I understand your intention to educate people about the dark web and its potential dangers. It’s important to raise awareness about these…Continue reading on Medium » (https://medium.com/@stylishcollection666/ethical-hacker-in-the-world-explains-the-dark-web-d8c11a42d48c?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive Data
Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive DataPost Views: 29 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes
Google’s renowned security researcher Tavis Ormandy has uncovered a significant vulnerability called Zenbleed affecting AMD Zen2 CPUs, posing a serious risk of data theft. The flaw, tracked as CVE-2023-20593, allows malicious actors to pilfer sensitive information, including passwords and encryption keys, at an alarming rate of 30KB/sec from each CPU core.
The root cause of this vulnerability lies in the improper handling of the ‘vzeroupper’ instruction during speculative execution, a widely-used performance-enhancing technique employed in modern processors.
Ormandy employed fuzzing and performance counters to identify specific hardware events, validating his findings using the “Oracle Serialization” approach. This method enabled the detection of inconsistencies between the execution of a randomly generated program and its serialized oracle, leading to the discovery of CVE-2023-20593 in Zen2 CPUs.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Zenbleed PoCWith an optimized exploit for the flaw, the researcher successfully demonstrated how sensitive data from various system operations, including those within virtual machines, isolated sandboxes, and containers, could be leaked.
“I found a variant that can leak about 30 kb per core, per second. This is fast enough to monitor encryption keys and passwords as users login!,” elaborated Ormandy in a technical write-up.
After notifying AMD about the flaw on May 15, 2023, the researcher has now published a proof-of-concept (PoC) exploit for CVE-2023-20593, impacting all operating systems running on Zen 2 CPUs.
First big result from our new CPU research project, a use-after-free in AMD Zen2 processors! 🔥 AMD have just released updated microcode for affected systems, please update! https://t.co/NVPWFpVopz pic.twitter.com/HgKwu9w8Av
— Tavis Ormandy (@taviso) July 24, 2023
The vulnerability affects numerous AMD CPUs built on the Zen 2 architecture, including Ryzen 3000 (“Matisse”), Ryzen 4000U/H (“Renoir”), Ryzen 5000U (“Lucienne”), Ryzen 7020, and high-end ThreadRipper 3000 and Epyc server (“Rome”) processors.
AMD has released an updated microcode to address the issue, and users are strongly advised to apply the fix or await BIOS upgrades from their computer vendors.
Trending: Unlocking Windows System Resource Utilization for Digital Forensics Analysis with SRUM Dump Trending: Digital Forensics Tool: ScrapPy
Ormandy suggests an alternative mitigation method involving setting the “chicken bit” to DE_CFG[9], though this may lead to a drop in CPU performance.
Detection of exploitation is challenging, as the improper usage of ‘vzeroupper’ does not require elevated privileges or special system calls, making the Zenbleed exploit stealthy and potentially hard to trace.
For regular users, the practical impact of Zenbleed is relatively low, as exploiting it requires local access to the target system and a high level of expertise. Nonetheless, maintaining up-to-date systems with the latest security patches and BIOS updates is crucial to mitigate potential risks.
Trending: WormGPT: Unleashing the Dark Side of Generative AI for Cybercrime
Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sh[...]
Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive Data
Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive DataPost Views: 29 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes
Google’s renowned security researcher Tavis Ormandy has uncovered a significant vulnerability called Zenbleed affecting AMD Zen2 CPUs, posing a serious risk of data theft. The flaw, tracked as CVE-2023-20593, allows malicious actors to pilfer sensitive information, including passwords and encryption keys, at an alarming rate of 30KB/sec from each CPU core.
The root cause of this vulnerability lies in the improper handling of the ‘vzeroupper’ instruction during speculative execution, a widely-used performance-enhancing technique employed in modern processors.
Ormandy employed fuzzing and performance counters to identify specific hardware events, validating his findings using the “Oracle Serialization” approach. This method enabled the detection of inconsistencies between the execution of a randomly generated program and its serialized oracle, leading to the discovery of CVE-2023-20593 in Zen2 CPUs.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Zenbleed PoCWith an optimized exploit for the flaw, the researcher successfully demonstrated how sensitive data from various system operations, including those within virtual machines, isolated sandboxes, and containers, could be leaked.
