Hacking Articles
21K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
โค2๐Ÿ‘1
โค3
๐Ÿš€ OSEP Exam Practice Training (Online) โ€“ Registration Open!

Ready to level up your offensive security & red team skills?

Join Ignite Technologiesโ€™ CTF-Based OSEP Practice Program and train in a real-world attack-driven environment designed for serious cybersecurity professionals.

๐Ÿ”— Register Now
https://forms.gle/bowpX9TGEs41GDG99

๐Ÿ’ฌ WhatsApp
https://wa.me/message/HIOPPNENLOX6F1

๐Ÿ“ง Email
info@ignitetechnologies.in

๐Ÿ“š Training Modules

๐Ÿš€ Introduction
๐Ÿ” Advanced Information Gathering
๐ŸŽฏ Initial Access & Client-Side Attacks
๐Ÿ›ก Bypassing Security Controls
๐ŸชŸ Windows Privilege Escalation
๐Ÿง Linux Privilege Escalation
๐Ÿงญ Active Directory Enumeration
๐Ÿ” Lateral Movement
๐Ÿฐ Active Directory Attacks
๐ŸŒ Web Application Attacks
๐Ÿ•ณ Tunneling & Pivoting
๐Ÿงฌ Post-Exploitation & Persistence
๐Ÿฅท Defense Evasion & OPSEC
๐Ÿงช Custom Malware & Tool Development
๐Ÿ’ฅ Advanced Exploitation
๐Ÿ“ Reporting & Documentation

๐ŸŽฏ Ideal for professionals preparing for advanced offensive security certifications and red team roles.

โš ๏ธ Limited Seats Available โ€“ Register Now!
โค3
๐Ÿ” Credential Dumping โ€“ Red Team Cheatsheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

A practical Credential Dumping reference guide for Red Teamers, Penetration Testers, and Security Researchers.
This cheatsheet explains multiple credential access techniques used during post-exploitation and Active Directory attacks.

โšก๏ธ Topics Covered:

๐Ÿ“ก Wireless Credential Extraction
๐Ÿ—‚ Group Policy Preferences (GPP) Passwords
๐Ÿ”‘ Windows Credential Manager
๐Ÿง  WDigest Credential Storage
๐Ÿงฉ Security Support Provider (SSP)
๐Ÿ—„ SAM Database Extraction
๐Ÿ“ฆ Installed Applications Credential Discovery
๐Ÿข NTDS.dit Domain Credential Dumping
๐ŸŽฃ Phishing Windows Credentials
๐Ÿ›ก Local Security Authority (LSA / LSASS.EXE) Dumping
๐Ÿ“‹ Clipboard Credential Leakage
๐Ÿ” DCSync Attack
๐Ÿ” LAPS Password Extraction
๐Ÿ’พ Domain Cached Credentials
โš™๏ธ Fake Services Credential Capture
๐Ÿ”“ Windows Autologon Password
๐Ÿงฌ Internal Monologue Attack
๐Ÿ”‘ Reversible Password Encryption
๐Ÿ‘ฅ Group Managed Service Accounts (gMSA)
๐Ÿ“ Active Directory User Comment Credential Leakage

๐ŸŽฏ Useful for Red Team operations, Active Directory assessments, and post-exploitation phases.

๐Ÿ”— GitHub Repository:
https://github.com/Ignitetechnologies/Credential-Dumping
โค3
๐ŸชŸ Windows Privilege Escalation โ€“ Red Team Cheatsheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

A practical Windows Privilege Escalation reference guide for Red Teamers, Penetration Testers, and Security Researchers.
Learn common techniques used to escalate privileges from low-privileged user to SYSTEM or Domain Admin during real-world assessments.

