Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackers Deploy Anti-Virus

https://cdn-images-1.medium.com/max/2600/0*Ms0pT6WAYEpkp0M2
Yesterdays reveal from Norton Anti-Virus that they will include and pushout Ethereum miners as part of their software is both shocking and…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Penglab - Abuse Of Google Colab For Cracking Hashes

https://1.bp.blogspot.com/-UwKWOz36n7Q/YLcrxxO5MrI/AAAAAAAAXiU/MVZE2ZPUFWYIQuWkvXRpeA3RuCMDQZXxgCNcBGAsYHQ/s16000/Penglab.png
Abuse of Google Colab for fun and profit.

What is it ?

Penglab is a ready-to-install setup on Google Colab for cracking hashes with an incredible power, really useful for CTFs. (See benchmarks below.)

It installs by default :

* Hashcat
* John
* Hydra
* SSH (with ngrok)

And now, it can also :

* Launch an integrated shell
* Download the wordlists Rockyou and HashesOrg2019 quickly !

You only need a Google Account to use Google Colab, and to use ngrok for SSH (optional).
How to use it ?

1. Go on : https://colab.research.google.com/github/mxrch/penglab/blob/master/penglab.ipynb
2. Select "Runtime", "Change runtime type", and set "Hardware accelerator" to GPU.
3. Change the config by setting "True" at tools you want to install.
4. Select "Runtime" and "Run all" !

What is Google Colab ?

Google Colab is a free cloud service, based on Jupyter Notebooks for machine-learning education and research. It provides a runtime fully configured for deep learning and free-of-charge access to a robust GPU.

Benchmarks

Hashcat Benchmark :

====================
* Device #1: Tesla P100-PCIE-16GB, 16017/16280 MB, 56MCU

OpenCL API (OpenCL 1.2 CUDA 10.1.152) - Platform #1 [NVIDIA Corporation]
========================================================================
* Device #2: Tesla P100-PCIE-16GB, skipped

Benchmark relevant options:
===========================
* --optimized-kernel-enable

Minimum password length supported by kernel: 0
Maximum password length supported by kernel: 55

Hashmode: 0 - MD5

Speed.#1.........: 27008.0 MH/s (69.17ms) @ Accel:64 Loops:512 Thr:1024 Vec:8

Minimum password length supported by kernel: 0
Maximum password length supported by kernel: 55

Hashmode: 100 - SHA1

Speed.#1.........: 9590.3 MH/s (48.61ms) @ Accel:8 Loops:1024 Thr:1024 Vec:1

Minimum password length supported by kernel: 0
Maximum password length supported by kernel: 55


Speedtest :

Testing from Google Cloud (35.203.136.151)... Retrieving speedtest.net server list... Selecting best server based on ping... Hosted by KamaTera INC (Santa Clara, CA) [11.95 km]: 28.346 ms Testing download speed................................................................................ Download: 2196.68 Mbit/s Testing upload speed...................................................................................................... Upload: 3.87 Mbit/s
Download Penglab
hacking: security in practice
If case sensitivity was not a factor, how would it have impacted brute force and password security?

This question has been on my mind a lot lately. It is obviously only hypothetical, but the repercussions for a simple “yes or no” implementation are daunting to say the least.

The evolution towards case sensitive passwords would have been natural, I think, in this hypothetical world. However, how much faster would brute force methods be? Do you think brute force would have become so prevalent that regular users would have been forced to use complex passwords? Or does it not matter for the average joe?

submitted by /u/Auramaru
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Ghidra-Evm : Module For Reverse Engineering Smart Contracts

Ghidra-Evm in the last few years, attacks on deployed smart contracts in the Ethereum blockchain have ended up in a significant amount of stolen funds due to programming mistakes. Since smart contracts, once compiled and deployed, are complex to modify and update different practitioners have suggested the importance of reviewing their security in the blockchain […]

The post Ghidra-Evm : Module For Reverse Engineering Smart Contracts appeared first on Kali Linux Tutorials.
Hacker Spotlight: hunt4p1zza & pmnh
https://medium.com/uber-security-privacy/hacker-spotlight-hunt4p1zza-pmnh-c3e952c84cd0?source=rss------bug_bounty-5

Continuing our spotlight series, featuring two of our bug bounty winners from our April promo event.Continue reading on Uber Privacy & Security » (https://medium.com/uber-security-privacy/hacker-spotlight-hunt4p1zza-pmnh-c3e952c84cd0?source=rss------bug_bounty-5)