Ungku Nazmi


  • Home

  • About

  • Tags

  • Categories

  • Archives

  • Search

What Are Reverse Shells?

Published on 2023-01-23 | Categorized in Web Security | heat ℃

Attackers who successfully exploit a remote command execution vulnerability can use a reverse shell to obtain an interactive shell session on the target machine and continue their attack. Reverse shells can also work across a NAT or firewall. This article explains how reverse shells work in practice and what you can do to prevent them.

read more »

Ghosted Multi-0day CVE Exploit Tools

Published on 2022-11-21 | Categorized in Tool | heat ℃

Disclaimer: This project is only for authorized use, and it is forbidden to use this project for illegal operations, otherwise you will bear the consequences yourself.

read more »

How I Found Config Database TNB Env Dev AWS [Fix]

Published on 2023-01-20 | Categorized in Web Security | heat ℃

I searched on google and by accidently, I found some links that contain username and password in plain text.

read more »

How I Found JPN ATM PDRM PENJARA DB CONFIG BUG IN SPR.GOV.MY

Published on 2023-01-13 | Categorized in Web Security | heat ℃

As a registrant, I also need to be concerned about the security of my PRIVACY DATA.so I want to continue the research is it true that SPR can be leaked or can be hacked?

read more »

How I found Bug in TM.COM.MY LiveChat Arbitrary File Upload

Published on 2023-01-05 | heat ℃

lately the internet at my house has been quite slow, so I wanted to make a report to TM on the TM live chat website, I accidentally found the upload button,browsing to the web and I able to upload Picture. I wondered

read more »

How I Found SPR.GOV.MY SQLi Vuln

Published on 2022-11-28 | Categorized in Web Security | heat ℃

SQL injection has become a common issue with database-driven web sites. The flaw is easily detected, and easily exploited, and as such, any site or software package with even a minimal

read more »

JHEV.GOV.MY Unrestricted File Upload Vuln

Published on 2022-11-18 | Categorized in Web Security | heat ℃

The "unrestricted file upload" term is used in vulnerability databases and elsewhere, but it is insufficiently precise.

read more »

How I found Bug in 83 Malaysia Gov CWE285 CWE-434

Published on 2022-11-17 | Categorized in Web Security | heat ℃

A couple of days ago, I was looking for a certain new exploit 0-day in google search for researching,due so many news article gov data leaked and Hacked, where suddenly I stumbled upon a Login and Register form that was laying around.

read more »

How I found Bug in SABAH.GOV.MY [Arbitrary File Upload]

Published on 2022-10-24 | Categorized in Web Security | heat ℃

File upload vulnerabilities are when a web server allows users to upload files to its filesystem without sufficiently validating things like their name, type, contents, or size.

read more »

How I found Bug in MOE.GOV.MY [Unrestricted File Upload]

Published on 2022-10-23 | Categorized in Web Security | heat ℃

I'm able to Bypass the File Upload Enter into thier server and check to take over more than 197 subdomain MOE.GOV.MY

read more »
123
Donnazmi

Ungku Nazmi

wait... what??????

24 Log
10 Categories
23 Label
RSS
GitHub E-Mail Telegram Youtube Instagram Codepen Medium
Links
  • R06U3
  • 7RU57
  • FL45H
  • W3B
  • V1510N
  • BL4NK
  • CWE
© 2020 Donnazmi
Ungku Nazmi
|
Number Of Visitor: