Buna Byte Cybersecurity
841 subscribers
273 photos
10 videos
2 files
192 links
Learn, Hack, and Defend

Website: bunabyte.com
YouTube: youtube.com/@bunabyte
BunaByte Files: @hacker_habesha

πŸ“§ Contact Email: info@bunabyte.com
Download Telegram
🦢Foot Printing

πŸ”ΉDomain Name
πŸ”ΉIP Adress
πŸ”ΉPhone Numbers
πŸ”ΉEmail Address
πŸ”ΉEmployees Information
πŸ”ΉNamespaces

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀3πŸ‘1
Awesome Github Scripts & Tools | Part #1

Article : https://lnkd.in/d-JK8MMn

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘2❀1πŸ”₯1
πŸ›‘Cyber security Acronyms

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ”₯1πŸ₯°1
πŸŸ’βš”οΈCommon Types of Password Attacks

πŸ”ΉBrute Force Attack
πŸ”ΉDictionary Attack
πŸ”ΉRainbow Table Attack
πŸ”ΉSocial Engineering Attacks
πŸ”ΉCredential Stuffing Attack

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀4πŸ”₯1πŸ‘1
🟒Common Types Of Wireless Attacks

πŸ”ΉPacket Sniffing
πŸ”ΉRogue Access Point
πŸ”ΉJamming
πŸ”ΉEvil Twin
πŸ”ΉWar Driving
πŸ”ΉBluejacking
πŸ”ΉBluesnarfing
πŸ”ΉWar Chalking
πŸ”ΉWPS Attack

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘3πŸ‘1
🟒Types of Cyber Attacks

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘4❀1πŸ₯°1
🧬The DNS System Hierarchy

1️⃣Client
2️⃣DNS Cache
3️⃣DNS Resolver
4️⃣Root Server
5️⃣TLD Server
6️⃣Authoratative Server

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ₯°4❀1πŸ”₯1
🎭Create a fake Access Point

πŸ“Think twice before connecting to a free public wireless hotspot at a coffee shop, airport or hotel. Ever wondered if the public Wi-Fi you just connected to is safe or if it could be an Evil Twin hotspot?

πŸ”—https://en.iguru.gr/dimiourgiste-ena-pseftiko-access-point/

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ‘1πŸ₯°1
Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘2❀1πŸ₯°1
πŸ’£DDoS Tools

πŸ”ΉAnevicon - Powerful UDP-based load generator, written in Rust.
πŸ”—https://github.com/rozgo/anevicon

πŸ”ΉD(HE)ater - D(HE)ater sends forged cryptographic handshake messages to enforce the Diffie-Hellman key exchange.
πŸ”—https://github.com/Balasys/dheater

πŸ”ΉHOIC - Updated version of Low Orbit Ion Cannon, has 'boosters' to get around common counter measures.
πŸ”—https://sourceforge.net/projects/high-orbit-ion-cannon/

πŸ”ΉLow Orbit Ion Canon (LOIC) - Open source network stress tool written for Windows.
πŸ”—https://github.com/NewEraCracker/LOIC

πŸ”ΉMemcrashed - DDoS attack tool for sending forged UDP packets to vulnerable Memcached servers obtained using Shodan API.
πŸ”—https://github.com/649/Memcrashed-DDoS-Exploit

πŸ”ΉSlowLoris - DoS tool that uses low bandwidth on the attacking side.
πŸ”—https://github.com/gkbrk/slowloris

πŸ”ΉT50 - Faster network stress tool.
πŸ”—https://gitlab.com/fredericopissarra/t50/

πŸ”ΉUFONet - Abuses OSI layer 7 HTTP to create/manage 'zombies' and to conduct different attacks using; GET/POST, multithreading, proxies, origin spoofing methods, cache evasion techniques, etc.
πŸ”—https://github.com/epsylon/ufonet

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ”₯1πŸ₯°1
🎣Phishing Email Check

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ‘1
❀2πŸ”₯1πŸ‘1
Here is another Training and Internship opportunity πŸš€ Apply here πŸ‘‡πŸ‘‡

https://nas.io/cybersecuredindia
πŸ‘2πŸ₯°1πŸ‘1
πŸͺHTTP Cookie Explained

πŸ”ΉWhat?
πŸ”ΉHow it works?
πŸ”ΉSet-Cookie
πŸ”ΉCookie
πŸ”ΉPurposes

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ‘1πŸ₯°1
πŸ’‰The Ultimate SQLmap Tutorial: Master SQL Injection and Vulnerability Assessment!

πŸ“SQL Injection is a type of cyber attack where malicious actors exploit vulnerabilities in web applications to inject malicious SQL code into backend databases. This can lead to the exposure of sensitive data, unauthorized access to systems, and even complete system compromise.

SQLmap is a powerful open-source tool used to automate the process of detecting and exploiting SQL Injection vulnerabilities in web applications. It is a command-line tool that can be used to enumerate databases, extract data, and even execute operating system commands on the underlying system.

πŸ”—https://en.hacks.gr/2023/12/15/the-ultimate-sqlmap-tutorial-master-sql-injection-and-vulnerability-assessment/

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
❀2πŸ”₯1πŸ‘1
🟒WEB APPLICATION SECURITY TESTING COURSES

▫️Web Application Security Testing Encoding, Filtering & Evasion Basics (4.36GB)
▫️Web Application Penetration Testing File & Resource Attacks (4.61GB)
▫️Web Application Security Testing Web Service Security Testing (3.37GB)
▫️Web Application Security Testing Testing for Common Attacks (3.23GB)
▫️Web Application Security Testing CMS Security Testing (6.31GB)

πŸ”—https://mega.nz/folder/byp2CIra#Jvj3A1qZCgUFeawGL_3Wxg

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘2❀1πŸ₯°1
🟒⚑Automatic Vulnerability Scanning for APIs Using OWASP ZAP (crAPI as an exmaple)

πŸ•΅οΈVulnerability Scanning is the technique with which we will try to find vulnerabilities in the system and/or web application, API, Mobile App, using some sort of an automated scanner to get security misconfigurations.

βš’οΈthere are many vulnerability scanners that are great tools to pentesters. Such as Acunetix, Netsparker, Nessus, Openvas, Burp Suite Professional, etc. But in this article we will be using the free and opensource OWASP ZAP as our Vulnerability Scanner.

βš™οΈAPIs are a bit different than normal Web Applications and sometimes using Automated tools like Nikto won’t show us any good results.

πŸ”—https://en.hacks.gr/2023/12/15/automatic-vulnerability-scanning-for-apis-using-owasp-zap-crapi-as-an-exmaple/

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘2❀1🀩1
⛏Virtual Host Enumeration for Uncovering Hidden Subdomains

πŸ“Tools and Techniques for efficient virtual host discovery

πŸ”—https://en.hacks.gr/2023/12/12/virtual-host-enumeration-for-uncovering-hidden-subdomains/

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘5❀1πŸ‘1
⚑️Bypass SSL Pinning for Flutter

πŸ“Flutter is an open source framework by Google for building beautiful, natively compiled, multi-platform applications from a single codebase.

When Flutter launched in 2018, it mainly supported mobile app development. Flutter now supports application development on six platforms: iOS, Android, the web, Windows, MacOS, and Linux.

πŸ”—https://en.hacks.gr/2023/12/19/bypass-ssl-pinning-for-flutter/

Join:🟒@hacker_habeshaπŸ‡ͺπŸ‡Ή
πŸ‘4❀1πŸ₯°1