Hacking Articles
21K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
🚨 Windows Privilege Escalation: Insecure GUI Application

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Insecure GUI Applications can lead to privilege escalation when misconfigured apps run with higher privileges and allow execution of system commands. ()

πŸ“˜ Introduction to Insecure GUI Applications
❓ How Misconfigured GUI Apps Lead to Privilege Escalation
πŸ–₯ Applications Running as Administrator
βš™οΈ Lab Setup (Windows + Vulnerable Application)
πŸ“‚ Identifying High-Privilege Applications
πŸ” Enumerating Running Processes (tasklist /V)
πŸ›  Abusing GUI Application Features
πŸ“Ÿ Using β€œOpen File” Functionality
πŸ’£ Spawning cmd.exe with Elevated Privileges
πŸ‘€ Creating New Admin Users via Elevated Shell
⚑️ Privilege Comparison (User vs Application)

⚑️ If a GUI app runs with admin rights and allows file execution, attackers can break out to a privileged shell, leading to full system compromise. ()

πŸ”— Read Full Guide: https://hackingarticles.in/windows-privilege-escalation-insecure-gui-application/
❀2
🚨 Windows Privilege Escalation: Weak Registry Permission

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Weak Registry Permissions in Windows allow attackers to modify service-related registry keys and execute malicious binaries, leading to privilege escalation. ()

πŸ“˜ Introduction to Windows Registry
❓ What are Registry Keys & Hives
πŸ“‚ Weak Registry Permission Explained
βš™οΈ Lab Setup (Windows + Vulnerable Service)
πŸ” Enumerating Weak Registry Keys
πŸ§ͺ Accesschk.exe
πŸ“Ÿ PowerShell (Get-Acl)
🧬 WinPEAS Automation
πŸ“‚ Identifying Service ImagePath
πŸ’£ Modifying Registry for Exploitation
πŸ“₯ Uploading Malicious Executable
🎯 Gaining NT AUTHORITY\SYSTEM Shell
⚑️ Service Restart for Payload Execution

⚑️ If users have write access to service registry keys, attackers can hijack the service path and execute arbitrary code with SYSTEM privileges. ()

πŸ”— Read Full Guide: https://hackingarticles.in/windows-privilege-escalation-weak-registry-permission/
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
❀1
πŸ”₯ Ethical Hacking Proactive Training – Live & Practical πŸ”₯

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
❀2
Local Port Forwarding: A Detailed Guide

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Local port forwarding allows attackers to securely access internal services by redirecting traffic from a local machine to a remote target through a tunnel.

⚑️ Key Highlights
πŸ” Forward local port to remote service
πŸ” Secure tunnelling via SSH
🌐 Access internal web/apps from attacker machine
πŸš€ Bypass firewall restrictions

⚑️ Common Usage
πŸ’» Access internal web servers
πŸ“‘ Pivot into restricted networks
πŸ”— Forward database or service ports
🧠 Post-exploitation & lateral movement

πŸ’‘ Port forwarding redirects traffic between ports, while tunnelling encapsulates it through protocols like SSHβ€”enabling secure communication over untrusted networks.

πŸ“– Article: https://www.hackingarticles.in/a-detailed-guide-on-local-port-forwarding/
Network Pivoting: Ligolo-MP Complete Guide

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Network pivoting allows attackers to move deeper into internal networks using a compromised machine as a bridge to access hidden systems and services.

⚑️ Key Highlights
πŸ”— Pivot into internal networks
🌐 Access hidden subnets & services
πŸ”„ Route traffic through compromised host
πŸš€ Perform lateral movement & internal recon

⚑️ Ligolo-MP Advantages
🧠 VPN-like tunneling (TUN interface)
πŸ” Encrypted communication (mTLS)
⚑️ Multiple concurrent tunnels
πŸ§‘β€πŸ€β€πŸ§‘ Multiplayer pivoting support
πŸ“‘ No need for SOCKS/port forwarding

πŸ’‘ Ligolo-MP creates a tunnel that makes your attacker machine behave as if it is inside the target network, enabling tools like Nmap to scan internal systems directly.

πŸ“– Article: https://www.hackingarticles.in/network-pivoting-using-ligolo-mp-complete-guide/
❀3
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
❀2
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
❀1
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
❀3
PowerShell-Based Active Directory Lab Setup 🚨

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Automate your Active Directory lab using PowerShell and build a vulnerable environment for real-world penetration testing practiceβ€”fast, scalable, and efficient.

