Skip to content

WindowsTechs.com

Collaborate Disseminate

Menu

Primary menu

  • Home

Author Archives: Fabio

What are the main phases that a web vulnerability scanner follow?

Posted on July 24, 2026 by Fabio

I’m conducting a research on web vulnerabilities and how wvs (web vulnerability scanners) work in general
As far as I understood,a typical automated web scanner operates in three main sequential phases:
Spidering / Crawling Phase: The targ… Continue reading What are the main phases that a web vulnerability scanner follow?→

Posted in OWASP, vulnerability-scanners, zap

Understand DHE security in TLS

Posted on February 26, 2019 by Fabio

SSL Labs says that a website I control supports weak ciphersuites because they have DH 1024 bit, e.g. this one: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 (0x9f).

I tried to connect to the website from my laptop while Wireshark was… Continue reading Understand DHE security in TLS→

Posted in diffie-hellman, TLS

HTTP body E2E encryption protocol

Posted on February 6, 2019 by Fabio

I have 2 servers that communicate each other in HTTP and they are both behind an API gateway.
Between the servers and their API gateways the communication is in HTTPS with mutual authentication using certificates, and the sam… Continue reading HTTP body E2E encryption protocol→

Posted in encryption, end-to-end encryption, HTTP, RSA, signal

Is a filler needed in a buffer overflow exploit?

Posted on November 16, 2017 by Fabio

Why do I see a filler being used in some exploits?

Take as an example the code below:

exploit = junk + eip + nops + shellcode

fill = “\x43″*(BUF_SIZE-len(exploit))
buf = exploit + fill

I guess the buffer is the max number of byte we c… Continue reading Is a filler needed in a buffer overflow exploit?→

Posted in buffer overflow, Exploit, exploit-development

Manually migrate to another process without using metasploit?

Posted on October 23, 2016 by Fabio

There is a useful meterpreter script that allows to migrate meterpreter to another process by specifying its PID.
Imagine I have my own session running. How could I migrate to another process without using metasploit?
I know … Continue reading Manually migrate to another process without using metasploit?→

Posted in Metasploit, meterpreter, Shellcode

Are inactive vulnerable WordPress plugins still unsafe?

Posted on June 22, 2016 by Fabio

When you install a plugin in WordPress you can choose to activate or deactivate it.

Let’s say you have a plugin of which the latest version is vulnerable to XSS for example and you’re waiting for a security fix to be released. Should I di… Continue reading Are inactive vulnerable WordPress plugins still unsafe?→

Posted in plugins, Vulnerability, Vulnerability Management, wordpress

Primary Sidebar Widget Area

Infocon Status

Internet Storm Center Infocon Status

Recent Posts

  • Nvidia, Microsoft, Meta Warn Against ‘Premature Restrictions’ of Open-Weight Models July 24, 2026
  • Despite multiple takedowns, botnets continue to grow July 24, 2026
  • Anthropic’s New Opus 5 Model Rivals Fable 5 For Half the Price July 24, 2026
  • Amazon will give you a $350 gift card when you buy a new Samsung phone – here’s what to know July 24, 2026
  • E-ink Writing Deck Rocks a Typewriter Aesthetic July 24, 2026

Tag Cloud

Agriculture Alzheimer's Disease Art Audio Automation Bluetooth Building and Construction Campervan Camping Cancer Coronavirus (COVID-19) Cycling Dementia Diabetes DNA Electric Vehicles Food Home House Huawei Indiegogo MIT Mobility Moon New Atlas Audio NVIDIA Off-grid Off-road Pedal-assisted Photography Physics Radio Repair RV Samsung Satellite Sony SpaceX spoofing sustainable design The Immune System Tiny Footprint Training Water Zoom

Archives

  • Facebook
  • Twitter
  • Linkedin
  • Email
Copyright © 2026 WindowsTechs.com. All Rights Reserved.
Theme: Catch Box by Catch Themes
Scroll Up