h4ndsh
banner
h4ndsh.bsky.social
h4ndsh
@h4ndsh.bsky.social
ethical hacker 🇵🇹
Reposted by h4ndsh
Hi!
Since 2022, when I graduated, I’ve worked with JVM frameworks like Spring Boot and JakartaEE and Quarkus.
Curious about how they work under the hood, I asked myself: could I build one too?
That’s how ember came up - a personal project of which I’m proud of!
github.com/renatompf/em...
GitHub - renatompf/ember-project: The Ember project is a lightweight Java-based web framework designed for building HTTP-based applications with features like routing, middleware chaining, and request...
The Ember project is a lightweight Java-based web framework designed for building HTTP-based applications with features like routing, middleware chaining, and request/response abstraction. - renato...
github.com
April 28, 2025 at 6:12 AM
DIY LAN Turtle - Building a Stealth Remote Access Device

🔍 I recently built a DIY LAN Turtle, a compact and stealthy network device for remote access and security testing. In this blog post, I share my experience building and configuring it.

h4ndsh.github.io/2025/lanturt...
DIY LAN Turtle - Building a Stealth Remote Access Device
In this post, I share my experience building a DIY stealth remote access device using the Luckfox Pico Max RV1106. Inspired by the commercial LAN Turtle but seeking a more affordable solution, I creat...
h4ndsh.github.io
February 12, 2025 at 11:48 AM
Reposted by h4ndsh
did anyone do this one yet
March 30, 2024 at 6:54 AM
Reposted by h4ndsh
Analyzing and exploiting DVR/NVR devices based on HiSilicon hi3520d

github.com/tothi/pwn-hi...

#iot #infosec
February 26, 2024 at 10:54 AM
Reposted by h4ndsh
Fortinet Warns of Critical FortiOS SSL VPN Vulnerability Under Active Exploitation
Fortinet Warns of Critical FortiOS SSL VPN Vulnerability Under Active Exploitation
Fortinet has unveiled a critical security flaw in its SSL VPN, CVE-2024-21762, allowing hackers to execute arbitrary code.
thehackernews.com
February 9, 2024 at 5:40 AM
I just published a new blog post where I explore the vulnerabilities of Local File Inclusion (LFI) and Remote Code Execution (RCE) in PHP <= 7.3. 🚀​
In this article, I provide a detailed walkthrough of the exploitation process.

#Cybersecurity #WebSecurity #PHP #LFI #RCE
Thanks for reading! 😄🔒​
PHP <= 7.3 Local File Inclusion with RCE (PoC)
In this instance, I will delve into an LFI (Local File Inclusion) vulnerability and an RCE (Remote Code Execution) vulnerability. I will utilize the tools within the 'pearcmd.php' file to craft manipu...
h4ndsh.github.io
December 22, 2023 at 5:51 PM
🔗 Exploring the Versatile Flipper Zero: First Impressions and Hands-On

📝 I look forward to sharing my experiences with the Flipper Zero in future blog posts.

Blog: h4ndsh.github.io/2023/flipper...
December 7, 2023 at 9:40 AM