⚑️ Lab Highlights
πŸ’» Automate Domain Controller setup via PowerShell
🌐 Install & configure AD DS + DNS
πŸ›  Promote server to Domain Controller
βš™οΈ Configure domain, users & OUs automatically

πŸš€ PowerShell Capabilities
πŸ“‘ Install AD DS role using commands
πŸ” Create domain (forest) via script
πŸ‘€ Automate user & OU creation
πŸ”₯ Configure services & policies quickly

πŸ’‘ PowerShell simplifies repetitive AD lab tasks and allows rapid deployment of test environmentsβ€”ideal for red teamers and OSCP prep.

πŸ“– Article: https://www.hackingarticles.in/active-directory-lab-setup-for-penetration-testing-using-powershell/
🚨 Lateral Movement: Enabling RDP Remotely 🚨

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Attackers can remotely enable Remote Desktop (RDP) on compromised systems to gain persistent access and move laterally across the network without needing physical interaction.

⚑️ Attack Highlights
πŸ’» Enable RDP via registry modification
πŸ” Change fDenyTSConnections to allow access
πŸ”₯ Open firewall port 3389 for connectivity
🌐 Authenticate remotely using valid credentials

πŸ›  Techniques & Methods
πŸ“‘ Remote Registry manipulation
βš™οΈ PowerShell / CMD execution
🧩 Group Policy (GPO) abuse
πŸ›‘ Firewall rule modification

πŸ’‘ RDP uses port 3389 and requires proper firewall rules and permissionsβ€”once enabled, attackers can fully control the system remotely.

πŸ“– Article: https://www.hackingarticles.in/lateral-movement-enabling-rdp-remotely/
NTLM Reflection Attack

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

NTLM Reflection is a technique where attackers trick a system into authenticating against itself, allowing privilege escalation without knowing user credentials.

⚑️ Attack Highlights
🎯 Coerce victim machine to authenticate
πŸ”„ Reflect NTLM challenge back to same system
🎟 Reuse authentication response
πŸ” Gain authenticated session as victim
πŸš€ Escalate privileges to SYSTEM

πŸ’‘ Reflection attacks exploit flaws in challenge-response authentication, where a system unknowingly validates its own authentication request.

πŸ“– Article: https://www.hackingarticles.in/ntlm-reflection-attack/
❀1
Tcpdump Cheat Sheet for Pentesters

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Tcpdump is a powerful command-line packet analyzer used to capture and inspect network traffic. It is widely used for network troubleshooting, packet analysis, and security monitoring on Linux systems. ()

⚑️ Useful Tcpdump Commands

πŸ“‘ tcpdump -i eth0
πŸ”Ž tcpdump host 192.168.1.1
🌐 tcpdump port 80
πŸ“‚ tcpdump -w capture.pcap
πŸ“– tcpdump -r capture.pcap
🧠 tcpdump -i eth0 tcp
πŸ“Š tcpdump -n -vv
πŸ” tcpdump icmp
πŸ“ tcpdump src 192.168.1.5
πŸ“ tcpdump dst 192.168.1.5

🧠 Mindmap:
https://github.com/Ignitetechnologies/Mindmap/tree/main/Tcpdump
❀2
πŸš€ Active Directory Penetration Training (Online) – Register Now! πŸš€

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Limited slots available! Hurry up to secure your spot in this exclusive training program offered by Ignite Technologies.

βœ”οΈ Comprehensive Table of Contents:
πŸ” Initial Active Directory Exploitation
πŸ”Ž Active Directory Post-Enumeration
πŸ” Abusing Kerberos
🧰 Advanced Credential Dumping Attacks
πŸ“ˆ Privilege Escalation Techniques
πŸ”„ Persistence Methods
πŸ”€ Lateral Movement Strategies
πŸ›‘ DACL Abuse (New)
🏴 ADCS Attacks (New)
πŸ’Ž Saphire and Diamond Ticket Attacks (New)
🎁 Bonus Sessions
❀1
πŸ”₯ Ethical Hacking Proactive Training – Live & Practical πŸ”₯

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
πŸ”₯1
πŸ”΄ AWS CloudGoat: EC2 SSRF Exploitation

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

SSRF in cloud = direct path to AWS credentials theft

⚑️ Attack Highlights
πŸ” Identify SSRF in web app
🌐 Access internal metadata
πŸ” Extract IAM role credentials
🎟 Use temporary keys (AccessKey, SecretKey, Token)
πŸš€ Escalate privileges β†’ full AWS compromise

πŸ’‘ SSRF tricks server into making internal requests β†’ exposing sensitive data like IAM creds

⚠️ Real attacks actively exploit SSRF to steal AWS credentials from EC2 metadata

πŸ“– Article: https://www.hackingarticles.in/aws-cloudgoat-ec2-ssrf-exploitation/
❀3πŸ”₯1
πŸ“± Privacy Protection Mobile – GrapheneOS Setup

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Smartphones store personal chats, photos, banking data, and location history, making them a major privacy target. Setting up GrapheneOS properly helps reduce tracking, isolate apps, and strengthen mobile security.

