Skip to content
CyberOpsSec
CyberOpsSec

Just another cybersecurity site

  • Home
  • Posts
  • Knowledge
    • Auditing
    • Linux Commands
    • Ports & Protocols
    • Scanning
    • Sniffing
    • Syslog
    • Vulnerability/Patch Mgmt
  • About
  • Contact
CyberOpsSec

Just another cybersecurity site

About

Just another typical wordpress site documenting some cybersecurity vulnerabilities, topics, etc…

About Me:
I started out learning web app pentesting and gradually moving to network security to IT/Cybersecurity. I now work as a Security Engineer in the finance space. I maintain this site for fun in what little spare time I have.

Some notable vulnerabilities that I have found and reported over the years include:

Websites
XSS: Citizensbank.com
SQLi: Yahoo.com subdomain
SQLi: JinkoSolar.com
SQLi: BMC.com TrackIT Helpdesk Portal
SQLi & XSS: edoclogic.com iDocVault
SQLi & PII information disclosure: Sunwarrior.com Referral Program
SQLi: Americantopteam.com
SQLi: Baystategames.org registration portal
SQLi: Lopers.com University of Nebraska
SQLi: Hyperline.com
LFI: Bornthinker.com

Software
SentinelOne: Unquoted service path
EventSentry: Unquoted service path
FireEye: Unauthenticated Redis

Recent Posts

  • Patch Mgmt – Windows Update Issues
  • MSSQL Auditing
  • BloodHound CE Setup
  • UBI – User Browsing Isolation
  • Rolling KRBTGT Account

Recent Comments

No comments to show.

Archives

  • November 2025
  • August 2025
  • June 2025
  • November 2024
  • September 2024
  • June 2024
  • May 2024
  • March 2024
  • January 2024
  • November 2023
  • September 2023

Categories

  • Audit
  • EPP
  • Tools
  • Uncategorized
  • Vulnerabilities
©2025 CyberOpsSec | WordPress Theme by SuperbThemes