Linux, Material de hacking y noticias
@Linux_and_hacking_material
1.47K
subscribers
246
photos
28
videos
3.36K
files
9.66K
links
Canal destinado a diversos contenidos: material de Linux, hacking y seguridad informática
Download Telegram
Join
Linux, Material de hacking y noticias
1.47K subscribers
Linux, Material de hacking y noticias
https://mega.nz/folder/HDQlkIaL#fX0vlAgvJEF6daDcI7xGaQ
mega.nz
File folder on MEGA
Linux, Material de hacking y noticias
https://github.com/CoolerVoid/HiddenWall
Linux, Material de hacking y noticias
https://github.com/soteria-security/HAFNIUM-IOC
GitHub
GitHub - soteria-security/HAFNIUM-IOC: A PowerShell script to identify indicators of exploitation of CVE-2021-26855, CVE-2021-26857…
A PowerShell script to identify indicators of exploitation of CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-26865 - soteria-security/HAFNIUM-IOC
Linux, Material de hacking y noticias
https://github.com/KathanP19/HowToHunt
GitHub
GitHub - KathanP19/HowToHunt: Collection of methodology and test case for various web vulnerabilities.
Collection of methodology and test case for various web vulnerabilities. - KathanP19/HowToHunt
Linux, Material de hacking y noticias
https://www.fireeye.com/blog/threat-research/2021/03/sunshuttle-second-stage-backdoor-targeting-us-based-entity.html
Google Cloud Blog
New SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452 | Mandiant | Google…
Linux, Material de hacking y noticias
https://grayhatwarfare.medium.com/how-to-search-urls-exposed-by-shortener-services-f68e199cd560
Medium
How to search URLs exposed by Shortener services
Often users shorten URLS that should remain private. It’s common for pentesters to search for sensitive urls through Shortened URLs …
Linux, Material de hacking y noticias
https://openai.com/blog/multimodal-neurons/
Openai
Multimodal neurons in artificial neural networks
We’ve discovered neurons in CLIP that respond to the same concept whether presented literally, symbolically, or conceptually. This may explain CLIP’s accuracy in classifying surprising visual renditions of concepts, and is also an important step toward understanding…
Linux, Material de hacking y noticias
https://github.com/vp777/evilFTP
GitHub
GitHub - vp777/surferFTP: SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients
SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients - GitHub - vp777/surferFTP: SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing th...
Linux, Material de hacking y noticias
https://m.youtube.com/watch?v=Vdc2KxLuyxo
YouTube
Analyzing The Microsoft Exchange Server Hafnium Email Hack and How to Patch
In this video walkthrough, we went over the recent Microsoft exchange vulnerability namely CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-27065 or the Hafnium Zero Day, and demonstrated how to test and patch them.
--
The summary with supporting…
Linux, Material de hacking y noticias
https://latesthackingnews.com/2021/03/08/dalfox-an-automated-xss-finder/
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Dalfox – An Automated XSS Finder
Dalfox is a fast, powerful parameter analysis and XSS scanner based on a DOM parser. Other than finding XSS it also has additional features that test for sqli,ssti,open-redirects. It is capable of finding reflected, stored,
Linux, Material de hacking y noticias
https://github.com/dwisiswant0/proxylogscan
GitHub
GitHub - dwisiswant0/proxylogscan: A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker…
A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as the admin (CVE-2021-26855). - dwisiswant0/proxylo...
Linux, Material de hacking y noticias
https://ismailtasdelen.medium.com/cross-site-scripting-xss-vulnerability-payload-list-1a212871d277
Medium
Cross Site Scripting ( XSS ) Vulnerability Payload List
PayloadBox
Linux, Material de hacking y noticias
https://github.com/googleprojectzero/0days-in-the-wild
GitHub
GitHub - googleprojectzero/0days-in-the-wild: Repository for information about 0-days exploited in-the-wild.
Repository for information about 0-days exploited in-the-wild. - googleprojectzero/0days-in-the-wild
Linux, Material de hacking y noticias
https://github.com/h4x0r-dz/CVE-2021-26855
GitHub
GitHub - h4x0r-dz/CVE-2021-26855
Contribute to h4x0r-dz/CVE-2021-26855 development by creating an account on GitHub.
Linux, Material de hacking y noticias
https://githacks.org/_xeroxz/theodosius
Linux, Material de hacking y noticias
https://www.praetorian.com/blog/reproducing-proxylogon-exploit/
Praetorian
Reproducing the Microsoft Exchange Proxylogon Exploit Chain
Introduction In recent weeks, Microsoft has detected multiple 0-day exploits being used to attack on-premises versions of Microsoft Exchange Server in a ubiquitous global attack. ProxyLogon is the name given to CVE-2021-26855, a vulnerability on Microsoft…
Linux, Material de hacking y noticias
https://github.com/sophoslabs/metasploit_gather_exchange
GitHub
GitHub - sophoslabs/metasploit_gather_exchange: Metasploit Post-Exploitation Gather module for Exchange Server
Metasploit Post-Exploitation Gather module for Exchange Server - sophoslabs/metasploit_gather_exchange
Linux, Material de hacking y noticias
https://hausec.com/2021/03/04/creating-a-red-blue-team-home-lab/
hausec
Creating a Red & Blue Team Homelab
Over the years of penetration testing, red teaming, and teaching, I (and I’m sure a lot of others) are often asked how to get started in infosec. More specifically, how to become a pentester/…
Linux, Material de hacking y noticias
https://securitylab.github.com/research/one_day_short_of_a_fullchain_android/
Linux, Material de hacking y noticias
https://casvancooten.com/posts/2020/11/windows-active-directory-exploitation-cheat-sheet-and-command-reference/
Cas van Cooten
Windows & Active Directory Exploitation Cheat Sheet and Command Reference
Last update: November 3rd, 2021
Updated November 3rd, 2021: Included several fixes and actualized some techniques. Changes made to the Defender evasion, RBCD, Domain Enumeration, Rubeus, and Mimikatz sections. Fixed some whoopsies as well
🙃
.
Updated June…