Hacking Articles
24.5K subscribers
1.48K photos
165 files
1.08K links
House of Pentester
Download Telegram
πŸ”΄ Linux Privilege Escalation by Exploiting Cron Jobs

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Misconfigured cron jobs = easy path to root ⚠️

⚑️ Attack Highlights
πŸ” Enumerate scheduled tasks (/etc/crontab, /etc/cron.*)
πŸ›  Find writable scripts executed by root
πŸ“‚ Abuse wildcard injection in tar commands
πŸ§ͺ Exploit PATH hijacking in cron execution
πŸš€ Gain root shell through automated task execution

πŸ’‘ Cron jobs run with the privileges of their owner, so writable scripts or unsafe command paths can lead directly to privilege escalation ()

⚠️ One insecure scheduled task = full Linux compromise

πŸ“– Article: https://www.hackingarticles.in/linux-privilege-escalation-by-exploiting-cron-jobs/
πŸ”΄ Linux Privilege Escalation: Python Library Hijacking

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

One insecure Python import = instant root shell ⚠️

⚑️ Attack Highlights
πŸ” Enumerate sudo Python scripts (sudo -l)
πŸ“¦ Identify imported libraries/modules
πŸ›  Abuse writable Python modules
πŸ§ͺ Hijack PYTHONPATH execution order
🎯 Load malicious library before legit one
πŸš€ Execute code as root

πŸ’‘ Python loads modules based on search order (sys.path) β€” attackers abuse writable paths, unsafe imports, or environment variables to inject malicious code ()

⚠️ Misconfigured Python environments can lead directly to privilege escalation

πŸ“– Article: https://www.hackingarticles.in/linux-privilege-escalation-python-library-hijacking/
❀1
Linux Privilege Escalation Using Exploiting SUDO Rights

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Misconfigured SUDO permissions are one of the most common paths to root access on Linux systems ⚠️

πŸ“š What You'll Learn in This Guide

πŸ” Understanding SUDO & Privilege Delegation
πŸ“‹ Enumerating SUDO Permissions with sudo -l
βš™οΈ Identifying Dangerous SUDO Configurations
🐚 Exploiting SUDO Rights for Privilege Escalation
πŸ“‚ Abusing Common Linux Binaries via SUDO
πŸ›  GTFOBins-Based SUDO Exploitation Techniques
πŸš€ Escalating to Root Shell Access
πŸ”‘ SUDO Misconfiguration Case Studies
🧠 Enumeration & Post-Exploitation Tips
πŸ›‘ Hardening SUDO Configurations
⚠️ Detection & Mitigation Strategies

πŸ’‘ SUDO misconfigurations are a well-known source of Linux privilege escalation, and improper delegation of commands can allow users to execute actions with elevated privileges.

πŸ“– Article:
https://www.hackingarticles.in/linux-privilege-escalation-using-exploiting-sudo-rights/
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
❀4
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance
❀2
OSEP Exam Practice Training (Online) – Registration Open! πŸš€

Ready to level up your offensive security skills and prepare for advanced red team operations?

Join Ignite Technologies’ Exclusive β€œCapture The Flag” (CTF) Based OSEP Practice Program and train in a real-world, attack-driven environment designed for serious cybersecurity professionals.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

πŸ“š Training Modules Include:

πŸš€ Introduction
πŸ” Advanced Information Gathering
🎯 Initial Access & Client-Side Attacks
πŸ›‘ Bypassing Security Controls
πŸͺŸ Windows Privilege Escalation
🐧 Linux Privilege Escalation
🧭 Active Directory Enumeration
πŸ” Lateral Movement
🏰 Active Directory Attacks
🌐 Web Application Attacks
πŸ•³ Tunneling & Pivoting
🧬 Post-Exploitation & Persistence
πŸ₯· Defense Evasion & OPSEC
πŸ§ͺ Custom Malware & Tool Development
πŸ’₯ Advanced Exploitation
πŸ“ Reporting & Documentation

This program is ideal for professionals preparing for advanced offensive security certifications and those aiming to strengthen their red teaming capabilities.

Seats are limited. Secure yours today. πŸš€
❀3
🚨 Linux Privilege Escalation β€” Practical Cheat Sheet & Learning Repository 🐧πŸ”₯

Most penetration tests don't end with initial access.

