Computer Security (5)

Computer security, cybersecurity or information technology security is the protection of computer systems and networks from the theft of or damage to their hardware, software, or electronic data, as well as from the disruption or misdirection of the services they provide.

Sensitive Data Exposure over *.unesco.org, thanks to OptionsBleed for low-hanging fruit

Date reported — 02–07–2019 # Vulnerable Software — Apache # CVE: CVE-2017–9798 / USN-3425–1 “OptionsBleed” # Type — P1:Sensitive Data Exposure + P5:Fingerprinting/Banner Grabbing # Domain Affected — *.unesco.org # Tested — https://en.unesco.org (193.242.192.49) Options Bleed is a use after free error in Apache HTTP that causes a corrupted Allow header…

By Piyush Raj

How I Hacked My College's Online Exam Portal During COVID-19 Quarantine Period

Back StoryCOVID-19. Quarantined. How to take tests? Voila. Online. Okay, but how? Tadaa. We were sent an email regarding a new platform which was indigenously built just for us, the students for carrying out the quizzes. Soon enough, I was bombarded to do something about that. I…

By Piyush Raj

How I Hacked Samsung's Tizen OS & LG Electronics Private Project Management Instances

IntroductionMonths ago I discovered a flaw hackers can use to access Samsung’s and LG Electronics internal bug tracking and project management instances running on Jira. The flaw only takes a couple of commands to potentially access intranets, cause XSS and anything that SSRF can cause, including something…

By Piyush Raj

My first security talk — BSides Delhi 2019 Experience

Well, last year, at the age of 18, I finally popped my security cherry and presented my research revolving around server fingerprinting in Delhi organised by the BSides. It all started when an email made it's way into my inbox containing the good news but the moment this tweet below fleeted, that was really the moment…

By Piyush Raj

No, It’s Not Everyone’s Favorite “Kali Wifi Hacking Tutorial” — Impersonating Anyone In College

Learning to hack stuff takes learning. Yeah, I know, weird right? There is no “get rich quick” way to become 1337 hacker. It’s part learning and part mindset. And no, there is no YouTube video for “WiFi hacking”. If you didn’t switched the tab and searched the…

By Piyush Raj