Hacking Articles
23K subscribers
1.36K photos
165 files
971 links
House of Pentester
Download Telegram
SSQL for Pentesters: Metasploit

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Learn how to pentest Microsoft SQL Server using Metasploit, from server discovery and credential attacks to command execution and privilege escalation.

🧠 Topics covered:
β€’ MSSQL Server Discovery & Enumeration
β€’ Password Brute‑Force Attacks
β€’ Database & Schema Dumping
β€’ Command Execution via xp_cmdshell
β€’ Privilege Escalation to sysadmin

πŸ“– Read the full guide:
https://www.hackingarticles.in/mssql-for-pentester-metasploit/
MSSQL for Pentesters: Command Execution with xp_cmdshell

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Learn how attackers abuse xp_cmdshell in Microsoft SQL Server to execute operating system commands directly from the database engine, enabling powerful post‑exploitation and remote command execution techniques.

🧠 Topics covered:
β€’ Enabling xp_cmdshell in MSSQL
β€’ OS command execution from SQL Server
β€’ Reverse shell via PowerShell / Netcat
β€’ Exploitation using Metasploit, CrackMapExec & PowerUpSQL

πŸ“– Read the full guide:
https://www.hackingarticles.in/mssql-for-pentester-command-execution-with-xp_cmdshell/
❀1
MSSQL for Pentesters: Abusing Trustworthy

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Learn how attackers can escalate privileges in Microsoft SQL Server by abusing the TRUSTWORTHY database property to gain sysadmin rights from a low-privileged user.

🧠 Topics covered:
β€’ Understanding TRUSTWORTHY property
β€’ Privilege Escalation in MSSQL
β€’ Exploitation using PowerUpSQL
β€’ Metasploit automation for escalation

πŸ“– Read the full guide:
https://www.hackingarticles.in/mssql-for-pentester-abusing-trustworthy/
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

#OSCP #CyberSecurity #Pentesting #EthicalHacking #ActiveDirectory #RedTeam
πŸš€ Master Active Directory Penetration Testing β€” Online Training Now Open!

Active Directory remains the #1 target in enterprise breaches. If you're serious about red teaming or advancing toward OSCP-level skills, this is the deep-dive you've been waiting for.

Ignite Technologies is opening a limited-seat batch for our Active Directory Penetration Training β€” built for professionals who want to go beyond theory and master real-world attack chains.

βœ”οΈ Comprehensive Curriculum:
πŸ” Initial Active Directory Exploitation
πŸ”Ž Active Directory Post-Enumeration
πŸ” Abusing Kerberos
🧰 Advanced Credential Dumping Attacks
πŸ“ˆ Privilege Escalation Techniques
πŸ”„ Persistence Methods
πŸ”€ Lateral Movement Strategies
πŸ›‘ DACL Abuse (New)
🏴 ADCS Attacks (New)
πŸ’Ž Sapphire & Diamond Ticket Attacks (New)
🎁 Bonus Sessions

⚠️ Limited slots available β€” secure your spot before they're gone.

πŸ”— Register Here: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Whether you're prepping for red team engagements, OSCP, CRTP, or CRTE β€” this training will sharpen the exact skills hiring managers and engagement leads look for.

Drop a πŸ”₯ in the comments if you're in, or tag someone who needs to level up their AD game.

#CyberSecurity #PenTesting #RedTeam #ActiveDirectory #Kerberos #PrivilegeEscalation
❀2
πŸ›‘ Penetration Testing on MySQL (Port 3306)

πŸ”— Twitter: https://lnkd.in/e7yRpDpY
πŸ“’ Telegram: https://t.me/hackinarticles

MySQL databases are widely used in web applications, but misconfigurations can expose critical data.

