Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Privilege Escalation with PowerShell and SET

https://cdn-images-1.medium.com/max/600/0*x38oeGzyfs-X1opo.jpg
In a previous article we used PowerShell Empire v2.3.0 for Windows Post Exploitation. The same can be done with one of the most popular…

Continue reading on Medium »
Top Tools Reconnaisance: Unlocking the Secrets of Cybersecurity

In as…Continue reading on Medium »
Read more...
Uncovering Information Disclosures: A Step-by-Step Guide for Beginners

Introduction :Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Common Mistakes to Avoid When Trading in Cryptocurrency

Trading crypto is a popular way to make a living for many people worldwide. There are hundreds of digital assets they use to exchange, swap, borrow, lend, stake, etc. with the purpose of making a profit. Using a reliable exchange is only one aspect of successful trading. Take, for example, the WhiteBIT platform where you can convert DOGE USDT and over 200 other pairs.

When engaging in the realm of crypto market trading, it is imperative to remain cognizant of the prevalent errors that traders frequently commit. Sidestepping these missteps holds the potential to mitigate risks and amplify the likelihood of achieving triumph. Today, we will discuss the main mistakes every beginner makes when getting into trading crypto assets.

Common Trading Mistakes

Here in lie several commonplace trading mistakes to avoid:

* An egregious blunder often encountered is the failure to embark upon comprehensive research prior to engaging in trading activities. Essential comprehension of the fundamental aspects of the cryptocurrency at hand, encompassing its technological underpinnings, market tendencies, team dynamics, and prospective risks, assumes paramount importance. Without diligent research, one may find oneself making ill-informed decisions that carry the potential for substantial losses.
* Succumbing to the influence of emotions whilst formulating trading decisions epitomizes a veritable recipe for catastrophe. Fear and greed possess the capability to cloud one’s judgment, engendering impulsive actions. It is of utmost significance to adhere unwaveringly to a well-defined trading strategy, allowing decisions to be guided by logical analysis as opposed to emotional inclinations.
* Overindulging in trading activities manifests as an all-too-common pitfall, characterized by frequent entry and exit from positions bereft of a lucid strategy. This ill-advised behavior culminates in exorbitant transaction fees and a paucity of focus on trades of commendable quality. Patience assumes criticality; await high-probability trading opportunities aligned with your strategy.
* The act of neglecting prudent risk management is a big mistake. This encompasses the absence of setting stop-loss orders, failure to diversify one’s portfolio, or the perilous inclination to hazard an exorbitant amount of capital on a solitary trade. The implementation of judicious risk management techniques serves to safeguard one’s trading capital and avert substantial losses in the face of unfavorable market fluctuations.
* Engaging in trading activities devoid of a meticulously devised plan is tant amount to navigating treacherous waters bereft of a reliable compass. A comprehensive trading plan delineates one’s objectives, strategies, risk tolerance, and specific criteria for entering and exiting trades. Without such a plan, one risks succumbing to impulsive decisions or forfeiting the opportunity to capitalize on lucrative prospects.

These are just a few of the trading mistakes out of a long list. Keep on learning and practicing. For that purpose, use the WhiteBIT trading platform and blog, where you can find valuable articles and tutorials on trading avoiding mistakes.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Python Variant of NodeStealer – Targeting Facebook Business Accounts and Cryptocurrency

Python Variant of NodeStealer – Targeting Facebook Business Accounts and CryptocurrencyPost Views: 2 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes
Cybersecurity researchers from Palo Alto Network Unit 42 have recently discovered a Python variant of the infamous NodeStealer malware. This sophisticated strain is now fully equipped to not only take over Facebook business accounts but also to siphon cryptocurrency, making it a grave threat to both individuals and organizations. The campaign carrying this stealthy malware began in December 2022, but there is currently no evidence of its active presence.

Initially exposed by Meta in May 2023, NodeStealer was known as a potent stealer capable of harvesting sensitive data such as cookies and passwords from web browsers. It aimed to compromise Facebook, Gmail, and Outlook accounts. While earlier versions of NodeStealer were written in JavaScript, the latest iterations employ Python, showcasing the malware’s evolving capabilities.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses
The attack campaign commences with deceptive messages circulating on Facebook, offering free “professional” budget tracking Microsoft Excel and Google Sheets templates. Unsuspecting victims are tricked into downloading a ZIP archive file hosted on Google Drive. Concealed within this ZIP file lies the malicious stealer executable, designed to capture valuable information from Facebook business accounts. In addition, it deploys BitRAT and XWorm malware in the form of ZIP files, disables Microsoft Defender Antivirus, and conducts cryptocurrency theft by exploiting MetaMask credentials from Google Chrome, Cốc Cốc, and Brave web browsers.

To facilitate the downloads of additional malware, the attackers utilize a User Account Control (UAC) bypass technique employing fodhelper.exe. This method allows the execution of PowerShell scripts that retrieve the ZIP files from a remote server, granting attackers elevated privileges over infected hosts.

Notably, Unit 42 has identified an upgraded Python variant of NodeStealer, exhibiting anti-analysis features and advanced capabilities. It now parses emails from Microsoft Outlook and makes attempts to take over the associated Facebook account.
Trending: The Difference between Internal and External Pentesting Trending: Offensive Security Tool: Nucleimonst3r Once the necessary information is collected, the malware exfiltrates the files through the Telegram API before promptly erasing any trace of its activity from the infected machine.

NodeStealer has emerged as a prominent part of a concerning trend among Vietnamese threat actors, who are increasingly targeting Facebook business accounts for advertising fraud and disseminating malware to other users on the social media platform.

https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEg6vQDTCmrQOISC6FPDbHMsd15nSSha7QUCqCh4fmirTIAstO5ph2b8BI2rm3UKmXdocJ7w4bMEPDlfmeGRQxPneAz26MQyk6SbxGyKuWZusjRAGlShs_t2yV8oY2gI9d0OpywZde6OJSU8Dcm7VW091ZiZcOwJDnzkbfaX-VNfdHcmcceAxNc9dEQOXkor/s728-e365/hack.jpg

In light of these emerging threats, Facebook business account owners are urged to implement strong passwords and enable multi-factor authentication. Additionally, organizations should prioritize educating their staff about phishing tactics, particularly modern and targeted approaches that exploit current events and business needs, to defend against such pernicious cyberattacks.
Trending: HotRat Malware -The Sneaky Trojan [...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Python Variant of NodeStealer – Targeting Facebook Business Accounts and Cryptocurrency Python Variant of NodeStealer – Targeting Facebook Business Accounts and CryptocurrencyPost Views: 2 Premium Contenthttps://www.blackhatethi…
Lurking in Cracked Software Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?

If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: thehackernews.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/08/Images-for-the-News-posts-2-300x150.png P2PInfect Server Botnet Turns Compromised Redis Servers into a Peer-to-Peer NetworkAugust 1, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-300x150.png Abyss Locker: New Linux Encryptor Targets VMware’s ESXi Virtual MachinesJuly 31, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-16-300x150.png 40% of Ubuntu users vulnerable to new privilege elevation flawsJuly 28, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/07/Images-for-the-News-posts-15-300x150.png SEC Mandates Rapid Cyberattack Disclosures, Companies Must Act Within 4 Business DaysJuly 27, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Python Variant of NodeStealer – Targeting Facebook Business Accounts and Cryptocurrency first appeared on Black Hat Ethical Hacking.