help@cyb4rgeek.xyz

+1 (512) 588 6950

ethical-hacking

Home/Category: ethical-hacking
Broken Object Level Authorization [API SECURITY — 0x1]
Broken Object Level Authorization [API SECURITY — 0x1] bez0x January 23, 2023

Broken Object Level Authorization [API SECURITY — 0x1]

Hi, My name is Hashar Mujahid. I am a security researcher and a penetration testing student. This is the first blog of the API SECURITY series where we will learn about some com

Read More
Phishing Email Analysis: A complete guide
Phishing Email Analysis: A complete guide bez0x January 17, 2023

Phishing Email Analysis: A complete guide

This blog is useful for everyone ranging from a normal internet user to CISO of an M.N.C. The blog is designed in such a way that there would be no way that you got any false po

Read More
Exploiting API with AuthToken.
Exploiting API with AuthToken. bez0x January 15, 2023

Exploiting API with AuthToken.

Hallo fellow researchers,Myself, Rafi Ahamed. I am a Cyber Security Researcher from Bangladesh. I love to do things differently. Anyway, without further ado let’s get to today

Read More
India’s Aadhar card source code disclosure via exposed .svn/wc.db
India’s Aadhar card source code disclosure via exposed .svn/wc.db bez0x January 15, 2023

India’s Aadhar card source code disclosure via exposed .svn/wc.db

Hi Guys, I recently found a .svn/wc.db folder exposed on a resident.uidai.gov.in, and used it to reconstruct the Web app’s source code. I cannot find any article about svn, So

Read More
How Capabilities actually Work ? | Exploitation | Privilege Escalation
How Capabilities actually Work ? | Exploitation | Privilege Escalation bez0x December 29, 2022

How Capabilities actually Work ? | Exploitation | Privilege Escalation

Sometimes a user with low privileges needs to perform specific tasks with higher privileges and for that Linux has functionality for setting SUID bit on particular binaries. Th

Read More
$350 XSS in 15 minutes. Bug Bounty Writeup about DOM XSS
$350 XSS in 15 minutes. Bug Bounty Writeup about DOM XSS bez0x December 29, 2022

$350 XSS in 15 minutes. Bug Bounty Writeup about DOM XSS

Bug Bounty Writeup about DOM XSS via JSONP + Parameter pollution Photo by Pepi Stojanovski on Unsplash Hello 👋 This is my first and last Bug Bounty Writeup this ye

Read More