They end with Privilege Escalation.

If you can't escalate privileges, you often can't achieve your objectives.

That's why we've built a practical Linux Privilege Escalation repository covering real-world techniques, common misconfigurations, and exploitation methods used by penetration testers and red teamers.

πŸ”“ SUID & SGID Binaries
βš™οΈ Sudo Misconfigurations
πŸ“‚ Linux Capabilities
πŸ›  GTFOBins
🧬 Cron Jobs
πŸ“ Writable PATH
🐚 Shell Escaping
πŸ“¦ Misconfigured Services
🐳 Docker & Container Escapes
πŸš€ LXD/LXC Privilege Escalation
πŸ”‘ SSH Key Abuse
πŸ“‚ NFS Exploitation
πŸ’₯ Kernel Exploits
🧩 Environment Variable Abuse
…and many more practical Linux PrivEsc techniques.

πŸ“š GitHub Repository:
https://github.com/Ignitetechnologies/Linux-Privilege-Escalation

πŸ”₯ Join our cybersecurity community:

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

⭐️ Star the repository
πŸ”– Bookmark it for your labs
♻️ Share it with the cybersecurity community

Whether you're preparing for OSCP, CPTS, CRTO, or improving your red team skills, this repository is designed to be a practical reference you can use during labs and real-world assessments.

Happy Hacking! πŸš€
❀5
🚨 Windows Privilege Escalation β€” Practical Cheat Sheet & Reference Guide πŸͺŸπŸ”₯

Privilege Escalation is one of the most important skills for penetration testers, red teamers, and OSCP students.

We created a practical Windows Privilege Escalation GitHub repository covering 21 techniques and attack paths. πŸš€

πŸ”“ SeBackupPrivilege
🎭 SeImpersonatePrivilege
🐞 SeDebugPrivilege
πŸ”‘ SeTakeOwnershipPrivilege
πŸ‘‘ SeTcbPrivilege
βš™οΈ AlwaysInstallElevated
🌐 DnsAdmins β†’ Domain Admin
πŸŒ™ HiveNightmare
🧩 Registry Run Keys
πŸ“‚ Startup Folder
πŸ” Stored Credentials
⚠️ Weak Registry Permissions
πŸ›  Unquoted Service Paths
πŸ–₯ Insecure GUI Applications
βš™οΈ Weak Service Permissions
⏰ Scheduled Tasks
πŸ’₯ Kernel Exploits
🎭 SamAccountSpoofing
πŸ–¨ SpoolFool
πŸ”₯ PrintNightmare
πŸ‘€ Server Operator Group

πŸ“š GitHub Repository:
https://github.com/Ignitetechnologies/Windows-Privilege-Escalation/

πŸ”₯ Join our cybersecurity community:

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

⭐️ Star the repository
πŸ”– Bookmark it for your labs
♻️ Share it with the cybersecurity community

More Windows Privilege Escalation techniques are coming soon. πŸš€
❀2
Impacket: Change Password Abuse

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Misconfigured AD permissions like ForceChangePassword allow attackers to reset a user’s password without knowing the originalβ€”leading to account takeover and privilege escalation.

⚑️ Attack Highlights
πŸ” Reset user password without old credentials
πŸ‘€ Target privileged accounts
πŸš€ Privilege escalation & lateral movement
πŸ“‘ Abuse SMB/RPC protocols

⚑️ Tool
πŸ›  impacket-changepasswd

πŸ’‘ Attackers can abuse delegated rights to gain control over other accounts, making weak AD permission management a critical security risk.

πŸ“– Article: https://www.hackingarticles.in/impacket-for-pentester-change-password/
❀3
OSCP Exam Training Program (Online)

A hands-on, exam-focused program that trains you the way real pentesters actually work β€” built for aspirants who want to clear OSCP on the first attempt.

πŸ“… Limited seats. Admissions closing soon.

