<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://vrls.ws/</id><title>vrls.ws</title><subtitle>Personal blog about computer hacking &amp; security</subtitle> <updated>2025-10-30T15:18:14+00:00</updated> <author> <name></name> <uri>https://vrls.ws/</uri> </author><link rel="self" type="application/atom+xml" href="https://vrls.ws/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://vrls.ws/"/> <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator> <rights> © 2025 </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>Phishing Bank Logins Over Plain HTTP in 2025</title><link href="https://vrls.ws/posts/phishing-bank-logins-over-plain-http-in-2025/" rel="alternate" type="text/html" title="Phishing Bank Logins Over Plain HTTP in 2025" /><published>2025-10-30T00:00:00+00:00</published> <updated>2025-10-30T15:17:55+00:00</updated> <id>https://vrls.ws/posts/phishing-bank-logins-over-plain-http-in-2025/</id> <content type="text/html" src="https://vrls.ws/posts/phishing-bank-logins-over-plain-http-in-2025/" /> <author> <name>vrls</name> </author> <summary>Uncover a critical misconfiguration in homebanking enabling MitM phishing attacks on bank logins via plain HTTP fallback. Explore the vulnerability timeline, PoC with Bettercap and Evilginx2, and essential best practices for users and admins to enforce HTTPS and prevent credential theft.</summary> </entry> <entry><title>Red Team - Compromising Critical Infrastructure by Reversing SCADA Software</title><link href="https://vrls.ws/posts/2025/04/red-team-compromising-critical-infrastructure-by-reversing-scada-software/" rel="alternate" type="text/html" title="Red Team - Compromising Critical Infrastructure by Reversing SCADA Software" /><published>2025-04-28T00:00:00+01:00</published> <updated>2025-10-30T15:17:55+00:00</updated> <id>https://vrls.ws/posts/2025/04/red-team-compromising-critical-infrastructure-by-reversing-scada-software/</id> <content type="text/html" src="https://vrls.ws/posts/2025/04/red-team-compromising-critical-infrastructure-by-reversing-scada-software/" /> <author> <name>vrls</name> </author> <summary>Discover how a red team compromises critical infrastructure by reversing SCADA software, escalating privileges in Active Directory, and pivoting across IT/OT networks. Key insights on vulnerabilities, misconfigurations, and defense strategies for secure essential services.</summary> </entry> <entry><title>Pwning a Legacy Enterprise Application Server - Sybase EAServer</title><link href="https://vrls.ws/posts/2024/10/pwning-legacy-application-server-sybase-easerver-jaguar/" rel="alternate" type="text/html" title="Pwning a Legacy Enterprise Application Server - Sybase EAServer" /><published>2024-10-13T00:00:00+01:00</published> <updated>2025-10-30T15:17:55+00:00</updated> <id>https://vrls.ws/posts/2024/10/pwning-legacy-application-server-sybase-easerver-jaguar/</id> <content type="text/html" src="https://vrls.ws/posts/2024/10/pwning-legacy-application-server-sybase-easerver-jaguar/" /> <author> <name>vrls</name> </author> <summary>Explore exploiting Sybase EAServer vulnerabilities, default jagadmin credentials grant web console access, enabling custom WAR web shell uploads for command execution. Learn pivoting via reGeorg tunneling, RDP connections, and key lessons on hardening legacy systems.</summary> </entry> <entry><title>Exploiting nOAuth Vulnerability in Azure AD Applications</title><link href="https://vrls.ws/posts/2023/10/exploiting-noauth-vulnerability-in-azure-ad-applications/" rel="alternate" type="text/html" title="Exploiting nOAuth Vulnerability in Azure AD Applications" /><published>2023-10-24T00:00:00+01:00</published> <updated>2025-10-30T15:17:55+00:00</updated> <id>https://vrls.ws/posts/2023/10/exploiting-noauth-vulnerability-in-azure-ad-applications/</id> <content type="text/html" src="https://vrls.ws/posts/2023/10/exploiting-noauth-vulnerability-in-azure-ad-applications/" /> <author> <name>vrls</name> </author> <summary>Discover the nOAuth vulnerability in Azure AD OAuth apps, enabling account takeover via email forgery. This guide demos exploitation using FusionAuth PoC, covering setup of multi-tenant apps, attacker impersonation techniques, impacts like auth bypass and privilege escalation, plus mitigations with immutable claims and MFA.</summary> </entry> <entry><title>Obfuscating Rust Binaries using LLVM Obfuscator (OLLVM)</title><link href="https://vrls.ws/posts/2023/06/obfuscating-rust-binaries-using-llvm-obfuscator-ollvm/" rel="alternate" type="text/html" title="Obfuscating Rust Binaries using LLVM Obfuscator (OLLVM)" /><published>2023-06-12T00:00:00+01:00</published> <updated>2025-10-30T15:17:55+00:00</updated> <id>https://vrls.ws/posts/2023/06/obfuscating-rust-binaries-using-llvm-obfuscator-ollvm/</id> <content type="text/html" src="https://vrls.ws/posts/2023/06/obfuscating-rust-binaries-using-llvm-obfuscator-ollvm/" /> <author> <name>vrls</name> </author> <summary>Delve into obfuscation techniques for Rust binaries using LLVM Obfuscator (OLLVM) to enhance code protection against reverse engineering. Key tips on implementation, effectiveness, and trade-offs for developers securing their applications.</summary> </entry> </feed>