โšก๏ธ Topics Covered:

๐Ÿ”“ AlwaysInstallElevated Misconfiguration
๐Ÿ—„ SeBackupPrivilege Abuse
๐ŸŒ DnsAdmins โ†’ Domain Admin Escalation
๐ŸŽญ SeImpersonatePrivilege Exploitation
๐Ÿ’พ HiveNightmare Vulnerability
๐Ÿ” Registry Run Keys (Logon Autostart Execution)
๐Ÿ“‚ Startup Folder Persistence
๐Ÿ”‘ Stored Credentials (Runas)
โš™๏ธ Weak Registry Permissions
๐Ÿงพ Unquoted Service Path
๐Ÿ–ฅ Insecure GUI Applications
๐Ÿ›  Weak Service Permissions
โฑ๏ธ Scheduled Task / Job Abuse (T1053.005)
๐Ÿงฌ Kernel Exploits
๐Ÿ‘ค SamAccountSpoofing (CVE-2021-42278)
๐Ÿ–จ SpoolFool Exploit
๐Ÿ–จ PrintNightmare Vulnerability
๐Ÿ‘ฅ Server Operators โ†’ Privilege Escalation

๐ŸŽฏ Useful for Windows post-exploitation, Active Directory attacks, and Red Team operations.

๐Ÿ”— GitHub Repository:
https://github.com/Ignitetechnologies/Windows-Privilege-Escalation
โค1๐Ÿ‘1
๐Ÿง  Cyber Security Mindmaps & Cheat Sheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

A curated collection of Cyber Security Mindmaps designed to help students, pentesters, and security professionals visualize tools, technologies, frameworks, and attack methodologies in a structured way.

These mindmaps simplify complex cybersecurity concepts and create a clear learning roadmap from beginner to advanced levels.

โšก๏ธ What Youโ€™ll Find:

๐Ÿง  Burp Suite
๐ŸŒ Censys
โ˜๏ธ Cloud Security Framework
๐Ÿ“ฆ Container Security
โš”๏ธ Crackmapexec
๐Ÿ’€ Cyber Hack
๐ŸŽฏ Cyber Security Attack
๐Ÿ›ก Cybersec Technologies
โš™๏ธ DevOps
๐Ÿณ Docker CheatSheet
๐Ÿงฌ Empire
๐Ÿ”Ž Enumeration
๐Ÿš€ Feroxbuster
๐ŸฆŠ Firefox Pentest Addons
๐Ÿงพ Forensics
๐Ÿ” GitHub Dorks
๐ŸŒ Google Dorks
๐Ÿ”Ž Google Search Operators
โš™๏ธ GTFOBins
๐ŸŽฎ HTB
๐ŸŒ HTTP Status Code
๐Ÿ“ก ICMP
๐Ÿงฌ IDA Pro
๐Ÿ“œ ISO Control
๐Ÿ›  Impacket
๐Ÿ”‘ John
๐Ÿ’ฃ Metasploit
๐Ÿง  Mimikatz
๐ŸŽฏ MITRE ATT&CK
๐Ÿ“ก Nmap
๐Ÿ•ต๏ธ OSINT
๐Ÿ“‚ OWASP
๐Ÿ” Privacy Tools
๐Ÿ’ฐ Ransomware
๐ŸŽฏ Red Team Dorks
๐ŸŒ SSRF Tools
๐Ÿ›ก Security 360
โš™๏ธ Security Automation
๐Ÿ”Ž Search Engine for Pentester
๐ŸŒ Shodan
๐ŸŽญ Social Engineering
๐Ÿ’‰ Sqlmap
๐ŸŒ Subdomain Enumeration
๐Ÿ“ก Tcpdump
๐Ÿงฐ Tools
๐ŸŽฏ TryHackMe
๐Ÿ“ก Tshark
๐Ÿ” Vulnerability Scanners
๐Ÿงช VulnHub
๐Ÿณ Web App Docker
๐ŸชŸ Windows Privileges
๐Ÿ“ถ Wireless Pentest Tools
๐Ÿฆˆ Wireshark
๐Ÿ’ฅ XSS Tools
๐Ÿšจ Zero-Day CVEs (2023)
๐Ÿ“ก Aircrack
โšก๏ธ FFUF
๐Ÿ”Ž Gobuster
๐Ÿ”‘ Hashcat
๐ŸŒ HTTPX
๐Ÿ’ฃ Hydra
๐Ÿ” Medusa
๐Ÿ“œ NIST
๐ŸŽฏ Wfuzz

๐ŸŽฏ Useful for students, bug bounty hunters, red teamers, and cybersecurity professionals building a structured learning roadmap.

