Dhiraj (@randomdhiraj) 's Twitter Profile
Dhiraj

@randomdhiraj

Learning & Fuzzing! (fuzzing.at)

ID: 3329863739

linkhttps://www.inputzero.io calendar_today16-06-2015 17:20:03

530 Tweet

3,3K Followers

130 Following

Cyber Security News (@the_cyber_news) 's Twitter Profile Photo

Cyber Security News SmuggleShield - Browser Extension to Detect HTML Smuggling Attacks Source: gbhackers.com/smuggleshield-… SmuggleShield, a recently launched browser extension, is gaining attention in the cybersecurity space for its innovative approach to mitigating HTML smuggling

<a href="/The_Cyber_News/">Cyber Security News</a>  SmuggleShield - Browser Extension to Detect HTML Smuggling Attacks 

Source: gbhackers.com/smuggleshield-…

SmuggleShield, a recently launched browser extension, is gaining attention in the cybersecurity space for its innovative approach to mitigating HTML smuggling
nullDubai (@nulldubai) 's Twitter Profile Photo

šŸš€ Exciting news! šŸš€ Join us for the Null Dubai chapter Monthly Meet on Jan 11, 2025, at the Microsoft UAE venue. šŸ”’ Get ready for an electrifying lineup of talks that will keep you on the edge of your seat! null - The Open Security Community Register : null.community/events/1092-du…

Cobalt (@cobalt_io) 's Twitter Profile Photo

Is your Electron app secure? In Part 1 of our series, #CobaltCore member Dhiraj Mishra breaks down common Electron app misconfigurations and shares practical tips to secure them. Read now: hubs.la/Q033188c0 #Cybersecurity #AppSecurity #ElectronApps #Pentesting

Is your Electron app secure?  

In Part 1 of our series, #CobaltCore member Dhiraj Mishra breaks down common Electron app misconfigurations and shares practical tips to secure them.  

Read now: hubs.la/Q033188c0  

#Cybersecurity #AppSecurity #ElectronApps #Pentesting
Blue Team News (@blueteamsec1) 's Twitter Profile Photo

GitHub - RootUp/SmuggleShield: Protection against HTML smuggling attempts. (ML) dlvr.it/THjWVw #cyber #threathunting #infosec

Dhiraj (@randomdhiraj) 's Twitter Profile Photo

I have updated the pattern in SmuggleShield that blocks Shuckworm html-smuggling referenced from (broadcom.com/support/securi…) GH - github.com/RootUp/Smuggle… #infosec #blueteam #ThreatProtection

I have updated the pattern in SmuggleShield that blocks  Shuckworm html-smuggling referenced from (broadcom.com/support/securi…)
GH - github.com/RootUp/Smuggle…
#infosec #blueteam #ThreatProtection
Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Still not sure what I have been developing so far? "SmuggleShield" is a browser extension which helps preventing HTML smuggling attacks. I created the below podcast which you can listen and understand the working flow. open.spotify.com/episode/2c7MQV… #infosec #redteam #blueteam

Still not sure what I have been developing so far? "SmuggleShield" is a browser extension which helps preventing HTML smuggling attacks. I created the below podcast which you can listen and understand the working flow.
open.spotify.com/episode/2c7MQV…
#infosec #redteam #blueteam
Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Thank you Insomni'hack I had fun delivering the talk last week, such a great audience. I talked about my research named SVG smuggling and the open-source tool "SmuggleShield". (github.com/RootUp/Smuggle…) #infosec

Thank you <a href="/1ns0mn1h4ck/">Insomni'hack</a> I had fun delivering the talk last week, such a great audience. I talked about my research named SVG smuggling and the open-source tool "SmuggleShield". (github.com/RootUp/Smuggle…)
#infosec
Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Great research here this technique leverages Rust’s capabilities to compile to WASM for HTML smuggling (lrqa.com/en/cyber-labs/…) - Next Level Smuggling with WebAssembly. However, my extension "SmuggleShield" prevents such crafted file by default. #infosec #redteam #blueteam

Great research here this technique leverages Rust’s capabilities to compile to WASM for HTML smuggling (lrqa.com/en/cyber-labs/…) -  Next Level Smuggling with WebAssembly. However, my extension "SmuggleShield"  prevents such crafted file by default.
#infosec #redteam #blueteam
Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Just learned a neat way of hiding file within favicon (.ico). You can manipulate the dual directory entry structure and smuggle any file type in it. Here is a quick raw script I put together for testing.(github.com/RootUp/Persona…) #infosec #redteam

Just learned a neat way of hiding file within favicon (.ico). You can manipulate the dual directory entry structure and smuggle any file type in it. Here is a quick raw script I put together for testing.(github.com/RootUp/Persona…)
#infosec #redteam
The Hacker News (@thehackersnews) 's Twitter Profile Photo

Never trust a favicon at face value. šŸ‘€ Dhiraj demonstrates how attackers can hide malicious files inside .ico icons by exploiting their dual directory structure — allowing payloads to slip past filters in a stealth move similar to HTML smuggling.

Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Stoked! Our (Suraj) work on SVG Smuggling is now part of MITRE ATT&CK (T1027.017)! attack.mitre.org/techniques/T10… #infosec #redteam

Stoked! Our (<a href="/r00treaver/">Suraj</a>) work on SVG Smuggling is now part of MITRE ATT&amp;CK (T1027.017)!
attack.mitre.org/techniques/T10…
#infosec #redteam
MalDev Academy (@maldevacademy) 's Twitter Profile Photo

The next update for the Offensive Phishing Operations course will be heavily focused on HTML Smuggling and will be going up against Dhiraj's awesome SmuggleShield. We'll also be demonstrating a module that combines anti-bot capabilities with HTML smuggling. More info:

MalDev Academy (@maldevacademy) 's Twitter Profile Photo

Offensive Phishing Operations Update 2 Released: maldevacademy.com/phishing-cours… - HTML Smuggling Strategies - Analyzing and Evading SmuggleShield (S/O Dhiraj) - Integrating Anti-Bot With HTML Smuggling - SVG Smuggling - WebAssembly Smuggling

Dhiraj (@randomdhiraj) 's Twitter Profile Photo

Alright! I'll be presenting my tool "SmuggleShield" at BlackHat USA, see you there if you are around.(github.com/RootUp/Smuggle…) #infosec #redteam #blueteam

Alright! I'll be presenting my tool "SmuggleShield" at BlackHat USA, see you there if you are around.(github.com/RootUp/Smuggle…)
#infosec #redteam #blueteam
Dhiraj (@randomdhiraj) 's Twitter Profile Photo

We (Zubin) are currently running 10% discount on our fuzzing course for DEFCON use the below link to register your interest in our two-day training program. Discount link: training.defcon.org/discount/DCTLV… #infosec #fuzzing #defcon

Dhiraj (@randomdhiraj) 's Twitter Profile Photo

I wrote a blog on Medium, "Brewing Trouble - Dissecting a macOS Malware Campaign". medium.com/deriv-tech/bre… #infosec #redteam