HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							cc1b81c4d2
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-07-22 08:31:01 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							fa138775ab
							
						
					 | 
					
						
						
							
							Merge pull request #1153 from HackTricks-wiki/research_update_src_pentesting-web_ssrf-server-side-request-forgery_url-format-bypass_20250719_012840
						
						
						
						
						
						
						
						Research Update Enhanced src/pentesting-web/ssrf-server-side... 
						
						
					 | 
					
						2025-07-22 10:22:08 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							f5cc8769d6
							
						
					 | 
					
						
						
							
							Merge pull request #1152 from HackTricks-wiki/update_I_d_Like_to_Speak_to_Your_Manager__Stealing_Secret_20250719_012501
						
						
						
						
						
						
						
						I’d Like to Speak to Your Manager Stealing Secrets with Mana... 
						
						
					 | 
					
						2025-07-22 10:21:56 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							a8d3f6f2db
							
						
					 | 
					
						
						
							
							Merge pull request #1155 from HackTricks-wiki/research_update_src_linux-hardening_privilege-escalation_d-bus-enumeration-and-command-injection-privilege-escalation_20250719_162255
						
						
						
						
						
						
						
						Research Update Enhanced src/linux-hardening/privilege-escal... 
						
						
					 | 
					
						2025-07-22 08:02:16 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							67eafd3c14
							
						
					 | 
					
						
						
							
							Merge pull request #1156 from HackTricks-wiki/update_101_Chrome_Exploitation___Part_0__Preface_20250720_014339
						
						
						
						
						
						
						
						101 Chrome Exploitation — Part 0 Preface 
						
						
					 | 
					
						2025-07-22 04:38:27 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							24a95cd198
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/mobile-pentesting/cordova-apps...
						
						
						
						
						
						
					 | 
					
						2025-07-22 01:44:59 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							ad67acd88b
							
						
					 | 
					
						
						
							
							Add content from: Active Exploitation of Microsoft SharePoint Vulnerabilities:...
						
						
						
						
						
						
					 | 
					
						2025-07-22 01:32:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							e16838e6e3
							
						
					 | 
					
						
						
							
							Merge pull request #1160 from maladi17/fix-dmsa
						
						
						
						
						
						
						
						Update golden-dmsa-gmsa.md 
						
						
					 | 
					
						2025-07-22 00:21:00 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							a94ce50af1
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/web-vulnerabili...
						
						
						
						
						
						
					 | 
					
						2025-07-21 16:28:13 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							7731917ad5
							
						
					 | 
					
						
						
							
							Add content from: SharePoint 0-day uncovered (CVE-2025-53770)
						
						
						
						
						
						
					 | 
					
						2025-07-21 12:51:19 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							82ef8578e6
							
						
					 | 
					
						
						
							
							Add content from: Android Manifest Misconfiguration Leading to Task Hijacking ...
						
						
						
						
						
						
					 | 
					
						2025-07-21 12:48:37 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							d582f6923e
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-07-21 08:37:38 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							e4dd9248dd
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/todo/hardware-hacking/side_cha...
						
						
						
						
						
						
					 | 
					
						2025-07-21 01:47:24 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Adi
							
						 
					 | 
					
						
						
						
						
							
						
						
							12d7a8b4bf
							
						
					 | 
					
						
						
							
							Update golden-dmsa-gmsa.md
						
						
						
						
						
						
					 | 
					
						2025-07-20 20:52:05 +03:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							266c4604a5
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/generic-methodologies-and-reso...
						
						
						
						
						
						
					 | 
					
						2025-07-20 08:26:33 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							0821fc3246
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-07-20 01:50:55 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							8e33049439
							
						
					 | 
					
						
						
							
							Add content from: 101 Chrome Exploitation — Part 0: Preface
						
						
						
						
						
						
					 | 
					
						2025-07-20 01:46:23 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							1aed0c9c66
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/linux-hardening/privilege-esca...
						
						
						
						
						
						
					 | 
					
						2025-07-19 16:26:02 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							81c7593767
							
						
					 | 
					
						
						
							
							Merge pull request #1144 from HackTricks-wiki/update_Remote_Input_Injection_Vulnerability_in_Air_Keyboa_20250717_123946
						
						
						
						
						
						
						
						Remote Input Injection Vulnerability in Air Keyboard iOS App... 
						
						
					 | 
					
						2025-07-19 14:02:17 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							042fa1c0b7
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/todo/rust-basics.md
						
						
						
						
						
						
					 | 
					
						2025-07-19 08:26:37 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							4e97bc69bc
							
						
					 | 
					
						
						
							
							Merge pull request #1146 from HackTricks-wiki/research_update_src_network-services-pentesting_pentesting-web_dotnetnuke-dnn_20250717_162435
						
						
						
						
						
						
						
						Research Update Enhanced src/network-services-pentesting/pen... 
						
						
					 | 
					
						2025-07-19 10:01:36 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							2f0e2dbc0f
							
						
					 | 
					
						
						
							
							Merge pull request #1145 from HackTricks-wiki/update_Remote_Code_Execution_Discovered_in_Xtool_AnyScan__20250717_124256
						
						
						
						
						
						
						
						Remote Code Execution Discovered in Xtool AnyScan App — Risk... 
						
						
					 | 
					
						2025-07-19 06:08:19 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							1a81bd7ec1
							
						
					 | 
					
						
						
							
							Merge pull request #1147 from HackTricks-wiki/update_Hiding_in_the_Shadows__Covert_Tunnels_via_QEMU_Vir_20250718_012823
						
						
						
						
						
						
						
						Hiding in the Shadows Covert Tunnels via QEMU Virtualization 
						
						
					 | 
					
						2025-07-19 04:33:43 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							95d597e7c0
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/pentesting-web/ssrf-server-sid...
						