This guide covers:
πŸ”Ž MySQL Enumeration
πŸ”‘ Login testing & brute force
⚑️ Hydra attacks
🧰 Metasploit exploitation
πŸ“‚ Database extraction techniques

Read the full article πŸ‘‡
https://www.hackingarticles.in/penetration-testing-on-mysql-port-3306/
πŸ‘1
Remote Desktop Penetration Testing (Port 3389)

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Remote Desktop Protocol (RDP) allows users to connect to and control Windows systems remotely through a graphical interface. By default, RDP listens on TCP port 3389, and weak configurations can expose systems to brute-force attacks and remote exploitation. ()

πŸ“š Techniques Covered in This Guide

πŸ”Ž Nmap Port Scanning
πŸ” RDP Brute Force Attack (Hydra)
πŸ›‘ Account Lockout Policy Mitigation
πŸ’₯ Post-Exploitation using Metasploit
πŸ–₯ Enabling RDP via Meterpreter
πŸ“Œ Persistence using Sticky Keys
πŸ”‘ Credential Dumping with Mimikatz
🎭 RDP Session Hijacking
🧠 Event Log Analysis for Detection
⚑️ DoS Attack (MS12-020)
πŸ’£ BlueKeep RCE Exploitation
πŸ”„ Changing RDP Port
πŸ•΅οΈ Man-in-the-Middle Attack (SETH Toolkit)

πŸ“– Article:
https://hackingarticles.in/remote-desktop-penetration-testing-port-3389/

#CyberSecurity #EthicalHacking #Pentesting #RDP #RedTeam #InfoSec
❀1πŸ‘1
SSH Penetration Testing (Port 22)

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

SSH (Secure Shell) is a cryptographic protocol used for secure remote login and command execution over unsecured networks. During penetration testing, misconfigurations or weak credentials in SSH services can allow attackers to gain unauthorized access. ()

πŸ“š Techniques Covered in This Guide

πŸ”Ž Enumeration with Nmap
πŸ” Password Cracking using Hydra
⚑️ Authentication using Metasploit
πŸ’» Running Commands on Remote Machine
πŸ” SSH Port Redirection
πŸ§ͺ Nmap SSH Brute Force Script
πŸ” Enumerating SSH Authentication Methods
πŸ”‘ Key-Based Authentication
πŸ›  Key-Based Authentication using Metasploit
πŸ“¦ Post Exploitation using Metasploit
🌐 Local Port Forwarding (Password Based)
πŸ” Local Port Forwarding (Key Based)

πŸ“– Article:
https://www.hackingarticles.in/ssh-penetration-testing-port-22/
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

#OSCP #CyberSecurity #Pentesting #EthicalHacking #ActiveDirectory #RedTeam
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
🚨 Active Directory Compromise Usually Starts With a Misconfiguration.

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Not Zero-Day Exploits.
Not Advanced Malware.

Misconfigurations. πŸ”₯

Here's a simple AD Hardening Checklist every organization should review:

βœ… Account Lockout Policies
βœ… Restrict LDAP Access
βœ… Strong Password Policies
βœ… Multi-Factor Authentication (MFA)
βœ… LDAP Signing & Channel Binding
βœ… Group Managed Service Accounts (gMSA)
βœ… Privileged Access Management (PAM)
βœ… Secure AD CS Configurations
βœ… Least Privilege Enforcement
βœ… AD CS Auditing
βœ… Certificate Monitoring
βœ… Security Monitoring & Alerting

The best defense against Active Directory attacks is reducing the attack surface before attackers arrive.

♻️ Repost to help defenders secure Active Directory.
❀1
Start mastering Network Traffic Analysis. πŸŒπŸ”

Essential tools every analyst should know:

⚑️ Wireshark
⚑️ Tshark
⚑️ tcpdump
⚑️ NGrep
⚑️ tcpick
⚑️ Packetbeat
⚑️ Network TAPs
⚑️ SPAN Ports

Tools help you collect data.

Analysis helps you find attackers. 🎯

Learn to:

βœ… Identify suspicious traffic
βœ… Detect C2 communications
βœ… Investigate incidents
βœ… Hunt threats proactively

The best analysts understand packets, not just dashboards.

♻️ Repost if Network Analysis is a core SOC skill.
🚨 Stop Being a Tool Operator. Start Being a SOC Analyst.

