Re: [FD] Banknotes Misproduction security & biometric weakness

2018-02-06 Thread InterN0T via Fulldisclosure
Exactly how many people are using these banknotes for "fake fingerprints" with their phone? The reason why you use your own fingerprint, and not a standardized hologram fingerprint from a Euro bank note, is so that only your fingerprint can unlock your phone for example. This whole advisory

[FD] Virtual Postage (VPA) - Remote Code Execution via MITM

2017-07-21 Thread InterN0T via Fulldisclosure
# Exploit Title: Virtual Postage (VPA) - Remote Code Execution via MITM # Date: 20/Jul/17 # Exploit Author: MaXe # Vendor Homepage: https://play.google.com/store/apps/details?id=a2.virtualpostage.com [http://archive.is/EdtJT] # Software Link: N/A # Screenshot: N/A # Version: 1.0 # Tested on:

[FD] SKILLS.com.au Industry App - Remote Code Execution via MITM

2017-07-21 Thread InterN0T via Fulldisclosure
# Exploit Title: SKILLS.com.au Industry App - Remote Code Execution via MITM # Date: 20/Jul/17 # Exploit Author: MaXe # Vendor Homepage: https://play.google.com/store/apps/details?id=a3.skills.com [http://archive.is/NRlNP] # Software Link: N/A # Screenshot: N/A # Version: 1.0 # Tested on: Android

[FD] Orion Elite Hidden IP Browser Pro - All Versions - Multiple Known Vulnerabilities

2017-07-18 Thread InterN0T via Fulldisclosure
# Exploit Title: Orion Elite Hidden IP Browser Pro - All Versions - Multiple Known Vulnerabilities # Date: 14/Jul/17 # Exploit Author: MaXe # Vendor Homepage: http://www.orionbrowser.com && https://www.linkedin.com/company-beta/18034392/ &&

[FD] Australian Education App - Remote Code Execution

2017-06-30 Thread InterN0T via Fulldisclosure
# Exploit Title: Australian Education App - Remote Code Execution # Date: 30/Jun/17 # Exploit Author: MaXe # Vendor Homepage: https://play.google.com/store/apps/details?id=a1.bestsafebrowser2.com # Software Link: See APK archive websites # Screenshot: Refer to

[FD] eVestigator Forensic PenTester v1 - Remote Code Execution via MITM

2017-06-30 Thread InterN0T via Fulldisclosure
# Exploit Title: eVestigator Forensic PenTester v1 - Remote Code Execution via MITM # Date: 30/Jun/17 # Exploit Author: MaXe # Vendor Homepage: https://play.google.com/store/apps/details?id=penetrationtest.eVestigator.com # Software Link: See APK archive websites # Screenshot: Refer to