Cyber Security Round Up - July 15th, 23
Bug Hunting Methodology, IOT Hacking, Android Security, Shodan, SQLi Cheatsheet, Web3 OSINT, DomScan, Job Opportunities and more
We welcome you to Bi-Monthly newsletter by Hacklido to keep you updated with the latest Infosec trends around the globe.

📑 15 Blog Reads
Python for Hackers #1 | SSH Bruteforcer using Asynchronous Programming
Persistence Techniques (Beginner to Advanced) For Windows - (Part-2)
How i got more than 100 vulnerabilities in just one site? (zseano-challenge)
Python for Hackers #2 | FTP Bruteforcer using asynchronous Programming
Low Privilege User(Group Member) Can Delete whole group conversation
📹️ 6 Videos
Learn about Appsec Careers in 2023 by @TCMSecurityAcademy
Understand How Hackers Write Malware & Evade Antivirus (Nim) by @_JohnHammond
Watch The Power of Shodan: Leveraging Shodan for Critical Vulnerabilities by @NahamSec
Get familar with Cloud Hacking by @NetworkChuck
Learn the Secrets of an Android App Bug Hunter by @LiveOverflow
How to Write Great Bug Bounty Reports by @TCMSecurityAcademy
🧵 6 Twitter Threads
Top 4 SQL Injection Cheat-Sheets to help you bypass advanced WAFs! by @intigriti
Read how @mcipekci found out 4x SQLi recently on one of oldest
Read how @rez0__ found a zero-click ATO and took over the Admin Service account of one of the largest SaaS providers in the world.
13 infosec career hacks I wish I had known when I was getting started by @Matt Johansen
Cryptocurrency & NFT OSINT: Introduction to Web3/Ethereum Profiling & Deanonymization by @FuzzingLabs
Safely investigating a ransomware hosting site using Censys and GrabbrApp by @Matthew
📚 6 Recommended Reading
Session management security: Best practices for protecting user sessions
Advanced IOCs Collection with OSINT and Threat Intelligence Feeds
⚒️ 2 Tools
DOMscan - A simple tool for finding DOM-based XSS vulnerabilities
CMSeek - A CMS detection and exploitation suite
🏴 3 Upcoming CTF Events
Mode: Online
Date: 20th July 2023
Duration: 24 Hours
Mode: Online
Date: 21th July 2023
Duration: 48 Hours
Mode: Online
Date: 28th July 2023
Duration: 48 Hours
📰 News
Fortinet warns of critical RCE flaw in FortiOS, FortiProxy devices
Chinese hackers raided US government email accounts by exploiting Microsoft cloud bug
Windows Users Urged To Update As Microsoft Confirms New Zero-Day Exploits
Fake PoC for Linux Kernel Vulnerability on GitHub Exposes Researchers to Malware
💼 Jobs
Company - Dionach
Role - Junior Cyber Security Consultant
Location - United Kingdom (Remote)
Company - Canva
Role - Security Engineer - Incident Response
Location - London, England (Hybrid)
Without the sponsors and partners hacklido wouldn't be where it is now, So we would like to thank them.
Sponsors:
Community Partners:
If you wish to Sponsor / Partner with hacklido and get benefitted? Reach out to us via Twitter or Discord and discuss with us!