LSCP

LSCP

Menu
  • Lyhin Security Consulting & Pentesting
  • LSCP Responsible Disclosure Lab

Lifehacks for hackers: how to audit mobile apps

October 17, 2020
 |  No Comments
 |  Uncategorized

In web app security, a large number of clients attack the server. In client app security, the situation is opposite – […]

Read More →

How White-Box hacking works: Authorization Bypass and Remote Code Execution in Monitorr 1.7.6

September 12, 2020
 |  No Comments
 |  Uncategorized

Well, we pwned one more piece of software. Who cares? Nah, nobody. Alright, now user “nobody” – see how we did […]

Read More →

Lifehacks for hackers: the family networking weaknesses, 0-days guaranteed

August 8, 2020
 |  No Comments
 |  Uncategorized

The stablest and the most efficient way to find the brand new and very own 0-days with no lingering deployment is […]

Read More →

How White-Box hacking works: “Ok, Google, I wanna pwn this app….”

July 18, 2020
 |  No Comments
 |  Uncategorized

Mobile applications should not trust other applications on the device. The new generation likes it when an organization wants them to […]

Read More →

Lifehacks for hackers: When to relax and when to do not

June 13, 2020
 |  No Comments
 |  Uncategorized

Offensive Security passionaries believe that hackers should always “Try Harder!”. Generally, I respect this position. But what hackers usually forget is […]

Read More →

How White-Box hacking works: webERP Local File Inclusion

May 16, 2020
 |  No Comments
 |  Uncategorized

In the previous post we described a couple of inoERP bugs and made a conclusion that inoERP software is too buggy […]

Read More →

Lifehacks for hackers: Clipboard File Transfer stable script

April 11, 2020
 |  No Comments
 |  Uncategorized

Researchers transfer files to compromised hosts with a couple of techniques as the host configuration may vary. I can briefly remember […]

Read More →

How White-Box hacking works: InoERP Authentication Bypass and Remote Code Execution

March 14, 2020
 |  No Comments
 |  Uncategorized

We chose to improve security of the InoERP application by the next reasons: Alive forum. However, as the vendor pretended to […]

Read More →

Posts pagination

Previous 1 2 3

Recent Posts

  • EXP Lore Cyber
  • Rimpact
  • The Security Spirit
  • Lifehacks for Hackers: does this scope need AV?
  • Temporary suspension of the lab

Archives

  • August 2025
  • March 2023
  • October 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
LSCP Theme By SKT Free Themes