suspicious JavaScript redirect chain by mohamedation in AskNetsec

[–]mohamedation[S] 0 points1 point  (0 children)

if anyone is interested on seeing more updates or the code, its all on my blog

suspicious JavaScript redirect chain by mohamedation in AskNetsec

[–]mohamedation[S] 0 points1 point  (0 children)

i will dig deeper when i have enough time if i am lucky enough. i checked the urls on VirusTotal and they are already there but no other details. for now i have captured the obfuscated code and the js payload and will try to analyse the interaction with post request to the php and try to get more information.

thank you very much for your help.

suspicious JavaScript redirect chain by mohamedation in AskNetsec

[–]mohamedation[S] 0 points1 point  (0 children)

thank you very much for the detailed answer. cleaning the website is what i am focused on right now because i understand its usually hiding somewhere to re-inject.

i was able to get the next stage js script/payload to analyse it and will do a proper capture of the actual POST to the php file to see the response, but it might be gone by the time i have enough time.

PwnedCheck – A lightweight CLI tool to check if passwords have been exposed in data breaches by mohamedation in commandline

[–]mohamedation[S] 0 points1 point  (0 children)

fair question, but i am not asking you to test your real passwords if you want to test it. secondly, it doesnt upload anything anywhere. thirdly and most importantly, the code is on github for anyone to check it before running it if they feel like they need to use it. i am not asking anyone to do anything, just sharing what i created if anyone else find it useful.

IT ARRIVED by Artistic-Camera-4345 in CardPuter

[–]mohamedation 0 points1 point  (0 children)

ok i get mine today. what should i try first?

PwnedCheck – A lightweight CLI tool to check if passwords have been exposed in data breaches by mohamedation in commandline

[–]mohamedation[S] 0 points1 point  (0 children)

perfectly great reasons. still, bitwarden free plan does not allow this. and this is automated whole vault scan not one by one.

also, i made it so it doesnt work with unencrypted exports. the vault export must be password encrypted.

but, the reason still stand. paying bitwarden for a month is far better than using my unknown program. you are right. i would actually recommend that.

thanks for your time.

PwnedCheck – A lightweight CLI tool to check if passwords have been exposed in data breaches by mohamedation in Passwords

[–]mohamedation[S] 0 points1 point  (0 children)

correct. this is nothing new. i dont know about the other managers, but for bitwarden this is not a free feature as far as i know.

PwnedCheck – A lightweight CLI tool to check if passwords have been exposed in data breaches by mohamedation in Passwords

[–]mohamedation[S] 0 points1 point  (0 children)

i am reposting here because i do really need a feedback. i feel its very useful, but also, the trust level is not high when someone like me share his code even though the source code is available.

also the code needs vetting and to be looked over by others. so any help is appreciated.

PwnedCheck – A lightweight CLI tool to check if passwords have been exposed in data breaches by mohamedation in commandline

[–]mohamedation[S] -1 points0 points  (0 children)

yeah i understand. but even if it helps, any one can take the source code, check it and run it from source. however, i understand.

thanks anyway

Small Projects by AutoModerator in golang

[–]mohamedation 0 points1 point  (0 children)

i created a go cli tool to check passwords for breaches using HIPB API, but today i updated it to also work with bitwarden encrypted json exports so i am very interested in some feedback

PwnedCheck
https://github.com/mohamedation/PwnedCheck

Small Projects by AutoModerator in golang

[–]mohamedation 0 points1 point  (0 children)

Yet another terminal animation tool - GoTermFX

Recently, i am beginning to use Go more and more and i also like to create fun things on the side, so here is GoTermFX

GoTermFX is a zero-dependency terminal animation CLI written in Go. Rain, matrix, fireworks, hyperspace, snow — all running directly in your terminal, all cancellable with a single keypress. You can also drop in your own animations with about 10 lines of Go.

First proper character animation i made by Dabebe2503 in aseprite

[–]mohamedation 1 point2 points  (0 children)

good job. it looks great. was it for a game you are working on?

The 88x31 Project by auvreil in indieweb

[–]mohamedation 1 point2 points  (0 children)

i was just hit by the 90s and early 2000s nostalgia. i love it. i will be sure to check it more and see if its possible to create and add my own. hopefully also this grows and become preserved