понеделник, 27 август 2018 г.

Bypassing Email Filter which leads to SQL Injection ↳...

Bypassing Email Filter which leads to SQL Injection

https://medium.com/@dimazarno/bypassing-email-filter-which-leads-to-sql-injection-e57bcbfc6b17

Namun pada kasus kali ini api uangteman melakukan filter spasi alias tidak diperbolehkan menggunakan spasi (bad format). Tapi… untuk karakter “(“ dan “)” diperbolehkan, dan ini cukup “membantu” untuk membuat karya seni payload blind sql injection….



from Hack+ https://ift.tt/2MxBaZo
via IFTTT

An Android Package is no Longer a ZIP ↳...

An Android Package is no Longer a ZIP

https://www.fortinet.com/blog/threat-research/an-android-package-is-no-longer-a-zip.html

Over the past few years, I have been giving workshops on Android reverse engineering - my next one will be an advanced session at Virus Bulletin in October. As most other researchers on Android, I typically start off with a slide explaining that an Android Package (APK) is just a ZIP….



from Hack+ https://ift.tt/2PcJ7jH
via IFTTT

learning to reverse engineer routers - reading serial flash ROMs ↳...

learning to reverse engineer routers - reading serial flash ROMs

https://www.youtube.com/watch?v=LxWkA1Uz2aA

I’m learning device security from the ground up, so I thought I would share what I find out. Apologies for the focus issues - I am also learning to take video and edit it - so all advice appreciated! In this video:- I use a cheap router to practice on - the TD8840T- I use a cheap EEPROM programmer t…



from Hack+ https://ift.tt/2Myackq
via IFTTT