隠者 Inja Security
隠者 Inja Security
  • Home
  • ~$ whoami

Foothold

Red Team

Striking Blue: Throwing Rocks at the Panes – Part 2

Introduction Following up on the first part of the series, this blog post will expand and showcase techniques for initial access with client-side code execution. A technique that recently gained popularity is HTML Smuggling, which consists of storing a payload file in a JavaScript blob and delivered through a seemingly Read more

By Matheus Boschetti, 3 yearsJuly 23, 2023 ago

Recent Posts

  • About PetitPotam, NetExec, and False Positives
  • Trusted Tools, Untrusted Intent: Using Slack as a C2 Channel
  • CVE-2024-29320: SQL Injection in Wallos
  • CVE-2024-27613: Arbitrary File Manipulation in Numbas
  • Bypassing PowerShell CLM with Custom Runspaces

Archive

  • August 2026
  • July 2026
  • April 2024
  • March 2024
  • August 2023
  • July 2023
  • June 2023
  • January 2023
  • October 2022
  • July 2022
  • April 2022
  • February 2022

Categories

  • Application Security
  • Binary Exploitation
  • Certification Review
  • Defense Evasion
  • Malware Development
  • Open Source Software (OSS)
  • Phishing
  • Red Team
  • Security Research
  • Windows
Hestia | Developed by ThemeIsle