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in


πŸ”₯ What you'll master:
βœ”οΈ Introduction to Exam Strategy & Methodology
βœ”οΈ Information Gathering & Enumeration
βœ”οΈ Vulnerability Scanning & Analysis
βœ”οΈ Windows Privilege Escalation
βœ”οΈ Linux Privilege Escalation
βœ”οΈ Client-Side Attacks
βœ”οΈ Web Application Attacks
βœ”οΈ Password Attacks & Credential Exploitation
βœ”οΈ Tunneling & Pivoting Techniques
βœ”οΈ Active Directory Attacks
βœ”οΈ Exploiting Public Exploits Effectively
βœ”οΈ Professional Report Writing

πŸ’Ž What makes this different:
βœ… Hands-on practical labs
βœ… Realistic attack scenarios
βœ… OSCP-oriented training
βœ… Beginner to advanced guidance
βœ… Industry-focused techniques

πŸ‘¨β€πŸ’» Perfect for:
πŸ”Ή OSCP Aspirants
πŸ”Ή Ethical Hackers
πŸ”Ή Pentesters
πŸ”Ή Red Teamers
πŸ”Ή Cybersecurity Students

πŸ’‘ Why this matters: OSCP isn't just a cert β€” it's a career accelerator. But the 24-hour exam doesn't care how many machines you've rooted on HTB. It rewards the hacker who knows exactly what to enumerate, when to pivot, and how to document it. That's what we train.


πŸ‘‰ Tag an OSCP aspirant who needs to see this.
πŸ’¬ Drop a comment: What's stopping you from booking your OSCP exam?
♻️ Repost to help someone in your network land their dream pentest role.
πŸš€ Master Active Directory Penetration Testing β€” Online Training Now Open!

Active Directory remains the #1 target in enterprise breaches. If you're serious about red teaming or advancing toward OSCP-level skills, this is the deep-dive you've been waiting for.

Ignite Technologies is opening a limited-seat batch for our Active Directory Penetration Training β€” built for professionals who want to go beyond theory and master real-world attack chains.

βœ”οΈ Comprehensive Curriculum:
πŸ” Initial Active Directory Exploitation
πŸ”Ž Active Directory Post-Enumeration
πŸ” Abusing Kerberos
🧰 Advanced Credential Dumping Attacks
πŸ“ˆ Privilege Escalation Techniques
πŸ”„ Persistence Methods
πŸ”€ Lateral Movement Strategies
πŸ›‘ DACL Abuse (New)
🏴 ADCS Attacks (New)
πŸ’Ž Sapphire & Diamond Ticket Attacks (New)
🎁 Bonus Sessions

⚠️ Limited slots available β€” secure your spot before they're gone.

πŸ”— Register Here: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Whether you're prepping for red team engagements, OSCP, CRTP, or CRTE β€” this training will sharpen the exact skills hiring managers and engagement leads look for.

Drop a πŸ”₯ in the comments if you're in, or tag someone who needs to level up their AD game.
❀1
🚨 Impacket = One of the Most Powerful Toolkits for AD Pentesters. πŸ”₯

If you're learning Active Directory pentesting, you NEED to understand Impacket.

It provides a collection of Python classes and tools for working with Windows/Active Directory protocols and security assessments.

🧰 Tools you should know:

πŸ”Ή secretsdump
πŸ”Ή psexec
πŸ”Ή smbexec
πŸ”Ή wmiexec
πŸ”Ή dcomexec
πŸ”Ή atexec
πŸ”Ή reg
πŸ”Ή lookupsid
πŸ”Ή GetNPUsers
πŸ”Ή GetUserSPNs
πŸ”Ή ntlmrelayx
πŸ”Ή ticketConverter
…and more.

πŸ“š Practical Impacket resources for Pentesters:

https://github.com/Ignitetechnologies/Impacket-for-Pentester

Perfect for:
πŸ”΄ AD Pentesters
πŸ”΄ Red Teamers
πŸ”΄ OSCP Students
πŸ”΄ Security Researchers

⭐️ Star & Bookmark
♻️ Repost for the cybersecurity community

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles
❀4πŸ‘Œ1
🚨 AI PENTESTING IS HERE. πŸ€–βš”οΈ

Traditional pentesting is evolving.

AI applications, LLMs, RAG, APIs & AI agents are creating a completely new attack surface.

πŸ”₯ Want to learn AI Pentesting?