						
						
						
						
						
					 | 
					
						2025-07-19 01:31:27 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							58f4dc2737
							
						
					 | 
					
						
						
							
							Add content from: I’d Like to Speak to Your Manager: Stealing Secrets with Man...
						
						
						
						
						
						
					 | 
					
						2025-07-19 01:27:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							6b167a201e
							
						
					 | 
					
						
						
							
							Merge pull request #1148 from HackTricks-wiki/update_CVE-2024-12029___InvokeAI_Deserialization_of_Untru_20250718_013011
						
						
						
						
						
						
						
						CVE-2024-12029 – InvokeAI Deserialization of Untrusted Data ... 
						
						
					 | 
					
						2025-07-19 00:01:33 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							0b32458cbe
							
						
					 | 
					
						
						
							
							Merge pull request #1149 from HackTricks-wiki/research_update_src_generic-methodologies-and-resources_pentesting-network_lateral-vlan-segmentation-bypass_20250718_014054
						
						
						
						
						
						
						
						Research Update Enhanced src/generic-methodologies-and-resou... 
						
						
					 | 
					
						2025-07-18 20:01:43 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							a57b661dde
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 16:08:20 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							2cc59ed434
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 15:04:39 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							90eea0973c
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 15:04:10 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							0b873d5c5c
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 13:10:18 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							7e2aaf2d96
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 12:51:06 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							cf319d38f5
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 11:35:26 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							7106db8da0
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 11:02:35 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							faaa6a6d15
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-07-18 10:32:07 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							69dbd16ebd
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-18 10:31:56 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							458cba19c0
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/generic-methodologies-and-reso...
						
						
						
						
						
						
					 | 
					
						2025-07-18 01:42:10 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							3d58a4cebe
							
						
					 | 
					
						
						
							
							Add content from: CVE-2024-12029 – InvokeAI Deserialization of Untrusted Data ...
						
						
						
						
						
						
					 | 
					
						2025-07-18 01:32:17 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							6b75203abb
							
						
					 | 
					
						
						
							
							Add content from: Hiding in the Shadows: Covert Tunnels via QEMU Virtualizatio...
						
						
						
						
						
						
					 | 
					
						2025-07-18 01:30:00 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							3cad108ed8
							
						
					 | 
					
						
						
							
							Merge pull request #1132 from HackTricks-wiki/update_MS-RPC_Fuzzer_20250715_182932
						
						
						
						
						
						
						
						MS-RPC Fuzzer 
						
						
					 | 
					
						2025-07-18 00:01:41 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							03e89d3c8e
							
						
					 | 
					
						
						
							
							Merge pull request #1140 from HackTricks-wiki/update_Golden_dMSA_20250717_012843
						
						
						
						
						
						
						
						Golden dMSA 
						
						
					 | 
					
						2025-07-17 20:01:52 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							9b1cd04302
							
						
					 | 
					
						
						
							
							Add content from: Research Update: Enhanced src/network-services-pentesting/pe...
						
						
						
						
						
						
					 | 
					
						2025-07-17 16:27:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							ab9a7eaab4
							
						
					 | 
					
						
						
							
							Merge pull request #1142 from HackTricks-wiki/research_update_src_mobile-pentesting_ios-pentesting_ios-universal-links_20250717_014015
						
						
						
						
						
						
						
						Research Update Enhanced src/mobile-pentesting/ios-pentestin... 
						
						
					 | 
					
						2025-07-17 16:01:58 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							15ee998c04
							
						
					 | 
					
						
						
							
							Add content from: Remote Code Execution Discovered in Xtool AnyScan App — Risk...
						
						
						
						
						
						
					 | 
					
						2025-07-17 12:45:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								HackTricks News Bot
							
						 
					 | 
					
						
						
						
						
							
						
						
							c77a6858ac
							
						
					 | 
					
						
						
							
							Add content from: Remote Input Injection Vulnerability in Air Keyboard iOS App...
						
						
						
						
						
						
					 | 
					
						2025-07-17 12:42:43 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							419ac8c682
							
						
					 | 
					
						
						
							
							Merge branch 'master' of github.com:HackTricks-wiki/hacktricks
						
						
						
						
						
						
					 | 
					
						2025-07-17 12:12:31 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							c5aeedd559
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-17 12:12:26 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							7335a712fc
							
						
					 | 
					
						
						
							
							Merge pull request #1143 from HackTricks-wiki/research_update_src_macos-hardening_macos-security-and-privilege-escalation_mac-os-architecture_macos-kernel-vulnerabilities_20250717_082721
						
						
						
						
						
						
						
						Research Update Enhanced src/macos-hardening/macos-security-... 
						
						
					 | 
					
						2025-07-17 12:01:46 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								carlospolop
							
						 
					 | 
					
						
						
						
						
							
						
						
							4de04c5e35
							
						
					 | 
					
						
						
							
							f
						
						
						
						
						
						
					 | 
					
						2025-07-17 11:16:55 +02:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								SirBroccoli
							
						 
					 | 
					
						
						
						
						
							
						
						
							f935924951
							
						
					 | 
					
						
						
							
							Merge pull request #1137 from HackTricks-wiki/update_NTLM_Reflection_is_Dead__Long_Live_NTLM_Reflection_20250716_124209
						
						
						
						
						
						
						
						NTLM Reflection is Dead, Long Live NTLM Reflection! – Deep A... 
						
						
					 | 
					
						2025-07-17 11:13:31 +02:00 | 
					
					
						
						
							
							
							
						
					 |