Ivan Ožić Bebek

Penetration Tester

Location
Zagreb, Croatia
Ivan Ožić Bebekobivan@infosec.exchange
2025-12-30
Ivan Ožić Bebek boosted:
2025-12-26

Merry Christmas to everybody, except that dude who works for Elastic, who decided to drop an unauthenticated exploit for MongoDB on Christmas Day, that leaks memory and automates harvesting secrets (e.g. database passwords)

CVE-2025-14847 aka MongoBleed

Exp: github.com/joe-desimone/mongob

This one is incredibly widely internet facing and will very likely see mass exploitation and impactful incidents

Impacts every MongoDB version going back a decade.

Shodan dork: product:"MongoDB"

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-23

Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective github.com/zyn3rgy/RelayInform

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-20

GhostLocker: AppLocker-Based EDR Neutralization github.com/zero2504/EDR-GhostL

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-19

TP-Link Tapo C200: Hardcoded Keys, Buffer Overflows and Privacy in the Era of AI Assisted Reverse Engineering evilsocket.net/2025/12/18/TP-L

Ivan Ožić Bebek boosted:
Lorenzo Franceschi-Bicchierailorenzofb@infosec.exchange
2025-12-19

Apple was very smart to send Ivan Krstić, who's been fighting spyware and exploit makers for years now, to Hexacon, a conference attended by a lot of spyware and exploit makers.

youtube.com/watch?v=Du8BbJg2Pj4

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-11

Windows Session Hijacking via COM github.com/3lp4tr0n/SessionHop/

Ivan Ožić Bebek boosted:
2025-12-11

if you want ongoing automatic dumps of in the wild CobaltStrike configs

beaconbeagle.com/data/

Ivan Ožić Bebek boosted:
2025-12-11

Today, we’re releasing watchTowr Labs’ @chudypb’s BlackHat .NET research, owning Barracuda, Ivanti and more solutions.

Enjoy the read as Piotr explains a new .NET Framework primitive, used to achieve pre- and post-auth RCE on numerous enterprise appliances.

labs.watchtowr.com/soapwn-pwni

Ivan Ožić Bebek boosted:
WinterKnight's Blogblog@winterknight.net
2025-12-11

Maldev Academy Review

2 years after starting, some false starts, and some requisite learning completed, I finally wrapped up Maldev Academy.

winterknight.net/maldev-academ

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-10
Ivan Ožić Bebekobivan@infosec.exchange
2025-12-08
Ivan Ožić Bebekobivan@infosec.exchange
2025-12-07

Post-exploitation tool for compromised Service Principals gist.github.com/Non3e/32124476

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-05

@winterknight1337 thanks! I'll probably end up buying that one or Malware Analysis and Development training.

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-05

@winterknight1337 do you have any recommendations for courses or books to complement it with? I bought Windows Security Internals and Evading EDR books, but still think it won't be enough, because I suck at C.

Ivan Ožić Bebek boosted:
2025-12-04

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478) slcyber.io/research-center/hig

Ivan Ožić Bebek boosted:
Electronic Frontier Foundationeff
2025-12-02

EFF 🤝 @nostarch. Support the fight for privacy and free speech online when you grab this @Humble book bundle today! humblebundle.com/books/hacking

Ivan Ožić Bebekobivan@infosec.exchange
2025-12-02
Ivan Ožić Bebek boosted:
James Forshaw :donor:tiraniddo@infosec.exchange
2025-12-01

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst