Spam Filter Bypass Method in Phishing Attacks: Flirting

Spam Filter Bypass Method in Phishing Attacks: Flirting

SercanSayitogluNov 16, 20213 min read

What is phishing? Phishing is a type of social engineering where an attacker sends a fraudulent message designed to trick a human victim into revealing sensitive information to the attacker or to deploy malicious software, such as ransomware, on the…

Real Life Pentest Scenarios #5 – Forgotten Git Folder to SSH Keys

Real Life Pentest Scenarios #5 – Forgotten Git Folder to SSH Keys

SercanSayitogluMay 18, 20213 min read

Target: International Logistic CompanyAccess Point: ExternalTest Profile: Anonymous I decided to spend my weekend with the bug bounty. I would like to talk about one of the vulnerabilities I have identified, which is quite striking. I found a few wildcard…

Real Life Pentest Scenarios #4 – From Rabbit to Domain Admin

Real Life Pentest Scenarios #4 – From Rabbit to Domain Admin

SercanSayitogluMay 11, 20213 min read

Target: International Trading CompanyAccess Point: InternalTest Profile: Guest Before Test: The customer said that they had received penetration testing services from different consulting companies a few times and had fixed all vulnerabilities. They just wanted to be sure that they…

Real Life Pentest Scenarios #3 – Hacking an ATM

Real Life Pentest Scenarios #3 – Hacking an ATM

SercanSayitogluMay 4, 20213 min read

Target: International BankAccess Point: PhysicalTest Profile: Guest Before Test: The customer said that they had penetration testing services from different consulting companies a few times and fixed all vulnerabilities; they just want to be sure about they have enough cyber…

Real Life Pentest Scenarios #2 – Insider Threat

Real Life Pentest Scenarios #2 – Insider Threat

SercanSayitogluApr 26, 20214 min read

In this post, I would like to talk about a very interesting situation that I encountered years ago in an insider threat simulation project. Target: International BankAccess Point: InternalTest Profile: Guest Before Test: The customer said that they had penetration…