Many analysts spend their day:

❌ Reviewing CrowdStrike alerts
❌ Running Splunk queries
❌ Checking Elastic dashboards
❌ Analyzing Wireshark captures

But the real question is:

βœ… Can you identify a false positive?
βœ… Can you optimize your searches?
βœ… Can you recognize suspicious logs?
βœ… Can you spot malicious network traffic?

Tools change.
Methodology doesn't.

The best SOC analysts think like attackers and defendersβ€”not tool users.

♻️ Repost if you agree.
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance
πŸ” Cyber Security Training Programs (Online)

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Ignite Technologies is excited to announce exclusive online Cyber Security Training Programs with limited seats available. Enroll now to secure your place in the upcoming batch and upskill in real-world offensive security techniques.

πŸš€ Key Learning Areas:
πŸ›‘ Ethical Hacking
🌐 Network Penetration Testing
🐞 Bug Bounty Hunting
πŸ›  Advanced Burp Suite
πŸ“± Android Application Pentesting
🏒 Source Code Review
🎯 CTF Challenges
πŸ•΅οΈ Red Team Operations
πŸ”“ Active Directory Attacks
πŸ’Ύ MSSQL Security Assessment
πŸ”Ό Windows Privilege Escalation
🐧 Linux Privilege Escalation

πŸ’‘ Hands-on, practical, and industry-focused training designed for aspiring and working cybersecurity professionals.
❀3
Active Directory Penetration Testing Using Impacket

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Impacket is a powerful toolkit used to perform enumeration, exploitation, and post-exploitation in Active Directory environments.

⚑️ Attack Highlights
πŸ” Enumerate users, SIDs & computers (lookupsid, GetADUsers)
🎯 Perform Kerberos attacks (AS-REP Roasting, Kerberoasting)
πŸ” Abuse delegation (RBCD) for privilege escalation
🎟 Dump credentials (DCSync, LAPS, GMSA)
πŸ’‰ Execute remote commands (psexec, wmiexec)
πŸš€ Achieve Domain Admin access

πŸ’‘ Impacket enables attackers to simulate real-world AD attacks like credential dumping, lateral movement, and privilege escalation without deploying agents.

πŸ“– Article: https://www.hackingarticles.in/active-directory-penetration-testing-using-impacket/
Impacket for Pentester – MSSQL Exploitation

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

MSSQL servers are high-value targets in internal networks β€” and tools like Impacket make exploitation powerful & flexible πŸ”

πŸ›  In this guide you’ll learn:
πŸ” MSSQL enumeration & access using Impacket
πŸ” Authentication techniques (Windows & SQL)
βš™οΈ Command execution via xp_cmdshell
πŸ“‚ Data extraction & privilege escalation
πŸ”— Linked server exploitation & lateral movement
πŸš€ Real-world pentesting workflows

⚑️ Exploit MSSQL like a pro and level up your internal network attacks.

πŸ“– Read the full guide:
https://www.hackingarticles.in/impacket-for-pentester-mssql-exploitation/
Impacket: SecretsDump for Pentesters

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Impacket’s secretsdump allows attackers to extract credentials remotely without deploying any agent, making it a powerful tool for post-exploitation in Active Directory environments.

⚑️ What It Dumps
πŸ” NTLM password hashes
πŸ“‚ SAM & LSA secrets
🎟 Kerberos keys
πŸ“Š NTDS.dit (Domain Controller database)

⚑️ Techniques
🧠 DCSync attack (replicate DC credentials)
πŸ“‘ Remote registry extraction
πŸ’Ύ NTDS.dit dumping via VSS

πŸ’‘ With proper privileges, attackers can dump domain credentials and move laterally across the network without touching disk.

πŸ“– Article: https://www.hackingarticles.in/imapacket-for-pentester-secretdump/
Impacket: Change Password Abuse

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Misconfigured AD permissions like ForceChangePassword allow attackers to reset a user’s password without knowing the originalβ€”leading to account takeover and privilege escalation.