๐Ÿ”— GitHub Repository:
https://github.com/Ignitetechnologies/Mindmap
โค6
๐Ÿšจ Credential Dumping: LAPS Abuse

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

In Windows environments, Local Administrator Password Solution (LAPS) stores local administrator passwords inside Active Directory attributes. If an attacker gains permission to read these attributes, they can retrieve the credentials and perform lateral movement across the network.

โšก๏ธ Key Tools for LAPS Enumeration & Dumping
๐Ÿ›  Impacket
โš”๏ธ NXC Tool
๐Ÿ PyLaps
๐Ÿ“ฆ LAPSDumper
๐Ÿฉธ BloodyAD
๐Ÿ”Ž ldapsearch
๐Ÿ’ฃ Metasploit: ldap_query
๐Ÿ”— impacket-ntlmrelayx
๐Ÿ–ฅ ldap_shell
๐Ÿ“œ PowerShell
๐ŸŒ NetTools
๐Ÿ’Ž SharpLAPS
๐Ÿš€ Metasploit: enum_laps
๐Ÿง  PowerView

๐Ÿ“– Article: https://www.hackingarticles.in/credential-dumping-laps/
โค1
๐Ÿšจ Credential Dumping: Phishing Windows Credentials

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Phishing attacks are commonly used to capture Windows credentials by tricking users into entering their login details on malicious prompts or fake login screens. Once obtained, attackers can reuse these credentials to gain unauthorized access and move laterally inside the network.

โšก๏ธ Key Tools Used for Windows Credential Phishing
๐Ÿ›  Metasploit Framework
๐ŸŽฃ phish_windows_credentials
๐Ÿ–ฅ FakeLogonScreen
๐Ÿ” SharpLocker
โš”๏ธ PowerShell Empire
๐Ÿ“ฆ Collection/prompt
๐Ÿž Collection/toasted
๐Ÿ’‰ Koadic
๐Ÿ“ฉ Password_box
๐Ÿ“œ PowerShell
๐Ÿงช Invoke-CredentialsPhish.ps1
๐Ÿ”‘ Invoke-LoginPrompt.ps1
๐ŸŽญ Lockphish

๐Ÿ“– Article: https://www.hackingarticles.in/credential-dumping-phishing-windows-credentials/
๐Ÿšจ Credential Dumping: Applications

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Many applications store credentials, authentication tokens, or configuration secrets locally on a system. Attackers can extract these stored credentials from application files or memory to gain unauthorized access and move laterally across the network. ()

โšก๏ธ Key Applications Targeted for Credential Dumping
๐ŸŒ FileZilla
๐Ÿ—„ WinSCP
๐Ÿ’ป PuTTY
๐Ÿ“ก mRemoteNG
๐Ÿ›  OpenVPN
๐Ÿ“‚ Remote Desktop Connection Manager (RDCMan)
๐Ÿงฐ VNC
๐Ÿ” KeePass

๐Ÿ“– Article: https://www.hackingarticles.in/credential-dumping-applications/
โค2๐Ÿ‘1
๐Ÿ”ฅ OSCP+ / CTF Exam Practice Training (Online) โ€“ Enroll Now! ๐Ÿš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologiesโ€™ Exclusive Capture The Flag (CTF) Practice Program โ€” designed to simulate real exam scenarios and real-world attack environments.

๐Ÿ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

๐Ÿ’ฌ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

๐Ÿ“ง Email:
info@ignitetechnologies.in

๐Ÿ“š What Youโ€™ll Cover:

๐Ÿง  Introduction to Exam Strategy & Methodology
๐ŸŒ Information Gathering & Enumeration
๐Ÿงฑ Vulnerability Scanning & Analysis
๐Ÿ”“ Windows Privilege Escalation
๐Ÿง Linux Privilege Escalation
๐Ÿ›ก Client-Side Attacks
๐ŸŒ Web Application Attacks
๐Ÿงฌ Password Attacks & Credential Exploitation
๐Ÿง  Tunneling & Pivoting Techniques
๐Ÿฐ Active Directory Attacks
๐Ÿ’ฃ Exploiting Public Exploits Effectively
๐Ÿ“‹ Professional Report Writing

๐ŸŽฏ This training is ideal for:
โ€ข OSCP+ aspirants
โ€ข CTF players aiming to go professional
โ€ข Pentesters wanting structured exam practice
โ€ข Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. ๐Ÿš€
โค5๐Ÿ‘1
Android Meterpreter Commands Cheatsheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Android Meterpreter is a powerful payload used in the Metasploit Framework to interact with compromised Android devices. It allows pentesters to access device information, capture data, and perform post-exploitation tasks.

