ordinary-hacker

Results 32 comments of ordinary-hacker

ok, sounds nice to add

I'll see if I add this, shouldn't be too challenging considering there are already working pocs

well... apparently there's already a module which is `linux/http/beyondtrust_pra_rs_unauth_rce`. though it seeems to be focused on exploiting this only for Beyondtrust

ok, first of all the versions of some packages are way too old second, `assert {type: "json"}` is now invalid syntax for imports some flags such as `--no-experimental-fetch` and `--experimental-json-modules`...

also some packages say they are only tested for node 13, and also other old packages have security vulns that aren't fixable

yeah this would need some work

sounds fun to add. maybe we could have some post modules focused on disabling this. I'll see if I do some research on these such as how they can be...

Okok, LuLu needs sudo for all ways to mess up with it, such as ejecting the system driver: ```bash # To find the driver systemextensionsctl list # Then sudo systemextensionsctl...

For DND it seems to be similar, though if we just want to disable communications. For local alerts XPC is used. For **remote** alerts it uses what seems to be...

For ReiKey is the exact same thing as the others which needs sudo.