Write-up of the challenge "Web - Sticky! Sticky! " of Nuit du Hack 2016 Wargame
The weekend of 02-03 july 2016 is the WARGAME of the Nuit du Hack 2016 as a Jeopardy CTF. Having had the opportunity and the time to participate with some colleagues and friends, here’s a write-up resolution of the challenges which we. Read more04
Jul
2016
[XSS & RCE] IPFire < 2.19 Core Update 101 - Remote command Execution
Posted by: Yann C. /
Category: Contributions / / Opensource / OS / / Vulnerabilities, exploits and PoC / XSS /
No Comments
04
May
2016
[Windows / DOS / PowerShell] File upload in command line – one liner
Posted by: Yann C. /
Category: Network and system administration / OS / Vulnerabilities, exploits and PoC / Windows /
4 Comments
02
Mar
2016
How to upload / transfer a file through a shell / terminal DOS on Windows? There is no "wget" easy to use on these OS; many pentesters are being ripped hair to transmit a payload.exe when they gain a shell or reverse-shell on a compromised a machine.
Many methods exist, starting from solutions. Read more[XSS & CSRF] SmoothWall 3.1 Multiple vulnerabilities
Posted by: Yann C. /
Category: Network and system administration / / OS / Vulnerabilities, exploits and PoC / XSS /
No Comments
22
Dec
2014
SmoothWall est une distribution Linux open-source sous licence GPL, qui fait office de firewall/routeur sécurisé. Référence dans le domaine, et à la base de projet annexe tel que IPCop (fork de SmoothWall), cette distribution orientée sécurité s'administre par WebGUI en HTTP (port 81) ou HTTPS (port 441). La branche des versions.
Read more21
Dec
2014