Hacking Articles
21K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
Burp Suite for Pentester: HackBar

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

HackBar is a Burp Suite extension that speeds up manual penetration testing by providing ready-to-use payload dictionaries for common web vulnerabilities, allowing testers to quickly insert payloads while analyzing HTTP requests. ()

πŸ“š Vulnerability Testing with HackBar

πŸ’‰ SQL Injection
πŸ” SQLi Login Bypass
⚑️ Cross-Site Scripting (XSS)
πŸ“‚ Local File Inclusion (LFI)
πŸ“„ XML External Entity (XXE)
πŸ“€ Unrestricted File Upload
πŸ’» OS Command Injection

πŸ“– Article:
https://hackingarticles.in/burp-suite-for-pentester-hackbar/
❀3
πŸ”₯ Ethical Hacking Proactive Training – Live & Practical πŸ”₯

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
πŸ‘1
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
SSH Penetration Testing (Port 22)

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

SSH (Secure Shell) is a cryptographic protocol used for secure remote login and command execution over unsecured networks. During penetration testing, misconfigurations or weak credentials in SSH services can allow attackers to gain unauthorized access. ()

πŸ“š Techniques Covered in This Guide

πŸ”Ž Enumeration with Nmap
πŸ” Password Cracking using Hydra
⚑️ Authentication using Metasploit
πŸ’» Running Commands on Remote Machine
πŸ” SSH Port Redirection
πŸ§ͺ Nmap SSH Brute Force Script
πŸ” Enumerating SSH Authentication Methods
πŸ”‘ Key-Based Authentication
πŸ›  Key-Based Authentication using Metasploit
πŸ“¦ Post Exploitation using Metasploit
🌐 Local Port Forwarding (Password Based)
πŸ” Local Port Forwarding (Key Based)

πŸ“– Article:
https://www.hackingarticles.in/ssh-penetration-testing-port-22/
❀4
WinRM Penetration Testing

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

WinRM (Windows Remote Management) is a Microsoft protocol used for remote system management and command execution. If misconfigured or protected with weak credentials, attackers can abuse WinRM to gain remote shell access and move laterally across Windows environments. ()

πŸ“š Techniques Covered in This Guide

βš™οΈ Lab Setup
πŸ”Ž Testing WinRM Connection
πŸ’» Connecting with Enter-PSSession
πŸ–₯ Remote Command Execution using winrs
πŸ“‘ PowerShell Remote Execution (Invoke-Command)
πŸ” Scanning WinRM Service with Nmap
πŸ” Identifying Authentication Methods
πŸ’₯ WinRM Login Brute Force (Metasploit)
⚑️ Password Spray using NetExec (nxc)
🐚 Remote Shell using Evil-WinRM
🧰 Exploiting WinRM using Metasploit
🐳 Connecting Remote Shell using Docker
πŸ“œ Connecting Remote Shell using Ruby Script

πŸ“– Article:
https://www.hackingarticles.in/winrm-penetration-testing/
❀1
Tcpdump Cheat Sheet for Pentesters

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Tcpdump is a powerful command-line packet analyzer used to capture and inspect network traffic. It is widely used for network troubleshooting, packet analysis, and security monitoring on Linux systems. ()

⚑️ Useful Tcpdump Commands

πŸ“‘ tcpdump -i eth0
πŸ”Ž tcpdump host 192.168.1.1
🌐 tcpdump port 80
πŸ“‚ tcpdump -w capture.pcap
πŸ“– tcpdump -r capture.pcap
🧠 tcpdump -i eth0 tcp
πŸ“Š tcpdump -n -vv
πŸ” tcpdump icmp
πŸ“ tcpdump src 192.168.1.5
πŸ“ tcpdump dst 192.168.1.5

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Tcpdump
❀1πŸ‘1
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
❀1
πŸ›‘ Penetration Testing on MySQL (Port 3306)

πŸ”— Twitter: https://lnkd.in/e7yRpDpY
πŸ“’ Telegram: https://t.me/hackinarticles

MySQL databases are widely used in web applications, but misconfigurations can expose critical data.

This guide covers:
πŸ”Ž MySQL Enumeration
πŸ”‘ Login testing & brute force
⚑️ Hydra attacks
🧰 Metasploit exploitation
πŸ“‚ Database extraction techniques

Read the full article πŸ‘‡
https://www.hackingarticles.in/penetration-testing-on-mysql-port-3306/
❀4
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
❀1
Web Application Docker Labs Cheat Sheet

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Docker-based vulnerable web applications are widely used by pentesters and security learners to practice web exploitation techniques in an isolated environment. Docker makes it easy to deploy vulnerable labs without installing multiple dependencies.