πŸ›‘ In this guide you’ll learn how to configure:
πŸ” Secure screen lock & scrambled PIN
βš™οΈ Exploit protection settings
πŸ”„ Automatic security reboot
πŸ”Œ USB-C restricted charging mode
πŸ“Ά Auto disable Wi-Fi & Bluetooth
🧩 Private Space for isolated apps
πŸ“¦ F-Droid & Aurora Store installation
πŸ”„ System security updates

⚑️ Build a privacy-first mobile environment with stronger app isolation, permission control, and minimal tracking.

πŸ“– Read the full guide:
https://www.hackingarticles.in/privacy-protection-mobile-graphene-os-setup/
πŸ‘2πŸ”₯1
GPO Abuse in Active Directory: Domain Takeover ⚠️

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

GPO Abuse is a critical Active Directory attack technique where misconfigured Group Policy Objects allow attackers to escalate privileges and execute malicious actions across the domain.

⚑️ Key Features of GPO Abuse
πŸ” Identify writable GPOs using BloodHound
🧩 Abuse via SharpGPOAbuse / pyGPOAbuse
βš™οΈ Modify GPO to deploy malicious payloads
πŸ›‘ Execute commands as SYSTEM
πŸ“‘ Domain-wide impact via linked policies

🎯 Attack Capabilities
πŸ’₯ Privilege Escalation to Admin
πŸ§ͺ Remote Code Execution (RCE)
🧬 Persistence via Scheduled Tasks
🌐 Add users to local/domain admins
⚑️ Full Domain Compromise

πŸ“– Article: https://www.hackingarticles.in/gpo-abuse-exploiting-vulnerable-group-policy-objects/
❀1
πŸ”₯ OSCP+ / CTF Exam Practice Training (Online) – Enroll Now! πŸš€

Looking to strengthen your practical penetration testing skills and boost your confidence before the OSCP+ exam?

Join Ignite Technologies’ Exclusive Capture The Flag (CTF) Practice Program β€” designed to simulate real exam scenarios and real-world attack environments.

πŸ”— Register Here:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š What You’ll Cover:

🧠 Introduction to Exam Strategy & Methodology
🌐 Information Gathering & Enumeration
🧱 Vulnerability Scanning & Analysis
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks & Credential Exploitation
🧠 Tunneling & Pivoting Techniques
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits Effectively
πŸ“‹ Professional Report Writing

🎯 This training is ideal for:
β€’ OSCP+ aspirants
β€’ CTF players aiming to go professional
β€’ Pentesters wanting structured exam practice
β€’ Security professionals strengthening real-world attack skills

Limited seats available. Prepare smart. Hack ethically. πŸš€
❀4πŸ”₯1
Active Directory Pentest Mindmap: Complete Attack Path 🧠

πŸ”₯ Telegram: https://t.me/hackinarticles

✴️ Twitter: https://x.com/hackinarticles

The AD Pentest Mindmap is a visual roadmap that helps attackers and defenders understand the full attack lifecycleβ€”from enumeration to domain dominanceβ€”in a structured way.

⚑️ Key Features of AD Pentest Mindmap
πŸ” Visual breakdown of attack methodology
🧩 Covers tools, techniques & attack paths
βš™οΈ Organized in hierarchical tree structure
πŸ›‘ Easy navigation for learners & professionals
πŸ“‘ Simplifies complex AD attack chains

🎯 Covered Attack Areas
πŸ’₯ Enumeration (Users, Groups, Shares)
πŸ§ͺ Credential Attacks & Lateral Movement
🧬 Privilege Escalation Techniques
🌐 Persistence & Post Exploitation
⚑️ Domain Dominance strategies

πŸ“– Resource: https://github.com/Ignitetechnologies/Mindmap/tree/main/AD%20Pentest
1❀8πŸ‘2πŸ”₯1
Join Our Whasapp Channel
1πŸ‘2🀑2