“I found a variant that can leak about 30 kb per core, per second. This is fast enough to monitor encryption keys and passwords as users login!,” elaborated Ormandy in a technical write-up.
After notifying AMD about the flaw on May 15, 2023, the researcher has now published a proof-of-concept (PoC) exploit for CVE-2023-20593, impacting all operating systems running on Zen 2 CPUs.
First big result from our new CPU research project, a use-after-free in AMD Zen2 processors! 🔥 AMD have just released updated microcode for affected systems, please update! https://t.co/NVPWFpVopz pic.twitter.com/HgKwu9w8Av
— Tavis Ormandy (@taviso) July 24, 2023
The vulnerability affects numerous AMD CPUs built on the Zen 2 architecture, including Ryzen 3000 (“Matisse”), Ryzen 4000U/H (“Renoir”), Ryzen 5000U (“Lucienne”), Ryzen 7020, and high-end ThreadRipper 3000 and Epyc server (“Rome”) processors.
AMD has released an updated microcode to address the issue, and users are strongly advised to apply the fix or await BIOS upgrades from their computer vendors.
Trending: Unlocking Windows System Resource Utilization for Digital Forensics Analysis with SRUM Dump Trending: Digital Forensics Tool: ScrapPy
Ormandy suggests an alternative mitigation method involving setting the “chicken bit” to DE_CFG[9], though this may lead to a drop in CPU performance.
Detection of exploitation is challenging, as the improper usage of ‘vzeroupper’ does not require elevated privileges or special system calls, making the Zenbleed exploit stealthy and potentially hard to trace.
For regular users, the practical impact of Zenbleed is relatively low, as exploiting it requires local access to the target system and a high level of expertise. Nonetheless, maintaining up-to-date systems with the latest security patches and BIOS updates is crucial to mitigate potential risks.
Trending: WormGPT: Unleashing the Dark Side of Generative AI for Cybercrime
Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sh[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive Data Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive DataPost Views: 29 Premium Contenthttps://www.blackhatethicalhacking.com/wp-c…
aring?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Copy-of-Images-for-the-News-posts-300x150.png HotRat Malware -The Sneaky Trojan Lurking in Cracked SoftwareJuly 24, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-12-300x150.png New P2PInfect Malware, Self-Spreading Worm Targets Redis Instances on Internet-Exposed SystemsJuly 21, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-11-300x150.png DeliveryCheck: Turla’s New Cyberweapon Strikes Microsoft Exchange Servers and Defense SectorJuly 20, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-10-300x150.png WormGPT: Unleashing the Dark Side of Generative AI for CybercrimeJuly 19, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive Data first appeared on Black Hat Ethical Hacking.
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Copy-of-Images-for-the-News-posts-300x150.png HotRat Malware -The Sneaky Trojan Lurking in Cracked SoftwareJuly 24, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-12-300x150.png New P2PInfect Malware, Self-Spreading Worm Targets Redis Instances on Internet-Exposed SystemsJuly 21, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-11-300x150.png DeliveryCheck: Turla’s New Cyberweapon Strikes Microsoft Exchange Servers and Defense SectorJuly 20, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-10-300x150.png WormGPT: Unleashing the Dark Side of Generative AI for CybercrimeJuly 19, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Zenbleed: Critical Flaw Found in AMD Zen2 CPUs That Could Leak Sensitive Data first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Persistent API Hooking with Detours via DLL Injection
https://cdn-images-1.medium.com/max/600/1*-Pz_aj9gNo_UuomZoK6owg.png
Greetings, readers, and welcome to this comprehensive article on the subject of “Persistent API Hooking with Detours via DLL Injection.”
Continue reading on Medium »
Persistent API Hooking with Detours via DLL Injection
https://cdn-images-1.medium.com/max/600/1*-Pz_aj9gNo_UuomZoK6owg.png
Greetings, readers, and welcome to this comprehensive article on the subject of “Persistent API Hooking with Detours via DLL Injection.”