โšก๏ธ Key Android Meterpreter Commands

๐Ÿ“ฑ dump_contacts
๐Ÿ’ฌ dump_sms
๐Ÿ“ž dump_calllog
๐Ÿ“ท webcam_snap
๐ŸŽค record_mic
๐Ÿ“ geolocate
๐Ÿ“‚ ls
๐Ÿ“ cd
๐Ÿ“ฅ download
๐Ÿ“ค upload
๐Ÿ“ฒ send_sms
๐Ÿ“ก sysinfo
๐Ÿ”‹ check_root
๐Ÿ“ฆ app_list
๐Ÿง  getpid
๐Ÿ”Ž ps

๐Ÿ“š Metasploit Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Metasploit
โค1
๐Ÿšจ Wireshark Cheat Sheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Wireshark is a powerful network protocol analyzer used to capture and inspect network traffic. It helps security professionals analyze packets, detect suspicious activity, and troubleshoot network issues.

โšก๏ธ Useful Wireshark Filters & Commands

๐ŸŒ ip.addr == 192.168.1.1
๐Ÿ“ก tcp.port == 80
๐Ÿ” tcp.port == 443
๐Ÿ“ง smtp
๐Ÿ“ ftp
๐Ÿง  dns
๐Ÿ” http.request
๐Ÿ“ฅ tcp.flags.syn == 1
๐Ÿ“ค tcp.flags.ack == 1
โš ๏ธ icmp
๐Ÿ•ต๏ธ arp
๐Ÿ“Š frame contains "password"

These filters help analysts quickly identify protocol activity, suspicious traffic, and potential security incidents.

๐Ÿ“š Wireshark Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Wireshark
โค1๐Ÿ‘1
Social Engineering Attack Cheat Sheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Social Engineering is a technique used to manipulate people into revealing confidential information or performing actions that compromise security. It is commonly used as an initial access vector in many cyber attacks.

โšก๏ธ Common Social Engineering Attacks

๐ŸŽฃ Phishing
๐Ÿ“ฑ Smishing (SMS Phishing)
๐Ÿ“ž Vishing (Voice Phishing)
๐ŸŽญ Pretexting
๐ŸŽ Baiting
๐Ÿชค Quid Pro Quo
๐Ÿ‘€ Shoulder Surfing
๐Ÿ—‘ Dumpster Diving
๐Ÿง‘โ€๐Ÿ’ป Impersonation
๐Ÿ”— Malicious Links

Understanding these techniques helps security professionals and organizations identify, prevent, and mitigate social engineering attacks.

๐Ÿ“š Social Engineering Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Social%20Engineering
๐Ÿ‘1
๐Ÿ”ฅ OSCP+ / CTF Exam Practice Training (Online) โ€“ Enroll Now! ๐Ÿš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologiesโ€™ Exclusive Capture The Flag (CTF) Practice Program โ€” designed to simulate real exam scenarios and real-world attack environments.

๐Ÿ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

๐Ÿ’ฌ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

๐Ÿ“ง Email:
info@ignitetechnologies.in

๐Ÿ“š What Youโ€™ll Cover:

๐Ÿง  Introduction to Exam Strategy & Methodology
๐ŸŒ Information Gathering & Enumeration
๐Ÿงฑ Vulnerability Scanning & Analysis
๐Ÿ”“ Windows Privilege Escalation
๐Ÿง Linux Privilege Escalation
๐Ÿ›ก Client-Side Attacks
๐ŸŒ Web Application Attacks
๐Ÿงฌ Password Attacks & Credential Exploitation
๐Ÿง  Tunneling & Pivoting Techniques
๐Ÿฐ Active Directory Attacks
๐Ÿ’ฃ Exploiting Public Exploits Effectively
๐Ÿ“‹ Professional Report Writing

