diff --git a/feed.xml b/feed.xml index 056f7de..addf4a3 100644 --- a/feed.xml +++ b/feed.xml @@ -5,8 +5,8 @@ Nima's Diaries https://nima.ninja - Fri, 19 Jul 2024 22:40:03 -0400 - Fri, 19 Jul 2024 22:40:03 -0400 + Fri, 19 Jul 2024 23:20:27 -0400 + Fri, 19 Jul 2024 23:20:27 -0400 Jekyll v4.3.3 https://nima.ninja/assets/ninja1.png @@ -370,5 +370,881 @@ References + + Cross-site WebSocket hijacking (CSWSH) + + +

]]> + + See the first link below to become familiar with various Cross-site WebSocket hijacking (CSWSH) attacks. If you are not familiar with Websocket vulnerabilities, take a look at the second link for more details. External Links Cross-site WebSocket hijacking (CSWSH) Testing... +
+ Thu, 07 Jul 2022 00:00:00 -0400 + https://nima.ninja/links/2022/cross-site-websocket-hijacking-cswsh + https://nima.ninja/links/2022/cross-site-websocket-hijacking-cswsh + + links + + + Web Application Security + + Web Security Academy + + Websockets + + Cross-Site Request Forgery + + CSRF + +
+ + + Expert Lab: Reflected XSS in a JavaScript URL with some characters blocked + + +

]]> + + Lab Link Lab: Reflected XSS in a JavaScript URL with some characters blocked Lab Description This lab reflects your input in a JavaScript URL, but all is not as it seems. This initially seems like a trivial challenge; however, the... +
+ Sat, 04 Jun 2022 00:00:00 -0400 + https://nima.ninja/blog/2022/expert-lab-reflected-xss-in-a-javascript-url-with-some-characters-blocked + https://nima.ninja/blog/2022/expert-lab-reflected-xss-in-a-javascript-url-with-some-characters-blocked + + blog + + + Web Application Security + + Web Security Academy + + Expert Labs + + Cross-Site Scripting + + XSS + + Javascript + +
+ + + Expert Lab: Web Shell Upload via Race Condition + + +

]]> + + Lab Link Lab: Web shell upload via race condition Lab Description This lab contains a vulnerable image upload function. Although it performs robust validation on any files that are uploaded, it is possible to bypass this validation entirely by exploiting... +
+ Mon, 09 May 2022 00:00:00 -0400 + https://nima.ninja/blog/2022/expert-lab-web-shell-upload-via-race-condition + https://nima.ninja/blog/2022/expert-lab-web-shell-upload-via-race-condition + + blog + + + Web Application Security + + Web Security Academy + + Expert Labs + + File Upload Vulnerabilities + + Race Condition Vulnerabilities + + Turbo Intruder + + Exiftool + +
+ + + Hide Malicious Shell in Image File + + +

]]> + + There are many ways to bypass flawed validation of file uploads to upload web shells on web applications, this link explains some ways like creating a polyglot image file containing malicious code in its metadata using tools like exiftool, this... +
+ Sun, 08 May 2022 00:00:00 -0400 + https://nima.ninja/links/2022/hide-malicious-shell-in-image-file + https://nima.ninja/links/2022/hide-malicious-shell-in-image-file + + links + + + Web Application Security + + Web Security Academy + + Labs + + File Upload Vulnerabilities + + Malicious Metadata + + Exiftool + +
+ + + Duolingo: An Effective Way to Learn a New Language + + +

]]> + + Learning a new language can be hard and time-consuming but with a proper method, it can be fun and smooth. Duolingo is a very fun and effective way to learn a new language. It has many great features. One of... +
+ Tue, 12 Apr 2022 00:00:00 -0400 + https://nima.ninja/links/2022/duolingo-an-effective-way-to-learn-a-new-language + https://nima.ninja/links/2022/duolingo-an-effective-way-to-learn-a-new-language + + links + + + Languages + + Learning Languages + +
+ + + COEP COOP CORP CORS CORB... that's a lot of new stuff! + + +

]]> + + Great article about some relatively new HTTP Security Headers. + + +External Links + + + + COEP COOP CORP CORS CORB - CRAP that’s a lot of new stuff! + + + + +References + + + + + Icon by Aha-Soft is licensed under Linkware. ↩ +
+ Tue, 12 Apr 2022 00:00:00 -0400 + https://nima.ninja/links/2022/coep-coop-corp-cors-corb-crap-thats-a-lot-of-new-stuff + https://nima.ninja/links/2022/coep-coop-corp-cors-corb-crap-thats-a-lot-of-new-stuff + + links + + + Web + + HTTP + + Web Applications + + Web Application Security + + HTTP Headers + + Security Headers + +
+ + + Handy Benchmarking Tools for your Server + + +

