help@cyb4rgeek.xyz

+1 (512) 588 6950

penetration-testing

Home/Category: penetration-testing
Broken Object Level Authorization [API SECURITY — 0x1]
Broken Object Level Authorization [API SECURITY — 0x1] bez0x January 23, 2023

Broken Object Level Authorization [API SECURITY — 0x1]

Hi, My name is Hashar Mujahid. I am a security researcher and a penetration testing student. This is the first blog of the API SECURITY series where we will learn about some com

Read More
Full Team Takeover
Full Team Takeover bez0x January 18, 2023

Full Team Takeover

Hare Krishna! My name is Tuhin Bose (tuhin1729). I am currently working as a CTF Designing Consultant at BugBase. In this write-up, I am going to share one of my findings which

Read More
DOMAIN ADMIN Compromise in 3 HOURS – Website Hacking
DOMAIN ADMIN Compromise in 3 HOURS – Website Hacking bez0x January 17, 2023

DOMAIN ADMIN Compromise in 3 HOURS – Website Hacking

Domain Admin Compromise Hi everyone; I hope you enjoyed my previous blog post on “How I obtained Admin access in 30 seconds” — so today I am bringing you another CRITICAL

Read More
How to spoof e-mails. (DMARC, SPF, and Phishing)
How to spoof e-mails. (DMARC, SPF, and Phishing) bez0x January 15, 2023

How to spoof e-mails. (DMARC, SPF, and Phishing)

Note: sanitization of these screenshots was performed to protect the identities of stakeholders involved. On my most recent learning, I discovered that missing DMARC policy is

Read More
API based IDOR to leaking Private IP address of 6000 businesses
API based IDOR to leaking Private IP address of 6000 businesses bez0x January 15, 2023

API based IDOR to leaking Private IP address of 6000 businesses

Hello fellow researchers,Myself, Rafi Ahamed. I am a Cyber Security Researcher from Bangladesh. I love to break security. Anyway, without further ado let’s get to today’s to

Read More
Shoppy — HackTheBox Machine Simple Writeup
Shoppy — HackTheBox Machine Simple Writeup bez0x January 14, 2023

Shoppy — HackTheBox Machine Simple Writeup

Hack The Box’s Shoppy Machine’s Simple Writeup | Karthikeyan NagarajMachine Link:Access the Machine Here ShoppyMake sure to Connect with the HackTheBox’s VPN before startA

Read More