
HTB Writeup: Mango

HTB Writeup: Phoenix

HTB Writeup: Forest

HTB Writeup: Control

HTB Writeup: Book

Conti Locker Analysis

Contents Disclamer Introduction ContiLeaks Zipped Locker Unzipped Locker backdoor.js Source Code Analysis: Locker Initialization Command Line Arguments Modifying the Code Searching for Files Cryptanalysis Source Code Analysis: Decryptor Cryptanalysis Performance Conclusion 1. Disclaimer I won’t be releasing/sharing exact complete source-code out of respect to the person because of whom this all was possible.

Deploying Intel-Owl on GKE

‘ Intel Owl’ is a one-stop destination for all your threat intelligence needs. This application, itself was designed on the idea of scalability and provides docker configurations for the same. What if, one needs to deploy it for their organisation, which actively performs threat intelligence, and need high performance application for the same? Well, Intel Owl deployed over GKE (Google Kubernetes Engine) might be able to perform well for that!!

Using old WiFi Router as WiFi-to-LAN Repeater: (With OpenWRT GUI)

Have an old router just lying around? Ever wondered how much useful that spare device can be? You will! After reading this guide. The OpenWrt Project is a Linux operating system targeting embedded devices. Prerequisites:- i) A Compatible Router flashed with supported version of OpenWRT. ( Check it out here!) (**!!IMPORTANT!! **This guide is for GUI Supported Versions only. I’ll be doing a Configuration over SSH Guide too.)

[CVE-2020-13379] Unauthenticated DoS on Grafana 3.0.1 - 7.0.1

Researchers: Mayank Malik ( [email protected]) Kartik Sharma ( [email protected]) Severity: Medium Version: 3.0.1 to 7.0.1 Vulnerable Endpoint: http://<grafanaHost>/avatar/* Overview Grafana is the open-source analytics & monitoring solution for every database. According to Grafana’s patch notes dated June 3rd, 2020, there was an “Incorrect Access Control” vulnerability in Grafana 3.0.1 through Grafana 7.0.1 on the /avatar feature through which an attacker/adversary was able to perform Server Side Request Forgery (SSRF) attack.