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Bounty Hackers CTF by Try Hack Me
https://cdn-images-1.medium.com/max/1200/1*1mtQwkgfzGNK8xB5RxWY5A.jpeg
Are you ready to embark on an exhilarating virtual journey as a bounty Hacker? So, gear up, grab your cyber tools, and let’s get started!
Continue reading on Medium »
Bounty Hackers CTF by Try Hack Me
https://cdn-images-1.medium.com/max/1200/1*1mtQwkgfzGNK8xB5RxWY5A.jpeg
Are you ready to embark on an exhilarating virtual journey as a bounty Hacker? So, gear up, grab your cyber tools, and let’s get started!
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Loose Lips: How George Papadopoulos Revealed Russian Secrets
https://cdn-images-1.medium.com/max/2048/1*BNSU2LvNGBQFnlJ8yUTyag.jpeg
This article covers how George Papadopoulos informed two foreign diplomats that the Russians possessed Clinton-related emails.
Continue reading on Medium »
Loose Lips: How George Papadopoulos Revealed Russian Secrets
https://cdn-images-1.medium.com/max/2048/1*BNSU2LvNGBQFnlJ8yUTyag.jpeg
This article covers how George Papadopoulos informed two foreign diplomats that the Russians possessed Clinton-related emails.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Wallet-Transaction-Monitor - This Script Monitors A Bitcoin Wallet Address And Notifies The User When There Are Changes In The Balance Or New Transactions
https://blogger.googleusercontent.com/img/a/AVvXsEhuDeLU636d0AjcBrP67ciRyE7X4uNUHsXUhuPHyuNxn-5S1sjYT5n5bp2IRlL-FJMNsINf5XWHpKlcTDBb_tVnLk6Vs354WrDWwz6ufwM0_XSMOGD5vVOMdR1yaU33XijgswR-QWlY8LwA2nXrrZmDotvQGJmfdRg4rGdlLmPYkGfDhhQYrYMTEszR6Wlj=w640-h356
This script monitors a Bitcoin wallet address and notifies the user when there are changes in the balance or new transactions. It provides real-time updates on incoming and outgoing transactions, along with the corresponding amounts and timestamps. Additionally, it can play a sound notification on Windows when a new transaction occurs.
Requirements
Python 3.x requests library: You can install it by running pip install requests. winsound module: This module is available by default on Windows.
How to Run
* Make sure you have Python 3.x installed on your system.
* pip install -r requirements.txt
* Clone or download the script file wallet_transaction_monitor.py from this repository.
* Place the sound file (in .wav format) you want to use for the notification in the same directory as the script. Make sure to replace "soundfile.wav" in the script with the actual filename of your sound file.
* Open a terminal or command prompt and navigate to the directory where the script is located.
* Run the script by executing the following command:
The script will start monitoring the wallet and display updates whenever there are changes in the balance or new transactions. It will also play the specified sound notification on Windows.
Important Notes
This script is designed to work on Windows due to the use of the winsound module for sound notifications. If you are using a different operating system, you may need to modify the sound-related code or use an alternative method for audio notifications. The script uses the Blockchain.info API to fetch wallet data. Please ensure you have a stable internet connection for the script to work correctly. It's recommended to run the script in the background or keep the terminal window open while monitoring the wallet.
Download Wallet-Transaction-Monitor
Wallet-Transaction-Monitor - This Script Monitors A Bitcoin Wallet Address And Notifies The User When There Are Changes In The Balance Or New Transactions
https://blogger.googleusercontent.com/img/a/AVvXsEhuDeLU636d0AjcBrP67ciRyE7X4uNUHsXUhuPHyuNxn-5S1sjYT5n5bp2IRlL-FJMNsINf5XWHpKlcTDBb_tVnLk6Vs354WrDWwz6ufwM0_XSMOGD5vVOMdR1yaU33XijgswR-QWlY8LwA2nXrrZmDotvQGJmfdRg4rGdlLmPYkGfDhhQYrYMTEszR6Wlj=w640-h356
This script monitors a Bitcoin wallet address and notifies the user when there are changes in the balance or new transactions. It provides real-time updates on incoming and outgoing transactions, along with the corresponding amounts and timestamps. Additionally, it can play a sound notification on Windows when a new transaction occurs.
