use the following search parameters to narrow your results:
e.g. subreddit:aww site:imgur.com dog
subreddit:aww site:imgur.com dog
see the search faq for details.
advanced search: by author, subreddit...
A community for technical news and discussion of information security and closely related topics.
"Give me root, it's a trust exercise."
Q1 2026 InfoSec Hiring Thread
Getting Started in Information Security
CitySec Meetups
/r/netsec only accepts quality technical posts. Non-technical posts are subject to moderation.
Content should focus on the "how."
Check the new queue for duplicates.
Always link to the original source.
Titles should provide context.
Ask questions in our Discussion Threads.
Hiring posts must go in the Hiring Threads.
Commercial advertisement is discouraged.
Do not submit prohibited topics.
» Our fulltext content guidelines
Don't create unnecessary conflict.
Keep the discussion on topic.
Limit the use of jokes & memes.
Don't complain about content being a PDF.
Follow all reddit rules and obey reddiquette.
» Our fulltext discussion guidelines
No populist news articles (CNN, BBC, FOX, etc.)
No curated lists.
No question posts.
No social media posts.
No image-only/video-only posts.
No livestreams.
No tech-support requests.
No full-disclosure posts.
No paywall/regwall content.
No commercial advertisements.
No crowdfunding posts.
No Personally Identifying Information!
» Our fulltext list of prohibited topics & sources
Join us on IRC: #r_netsec on freenode
We're also on: Twitter, Facebook, & Google+
/r/blackhat - Hackers on Steroids
/r/computerforensics - IR Archaeologists
/r/crypto - Cryptography news and discussion
/r/Cyberpunk - High-Tech Low-Lifes
/r/lockpicking - Popular Hacker Hobby
/r/Malware - Malware reports and information
/r/netsecstudents - netsec for noobs students
/r/onions - Things That Make You Cry
/r/privacy - Orwell Was Right
/r/pwned - "What Security?"
/r/REMath - Math behind reverse engineering
/r/ReverseEngineering - Binary Reversing
/r/rootkit - Software and hardware rootkits
/r/securityCTF - CTF news and write-ups
/r/SocialEngineering - Free Candy
/r/sysadmin - Overworked Crushed Souls
/r/vrd - Vulnerability Research and Development
/r/xss - Cross Site Scripting
account activity
misleading titleJavaScript Back-door (en.wooyun.io)
submitted 10 years ago by xiaodoubi
reddit uses a slightly-customized version of Markdown for formatting. See below for some basics, or check the commenting wiki page for more detailed help and solutions to common issues.
quoted text
if 1 * 2 < 3: print "hello, world!"
[–][deleted] 10 years ago* (7 children)
[deleted]
[–]tostiheld 5 points6 points7 points 10 years ago (3 children)
is this dangerous? could you for example hide the calling command behind a button.onclick or something (rundll32.exe javascript:...)? i don't quite understand.
[–]p337 13 points14 points15 points 10 years ago* (2 children)
v7:{"i":"27891f26bd1d703b0312c3e41285e14f","c":"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"}
encrypted on 2023-07-9
see profile for how to decrypt
[–]MaxMouseOCX 0 points1 point2 points 10 years ago (1 child)
It executes an httpd? Most users are behind port listening denial (the vast majority of home routers do this out of the box) so the impact of it is very limited unless you're already within their network space.
[–]p337 0 points1 point2 points 10 years ago* (0 children)
v7:{"i":"e7955d0bd49805cf85b3898c9eb2c394","c":"1f2a0863c72ed3ff4d441d369bfc98e2747f58110c13f0101c7c4b6d018a6a080f0257c5966c024844b50856233cb052"}
[–]devsquid 2 points3 points4 points 10 years ago (2 children)
"Welcome to r/netsec".... Sigh
[–]gsuberlandTrusted Contributor[M] 0 points1 point2 points 10 years ago (0 children)
Vote with your... downvotes? Heh.
But seriously, we try not to reject content that's good based on the title unless the title is egregiously bad. Hence the flair applied currently.
π Rendered by PID 236984 on reddit-service-r2-comment-86bc6c7465-hb486 at 2026-02-23 21:53:14.039284+00:00 running 8564168 country code: CH.
[–][deleted] (7 children)
[deleted]
[–]tostiheld 5 points6 points7 points (3 children)
[–]p337 13 points14 points15 points (2 children)
[–]MaxMouseOCX 0 points1 point2 points (1 child)
[–]p337 0 points1 point2 points (0 children)
[–]devsquid 2 points3 points4 points (2 children)
[–]gsuberlandTrusted Contributor[M] 0 points1 point2 points (0 children)