Hacking Articles
21.2K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
Comprehensive Guide on HTML Injection

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

Today, in this article, weโ€™ll learn how such misconfigured HTML codes, open the gates for the attackers to manipulate the designed webpages and grabs up the sensitive data from the users.

๐ŸŒ What is HTML?
๐Ÿ“˜ Introduction to HTML Injection
๐Ÿ’ฅ Impact of HTML Injection
โš”๏ธ HTML Injection vs XSS
๐Ÿงฌ Types of Injection
๐Ÿ’พ Stored HTML
๐Ÿ” Reflected HTML
๐Ÿ“ฅ Reflected GET
๐Ÿ“ค Reflected POST
๐Ÿ”— Reflected Current URL
A Detailed Guide on OS Command Injection

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

In this article, weโ€™ll learn about OS Command Injection, in which an attacker is able to trigger some arbitrary system shell commands on the hosted operating system via a vulnerable web-application.

๐Ÿ“˜ Introduction to Command Injection
โ“ How Command Injection Occurs?
๐Ÿ”ฃ Metacharacters
๐Ÿ“‚ Types of Command Injection
๐Ÿ’ฅ Impact of OS Command Injection
๐Ÿงญ Steps to Exploit โ€“ OS Command Injection
๐Ÿ› ๏ธ Manual Exploitation
๐Ÿ“Ÿ Basic OS Command Injection
๐Ÿšซ Bypass a Blacklist Implemented
๐Ÿค– Exploitation through Automated Tools
๐Ÿงช Burp Suite
โœ๏ธ Manual
๐ŸŒช๏ธ Fuzzing
๐Ÿงฌ Commix
๐ŸŽฏ Metasploit
๐Ÿ‘๏ธ Blind OS Command Injection
๐Ÿ” Detection
๐Ÿ’ฃ Exploitation
Wireless Penetration Testing: PMKID Attack

๐Ÿ”ฅ Telegram: https://t.me/hackinarticles

This attack targets WPA and WPA2 protocols effectively. However, recent studies show that WPA3 offers far greater resistance and shows little to no success against PMKID attacks.

๐Ÿ”“ Open System Authentication
๐Ÿ” Shared Key Authentication
๐Ÿ“ถ WPA and WPA2 PSK
๐Ÿค 4-Way Handshake
๐Ÿง  PMK Caching and PMKID (in the RSN IE frame)
๐Ÿ“– Explanation of Attack
๐ŸŽฏ Capturing PMKID using hcxdumptool
โš™๏ธ Converting pcapng to hashcat file and Cracking Using Hashcat
๐ŸŽฏ Capturing Only a Single PMKID using hcxdumptool
๐Ÿ”„ Converting pcapng to pcap and Cracking Using Aircrack-ng
๐Ÿ› ๏ธ PMKID Capture and Attack Using Airgeddon
๐ŸŒ PMKID Capture Using Bettercap
๐Ÿ” [Day 3] ADCS Exploitation: ESC3

ESC3 exploits misconfigured Enrollment Agent templates, allowing attackers to request certificates for other users.

๐Ÿ“Œ Key Points:

Risk: Templates with Enrollment Agent rights enable malicious certificate issuance.

Exploitation: Forge certificates for privileged accounts using Certificate Request Agent permissions.

Mitigation: Restrict Enrollment Agent roles and audit template permissions.

๐Ÿ“– Reference: ESC3 Technical Breakdown
๐Ÿ” State of Pentesting 2025: Key Insights

Discover the latest trends shaping enterprise security validation:

โœ” 67% of US enterprises breached in 24 months
โœ” 75+ security tools deployed on average (45% growing stacks)
โœ” 55% now use software-based pentesting for scalability
โœ” $187K avg. annual pentesting spend (11% of security budgets)

๐Ÿ”ง Top Shifts:
โ€ข Cyber insurance drives 59% of tool adoption
โ€ข 50% of orgs prioritize automated adversarial testing
โ€ข Only 14% trust govt. cyber support
๐Ÿ” Kerberos Username Bruteforce: AD Recon Made Easy

Learn to identify valid usernames in Active Directory via Kerberos pre-authentication without triggering lockouts:

โœ” No account lockouts โ€“ Safe enumeration
โœ” Stealthy recon โ€“ Fly under the radar
โœ” Tool options โ€“ Rubeus, Kerbrute, and more

๐Ÿ”ง Key Techniques:
โ€ข Kerberos error code analysis (KRB5KDC_ERR_PREAUTH_FAILED vs. KRB5KDC_ERR_C_PRINCIPAL_UNKNOWN)
โ€ข Wordlist customization for effective bruteforcing
โ€ข Rate-limiting bypass tactics
Windows Privilege Escalation: SeBackupPrivilege

โœด Twitter: https://lnkd.in/e7yRpDpY

In this article, we will shed light on some of the methods of Escalating Privilege on Windows-based Devices when it is vulnerable to the SeBackup Privilege after getting the initial foothold on the device.

โ˜ข Introduction
โ˜ขSetting Up Privilege on Windows 10
โ˜ขTesting Privilege on Windows 10
โ˜ขExploiting Privilege on Windows 10
โ˜ขSetting Up Privilege on Domain Controller
โ˜ขTesting Privilege on Domain Controller
โ˜ขExploiting Privilege on Domain Controller (Method 1)
โ˜ขExploiting Privilege on Domain Controller (Method 2)
โ˜ขConclusion
๐Ÿ”ฅ Ethical Hacking Proactive Training ๐Ÿ”ฅ

๐Ÿ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
๐Ÿ’ฌ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

๐Ÿ“ง Email: info@ignitetechnologies.in

Join Ignite Technologies ETHICAL HACKING PROACTIVE TRAINING live sessions with core practicals at Lowest Price.
BOOK YOUR DEMO NOW โ€ฆโ€ฆโ€ฆโ€ฆ.

๐Ÿ“˜ M1-Introduction
๐Ÿซ OLD School Learning
๐ŸŒ Basic of Networks
๐Ÿ” Recon - Footprinting
๐Ÿ“ก Recon - Network Scanning
๐Ÿ“œ Recon - Enumeration
๐Ÿ’ป System Hacking
๐Ÿ”— Post Exploitation & Persistence
๐Ÿ–ฅ๏ธ Webservers Penetration Testing
๐ŸŒ Website Hacking
๐Ÿฆ  Malware Threats
๐Ÿ“ถ Wireless Networks Hacking
๐Ÿ” Cryptography & Steganography
๐Ÿ•ต๏ธ Sniffing Attack
๐Ÿšซ Denial of Service
๐Ÿ›ก๏ธ Evading IDS, Firewalls & Honey Pots
๐ŸŽญ Social Engineering
๐Ÿ“ฑ Hacking Mobile Platforms