Requirements
Python 3.x requests library: You can install it by running pip install requests. winsound module: This module is available by default on Windows.
How to Run
* Make sure you have Python 3.x installed on your system.
* pip install -r requirements.txt
* Clone or download the script file wallet_transaction_monitor.py from this repository.
* Place the sound file (in .wav format) you want to use for the notification in the same directory as the script. Make sure to replace "soundfile.wav" in the script with the actual filename of your sound file.
* Open a terminal or command prompt and navigate to the directory where the script is located.
* Run the script by executing the following command:
python wallet_transaction_monitor.pyThe script will start monitoring the wallet and display updates whenever there are changes in the balance or new transactions. It will also play the specified sound notification on Windows.
Important Notes
This script is designed to work on Windows due to the use of the winsound module for sound notifications. If you are using a different operating system, you may need to modify the sound-related code or use an alternative method for audio notifications. The script uses the Blockchain.info API to fetch wallet data. Please ensure you have a stable internet connection for the script to work correctly. It's recommended to run the script in the background or keep the terminal window open while monitoring the wallet.
Download Wallet-Transaction-Monitor
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Bearer : Code Security Scanning Tool (SAST) That Discover, Filter And Prioritize Security Risks
Bearer is a Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
Bearer CLI is a static application security testing (SAST) tool that scans your source code and analyzes your data flows to discover, filter and prioritize security and privacy risks.
Currently supporting JavaScript, TypeScript and Ruby stacks.
???? Java support is under active development.
Bearer CLI provides built-in rules against a common set of security risks and vulnerabilities, known as OWASP Top 10, and privacy risks. Here are some practical examples of what those rules look for:
* Non-filtered user input (sql injection, path traversal, etc.)
* Leakage of sensitive data through cookies, internal loggers, third-party logging services, and into analytics environments.
* Usage of weak encryption libraries or misusage of encryption algorithms.
* Unencrypted incoming and outgoing communication (HTTP, FTP, SMTP) of sensitive data.
* Hard-coded secrets and tokens.
And many more.
Bearer CLI is Open Source (see license) and fully customizable, from creating your own rules to component detection (database, API) and data classification.
Bearer CLI also powers our commercial offering, Bearer Cloud, allowing security teams to scale and monitor their application security program using the same engine. Getting startedDiscover your most critical security risks and vulnerabilities in only a few minutes. In this guide, you will install Bearer CLI, run a security scan on a local project, and view the results. Let’s get started! Install Bearer CLIThe quickest way to install Bearer CLI is with the install script. It will auto-select the best build for your architecture. Defaults installation to
curl -sfL https://raw.githubusercontent.com/Bearer/bearer/main/contrib/install.sh | sh Other install optionsHomebrew Debian/Ubuntu RHEL/CentOS Docker Binary Scan your projectThe easiest way to try out Bearer CLI is with the OWASP Juice Shop example project. It simulates a realistic JavaScript application with common security flaws. Clone or download it to a convenient location to get started.
git clone https://github.com/juice-shop/juice-shop.git
Now, run the scan command with
bearer scan juice-shop
A progress bar will display the status of the scan.
Once the scan is complete, Bearer CLI will output, by default, a security report with details of any rule findings, as well as where in the codebase the infractions happened and why.
By default the
* The list of rules run against your code.
* Each detected finding, containing the file location and lines that triggered the rule finding.
* A stat section with a summary of rules checks, findings and warnings.
The OWASP Juice Shop example application will trigger rule findings and output a full report. Here’s a section of the output:
Bearer : Code Security Scanning Tool (SAST) That Discover, Filter And Prioritize Security Risks
Bearer is a Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
Bearer CLI is a static application security testing (SAST) tool that scans your source code and analyzes your data flows to discover, filter and prioritize security and privacy risks.
Currently supporting JavaScript, TypeScript and Ruby stacks.
???? Java support is under active development.