]]> + + This is a list of some handy Server Benchmarking Tools that might be useful for you: External Links Performance and Speed Testing GTmetrix PageSpeed Insights Structure check Nu Html Checker Feed Validation Service Security Check Is your Internet UP to... +
+ Tue, 12 Apr 2022 00:00:00 -0400 + https://nima.ninja/blog/2022/handy-benchmarking-tools-for-your-server + https://nima.ninja/blog/2022/handy-benchmarking-tools-for-your-server + + blog + + + Web + + Benchmarking Tools + + Web Application Security + + Web Application Performance Testing + + DNSSEC + + TLS + + HTTP Headers + + Security Headers + +
+ + + Dopamine Nation: Finding Balance in the Age of Indulgence + + +

]]> + + Amazon Description INSTANT NEW YORK TIMES and LOS ANGELES TIMES BESTSELLER “Brilliant… riveting, scary, cogent, and cleverly argued.”—Beth Macy, author of Dopesick As heard on Fresh Air This book is about pleasure. It’s also about pain. Most important, it’s about... +
+ Tue, 05 Apr 2022 00:00:00 -0400 + https://nima.ninja/books/2022/dopamine-nation-finding-balance-in-the-age-of-indulgence + https://nima.ninja/books/2022/dopamine-nation-finding-balance-in-the-age-of-indulgence + + books + + + Health + + Neuroscience + + Performance Improvement + + Top Book + + Top Science Book + +
+ + + 11 Neurosciece Hacks to Wire Your Brain for Success + + +

]]> + + A few simple but very important daily hacks for a sharper brain. + + +External Links + + + + 11 Neurosciece Hacks to Wire Your Brain for Success + + + + +References + + + + + Icon by Vexels is licensed under Linkware. ↩ +
+ Sun, 06 Feb 2022 00:00:00 -0400 + https://nima.ninja/links/2022/11-neuroscience-hacks-to-wire-your-brain-for-success + https://nima.ninja/links/2022/11-neuroscience-hacks-to-wire-your-brain-for-success + + links + + + Neuroscience + + Performance Improvement + + Biohacks + +
+ + + TED Talk: Your Can Grow New Brain Cells. Here is How + + +

]]> + + Can we, as adults, grow new neurons? Neuroscientist Sandrine Thuret says that we can, and she offers research and practical advice on how we can help our brains better perform neurogenesis, improving mood, increasing memory formation and preventing the decline... +
+ Sat, 08 Jan 2022 00:00:00 -0400 + https://nima.ninja/links/2022/you-can-grow-new-brain-cells-here-is-how + https://nima.ninja/links/2022/you-can-grow-new-brain-cells-here-is-how + + links + + + Neuroscience + + Neurogenesis + + Performance Improvement + +
+ + + The China Study: The Most Comprehensive Study of Nutrition Ever Conducted And the Startling Implications for Diet, Weight Loss, And Long-term Health + + +

]]> + + Amazon Description Even today, as trendy diets and a weight-loss frenzy sweep the nation, two-thirds of adults are still obese and children are being diagnosed with Type 2 diabetes, typically an “adult” disease, at an alarming rate. If we’re obsessed... +
+ Sat, 08 Jan 2022 00:00:00 -0400 + https://nima.ninja/books/2022/the-china-study-the-most-comprehensive-study-of-nutrition-ever-conducted + https://nima.ninja/books/2022/the-china-study-the-most-comprehensive-study-of-nutrition-ever-conducted + + books + + + Nutrition + + Health + + Performance Improvement + + Top Book + +
+ + + Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities + + +

]]> + + Amazon Description Bug Bounty Bootcamp teaches you how to hack web applications. You will learn how to perform reconnaissance on a target, how to identify vulnerabilities, and how to exploit them. You’ll also learn how to navigate bug bounty programs... +
+ Mon, 29 Nov 2021 20:00:04 -0400 + https://nima.ninja/books/2021/bug-bounty-bootcamp + https://nima.ninja/books/2021/bug-bounty-bootcamp + + books + + + Web Application Security + + Bug Bounty + + Hacking + + Prerequisite + + Newcomers + + Top Book + + Top Hacking Book + + HTTP + + HTTP Headers + + Security Headers + +
+ + + Penetration Testing: A Hands-On Introduction to Hacking + + +

]]> + + Amazon Description Penetration testers simulate cyber attacks to find security weaknesses in networks, operating systems, and applications. Information security experts worldwide use penetration techniques to evaluate enterprise defenses. In Penetration Testing, security expert, researcher, and trainer Georgia Weidman introduces you... +
+ Mon, 29 Nov 2021 20:00:03 -0400 + https://nima.ninja/books/2021/penetration-testing-a-hands-on-introduction-to-hacking + https://nima.ninja/books/2021/penetration-testing-a-hands-on-introduction-to-hacking + + books + + + Penetration Testing + + Hacking + + Hands-On + + Prerequisite + + Newcomers + + Top Book + + Top Hacking Book + + OSCP + +
+ + + Linux Basics for Hackers: Getting Started with Networking, Scripting, and Security in Kali + + +

