08/20

MalAPI.io

https://malapi.io/
MalAPI.io

Oh my API, abusing TYK cloud API management to hide your malicious C2 traffic - Shells.Systems

https://shells.systems/oh-my-api-abusing-tyk-cloud-api-management-service-to-hide-your-malicious-c2-traffic/
Oh my API, abusing TYK cloud API management to hide your malicious C2 traffic - Shells.Systems

LFI2RCE via PHP Filters - HackTricks

https://book.hacktricks.xyz/pentesting-web/file-inclusion/lfi2rce-via-php-filters
LFI2RCE via PHP Filters - HackTricks

iOS Privacy: Announcing InAppBrowser.com - see what JavaScript commands get injected through an in-app browser · Felix Krause

https://krausefx.com/blog/announcing-inappbrowsercom-see-what-javascript-commands-get-executed-in-an-in-app-browser
iOS Privacy: Announcing InAppBrowser.com - see what JavaScript commands get injected through an in-app browser · Felix Krause

Back in Black: Unlocking a LockBit 3.0 Ransomware Attack  – NCC Group Research

https://research.nccgroup.com/2022/08/19/back-in-black-unlocking-a-lockbit-3-0-ransomware-attack/
Back in Black: Unlocking a LockBit 3.0 Ransomware Attack  – NCC Group Research

Hexacorn | Blog What to know, what to learn? What are useful skills for cyber in 2022?

https://www.hexacorn.com/blog/2022/08/19/what-to-know-what-to-learn-what-are-useful-skills-for-cyber-in-2022/
Hexacorn | Blog What to know, what to learn? What are useful skills for cyber in 2022?