Bearer CLI provides built-in rules against a common set of security risks and vulnerabilities, known as OWASP Top 10, and privacy risks. Here are some practical examples of what those rules look for:
* Non-filtered user input (sql injection, path traversal, etc.)
* Leakage of sensitive data through cookies, internal loggers, third-party logging services, and into analytics environments.
* Usage of weak encryption libraries or misusage of encryption algorithms.
* Unencrypted incoming and outgoing communication (HTTP, FTP, SMTP) of sensitive data.
* Hard-coded secrets and tokens.
And many more.
Bearer CLI is Open Source (see license) and fully customizable, from creating your own rules to component detection (database, API) and data classification.
Bearer CLI also powers our commercial offering, Bearer Cloud, allowing security teams to scale and monitor their application security program using the same engine. Getting startedDiscover your most critical security risks and vulnerabilities in only a few minutes. In this guide, you will install Bearer CLI, run a security scan on a local project, and view the results. Let’s get started! Install Bearer CLIThe quickest way to install Bearer CLI is with the install script. It will auto-select the best build for your architecture. Defaults installation to
./binand to the latest release version:curl -sfL https://raw.githubusercontent.com/Bearer/bearer/main/contrib/install.sh | sh Other install optionsHomebrew Debian/Ubuntu RHEL/CentOS Docker Binary Scan your projectThe easiest way to try out Bearer CLI is with the OWASP Juice Shop example project. It simulates a realistic JavaScript application with common security flaws. Clone or download it to a convenient location to get started.
git clone https://github.com/juice-shop/juice-shop.git
Now, run the scan command with
bearer scanon the project directory:bearer scan juice-shop
A progress bar will display the status of the scan.
Once the scan is complete, Bearer CLI will output, by default, a security report with details of any rule findings, as well as where in the codebase the infractions happened and why.
By default the
scancommand use the SAST scanner, other scanner types are available. Analyze the reportThe security report is an easily digestible view of the security issues detected by Bearer CLI. A report is made up of:* The list of rules run against your code.
* Each detected finding, containing the file location and lines that triggered the rule finding.
* A stat section with a summary of rules checks, findings and warnings.
The OWASP Juice Shop example application will trigger rule findings and output a full report. Here’s a section of the output:
...
HIGH: Sensitive data stored in HTML local storage detected. [CWE-312]
https://docs.bearer.com/reference/rules/javascript_lang_session
To skip this rule, use the flag --skip-rule=javascript_lang_session
File: juice-shop/frontend/src/app/login/login.component.ts:102
102 localStorage.setItem('email', this.user.email)
=====================================
59 checks, 40 findings
CRITICAL: 0
HIGH: 16 (CWE-22, CWE-312, CWE-798, CWE-89)
MEDIUM: 24 (CWE-327, CWE-548, CWE-79)
LOW: 0
WARNING: 0 In addition of [...]Kali Linux Tutorials
Bearer : Code Security Scanning Tool (SAST) That Discover, Filter And Prioritize Security Risks
Bearer : Code Security Scanning Tool (SAST) That Discover, Filter And Prioritize Security Risks
Kali Linux Tutorials
Bearer - Code Security Scanning Tool (SAST)
Bearer is a Code Security Scanning Tool (SAST) That Discover, Filter And Prioritize Security Risks And Vulnerabilities Leading To Sensitive
Kali Linux Tutorials
hardCIDR : Linux Bash Script
hardCIDR is a Linux Bash script, but also functions under macOS. Your mileage may vary on other distros. The script with no specified options will query ARIN and a pool of BGP route servers. The route server is selected at random at runtime.