⚑️ Popular Web Application Docker Labs

πŸ› DVWA (Damn Vulnerable Web Application)
🍹 OWASP Juice Shop
🐐 OWASP WebGoat
🐝 bWAPP (Buggy Web App)
🐞 OWASP Mutillidae II
⚑️ DVNA (Damn Vulnerable Node Application)
🧩 Security Shepherd
🧠 Vulnerable Web Application Lab

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Web%20App%20Docker
❀4
Credential Dumping: GMSA

πŸ”₯ Telegram: https://t.me/hackinarticles

✴️ Twitter: https://x.com/hackinarticles

ReadGMSAPassword attack allows attackers to extract passwords of Group Managed Service Accounts (gMSA) from Active Directory when permissions are misconfigured, leading to credential abuse and potential domain compromise.

πŸ“š Key Techniques Covered

πŸ” Understanding gMSA & AD Attributes
🧠 Hunting Weak Permissions with BloodHound
πŸ”‘ Extracting gMSA Passwords
πŸ’‰ Pass-the-Hash (PtH) & Overpass-the-Hash
πŸ›  Tools: gMSADumper, NetExec, ntlmrelayx, ldap_shell
πŸ–₯ Windows Exploitation (GMSAPasswordReader)
πŸš€ Lateral Movement using Evil-WinRM

πŸ“– Article:
https://hackingarticles.in/readgmsapassword-attack/
❀4
Abusing AD Weak Permission Pre2K Compatibility

πŸ”₯ Telegram: https://t.me/hackinarticless
✴️ Twitter: https://x.com/hackinarticles

Pre2K Active Directory misconfigurations arise from legacy β€œPre-Windows 2000” settings that expose weak permissions, default credentials, and excessive access rightsβ€”allowing attackers to enumerate, escalate privileges, and even compromise domain controllers.

πŸ“š Topic Covered

🧩 Understanding Pre-Windows 2000 Compatibility
βš™οΈ Legacy AD Misconfigurations & Risks
πŸ” Enumeration using pre2k Tool
πŸ›  Enumeration using NetExec (nxc)
πŸ”‘ Identifying Default Computer Account Passwords
πŸ’‰ Exploiting Weak AD Permissions
πŸ”„ Changing Computer Account Passwords
πŸ–₯ Gaining Access via Evil-WinRM
πŸš€ Domain Compromise Scenario
πŸ›‘ Mitigation & Hardening Techniques

πŸ“– Article:
https://www.hackingarticles.in/pre2k-active-directory-misconfigurations/
❀2
Credential Dumping: Fake Services

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Credential Dumping using fake services is a technique where attackers deploy rogue servers to capture authentication attempts and steal credentials or hashes for further exploitation.

πŸ“š Topic Covered

πŸ“– Introduction
πŸ“‚ FTP
πŸ”Œ Telnet
πŸ–₯ VNC
πŸ“ SMB
🌐 HTTP Basic
πŸ“© POP3
πŸ“€ SMTP
🐘 PostgreSQL
πŸ—„ MSSQL
πŸ” HTTP NTLM
πŸ—ƒ MSSQL

πŸ“– Article:
https://www.hackingarticles.in/credential-dumping-fake-services/
❀6πŸ‘1
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
πŸ‘1
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
❀4
GitHub Dorks Cheat Sheet

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

GitHub Dorking is used by pentesters and bug bounty hunters to discover exposed secrets, API keys, credentials, and sensitive files inside public repositories. Since GitHub code is searchable, misconfigured repositories may unintentionally expose sensitive data.

⚑️ Useful GitHub Dorks

πŸ”‘ password filename:.env
πŸͺͺ api_key language:python
πŸ“„ filename:.env DB_PASSWORD
πŸ” filename:id_rsa
🌐 filename:config.php db_password
πŸ“¦ filename:docker-compose.yml password
🧠 extension:json "api_key"
πŸ“ filename:.git-credentials
πŸ“œ filename:settings.py SECRET_KEY
πŸͺ™ filename:.npmrc _authToken

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Github%20Dorks
❀2
🚨 Google Dorks Cheat Sheet for Pentesters

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Google Dorking is a reconnaissance technique used by security researchers and bug bounty hunters to discover sensitive files, login portals, exposed directories, and vulnerabilities indexed by search engines. ()

