Hacking Articles
21.1K subscribers
1.13K photos
165 files
777 links
House of Pentester
Download Telegram
CLI Tools for Linux Admin
❀1πŸ‘1
πŸš€ AI Penetration Training (Online) – Register Now! πŸš€

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Limited slots available! Hurry up to secure your spot in this exclusive training program offered by Ignite Technologies.

🧠 LLM Architecture
πŸ” LLM Security Principles
πŸ—„οΈ Data Security in AI Systems
πŸ›‘οΈ Model Security
πŸ—οΈ Infrastructure Security
πŸ“œ OWASP Top 10 for LLMs
βš™οΈ LLM Installation and Deployment
πŸ“‘ Model Context Protocol (MCP)
πŸš€ Publishing Your Model Using Ollama
πŸ” Introduction to Retrieval-Augmented Generation (RAG)
🌐 Making Your AI Application Public
πŸ“Š Types of Enumeration Using AI
🎯 Prompt Injection Attacks
🐞 Exploiting LLM APIs: Real-World Bug Scenarios
πŸ”‘ Password Leakage via AI Models
🎭 Indirect Prompt Injection Techniques
⚠️ Misconfigurations in LLM Deployments
πŸ‘‘ Exploitation of LLM APIs with Excessive Privileges
πŸ“ Content Manipulation in LLM Outputs
πŸ“€ Data Extraction Attacks on LLMs
πŸ”’ Securing AI Systems
🧾 System Prompts and Their Security Implications
πŸ€– Automated Penetration Testing with AI
❀2
Top 25 SSRF
❀1
Top 25 LFI
Top 25 XSS
Top 25 SQL
Wireless Penetration Testing: Airgeddon

πŸ”₯ Telegram: https://t.me/hackinarticles

You’ll discover how to use airgeddon for Wi-Fi hacking in this article.

πŸ“₯ Install Airgeddon & Usage
πŸ“Ά Capturing Handshake & Deauthentication
πŸ“‚ Aircrack Dictionary Attack for WPA Handshake
🧠 Aircrack Brute Force Attack for WPA Handshake
βš™οΈ Hashcat Rule-Based Attack for WPA Handshake
🎭 Evil Twin Attack
🧬 PMKID Attack
πŸ”₯ OSCP+/CTF Exam Practice Training (Online) πŸ”₯ – Register Now! πŸš€

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Join IGNITE TECHNOLOGIES’ exclusive "Capture the Flag" Training Program and enhance your skills with the following modules:

🧠 Introduction
🌐 Information Gathering
🧱 Vulnerability Scanning
πŸ”“ Windows Privilege Escalation
🐧 Linux Privilege Escalation
πŸ›‘οΈ Client-Side Attacks
🌐 Web Application Attacks
🧬 Password Attacks
🧠 Tunneling & Pivoting
🏰 Active Directory Attacks
πŸ’£ Exploiting Public Exploits
πŸ“‹ Report Writing
Windows Forensics Methodology
Windows Server Roles Map
Windows Event ID
CISO Guide to AI Threats
☒ Automated Malware
Scenario: Polymorphic code β†’ Evades signatures.
Risk: AI generates endless malware variants.
Fix: Deploy EDR with behavioral analysis.

☒ Credential Phishing
Scenario: Fake login page β†’ Credential harvest.
Risk: AI clones corporate branding.
Fix: Enforce FIDO2/WebAuthn.

Key Actions
Train Staff: Simulate AI-driven phishing.
API Visibility: Monitor OAuth app permissions.
Zero Trust: Assume breach; verify continuously.
Log: Use tracing for diagnostics.
Comprehensive Guide on Unrestricted File Upload

✴ Twitter: https://lnkd.in/e7yRpDpY
πŸ”₯ Telegram: https://t.me/hackinarticles

In this article, we’ll learn how such invalidations to the user-input and server mismanagement, opens up the gates for the attackers to host malicious content, over from the Unrestricted File Upload functionality in order to drop down the web-applications.

πŸ“˜ Introduction to Unrestricted File Upload
πŸ’₯ Impact of Unrestricted File Upload
🎯 File Upload Exploitation
β€ƒπŸ“‚ Basic File Upload
β€ƒπŸ§Ύ Content-Type Restriction
β€ƒπŸ“ Double Extension File Upload
β€ƒπŸ–ΌοΈ Image Size Validation Bypass
β€ƒπŸš« Blacklisted Extension File Upload
πŸ›‘οΈ How to Mitigate?
Bug Bounty Training Program (Online)

πŸ”— Register here: https://forms.gle/bowpX9TGEs41GDG99
πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Hurry up, get enrolled yourself with IGNITE TECHNOLOGIES’ fully exclusive Training Program β€œBug Bounty.”

βœ”οΈ Table of Content
πŸš€ Introduction to WAPT & OWASP Top 10
πŸ› οΈ Pentest Lab Setup
πŸ” Information Gathering & Reconnaissance
πŸ’» Netcat for Pentester
βš™οΈ Configuration Management Testing
πŸ” Cryptography
πŸ”‘ Authentication
πŸ•’ Session Management
πŸ“‚ Local File Inclusion
🌐 Remote File Inclusion
πŸ“ Path Traversal
πŸ’£ OS Command Injection
πŸ”€ Open Redirect
πŸ“€ Unrestricted File Upload
🐚 PHP Web Shells
πŸ“ HTML Injection
🌟 Cross-Site Scripting (XSS)
πŸ”„ Client-Side Request Forgery
πŸ›‘ SQL Injection
πŸ“œ XXE Injection
🎁 Bonus Section
πŸ‘1
Network Trafic Analysis Tools