A Linux Bash script to discover the netblocks, or ranges, (in CIDR notation) owned by the target organization during the intelligence gathering phase of a penetration test. This information is maintained by the five Regional Internet Registries (RIRs):
ARIN (North America)
RIPE (Europe/Asia/Middle East)
APNIC (Asia/Pacific)
LACNIC (Latin America)
AfriNIC (Africa)
In addition to netblocks and IP addresses, Autonomous System Numbers (ASNs) are also of interest. ASNs are used as part of the Border Gateway Protocol (BGP) for uniquely identifying each network on the Internet. Target organizations may have their own ASNs due to the size of their network or as a result of redundant service paths from peered service providers. These ASNs will reveal additional netblocks owned by the organization. Requirementsipcalc (for RIPE, APNIC, LACNIC, AfriNIC queries) LACNICA note on LACNIC before diving into the usage. LACNIC only allows query of either network range, ASN, Org Handle, or PoC Handle. This does not help us in locating these values based upon the organization name. They do however publish a list of all assigned ranges on a publically accessible FTP server, along with their rate-limiting thresholds. So, there is an accompanying data file, which the script checks for, used to perform LACNIC queries locally. The script includes an update option -r, that can be used to update this data on an interval of your choosing. Approximate run time is just shy of 28 hours. UsageThe script with no specified options will query ARIN and a pool of BGP route servers. The route server is selected at random at runtime. The -h option lists the help:
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgDkLsGPik4hkqSuscRpvdUfh9FJ9mNUrH6NoS8PNsy33u2ZJ-QaLw7YU6BlF5wD-UI8OGteTKnz9WZ0H5pn9B0GgC40m1mj3ZcajWBXq9Tm2TyZqPBL6Q-7R9Q06bL24LrRAMfuWZPbJKucevyxConzUQ-uQIxVI00fVD4Qt04j0QoyIeUDZvbGewjNGY/s16000/68747470733a2f2f7777772e7472757--11.png
The options may be used in any combination, all, or none. Unfortunately, none of the “other” RIRs note the actual CIDR notation of the range, so
At the prompts, enter the organization name, the email domain, and whether country codes are used as part of the email. If answered Y to country codes, you will be prompted as to whether they precede the domain name or are appended to the TLD. A directory will be created for the output files in /tmp/. If the directory is found to exist, you will be prompted whether to overwrite. If answered N, a time stamp will be appended to the directory name.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgPLj8GSMU4P18cFvrd9SxW1XVMcpK08xoB27HP5DIGgI4W7lYaXEqHvegR3Jg-w9OJekeJWHFqnhfn56NfI31D2E8zS7Sz52jW7KctSoWHrkgfFYC3bhza4mh6rQYZIM_Yc_vrYQUmYK3nu7YHO75xY8hZr4NEq9W_LgG3fTcT976v5LI-CfRiusmRUDM/s16000/68747470733a2f2f7777772e74727573--22.png
The script queries each RIR, as well as a BGP route server, prompting along the way as to whether records were located. Upon completion, three files will be generated: a CSV based on Org Handle, a CSV based on PoC Handle, and a line delimited file of all located raanges in CIDR notation.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhLYiF1vkzzIRhOD-DMhpt6j6p325X73DeyyJCqt_Saol5jirYYzW0FIQGkEgLDJVI0rezoDRFaLuz52S9WohUbxL3ttCTmoGo6EwTyMf_bcNwe6utVUVXKle9E0uq84VTDg7CyuWBDx5FcBWK4quOBmK7BmcDyRwkiG0G0YE64Zf3V-Ghn-HVyQrqmqNw/s16000/68747470733a2f2f7777772e74727573--33.png
Cancelling the script at any time will remove any temporary working fil[...]
hardCIDR : Linux Bash Script
hardCIDR is a Linux Bash script, but also functions under macOS. Your mileage may vary on other distros. The script with no specified options will query ARIN and a pool of BGP route servers. The route server is selected at random at runtime.