]]> + + Amazon Description This practical, tutorial-style book uses the Kali Linux distribution to teach Linux basics with a focus on how hackers would use them. Topics include Linux command line basics, filesystems, networking, BASH basics, package management, logging, and the Linux... +
+ Mon, 29 Nov 2021 20:00:02 -0400 + https://nima.ninja/books/2021/linux-basics-for-hackers + https://nima.ninja/books/2021/linux-basics-for-hackers + + books + + + OccupyTheWeb + + Linux + + Hacking + + Prerequisite + + Newcomers + + Top Book + +
+ + + CEH v11 Certified Ethical Hacker Study Guide + + +

]]> + + Amazon Description As protecting information continues to be a growing concern for today’s businesses, certifications in IT security have become highly desirable, even as the number of certifications has grown. Now you can set yourself apart with the Certified Ethical... +
+ Mon, 29 Nov 2021 20:00:01 -0400 + https://nima.ninja/books/2021/certified-ethical-hacker + https://nima.ninja/books/2021/certified-ethical-hacker + + books + + + EC-Council + + CEH + + Certifications + + Hacking + + Prerequisite + + Newcomers + +
+ + + CompTIA Network+ Study Guide: Exam N10-007 + + +

]]> + + Amazon Description To complement the CompTIA Network+ Study Guide: Exam N10-007, 4e, and the CompTIA Network+ Deluxe Study Guide: Exam N10-007, 4e, look at CompTIA Network+ Practice Tests: Exam N10-007 (9781119432128). Todd Lammle’s bestselling CompTIA Network+ Study Guide for the... +
+ Mon, 29 Nov 2021 20:00:00 -0400 + https://nima.ninja/books/2021/network+ + https://nima.ninja/books/2021/network+ + + books + + + CompTIA + + Network + + Network+ + + Certifications + + Prerequisite + + Newcomers + +
+ + + Looking for iOS Kernel Bugs + + +

]]> + + References + + + + + X Post ↩ +
+ Thu, 11 Nov 2021 00:00:00 -0400 + https://nima.ninja/blog/2021/looking-for-ios-kernel-bugs + https://nima.ninja/blog/2021/looking-for-ios-kernel-bugs + + blog + + + Fun + + iOS + + Kernel + + Bugs + + Memes + +
+ + + Obsidian: A second brain, for you, forever + + +

]]> + + In rare moments, an application is found which works great and also feels great to work with; Obsidian is one of those rare gems. It is a powerful knowledge base on top of a local folder of plain text Markdown... +
+ Fri, 29 Oct 2021 20:00:00 -0400 + https://nima.ninja/blog/2021/obsidian-a-second-brain-for-you-forever + https://nima.ninja/blog/2021/obsidian-a-second-brain-for-you-forever + + blog + + + Obsidian + + Knowledge Base + + Personal Knowledge Management + + Note Taking + + Markdown + +
+ + + Techlore: Privacy and Security for the masses + + + This Youtube channel has great tips for Privacy and Anonymity. + + +External Links + + + + Techlore Youtube Channel + + Wed, 20 Oct 2021 00:00:00 -0400 + https://nima.ninja/links/2021/techlore + https://nima.ninja/links/2021/techlore + + links + + + Privacy + + Anonymity + + Youtube Channel + + + + + Whonix: Software That Can Anonymize Everything You Do Online + + +

]]> + + Whonix Tor Gateway You can anonymize all of your web requests by using Whonix Tor Gateway2. You download and use a Whonix VirtualBox VM which is a hardened Linux distro and this VM can act as your Tor gateway for... +
+ Tue, 19 Oct 2021 20:00:01 -0400 + https://nima.ninja/blog/2021/whonix-tor-gateway + https://nima.ninja/blog/2021/whonix-tor-gateway + + blog + + + Whonix + + Privacy + + Anonymity + + Tor + + Linux + + Advanced + +
+ + + My Discord Server is Up and Running! + + + At last I did it! I had Discord account and even a simple server for some years but never put in the necessary effort to fully set up and customize my server. Finally I’ve put some time this week (maybe... + + Fri, 15 Oct 2021 00:00:00 -0400 + https://nima.ninja/blog/2021/my-discord-server-is-up-and-running + https://nima.ninja/blog/2021/my-discord-server-is-up-and-running + + blog + + + Discord + + Bots + + Zapier + + Social Networking + + + + + Up and Running with GitHub Pages + + +