๐ŸŽฏ This training is ideal for:
โ€ข OSCP+ aspirants
โ€ข CTF players aiming to go professional
โ€ข Pentesters wanting structured exam practice
โ€ข Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. ๐Ÿš€
โค2๐Ÿ‘1
Shodan Cheat Sheet for Pentesters

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Shodan is a powerful search engine that discovers internet-connected devices such as servers, routers, webcams, IoT devices, and industrial systems. Unlike Google that indexes websites, Shodan indexes devices, services, and open ports across the internet. ()

โšก๏ธ Useful Shodan Search Filters

๐Ÿ”Ž port:22
๐ŸŒ country:US
๐Ÿข org:"Amazon"
๐Ÿ’ป os:Windows
๐Ÿ“ฆ product:Apache
๐ŸŒ hostname:example.com
๐Ÿ“ก net:192.168.1.0/24
๐Ÿท city:London
๐Ÿง  vuln:CVE-2021-44228
๐Ÿ” ssl:true

๐Ÿง  Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Shodan
โค1
Subdomain Enumeration Cheat Sheet

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Subdomain Enumeration is the process of discovering subdomains associated with a target domain during reconnaissance. It helps pentesters identify hidden services, development environments, APIs, and misconfigured systems that may expose vulnerabilities. ()

โšก๏ธ Popular Subdomain Enumeration Tools

๐Ÿ”Ž Subfinder
๐Ÿ›ฐ Amass
๐Ÿ“ก Assetfinder
๐Ÿง  Sublist3r
๐ŸŒ Findomain
๐Ÿ“‚ DNSenum
๐Ÿ“ DNSrecon
๐Ÿ’ฃ Gobuster (DNS Mode)
โšก๏ธ FFUF (DNS Fuzzing)
๐Ÿงฉ Knockpy

๐Ÿง  Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Subdomain%20Enumeration
โค3๐Ÿ‘1
๐Ÿ”ฅ Ethical Hacking Proactive Training โ€“ Live & Practical ๐Ÿ”ฅ

Ready to build real-world cybersecurity skills with hands-on experience?

๐Ÿš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure โ€” at an affordable price.

๐Ÿ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

๐Ÿ’ฌ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

๐Ÿ“ง Email:
info@ignitetechnologies.in

๐ŸŽฏ Book Your Demo Session Today!

๐Ÿ“˜ What Youโ€™ll Learn:

โœ… Introduction to Ethical Hacking
โœ… Old School Learning Methodology
โœ… Networking Fundamentals
โœ… Reconnaissance (Footprinting, Scanning & Enumeration)
โœ… System Hacking
โœ… Post Exploitation & Persistence
โœ… Web Server Penetration Testing
โœ… Website Hacking Techniques
โœ… Malware Threats & Analysis
โœ… Wireless Network Security
โœ… Cryptography & Steganography
โœ… Sniffing Attacks
โœ… Denial of Service (DoS)
โœ… Evading IDS, Firewalls & Honeypots
โœ… Social Engineering Techniques
โœ… Mobile Platform Security

๐Ÿ’ก Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
๐Ÿ‘1
Censys Search Engine for Pentesters

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles
โœด๏ธ Twitter: https://x.com/hackinarticles

Censys is a powerful internet scanning and reconnaissance platform used by security researchers and penetration testers to discover exposed assets, services, and vulnerabilities across the internet.

โšก๏ธ Useful Censys Search Queries

๐ŸŒ services.port: 21
๐Ÿ” services.port: 22
๐Ÿ’ป services.port: 3389
๐Ÿ“ก services.service_name: HTTP
๐Ÿ”Ž services.tls.certificates.leaf_data.subject.common_name: example.com
๐Ÿง  services.software.product: Apache
๐Ÿ“Š location.country: "India"
โš ๏ธ services.port: 23
๐Ÿ›ฐ autonomous_system.name: "Amazon"

๐Ÿ“š Mindmap: https://github.com/Ignitetechnologies/Mindmap/tree/main/Censys

These queries help pentesters perform internet-wide reconnaissance and asset discovery.