A Linux Bash script to discover the netblocks, or ranges, (in CIDR notation) owned by the target organization during the intelligence gathering phase of a penetration test. This information is maintained by the five Regional Internet Registries (RIRs):
ARIN (North America)
RIPE (Europe/Asia/Middle East)
APNIC (Asia/Pacific)
LACNIC (Latin America)
AfriNIC (Africa)
In addition to netblocks and IP addresses, Autonomous System Numbers (ASNs) are also of interest. ASNs are used as part of the Border Gateway Protocol (BGP) for uniquely identifying each network on the Internet. Target organizations may have their own ASNs due to the size of their network or as a result of redundant service paths from peered service providers. These ASNs will reveal additional netblocks owned by the organization. Requirementsipcalc (for RIPE, APNIC, LACNIC, AfriNIC queries) LACNICA note on LACNIC before diving into the usage. LACNIC only allows query of either network range, ASN, Org Handle, or PoC Handle. This does not help us in locating these values based upon the organization name. They do however publish a list of all assigned ranges on a publically accessible FTP server, along with their rate-limiting thresholds. So, there is an accompanying data file, which the script checks for, used to perform LACNIC queries locally. The script includes an update option -r, that can be used to update this data on an interval of your choosing. Approximate run time is just shy of 28 hours. UsageThe script with no specified options will query ARIN and a pool of BGP route servers. The route server is selected at random at runtime. The -h option lists the help:
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgDkLsGPik4hkqSuscRpvdUfh9FJ9mNUrH6NoS8PNsy33u2ZJ-QaLw7YU6BlF5wD-UI8OGteTKnz9WZ0H5pn9B0GgC40m1mj3ZcajWBXq9Tm2TyZqPBL6Q-7R9Q06bL24LrRAMfuWZPbJKucevyxConzUQ-uQIxVI00fVD4Qt04j0QoyIeUDZvbGewjNGY/s16000/68747470733a2f2f7777772e7472757--11.png
The options may be used in any combination, all, or none. Unfortunately, none of the “other” RIRs note the actual CIDR notation of the range, so
ipcalcis used to perform this function. If it is not installed on your system, the script will install it for you.At the prompts, enter the organization name, the email domain, and whether country codes are used as part of the email. If answered Y to country codes, you will be prompted as to whether they precede the domain name or are appended to the TLD. A directory will be created for the output files in /tmp/. If the directory is found to exist, you will be prompted whether to overwrite. If answered N, a time stamp will be appended to the directory name.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgPLj8GSMU4P18cFvrd9SxW1XVMcpK08xoB27HP5DIGgI4W7lYaXEqHvegR3Jg-w9OJekeJWHFqnhfn56NfI31D2E8zS7Sz52jW7KctSoWHrkgfFYC3bhza4mh6rQYZIM_Yc_vrYQUmYK3nu7YHO75xY8hZr4NEq9W_LgG3fTcT976v5LI-CfRiusmRUDM/s16000/68747470733a2f2f7777772e74727573--22.png
The script queries each RIR, as well as a BGP route server, prompting along the way as to whether records were located. Upon completion, three files will be generated: a CSV based on Org Handle, a CSV based on PoC Handle, and a line delimited file of all located raanges in CIDR notation.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhLYiF1vkzzIRhOD-DMhpt6j6p325X73DeyyJCqt_Saol5jirYYzW0FIQGkEgLDJVI0rezoDRFaLuz52S9WohUbxL3ttCTmoGo6EwTyMf_bcNwe6utVUVXKle9E0uq84VTDg7CyuWBDx5FcBWK4quOBmK7BmcDyRwkiG0G0YE64Zf3V-Ghn-HVyQrqmqNw/s16000/68747470733a2f2f7777772e74727573--33.png
Cancelling the script at any time will remove any temporary working fil[...]
