... 
						
						
					 | 
					
						2025-08-22 13:07:54 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							50c33567a2
							
						
					 | 
					
						
						
							
							Update proxy-waf-protections-bypass.md
						
						
						
						
						
						
					 | 
					
						2025-08-22 13:06:29 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6f039920c0
							
						
					 | 
					
						
						
							
							Fix reference formatting in HTTP request smuggling README
						
						
						
						
						
						
						
						Updated reference formatting in README for clarity. 
						
						
					 | 
					
						2025-08-22 13:05:45 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							fdce9bdcd2
							
						
					 | 
					
						
						
							
							Update android-anti-instrumentation-and-ssl-pinning-bypass.md
						
						
						
						
						
						
					 | 
					
						2025-08-22 13:05:18 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							f740b52e29
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/xs-search/cooki...
						
						
						
						
						
						
					 | 
					
						2025-08-22 01:29:27 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							1624c21cd4
							
						
					 | 
					
						
						
							
							Merge pull request #1313 from HackTricks-wiki/update_Hunting_Vulnerabilities_in_Keras_Model_Deserializa_20250820_124658
						
						
						
						
						
						
						
						Hunting Vulnerabilities in Keras Model Deserialization 
						
						
					 | 
					
						2025-08-22 02:05:10 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							ed872d22c5
							
						
					 | 
					
						
						
							
							Merge pull request #1314 from HackTricks-wiki/update_Android_Malware_Promises_Energy_Subsidy_to_Steal_F_20250820_125045
						
						
						
						
						
						
						
						Android Malware Promises Energy Subsidy to Steal Financial D... 
						
						
					 | 
					
						2025-08-22 02:05:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							4d90890835
							
						
					 | 
					
						
						
							
							Merge branch 'master' into update_Android_Malware_Promises_Energy_Subsidy_to_Steal_F_20250820_125045
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:49:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							3227cd6089
							
						
					 | 
					
						
						
							
							Merge branch 'master' into update_Hunting_Vulnerabilities_in_Keras_Model_Deserializa_20250820_124658
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:48:04 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							46178cf629
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:08:19 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							59f4c9ecab
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 14:06:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							ad8700ddd5
							
						
					 | 
					
						
						
							
							Merge pull request #1312 from HackTricks-wiki/update_FiberGateway_GR241AG_-_Full_Exploit_Chain_20250820_124033
						
						
						
						
						
						
						
						FiberGateway GR241AG - Full Exploit Chain 
						
						
					 | 
					
						2025-08-21 12:28:47 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							c131632a85
							
						
					 | 
					
						
						
							
							Merge branch 'master' into update_FiberGateway_GR241AG_-_Full_Exploit_Chain_20250820_124033
						
						
						
						
						
						
					 | 
					
						2025-08-21 12:28:41 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							8074b77c61
							
						
					 | 
					
						
						
							
							Merge pull request #1302 from HackTricks-wiki/update_How_I_found_a_0-Click_Account_takeover_in_a_public_20250819_012746
						
						
						
						
						
						
						
						How I found a 0-Click Account takeover in a public BBP and l... 
						
						
					 | 
					
						2025-08-21 08:02:20 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							4289dc5696
							
						
					 | 
					
						
						
							
							Merge pull request #1303 from HackTricks-wiki/research_update_src_mobile-pentesting_android-app-pentesting_react-native-application_20250819_013743
						
						
						
						
						
						
						
						Research Update Enhanced src/mobile-pentesting/android-app-p... 
						
						
					 | 
					
						2025-08-21 06:02:22 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6ced19355f
							
						
					 | 
					
						
						
							
							Merge pull request #1304 from HackTricks-wiki/update_Reversing_Android_Apps__Bypassing_Detection_Like_a_20250819_063210
						
						
						
						
						
						
						
						Reversing Android Apps Bypassing Detection Like a Pro 
						
						
					 | 
					
						2025-08-21 06:02:16 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							f7ed4e8aeb
							
						
					 | 
					
						
						
							
							Merge pull request #1305 from HackTricks-wiki/research_update_src_pentesting-web_dependency-confusion_20250819_082704
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/dependency-confu... 
						
						
					 | 
					
						2025-08-21 04:29:40 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							5a9a998a08
							
						
					 | 
					
						
						
							
							Merge pull request #1306 from HackTricks-wiki/update_Patching_for_persistence__How_DripDropper_Linux_ma_20250819_182754
						
						
						
						
						
						
						
						Patching for persistence How DripDropper Linux malware moves... 
						
						
					 | 
					
						2025-08-21 04:29:35 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							d807be71e9
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 02:12:35 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							4934844f2e
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:58:42 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							527a3796c4
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:55:26 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							a200a68a48
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:54:24 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							18524c9d45
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:45:53 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							3d3333daff
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:29:12 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							71e58643a8
							
						
					 | 
					
						
						
							
							asd
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:23:57 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							605135a47f
							
						
					 | 
					
						
						
							
							master rm searchindes.js from history
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:23:54 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							cc1092cfbd
							
						
					 | 
					
						
						
							
							f es, rm old searchindes.js
						
						
						
						
						
						
					 | 
					
						2025-08-21 01:02:41 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							18a66b25a4
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 00:46:21 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							197cf1cc58
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-08-21 00:32:37 +02:00 | 
					
					
						
						
							
							
							
						
					 |