⚑️ Useful Google Dorks

πŸ”Ž site:target.com
πŸ“‚ intitle:"index of"
🧠 inurl:admin
πŸ“„ filetype:pdf site:target.com
πŸ” intitle:"login"
πŸ“ intext:"username" filetype:log
πŸ—„ filetype:xls "email"
πŸ“‘ inurl:phpinfo.php
🧾 inurl:/proc/self/cwd
πŸ“· inurl:view/index.shtml

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Google%20Dorks
❀1
Mimikatz Cheat Sheet for Pentesters

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Mimikatz is a well-known post-exploitation tool used to extract plaintext passwords, NTLM hashes, Kerberos tickets, and other credentials from Windows systems. It is widely used in Active Directory attacks, credential dumping, and privilege escalation. ()

⚑️ Useful Mimikatz Commands

πŸ” privilege::debug
πŸ”‘ token::elevate
🧠 sekurlsa::logonpasswords
πŸ“¦ sekurlsa::wdigest
πŸ“œ lsadump::sam
πŸ‘€ lsadump::lsa
πŸ”„ lsadump::dcsync
🎟 kerberos::list
πŸ‘‘ kerberos::golden
πŸ“‚ dpapi::cred

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Mimikatz
❀1
πŸš€ AI Penetration Testing Training (Live Online Program)

The future of cybersecurity is AI-driven β€” are you ready to test and secure it?

Ignite Technologies is launching an intensive AI Penetration Testing Training designed for security professionals, pentesters, red teamers, and researchers who want to understand how to attack and defend Large Language Models (LLMs) and AI systems.

πŸ”— Register Now: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

⚠️ Limited seats available.

🧠 What You’ll Learn

πŸ”Ή LLM Architecture & Security Principles
πŸ”Ή Data Security in AI Systems
πŸ”Ή Model & Infrastructure Security
πŸ”Ή OWASP Top 10 for LLMs
πŸ”Ή LLM Installation & Secure Deployment
πŸ”Ή Model Context Protocol (MCP)
πŸ”Ή Publishing Models using Ollama
πŸ”Ή Retrieval-Augmented Generation (RAG) Security

πŸ”₯ Offensive AI Security Modules

βœ”οΈ Prompt Injection & Indirect Injection Attacks
βœ”οΈ Exploiting LLM APIs (Real-World Bug Scenarios)
βœ”οΈ Password & Sensitive Data Leakage via AI
βœ”οΈ Excessive Privilege Exploitation
βœ”οΈ LLM Misconfigurations
βœ”οΈ Data Extraction Attacks
βœ”οΈ Content Manipulation in LLM Outputs
βœ”οΈ AI-based Enumeration Techniques

πŸ›‘ Defensive & Automation Focus

βœ… Securing AI Systems
βœ… System Prompt Security Implications
βœ… Automated Penetration Testing with AI
βœ… Making AI Applications Secure & Public-Ready

If you're already into Pentesting, Red Teaming, Bug Bounty, OSCP prep, or Offensive Security, this program will give you a cutting-edge advantage in AI security.

Secure your seat before registrations close.
❀5
AWS IAM: UpdateLoginProfile Abuse

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Misconfigured IAM permissions can lead to full account takeover. A low-privileged user with iam:UpdateLoginProfile can reset another user’s console password and gain unauthorized access.

⚑️ Attack Highlights
πŸ” Reset IAM user password
πŸ‘€ Take over high-privileged account
πŸš€ Privilege escalation to admin
πŸ“‚ Access sensitive AWS resources

πŸ’‘ This technique abuses weak IAM policies where excessive permissions are granted, allowing attackers to pivot and compromise the entire cloud environment

πŸ“– Article: https://www.hackingarticles.in/aws-iam-updateloginprofile-abuse/
Privacy Protection Checklist for Security Professionals

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Your browser, search engine, email, and even cloud storage can silently leak sensitive data.
This guide provides a practical privacy stack used by security researchers and privacy-focused professionals.

πŸ›‘ Covers:
🌐 Privacy-focused browsers
πŸ›œ Secure VPN services
🧩 DNS security & Ad-blockers
πŸ“§ Encrypted email providers
πŸ”‘ Password managers
πŸ”Ž Private search engines
πŸ’¬ Secure messaging applications
☁️ Encrypted cloud storage

Start reducing your digital footprint step-by-step and take back control of your online privacy.

πŸ“– Read the full guide:
https://www.hackingarticles.in/privacy-protection-checklist/
πŸ‘3❀1