Kali Linux Tutorials
hardCIDR : Linux Bash Script
hardCIDR is a Linux Bash script, but also functions under macOS. Your mileage may vary on other distros. The script with no specified options
Hacking Articles Tips Tricks Videos Tutorials
Kali Linux Tutorials hardCIDR : Linux Bash Script hardCIDR is a Linux Bash script, but also functions under macOS. Your mileage may vary on other distros. The script with no specified options will query ARIN and a pool of BGP route servers. The route server…
es and the directory created for the resultant output files.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjakuN6hgG7Ug_u3mp3VwVERKSdmYVnN_gygtj3QDaPBpKrhCiizusgcttlJi2xpYcgg1gHZSxazTpUtkaSZosTf_4yijYY_BYz5V1iSEH24PMLVYQfnCM6mOy5_XXhBBrgL2e17cpiASsHznXaryMRiCLbHrSt9FV3WjjG5gK0UFQIS4vficQ4x425zKQ/s16000/68747470733a2f2f7777772e7472757-44.png
It should be noted that, due to similarity in some organization names, you could get back results not related to the target. The CSV files will provide the associated handles and URLs for further validation where necessary. It is also possible that employees of the target organization used their corporate email address to register their own domains. These will be found within the results as well. Running with Docker
Please consider following and supporting us to stay updated with the latest info
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjakuN6hgG7Ug_u3mp3VwVERKSdmYVnN_gygtj3QDaPBpKrhCiizusgcttlJi2xpYcgg1gHZSxazTpUtkaSZosTf_4yijYY_BYz5V1iSEH24PMLVYQfnCM6mOy5_XXhBBrgL2e17cpiASsHznXaryMRiCLbHrSt9FV3WjjG5gK0UFQIS4vficQ4x425zKQ/s16000/68747470733a2f2f7777772e7472757-44.png
It should be noted that, due to similarity in some organization names, you could get back results not related to the target. The CSV files will provide the associated handles and URLs for further validation where necessary. It is also possible that employees of the target organization used their corporate email address to register their own domains. These will be found within the results as well. Running with Docker
docker build -t hardcidr . Building the hardcidr image docker run -v $(pwd):/tmp -it hardcidr Running the container. Output will be saved to current directory Additional InformationFor more information, check out the blog post on the TrustedSec website: Classy Inter-Domain Routing Enumeration Click Here To DownloadPlease consider following and supporting us to stay updated with the latest info
Wallet-Transaction-Monitor - This Script Monitors A Bitcoin Wallet Address And Notifies The User When There Are Changes In The Balance Or New Transactions
http://www.kitploit.com/2023/07/wallet-transaction-monitor-this-script.html
http://www.kitploit.com/2023/07/wallet-transaction-monitor-this-script.html
This script monitors a Bitcoin (https://www.kitploit.com/search/label/Bitcoin) wallet address and notifies the user when there are changes in the balance or new transactions. It provides real-time (https://www.kitploit.com/search/label/Real-Time) updates on incoming and outgoing transactions, along with the corresponding amounts and timestamps. Additionally, it can play a sound notification on Windows (https://www.kitploit.com/search/label/Windows) when a new transaction occurs. Requirements Python 3.x requests library: You can install it by running pip install requests. winsound module: This module is available by default on Windows. How to Run Make sure you have Python 3.x installed on your system. pip install -r requirements.txt Clone or download the script file wallet_transaction_monitor.py from this repository. Place the sound file (in .wav format) you want to use for the notification in the same directory (https://www.kitploit.com/search/label/Directory) as the script. Make sure to replace "soundfile.wav" in the script with the actual filename of your sound file. Open a terminal or command prompt and navigate to the directory where the script is located. Run the script by executing the following command: python wallet_transaction_monitor.py The script will start monitoring the wallet and display updates whenever there are changes in the balance or new transactions. It will also play the specified sound notification on Windows. Important Notes This script is designed to work on Windows due to the use of the winsound module for sound notifications. If you are using a different operating system, you may need to modify the sound-related code or use an alternative method for audio (https://www.kitploit.com/search/label/Audio) notifications. The script uses the Blockchain.info API to fetch wallet data. Please ensure you have a stable internet connection for the script to work correctly. It's recommended to run the script in the background or keep the terminal window open while monitoring the wallet.
Download Wallet-Transaction-Monitor (https://github.com/SomethingTotallyRandom/Wallet-Transaction-Monitor)
Download Wallet-Transaction-Monitor (https://github.com/SomethingTotallyRandom/Wallet-Transaction-Monitor)
Programme Syntropy Builders : Renforcer les innovateurs dans l’espace blockchain
https://medium.com/syntropynet/programme-syntropy-builders-renforcer-les-innovateurs-dans-lespace-blockchain-8151f05b102?source=rss------bug_bounty-5
https://medium.com/syntropynet/programme-syntropy-builders-renforcer-les-innovateurs-dans-lespace-blockchain-8151f05b102?source=rss------bug_bounty-5