Check out this practical repository:

🧠 LLM Security
πŸ’‰ Prompt Injection
πŸ”— LLM API Security
πŸ“š RAG Security
πŸ” AI Data Security
βš™οΈ AI/LLM Deployment Security
πŸ›‘ AI Attack & Defense Techniques
πŸ€– Automated AI Pentesting

πŸ“š GitHub:
https://github.com/Ignitetechnologies/AI-Pentest

Perfect for:
πŸ”΄ Pentesters
πŸ”΄ Red Teamers
πŸ”΄ Security Researchers
πŸ”΄ Bug Bounty Hunters
πŸ”΄ AI Security Professionals

The future of offensive security is AI-driven.

Are you ready? πŸš€

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

⭐️ Star & Bookmark
♻️ Repost for the cybersecurity community
πŸ‘1
🚨 One Weak AD Permission Can Change Everything. 🏰πŸ”₯

Active Directory attacks aren't always about exploits.

Sometimes the weakness is simply:

πŸ‘‰ Misconfigured ACLs / DACLs.

Attackers can abuse excessive permissions such as:

πŸ”“ GenericAll
βš™οΈ GenericWrite
πŸ“ WriteDACL
πŸ‘‘ WriteOwner
πŸ”‘ AllExtendedRights
πŸ‘€ Self / Group Membership

These permissions can create unexpected paths to:

➑️ Account takeover
➑️ Privilege escalation
➑️ Group abuse
➑️ Lateral movement
➑️ Domain compromise

🩸 BloodHound can help identify dangerous AD attack paths.

πŸ“š Learn more:
https://github.com/Ignitetechnologies/Abusing-DACL

Don't just enumerate users.

Enumerate permissions. πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

⭐️ Star & Bookmark
♻️ Repost for the AD security community.
❀1
OSCP Exam Training Program (Online)

A hands-on, exam-focused program that trains you the way real pentesters actually work β€” built for aspirants who want to clear OSCP on the first attempt.

πŸ“… Limited seats. Admissions closing soon.

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in


πŸ”₯ What you'll master:
βœ”οΈ Introduction to Exam Strategy & Methodology
βœ”οΈ Information Gathering & Enumeration
βœ”οΈ Vulnerability Scanning & Analysis
βœ”οΈ Windows Privilege Escalation
βœ”οΈ Linux Privilege Escalation
βœ”οΈ Client-Side Attacks
βœ”οΈ Web Application Attacks
βœ”οΈ Password Attacks & Credential Exploitation
βœ”οΈ Tunneling & Pivoting Techniques
βœ”οΈ Active Directory Attacks
βœ”οΈ Exploiting Public Exploits Effectively
βœ”οΈ Professional Report Writing

πŸ’Ž What makes this different:
βœ… Hands-on practical labs
βœ… Realistic attack scenarios
βœ… OSCP-oriented training
βœ… Beginner to advanced guidance
βœ… Industry-focused techniques

πŸ‘¨β€πŸ’» Perfect for:
πŸ”Ή OSCP Aspirants
πŸ”Ή Ethical Hackers
πŸ”Ή Pentesters
πŸ”Ή Red Teamers
πŸ”Ή Cybersecurity Students

πŸ’‘ Why this matters: OSCP isn't just a cert β€” it's a career accelerator. But the 24-hour exam doesn't care how many machines you've rooted on HTB. It rewards the hacker who knows exactly what to enumerate, when to pivot, and how to document it. That's what we train.


πŸ‘‰ Tag an OSCP aspirant who needs to see this.
πŸ’¬ Drop a comment: What's stopping you from booking your OSCP exam?
♻️ Repost to help someone in your network land their dream pentest role.
❀3⚑1
πŸ›‘ Penetration Testing on MySQL (Port 3306)

πŸ”— Twitter: https://lnkd.in/e7yRpDpY
πŸ“’ Telegram: https://t.me/hackinarticles

MySQL databases are widely used in web applications, but misconfigurations can expose critical data.

This guide covers:
πŸ”Ž MySQL Enumeration
πŸ”‘ Login testing & brute force
⚑️ Hydra attacks
🧰 Metasploit exploitation
πŸ“‚ Database extraction techniques

Read the full article πŸ‘‡
https://www.hackingarticles.in/penetration-testing-on-mysql-port-3306/
❀6