Skip to content

Instantly share code, notes, and snippets.

@sz3n
sz3n / trans fuzz
Last active September 23, 2016 07:50
trans fuzz
#transmission fuzz
apt-get install libevent-dev
AFL_USE_ASAN=1 AFL_HARDEN=1 ./configure CC=afl-gcc CXX=afl-g++ --disable-shared; make
#modify directlly the test files in /test folder
cp HttpHeaderProcessorTest.cc HttpHeaderProcessorTest.cc.bak
cp fuzz_http_header.cc HttpHeaderProcessorTest.cc
#compile test cases
make check
@sz3n
sz3n / docker phishing farm
Created August 23, 2016 17:15
docker phishing farm
Phish:
https://hub.docker.com/r/b00stfr3ak/ubuntu-phishingfrenzy/~/dockerfile/
Mail:
https://hub.docker.com/r/connor557/mailinabox/~/dockerfile/
Mail: SMTP
Phish: HTTP, HTTPS
mlcrosoft.fr => SPF
add: lync.mlcrosoft.fr
@sz3n
sz3n / rtorrent
Last active August 22, 2016 18:23
rtorrent
#uild scan
scan-build -enable-checker alpha.core.CastSize -enable-checker alpha.core.PointerArithm -enable-checker alpha.core.PointerSub -enable-checker alpha.core.SizeofPtr -enable-checker alpha.security.ArrayBound -enable-checker alpha.security.ArrayBoundV2 -enable-checker alpha.security.MallocOverflow -enable-checker alpha.security.ReturnPtrRange -enable-checker alpha.security.taint.TaintPropagation -enable-checker alpha.unix.MallocWithAnnotations -enable-checker alpha.unix.SimpleStream -enable-checker alpha.unix.Stream -enable-checker alpha.unix.cstring.NotNullTerminated -enable-checker alpha.unix.cstring.BufferOverlap -enable-checker alpha.unix.cstring.OutOfBounds -analyze-headers -maxloop 100 --use-analyzer Xcode -o analyzer xcodebuild
#install deps
sudo apt-get install curl libcurl3 libcurl3-dev
sudo apt-get install libncurses5-dev libncursesw5-dev
#install xmlrpc
svn co http://svn.code.sf.net/p/xmlrpc-c/code/advanced xmlrpc-c
cd xmlrpc-c/
@sz3n
sz3n / wooyun phantom
Created August 22, 2016 13:14
wooyun phantom
https://jiji262.github.io/wooyun_articles/
@sz3n
sz3n / subdomain take-over scanner
Last active August 16, 2016 16:29
subdomain take-over scanner
#https://github.com/guelfoweb/knock
knock +
subbrute +
dnsdumpster +
censys.io +
shodan
enforced subdomain scanners targeting EC2 and S3 instances
CNAME +
@sz3n
sz3n / libtorrent
Last active August 24, 2016 11:45
libtorrent
http://www.cvedetails.com/vulnerability-list/vendor_id-7752/product_id-13199/opdirt-1/Rasterbar-Software-Libtorrent.html
src/torrent_info.cpp
=> path traversal
multiple file mode => 0.14.4
include/libtorrent/bencode.hpp => DoS
=> 0.12.1
https://coderwall.com/p/muvnow/installing-libtorrent-on-linux
@sz3n
sz3n / powershell tips
Created August 10, 2016 12:56
powershell tips
http://geekeries.org/2015/05/tp-powershell-jai-des-objets-com-dans-mon-zonecentral/
@sz3n
sz3n / c++ tips
Created August 4, 2016 21:19
c++ tips
Read file to string:
http://insanecoding.blogspot.fr/2011/11/how-to-read-in-file-in-c.html
@sz3n
sz3n / rediscovery of heartbleed
Last active July 29, 2016 19:48
rediscovery of heartbleed
http://37.35.2.189:8080/home
https://blog.hboeck.de/archives/868-How-Heartbleed-couldve-been-found.html
http://cybersecpolitics.blogspot.fr/2016/05/the-common-thread-fuzzing-bug-triage.html
#Build up boost
sudo apt-get install libboost-all-dev
#download libtorrent source
wget https://github.com/arvidn/libtorrent/releases/download/libtorrent-1_1/libtorrent-rasterbar-1.1.0.tar.gz
#unrar
@sz3n
sz3n / bounties disclosure
Created July 18, 2016 16:27
bounties disclosure
#Wordpress
#Uber
#XXE
#Template injection