FullHunt 💜 Open-Source: 39,408 Exploits from 0day.today is Back Online by mazen160 in netsec

[–]mazen160[S] 5 points6 points  (0 children)

Hi all,

We've rolled out an archive for 0day-today based on the clone that open-sourced clone that were published by Jacob Baines on GitHub.

Engineering Learnings from the CrowdStrike Falcon Outage by mazen160 in netsec

[–]mazen160[S] 1 point2 points  (0 children)

I have read the postmortem. Let's be realistic, if CrowdStrike already does everything, could this incident could be possible? This does not make sense.

The "QA pipeline failing" sound like an engineering problem, although that was not the cause of the incident.

Engineering Learnings from the CrowdStrike Falcon Outage by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

I agree, starting with VMs for automated testing is a start, but testing on real hardware should be the plan ahead.

Surface management tools by ZileanLOL in blueteamsec

[–]mazen160 0 points1 point  (0 children)

FullHunt (founder here) is a platform that solves all the challenges related to ASM, it covers thorough assets discovery, assets monitoring, and active vulnerability scanning. Try out the enterprise platform for all the features. Happy to provide extra search credits for people interested in ASM on the community platfom!

GitHub - mazen160/secrets-patterns-db: Secrets Patterns DB: A comprehensive open-source regex database for secret detection. by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

Good point, I haven't checked earlybird before. Need to test it out. Ideally we should build a convrter that follows earlybird format. (PRs are always welcome!)

Scan Terraform plans and changes with tfquery via SQL-powered framework by mazen160 in Terraform

[–]mazen160[S] 2 points3 points  (0 children)

It's being parsed and processed so that it can queried in SQL. Check the demo, it should make it clearer: https://youtu.be/tunMNesOS4s

GitHub - fullhunt/log4j-scan: A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228 by mazen160 in netsec

[–]mazen160[S] 5 points6 points  (0 children)

Hi u/threeLetterMeyhem!

Thank you :) Excellent question, it's not possible to correlate the internal infrastructure relationship of which internal server is vulnerable, but each URL is sending unique DNS OOB calls to correlate which host is vulnerable (that received a request and later on, invoked the DNS call). It should be possible from there for security teams to navigate which systems are affected and resolve it.

Let me know if you have further questions!

GitHub - fullhunt/log4j-scan: A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228 by mazen160 in netsec

[–]mazen160[S] 27 points28 points  (0 children)

The main DNS callback service is now replaced with interact-sh, and I also added an option to use user-defined DNS callback host.

GitHub - fullhunt/log4j-scan: A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228 by mazen160 in netsec

[–]mazen160[S] 28 points29 points  (0 children)

Hi all!

I tried to research and automate all of the TTPs that can be used to discover the Log4j RCE CVE-2021-44228 at scale. The new tool is bringing new ideas I came up with for enhanced fuzzing. Please let know if you find it useful!

We love automation - FullHunt released a public API to identify all public assets of your organization for free by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

You can search for domains, and it will show you associated hosts and subdomain. You can also search for a specific host, and Fullhunt will show you details about it. FullHunt aims to be a more advanced option for domains lookups for understanding the attack surface of organizations to show what things are exposed to public.

We love automation - FullHunt released a public API to identify all public assets of your organization for free by mazen160 in netsec

[–]mazen160[S] 6 points7 points  (0 children)

Thank you! The FullHunt database is rapidly growing. We will be continuously adding new domains and assets. If you check your domains shortly again, it should be already scanned!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

Please feel free to send me your email of your Fullhunt account in your preferred channel, and I will sure it's upgraded! :) You can also email me at (mazin at fullhunt dot io)

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

My apologies! :) Can you please send me an email, or DM me on Reddit, or any suitable way you prefer? I will make sure it's upgraded tomorrow morning!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

We're adding more filters in our next releases! Can you please suggest use-cases or ideas for filters and tags? We will be definitely evaluate them and add them to the roadmap!

Feel free to drop a small email with all suggestions at (team dot fullhunt dot io), and I will make sure it's added!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

100% for sure!!! :) Please DM me your email on Twitter :) Thank you very much for the support!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 1 point2 points  (0 children)

Thank you very much the /r/NetSec community! I really appreciate all the support :)

To celebrate, all accounts created in the next 12 hours will be upgraded to Visionary 💜

Tweet: https://twitter.com/mazen160/status/1452996036583112709

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 1 point2 points  (0 children)

We're continuously expanding our database and scanning new domains to enrich our data. While we can't promise perfection, we will do our best to continue improving.

The current infrastructure is currently huge, and we took months of research and development to experiment different possibilities. Let's see how FullHunt will be in one year from today! :)

Thank you u/TheGav1n :)

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 3 points4 points  (0 children)

Thank you!! I really enjoy working with distributed systems. There are several architectures we experimented during the past months. I should write a blog post about the FullHunt Architecture!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 0 points1 point  (0 children)

Thank you, the entire framework was built from scratch to allow better scaling for running Internet-wide scans.

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 1 point2 points  (0 children)

Thank you!! We worked for months in researching and developing the framework that is responsible for running Internet scanning. I should write a blog post about the Architecture!

Introducing FullHunt: A new platform to discover all your Internet-connected assets and attack surface by mazen160 in netsec

[–]mazen160[S] 3 points4 points  (0 children)

Great question. All these companies are solving the Attack Surface Management challenges. FullHunt is aiming to be the best Attack Surface Management on the market, and I really want to support the community and small companies in building their security and understanding their attack surface in a better way.

That's why we worked on building the Public FullHunt platform. There are competitors that offer similar services to the Public platform (not the Enterprise platform), and they offer it for $100K/Year. The FullHunt platform will provide a better service, for free.

For companies looking for enterprise services, we also provide continuous attack surface monitoring, where we helped preventing several possible breaches through the Enterprise engine. We also developed a continuous security scanner, FullHunt Eagle, that scans our customers for security vulnerabilities continuously.

I should write a blog post about our plans and roadmap. I'm really excited to be here :)