]]> + + If you want to learn how to use Jekyll with Github pages to build your own website or blog, one of cool resources is these Up and Running series from Bill Raymond’s youtube page. He teaches great tips that can... +
+ Mon, 11 Oct 2021 00:00:00 -0400 + https://nima.ninja/links/2021/up-and-running-with-github-pages + https://nima.ninja/links/2021/up-and-running-with-github-pages + + links + + + Github + + Github Pages + + Jekyll + + Youtube Channel + + Static Site Generator + + Website + + Blog + + Open Source Software + + Tutorial + + Markdown + +
+ + + My OSCP Journey -  A Review + + +

]]> + + Great tips on how to pass the OSCP exam. + + +External Links + + + + My OSCP Journey - A Review +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/links/2021/my-oscp-journey-a-review + https://nima.ninja/links/2021/my-oscp-journey-a-review + + links + + + Penetration Testing + + Hacking + + Offsec + + Certifications + + OSCP + + Hack the Box + +
+ + + Why We Sleep: Unlocking the Power of Sleep and Dreams + + +

]]> + + Amazon Description “Why We Sleep is an important and fascinating book…Walker taught me a lot about this basic activity that every person on Earth needs. I suspect his book will do the same for you.” —Bill Gates A New York... +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/books/2021/why-we-sleep-unlocking-the-power-of-sleep-and-dreams + https://nima.ninja/books/2021/why-we-sleep-unlocking-the-power-of-sleep-and-dreams + + books + + + Neuroscience + + Sleep + + Top Science Book + +
+ + + Virus of the Mind: The New Science of the Meme + + +

]]> + + Amazon Description “Virus of the Mind is the first popular book devoted to the science of memetics, a controversial new field that transcends psychology, biology, anthropology, and cognitive science. Memetics is the science of memes, the invisible but very real... +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/books/2021/virus-of-the-mind-the-new-science-of-the-meme + https://nima.ninja/books/2021/virus-of-the-mind-the-new-science-of-the-meme + + books + + + Sociology + + Evolution + + Memetics + +
+ + + The Talent Code: Greatness Isn't Born. It's Grown. Here's How. + + +

]]> + + Amazon Description “What is the secret of talent? How do we unlock it? In this groundbreaking work, journalist and New York Times bestselling author Daniel Coyle provides parents, teachers, coaches, businesspeople—and everyone else—with tools they can use to maximize potential... +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/books/2021/the-talent-code-greatness-isnt-born-its-grown-heres-how + https://nima.ninja/books/2021/the-talent-code-greatness-isnt-born-its-grown-heres-how + + books + + + Neuroscience + + Personal Transformation + + Psychology + + Creativity + + Genius + +
+ + + The Selfish Gene: 40th Anniversary edition (Oxford Landmark Science) + + +

]]> + + Amazon Description “The million copy international bestseller, critically acclaimed and translated into over 25 languages. As influential today as when it was first published, The Selfish Gene has become a classic exposition of evolutionary thought. Professor Dawkins articulates a gene’s... +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/books/2021/the-selfish-gene + https://nima.ninja/books/2021/the-selfish-gene + + books + + + Evolution + + Richard Dawkins + + Top Science Book + + Top Book + +
+ + + Prometheus Rising + + +

]]> + + Amazon Description “Imagine trying to make sense of an amalgam of Timothy Leary’s eight neurological circuits, G.I. Gurdjieff’s self-observation exercises, Alfred Korzybski’s general semantics, Aleister Crowley’s magical theorems, and the several disciplines of Yoga; not to mention Christian Science, relativity,... +
+ Thu, 07 Oct 2021 00:00:00 -0400 + https://nima.ninja/books/2021/prometheus-rising + https://nima.ninja/books/2021/prometheus-rising + + books + + + Psychology + + Consciousness + + Spirituality + + Weird + +
+ + + NetworkChuck + + + He produces super cool youtube videos about different aspects of tech, He is so passionate about IT, Computer Networks and Technology, I like this guy! + + +External Links + + + + NetworkChuck Youtube Channel + + Wed, 06 Oct 2021 00:00:00 -0400 + https://nima.ninja/links/2021/networkchuck + https://nima.ninja/links/2021/networkchuck + + links + + + Network + + IT + + Youtube Channel + + Fun + + + + + Think and Grow Rich + + +

]]> + + Amazon Description “Think and Grow Rich - Over 80 Million Copies Sold This edition of Napoleon Hill’s classic Think and Grow Rich is a reproduction of Napoleon Hill’s personal copy of the first edition, the ONLY original version recommended by... +
+ Thu, 30 Sep 2021 00:00:00 -0400 + https://nima.ninja/books/2021/think-and-grow-rich + https://nima.ninja/books/2021/think-and-grow-rich + + books + + + Classic + + Personal Success + + Top Book + +
+ \ No newline at end of file