⚑️ Attack Highlights
πŸ” Reset user password without old credentials
πŸ‘€ Target privileged accounts
πŸš€ Privilege escalation & lateral movement
πŸ“‘ Abuse SMB/RPC protocols

⚑️ Tool
πŸ›  impacket-changepasswd

πŸ’‘ Attackers can abuse delegated rights to gain control over other accounts, making weak AD permission management a critical security risk.

πŸ“– Article: https://www.hackingarticles.in/impacket-for-pentester-change-password/
🎯 Ignite Technologies presents: OSCP Training Program (Online)

A hands-on, exam-focused program that trains you the way real pentesters actually work β€” built for aspirants who want to clear OSCP on the first attempt.

πŸ”₯ What you'll master:
βœ”οΈ Introduction to Exam Strategy & Methodology
βœ”οΈ Information Gathering & Enumeration
βœ”οΈ Vulnerability Scanning & Analysis
βœ”οΈ Windows Privilege Escalation
βœ”οΈ Linux Privilege Escalation
βœ”οΈ Client-Side Attacks
βœ”οΈ Web Application Attacks
βœ”οΈ Password Attacks & Credential Exploitation
βœ”οΈ Tunneling & Pivoting Techniques
βœ”οΈ Active Directory Attacks
βœ”οΈ Exploiting Public Exploits Effectively
βœ”οΈ Professional Report Writing
πŸ’Ž What makes this different:
βœ… Hands-on practical labs
βœ… Realistic attack scenarios
βœ… OSCP-oriented training
βœ… Beginner to advanced guidance
βœ… Industry-focused techniques
πŸ‘¨β€πŸ’» Perfect for:
πŸ”Ή OSCP Aspirants
πŸ”Ή Ethical Hackers
πŸ”Ή Pentesters
πŸ”Ή Red Teamers
πŸ”Ή Cybersecurity Students

πŸ’‘ Why this matters: OSCP isn't just a cert β€” it's a career accelerator. But the 24-hour exam doesn't care how many machines you've rooted on HTB. It rewards the hacker who knows exactly what to enumerate, when to pivot, and how to document it. That's what we train.

πŸ“… Limited seats. Admissions closing soon.

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

πŸ‘‰ Tag an OSCP aspirant who needs to see this.
πŸ’¬ Drop a comment: What's stopping you from booking your OSCP exam?
♻️ Repost to help someone in your network land their dream pentest role.
🎯 Ignite Technologies presents: Bug Bounty Training Program (Online)

A hands-on, exclusive program built for beginners and intermediates ready to break into bug bounty hunting and ethical hacking β€” the right way.

πŸ”₯ What you'll master:
βœ”οΈ Introduction to WAPT & OWASP Top 10
βœ”οΈ Pentest Lab Setup
βœ”οΈ Information Gathering & Reconnaissance
βœ”οΈ Netcat for Pentesters
βœ”οΈ Configuration Management Testing
βœ”οΈ Cryptography
βœ”οΈ Authentication Attacks
βœ”οΈ Session Management Exploitation
βœ”οΈ Local File Inclusion (LFI)
βœ”οΈ Remote File Inclusion (RFI)
βœ”οΈ Path Traversal
βœ”οΈ OS Command Injection
βœ”οΈ Open Redirect
βœ”οΈ Unrestricted File Upload
βœ”οΈ PHP Web Shells
βœ”οΈ HTML Injection
βœ”οΈ Cross-Site Scripting (XSS)
βœ”οΈ Client-Side Request Forgery (CSRF)
βœ”οΈ SQL Injection
βœ”οΈ XXE Injection
βœ”οΈ Bonus Section 🎁

πŸ’‘ Why this matters: Bug bounty isn't just about tools β€” it's about thinking like an attacker. This program walks you through the OWASP Top 10 and beyond, with real exploitation techniques you can apply on live programs (HackerOne, Bugcrowd, Intigriti).

πŸ“… Limited seats. Enroll today.

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

πŸ‘‰ Tag someone who's been talking about getting into bug bounty.
πŸ’¬ Drop a comment: What's the first vulnerability you ever found?
♻️ Repost to help an aspiring hacker in your network.
❀3