beafn28
search
⌘Ctrlk
beafn28
  • 👩‍💻¡Bienvenidos a mi HackBook!
  • keyboardWRITEUPS
    • square-terminalDockerLabs
    • square-terminalTryHackMe
    • square-terminalHackTheBox
    • square-terminalVulnhub
    • square-terminalThe Hacker Labs
    • square-terminalVulnyx
    • square-terminalOverTheWire
    • square-terminalProving Ground Play
  • graduation-capAPUNTES HACKING
    • Pentesting Basics
    • Network Enumeration with NMAP
    • Footprinting
    • Information Gathering - Web Edition
    • Vulnerability Assessment
    • Nessus
    • OpenVAS
    • Reporting
    • File Transfers
    • Shells & Payloads
    • Metasploit
    • Password Attacks
    • Introduction Active Directory
    • Active Directory Enumeration & Attacks
    • Hacking Android
    • Web Requests
    • Introduction to Web Applications
    • Using Web Proxies
    • Introduction Gathering - Web Edition
    • Attacking Web Applications with FFUZ
    • JavaScript Deobfuscation
    • Cross-Site-Scripting (XSS)
    • SQL Injection Fundamentals
    • SQLMap Essentials
    • Introducción Red Team
    • Active Directory (Cheat Sheet 1)
    • Active Directory (Cheat Sheet 2)
  • globe-wifiWEB SECURITY
    • Path Traversal
    • SQL Injection
    • Control de Acceso
    • Laboratorios PortSwigger
    • Curso web s4vitar
    • BSCP (Cheat Sheet)
  • flag-checkeredMis CTFs
    • Pequeñas Mentirosas
    • CryptoLabyrinth
    • Elevator
    • Facultad
  • head-side-brainPREPARAR EJPTv2
    • Máquinas
    • Curso de Mario
  • head-side-brainPreparar OSCP
    • Información
    • Máquinas
  • file-certificateReviews Certificaciones
    • eJPTv2
    • eWPTXv3
    • eCPPTv3
    • CRTA
    • ICCA
    • MCRTA
    • AD-RTS
    • CRT-ID
    • eMAPTv2
  • shield-checkCVE & PoC
    • Brute Force Login Vulnerability in Soosyze CMS 2.0 (CVE-2025-52392)
    • PoC - CVE-2025-9140 (Lingdang CRM 8.6.4.7)- SQL Injection
    • Broken Access Control in LibreTime analytics endpoints (CVE-2025-60427)
    • WordPress Upload.am – Contributor+ Arbitrary Option Disclosure (CVE-2025-12630)
    • Directus < 11.13.0 – Improper Permission Handling on Deleted Fields (CVE-2025-64746)
    • nopCommerce <= 4.70 and 4.80.3 – Insufficient Session Cookie Invalidation (CVE-2025-11699)
    • Typesetter CMS Reflected XSS via Editing Component (CVE-2025-71164)
    • Typesetter CMS Reflected XSS via Status.php (CVE-2025-71165)
    • Typesetter CMS Reflected XSS via Move Message Handling (CVE-2025-71166)
    • PoC - CVE-2025-10327 (RPi-Jukebox-RFID 2.8.0) – Remote Command Execution
    • birkir prime GraphQL GET-Based CSRF (CVE-2025-15550)
    • FluentCMS Stored XSS via SVG Upload in File Management (CVE-2025-15549)
    • PoC - CVE-2025-10666 (D-Link DIR-825 Rev.B ≤ 2.10) - Stack Buffer Overflow (DoS)
    • PoC - CVE-2025-10370 (RPi-Jukebox-RFID 2.8.0) - Stored Cross-Site Scripting (XSS)
    • LavaLite CMS Stored XSS via Package Creation and Search (CVE-2025-71177)
    • PoC - CVE-2024-23334 (aiohttp ≤ 3.9.1) - Directory Traversal via follow_symlinks
    • PoC - Ingress-NGINX Admission Controller File Descriptor Injection to RCE (Varios CVE asociados)
    • PoC - CVE-2025-32023 (Redis) - Remote Code Execution (RCE)
    • Poc - CVE-2025-24054 - Windows NTLM Hash Disclosure via .library-ms Spoofing
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. graduation-capAPUNTES HACKING

Hacking Android

hashtag
Recursos

LogoHextreeHextreechevron-right
LogoiOS / Android Hacking Course & Mobile Penetration TestingMobile Hacking Labchevron-right
LogoPentester 77YouTubechevron-right
https://academy.hackthebox.com/module/details/195academy.hackthebox.comchevron-right
LogoMóviles | Securiters Wikiwiki.securiters.comchevron-right
PreviousInitial Enumerationchevron-leftNextWeb Requestschevron-right

Last updated 3 months ago