Pokazywanie postów oznaczonych etykietą enlil. Pokaż wszystkie posty
Pokazywanie postów oznaczonych etykietą enlil. Pokaż wszystkie posty

wtorek, 30 lipca 2024

Automating Network Pentests with Metasploit and Ruby

This time we'll continue the journey started in previous post to create a small 'semi-automated' tool to perform some 'basic' network pentests. For this case we'll focus (mostly;)) on CVE-2021-20039 for SonicWall SMA. Here we go...

niedziela, 20 lutego 2022

Space for XSS in Junos

"Space: the final frontier." Well... I'm not sure if it's even a half (of the journey) with Junos - but - let's find some "Space" to inject additional (JS/HTML) code. Get some "Space" and here we go...

poniedziałek, 14 lutego 2022

Enter in 2022

It was an interesting beginning of the year. After a few talks with few friends during last year, last few weeks I spent creating a new small tool called EnterTerminal. More details about it you'll find below. Here we go... 

czwartek, 13 maja 2021

Enlil.py - example module

Hi :) last time we talked about wooper.py and enlil.py projects I started some time ago. Since last few weeks I was wondering "what if" we'll combine results from both "proof-of-concepts". Below you'll find few notes about it. Here we go...

środa, 12 maja 2021

czwartek, 25 marca 2021

Pentester on the Meeting

Hi, today we'll prepare a 'simple scenario for "Red Team" attacks' I decided to try after one of the "last  meetings"... ;) Below you'll find more details about it. Here we go...

wtorek, 23 marca 2021

Enlil: Continuous Development

Hi :) last time we talked about Enlil project I decided to rewrite. Today we'll go deeper and modify our current script to extend the "automation of pentest". ;) Here we go...

niedziela, 21 marca 2021

Enlil: Introduction

Hi. Some time ago I create a small script called 'enlil'. Few days ago I decided to check it again and rewrite few things. Below you will find a draft of the current status. ;) Here we go...

niedziela, 9 czerwca 2019

Few more quick tests

Last time I described small script you can use (or create) during your pentests. Below you will find a little continuation of the paths started last time. So...

piątek, 31 maja 2019

Lazy Enlil

Sometimes during pentests we can find pretty similar "environment(s)". By environment - this time - I mean open ports, possible (mis)configuration bugs or default passwords still used for access the target box/app. That's why I decided to start 'something new'...