@whitel1st Profile picture

whitel1st

@whitel1st

Joined May 2015
Similar User
Aleksei Tiurin photo

@antyurin

Psych0tr1a photo

@Psych0tr1a

H̷͙̰͕̼̫̥͔̮͓͈͉̩͇̯̍̄̍́͊̋̓͜_̸̭̤̻̫͚̗͒̀́̊͆͜D̷̛̈́̏̓̈̒̈͂̚͝ photo

@hd_421

kedrisec photo

@kedrisec

Vahagn Vardanian photo

@vah_13

whitel1st Reposted

The team at @OpenAI just fixed a critical account takeover vulnerability I reported few hours ago affecting #ChatGPT. It was possible to takeover someone's account, view their chat history, and access their billing information without them ever realizing it. Breakdown below 👇


whitel1st Reposted

Using other hosts as a gateway, sometimes, you can get access to other VLANs or bypass the firewall. That is a task for gateway-finder! Check the improved version by @whitel1st: github.com/whitel1st/gate… #CyberSecurity #Pentest #RedTeam

Tweet Image 1

Just bought the book. Illustrations are awesome. And I really like the fact that the book covers many topics in cryptography. Cause it is much easier to study smth like "A Graduate Course in Applied Cryptography" when you have a map of the subject in your head.

My book real world cryptography is available in pre-access. You can also read the first chapters for free. manning.com/books/real-wor…

Tweet Image 1


That's incredible! I was wondering what boxes should I study for pro labs.

#HackTheBox Presents TRACKS 🚀 Find your goal, follow the #HTB Track, and achieve your #Hacking Mission 🎯 Active & Retired Machines/Challenges, 8 Different Tracks, 1 Mission → Become a #Cyber Expert! Explore now @ app.hackthebox.eu/tracks #CyberSecurity #Infosec #Pentesting



whitel1st Reposted

Small cheatsheet for checking card no present operations this 3d secure protocol (v 1.0.2) github.com/webr0ck/3D-Sec… #3DS #Pentesting #paypal #CNP


whitel1st Reposted

You asked for something about OAuth — we did. Here is a mindmap about hacking OAuth 2.0. We tried to cover all possible ways even with low impact. Our inspiration was homakov.blogspot.com/search?q=oauth Thanks to @homakov for outstanding articles. #BugBountyTip #CyberSecurity #BugBounty

Tweet Image 1

whitel1st Reposted

if you want to understand how Shor's quantum algorithm can break RSA by factoring its modulus after finding a function's period using a quantum Fourier transform, then this may be the best explanation you'll find scottaaronson.com/qclec.pdf

Tweet Image 1

whitel1st Reposted

SSRF + CRLF + HTTP Pipeline + Docker API = RCE… How dangerous is Request Splitting, a vulnerability in Golang or how we found the RCE in Portainer and hacked Uber link.medium.com/dSWQ6ewPL6


whitel1st Reposted
Tweet Image 1

No waay. Awesome news! His books are extremely helpful and I think one of the best sources to learn about complex cryptography topics.

Craig Costello writes the best cryptography explainers in the business. Previously: - Montgomery curves and their arithmetic eprint.iacr.org/2017/212 - Pairings for beginners craigcostello.com.au/pairing Now:



whitel1st Reposted

We are proud to launch our brand new interactive XSS cheatsheet featuring novel vectors from @garethheyes portswigger.net/research/one-x…


Some idea for @Burp_Suite: It would be awesome if in Repiter you could pin most interesting tabs and have a button "Close other tabs", like in browsers.


whitel1st Reposted
Tweet Image 1

That was a hek of a journey from @offsectraining Final destination worth every hour spent. Those long nights, dozens of miscellaneous articles, months of an actual practice - all of this made this experience unique.

Tweet Image 1

Spot on article about real-world KeyStore usage in Android. I wish to read more such nice posts about "How apps are using encryption mechanisms in Android". Read developer.android.com myself a lot, and, sadly, there are not so much real practical recommendation about that.

Got a secret message or password that you just must read (for a friend! ;)), but it's protected by someone else's fingerprint on an Android device? Check out our latest blog post at labs.mwrinfosecurity.com/blog/how-secur…



whitel1st Reposted

life hack: carry a ladder with you to get anywhere for free lmaooo


whitel1st Reposted

Squaring a rectangle:)


To better understand Mobile platform vulnerabilities I've created a picture with transition between @owasp tops: mobile WEB. This is just my view. It may be wrong, let me know if it is =) github.com/whitel1st/owas… Repo contains pdf version with links #owasptop10 #MobileSecurity

Tweet Image 1

whitel1st Reposted

Paged Out! #1 is out! (and it's free to download!) pagedout.institute/?page=issues.p… There are 57 articles in 12 categories: Electronics Programming Assembly Reverse Engineering Sec/Hack Retro File Formats Algorithmics SysAdmin Radio Phreaking OS Internals Enjoy! #PagedOut!


United States Trends
Loading...

Something went wrong.


Something went wrong.