Skip to content
CyberOpsSec
CyberOpsSec

Just another cybersecurity site

  • Home
  • Posts
  • Knowledge
    • Auditing
    • Linux Commands
    • Ports & Protocols
    • Scanning
    • Sniffing
    • Syslog
    • Vulnerability/Patch Mgmt
  • About
  • Contact
CyberOpsSec

Just another cybersecurity site

About

Just another typical wordpress site documenting some cybersecurity vulnerabilities, topics, etc…

About Me:
I started out learning web app pentesting and gradually moving to network security to IT/Cybersecurity. I now work as a Security Engineer in the finance space. I maintain this site for fun in what little spare time I have.

Some notable vulnerabilities that I have found and reported over the years include:

Websites
XSS: Citizensbank.com
SQLi: Yahoo.com subdomain
SQLi: JinkoSolar.com
SQLi: BMC.com TrackIT Helpdesk Portal
SQLi & XSS: edoclogic.com iDocVault
SQLi & PII information disclosure: Sunwarrior.com Referral Program
SQLi: Americantopteam.com
SQLi: Baystategames.org registration portal
SQLi: Lopers.com University of Nebraska
SQLi: Hyperline.com
LFI: Bornthinker.com

Software
SentinelOne: Unquoted service path
EventSentry: Unquoted service path
FireEye: Unauthenticated Redis

Recent Posts

  • UBI – User Browsing Isolation
  • Rolling KRBTGT Account
  • SentinelOne: Why it’s important to monitor and audit your EPP
  • Nessus False Positive
  • Uninstall Vulnerable Software Remotely

Recent Comments

No comments to show.

Archives

  • November 2024
  • September 2024
  • June 2024
  • May 2024
  • March 2024
  • January 2024
  • November 2023
  • September 2023

Categories

  • EPP
  • Uncategorized
  • Vulnerabilities
©2025 CyberOpsSec | WordPress Theme by SuperbThemes