HACKLIDO | Cyber Security
7.64K subscribers
139 photos
15 files
925 links
#1 - Cybersecurity blogging community curating knowledge from wonderful & insightful infosec writers! Join the club right now. 🚀

🧊 https://hacklido.com
Download Telegram
🔰 #Cheat_Sheet: #GraphQL #websecurity @hacklido

Input validation
DoS prevention
Access control
Batching attacks
Tools and other best practices

cheatsheetseries.owasp.org/cheatsheets/GraphQL_Cheat_Sheet.html
🔰 #PoC exploits for #CVE -2020-17143 and CVE-2020-17141 which demonstrate the #XXE bugs against Exchange #Server. @hacklido

- Low privileged authentication only
- CVE-2020-17141 is interesting because its in the EWS
#API

https://srcincite.io/pocs/cve-2020-17143.py.txt
https://srcincite.io/pocs/cve-2020-17141.py.txt
🔰 A Small Contribution From CyberXplore Presenting SubBuster An Subdomain #Enumeration #Tool Resolving Into Ip Address & Status Codes With Various Export Options . @hacklido

Visit -
https://subbuster.cyberxplore.com

More Features Coming Soon
- Directory Brute-forcing
- SubDomain Takeover Scanning
- Automated Sensitive Information Disclosure Lookup(With Our AI Based Model & Some Regex)
- Much More Don't Forget To Share !
🔰 Decrypting File encrypted by Monaca Plugin @hacklido

http://blog.rz.my/2020/12/decrypting-monaca-encrypt-plugin.html