Hacking Articles
21.2K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
πŸ”’ Lock Down Your Containers Like a Pro! πŸš€

Dive into the world of Container Security with this epic mindmap! Whether you're battling vulnerabilities, hardening Kubernetes, or managing secrets, this guide has you covered.

πŸ›‘οΈ Key Tools & Concepts:
βœ… Image Scanning (Trivy, Anchore, Grype)
βœ… Runtime Protection (Falco, Sysdig, Wazuh)
βœ… K8s Security (Kube-bench, Kube-hunter, OPA)
βœ… Secrets & Access (Vault, RBAC, Secret Management)
βœ… Network & Isolation (Calico, gVisor, Kata Containers)

πŸ“₯ Grab the Full Mindmap Here:
GitHub Link
πŸ”₯3❀1
πŸ› οΈ Airgeddon – WiFi Pentest Toolkit

Airgeddon is a powerful bash script designed for Linux systems that provides an interactive and modular interface for WiFi security testing. It automates complex attacks and integrates several tools under one interface.

πŸ”‘ Key Features of Airgeddon
πŸ“Ά Handshake Capture

🧠 PMKID Attack

πŸ”“ Evil Twin Attack

🎭 Captive Portal Attack

πŸ’₯ Deauthentication Attack

πŸ›‘οΈ DoS Attack Modes

🧰 Tool Integration

πŸ”„ Multilanguage Support

πŸ–₯️ GUI-like Interface

πŸ“‚ Saved Sessions
πŸ‘4❀2
Password Cracking: SSH


SSH brute-force attacks remain one of the most prevalent initial access vectors in modern penetration testing engagements. Unlike legacy protocols, SSH’s encrypted channel presents unique challenges and opportunities for credential based attacks,

βœ… Hydra
πŸ› οΈ Metasploit
βš”οΈ Medusa
πŸš€ NetExec (nxc)
πŸ”“ Ncrack
🎯 Patator
πŸ“œ Nmap NSE Script (ssh-brute.nse)
πŸ’₯ BruteSpray
⚑2πŸ‘2
πŸ‘1
πŸ”₯ OSCP+/CTF Exam Practice Training (Online) πŸ”₯ – Register Now! πŸš€

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Join IGNITE TECHNOLOGIES’ exclusive "Capture the Flag" Training Program and enhance your skills with the following modules:

🧠 Introduction
🌐 Information Gathering
🧱 Vulnerability Scanning
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘οΈ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks
🧠 Tunneling & Pivoting
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits
πŸ“‹ Report Writing

#infosec #cybersecurity #cybersecuritytips #microsoft #AI #informationsecurity #CyberSec #microsoft #offensivesecurity #infosecurity #cyberattacks #security #oscp #cybersecurityawareness #bugbounty #bugbountytips
❀2⚑1πŸ”₯1
πŸ“± Android Application Framework: Beginner’s Guide

Dive into the core architecture of Android with this detailed guide. Essential for developers and security researchers.

πŸ”— Read the full article: hackingarticles.in
❀4
πŸ” Credential Dumping: Windows Autologon Password

Attackers often target stored AutoLogon credentials to escalate access. Learn how this technique works and how to defend against it:

βœ” Method: Extracts plaintext passwords from the Registry (HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon).

βœ” Tools Used: Mimikatz, PowerShell, or manual registry queries.

βœ” Impact: Compromises domain/logon persistence.

βœ” Mitigation: Disable AutoLogon or use LSA protection.


πŸ“– Read the guide: hackingarticles.in
❀5
MSSQL for Pentester Command Execution with xp_cmdshell.pdf
4 MB
πŸ” MSSQL Pentesting: Command Execution via xp_cmdshell


This guide covers practical exploitation of MSSQL Server using xp_cmdshell:

Enabling xp_cmdshell (GUI, sqsh, impactet-mssqlclient)

Reverse shell methods: .hta, netcat, Python, nxc, crackmapexec, Metasploit

PowerUPSQL for command execution


πŸ”” Turn on notifications for more hacking writeups!
πŸ”₯4❀1
abusing trustworthy.pdf
2.1 MB
New Article Alert!
Title: Abusing Trustworthy Property in MSSQL
Description: Introduction to Trustworthy Property:
Understand the importance of trustworthy property in MSSQL for database security.
Lab Setup: Learn to set up a lab to demonstrate trustworthy property abuse.
Abusing Trustworthy Property: Discover exploitation methods, including manual tactics and remote exploitation with PowerUpSQL and Metasploit. Practical Examples: View examples of trustworthy property abuse, including code snippets and screenshots.
❀2
Password Cracking: FTP

Gaining initial access through an open FTP port is a common and effective technique in penetration testing.

βœ… Hydra
πŸ› οΈ Metasploit
πŸ’£ Medusa
🧰 NetExec (nxc)
πŸ”“ Ncrack
βš™οΈ Patator
πŸ“‚ Nmap NSE Script (ftp-brute.nse)
πŸš€ BruteSpray
❀3