Firstly, the venue. Goa ! Oh, it was divine. Frankly, nullcon should be always in Goa. Perfect blend of electric atmosphere and aesthetic calmness of nature. Seriously, you have to be there to feel it.
Me, Ap4Ch3, akm.coder and Snypter arrived 2 days ahead of conference. Had a great time exploring Goa. Already, most of the people from null were beginning to pour in.
------------------------------------------------------------
Credits to Joe McCray and his Defcon 18 talk
1. Use dig command
Look for multiple addresses resolving to one domain name.
2. Sites like netcraft.com can be used to check for a ip details. If things like F5 BigIP appear, most probably the host is load balanced.
3. Firefox Live HTTP Headers Add-on can be used to notice change
Here comes another webshell uploading technique which can cater to image restrictions and still your shell will be hidden in the image Encoding Web Shells in PNG IDAT chunks | Web App Security...
Liked On: 04-09-2013, 04:12 PM
I encountered a similar obfuscated javascript in a phishing e-mail which led to blackhole exploit kit. ...
Liked On: 04-05-2013, 10:45 PM
Hi karthikp, looks like you are new to forum. It is advised to search the forum before posting. We already have 2 threads covering this question. If you have further questions, you can post in that...
Liked On: 12-25-2012, 02:16 PM
Garage4Hackers have registered for rwthCTF 2012 (http://ctf.itsec.rwth-aachen.de/) rwtfCTF 2012 The CTF will began on Friday, 30 November around 6.30 pm IST (400/2pm (CET)) Interested people are...
Liked On: 11-11-2012, 05:16 AM
Often one wonders during pentest or while malware analysis (or during malware writing :p), as to how we can detect whether operating system is running in a virtual environment like vmware,virtualbox...
Liked On: 11-08-2012, 10:34 AM
Often one wonders during pentest or while malware analysis (or during malware writing :p), as to how we can detect whether operating system is running in a virtual environment like vmware,virtualbox...
Liked On: 10-29-2012, 12:01 PM
Often one wonders during pentest or while malware analysis (or during malware writing :p), as to how we can detect whether operating system is running in a virtual environment like vmware,virtualbox...
Liked On: 10-26-2012, 05:47 AM
@sebas_phoenix Yo, I knew you would be interested :) @RahulB No problems mate. Everyone is invited. Hop on and start practicing. You can use...
Liked On: 10-26-2012, 12:36 AM
Often one wonders during pentest or while malware analysis (or during malware writing :p), as to how we can detect whether operating system is running in a virtual environment like vmware,virtualbox...
Liked On: 10-25-2012, 11:22 PM
I don't know whether you are early in your career or an experienced ninja. But one advice which I would like to give all of you is don't dive into fan-boyism. Often, it is useless and no one really...
Liked On: 10-13-2012, 03:50 AM
In the Hindu Mythology, there is a chapter describing how Lord Hanuman had to go to Himalaya Mountains to procure a special herb "Sanjivani" in the middle of war. The herb was special one, which...
Liked On: 10-05-2012, 12:42 PM
3 tricks for uploading a .php shell file where there is some type of filtering against uploading .php scripts --> 1. Rename xyz.php to xyz.php.txt and upload and then run on browser as...
Liked On: 10-02-2012, 10:42 AM
This forum exists to share knowledge and stuff. Not only with your friends and peers, but also with people who we don't know and who come here looking for that knowledge and stuff. Generally...
Liked On: 09-22-2012, 05:19 PM
Just the "search button" :) P.S for girls : Naa I am kidding. I have brain of Einstein. Shh..shh .. !!
Liked On: 09-04-2012, 10:58 PM
So not only sysadmins, physical security companies are also facing awkwardness due to you. Great writeup. Especially illustrations \m/ And I confirmed near my area too. Most of them !!
Liked On: 08-17-2012, 12:55 AM
Poizon Web Exploiter 2.0
Yesterday, 10:34 PM in Tools & Scripts