Web Applications and Internal Penetration Tests

May 25, 2021 | Bruno Oliveira

Hunter

Adventures in ATM Hacking

June 30, 2020 | Bruno Oliveira

Intro Before this pandemic, Neil Burrows and myself (Bruno Oliveira) from ...

Windows Debugging and Exploiting Part 5 SMBGhost CVE-2020-0796 Technical Review

April 03, 2020 | Bruno Oliveira

Introduction Hi everyone, how are you? I know the times are strange but we ...

Windows Debugging and Exploiting Part 4: NTQuerySystemInformation

March 02, 2020 | Bruno Oliveira

Introduction Hello again! We are back with more Windows internals and it's time ...

Windows Debugging & Exploiting Part 3: WinDBG Time Travel Debugging

January 09, 2020 | Bruno Oliveira

Introduction Hi, my fellow friends! How are you? Hopefully, you had a terrific ...

Windows Debugging & Exploiting Part 2 - WinDBG 101

November 18, 2019 | Bruno Oliveira

Introduction Hello again! After our previous post about the environment setup, ...

Windows Debugging & Exploiting Part 1 - Environment Setup

October 23, 2019 | Bruno Oliveira

Introduction In this blog series, I will try to set some base knowledge for ...

CVE-2018-8006: XSS in Apache ActiveMQ

August 24, 2018 | Bruno Oliveira

A cross site scripting (XSS) vulnerability exists in Apache ActiveMQprior to ...

Discovering BMW Car Systems: Getting Started

June 17, 2013 | Bruno Oliveira

Since I love both (in)security and cars, it is not uncommon for me to mix those ...

My 5 Top Ways to Escalate Privileges

December 13, 2012 | Bruno Oliveira

During a penetration test, rarely will the tester get access to a system with ...

PenTesting: From Low Risk Issues to Sensitive Data Compromising

September 07, 2012 | Bruno Oliveira

Yes, I imagine you are probably tired to see blog posts about "real-world" ...