Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack The Box — ScriptKiddie Writeup
https://cdn-images-1.medium.com/max/747/1*fEOFamEraZRG712LtXeKFg.png
TL;DR So this box exists to probably teach us a lesson that a hacker’s own tools can sometimes be used against them. For the user part…
Continue reading on Medium »
Hack The Box — ScriptKiddie Writeup
https://cdn-images-1.medium.com/max/747/1*fEOFamEraZRG712LtXeKFg.png
TL;DR So this box exists to probably teach us a lesson that a hacker’s own tools can sometimes be used against them. For the user part…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How i found Reflected XSS at Microsoft ?
https://cdn-images-1.medium.com/max/1200/0*IhU4oxWHh8mcDDQD.jpg
Hello Cyber Security World! My name is Göktuğ and i am university student. Im study in Information Technology. My old computer was very…
Continue reading on Medium »
How i found Reflected XSS at Microsoft ?
https://cdn-images-1.medium.com/max/1200/0*IhU4oxWHh8mcDDQD.jpg
Hello Cyber Security World! My name is Göktuğ and i am university student. Im study in Information Technology. My old computer was very…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Confusion Matrics And CyberSecurity
https://cdn-images-1.medium.com/max/754/1*fUnVMuu91SR_Ehrfvne2iA.jpeg
At the end of the day, the goals are simple: safety and security.
Continue reading on Medium »
Confusion Matrics And CyberSecurity
https://cdn-images-1.medium.com/max/754/1*fUnVMuu91SR_Ehrfvne2iA.jpeg
At the end of the day, the goals are simple: safety and security.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Some IngeHack CTF 2021 writeups
https://cdn-images-1.medium.com/max/1114/1*5cs90qsXf6TWs078wqXsnQ.png
This last weekend my team Heaven’s_Birds participated in IngeHack national CTF organized by Ingeniums club from the higher national school…
Continue reading on Medium »
Some IngeHack CTF 2021 writeups
https://cdn-images-1.medium.com/max/1114/1*5cs90qsXf6TWs078wqXsnQ.png
This last weekend my team Heaven’s_Birds participated in IngeHack national CTF organized by Ingeniums club from the higher national school…
Continue reading on Medium »
LFI to RCEContinue reading on Medium » (https://antaramane.medium.com/phpobjectinjection-d8e0af399171?source=rss------bug_bounty-5)
IDOR (Insecure Direct Object Reference)
https://antaramane.medium.com/idor-insecure-direct-object-reference-df94f5b3afbb?source=rss------bug_bounty-5
https://antaramane.medium.com/idor-insecure-direct-object-reference-df94f5b3afbb?source=rss------bug_bounty-5
Accessing Arbitrary Customer dataContinue reading on Medium » (https://antaramane.medium.com/idor-insecure-direct-object-reference-df94f5b3afbb?source=rss------bug_bounty-5)
Nmap MS-SQL Server Recon
https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/
<!-- SC_OFF -->MSSQL is Microsoft' SQL Server used by many companies. In this post, I have covered how to perform reconnaissance against the MSSQL server with the Nmap tool. From scanning ports to execute arbitrary system commands, Nmap is used https://www.secjuice.com/recon-basics-mssql-server/ <!-- SC_ON --> submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/) [comments] (https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/)
https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/
<!-- SC_OFF -->MSSQL is Microsoft' SQL Server used by many companies. In this post, I have covered how to perform reconnaissance against the MSSQL server with the Nmap tool. From scanning ports to execute arbitrary system commands, Nmap is used https://www.secjuice.com/recon-basics-mssql-server/ <!-- SC_ON --> submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/) [comments] (https://www.reddit.com/r/redteamsec/comments/ntsa2l/nmap_mssql_server_recon/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Cyberterrorism or 'ransomware-as-a-service model'? Group claims credit, explains 'business model'
So, there is a hacking group that has taken credit for several such recent attacks and according to this, do not mind being characterized as cyberterrorists
I am not skeptical about it, but I do recall that after some unclaimed acts of terrorism, group not responsible occasionally claim credit to boost their own status or to help the actual perpetrators (or both), perhaps that's inaccurate though.
That I don't really care about tbh, I am more wondering if the targets really are so disconnected, because there seems to be the potential for an ideological thread of 'ecoterrorism', that is terrorists motivated by environmentalist sentiments. Oil and meat are said to be major contributors to greenhouse gases, destruction of local ecosystems, and displacement of people (often Indigenous peoples).
That they were targeting Brazil, still doesn't make that implausible. Considering the actions of Bolsonaro towards Indigenous people there, as well as the rain forest destruction caused by farming, it makes a target that still fits that motive IMO.
However, they discuss their business model and I think that it's still very plausible this is motivated by profit and nationalism, because that's what it seems on the face of it and sometimes a something is just a something.
Also their targets may line up because they are industries that cut corners on security and modernization, so essentially they're convenient and reliable. Like picking off the weak of the herd or whatever. I find the assertion they'd be killed if they came to the United States odd; I have no faith in the USA to be fair, but that seems like an almost sheltered view of what might happen, which seems ideological/nationalist.
Or perhaps indicates this is a paramilitary or quasi-governmental group; regardless of what, a black site or indefinite detention seems more plausible to me. Visibility now would be their biggest asset in that, as such detainment would be more obvious to the world.
I don't know really, I haven't watched their videos or done more research yet, so most of this is just speculation other than what they say in those linked articles above. Still, interesting.
PS - the name of their ransomware reminds me of an old Linux game. You might want to try it, but it probably helps if you're a bit masochistic and into games from the 90s. It also cracks me up about the casino affiliate thing or whatever it is.
submitted by /u/redrosesburningblack
[link] [comments]
Cyberterrorism or 'ransomware-as-a-service model'? Group claims credit, explains 'business model'
So, there is a hacking group that has taken credit for several such recent attacks and according to this, do not mind being characterized as cyberterrorists
I am not skeptical about it, but I do recall that after some unclaimed acts of terrorism, group not responsible occasionally claim credit to boost their own status or to help the actual perpetrators (or both), perhaps that's inaccurate though.
That I don't really care about tbh, I am more wondering if the targets really are so disconnected, because there seems to be the potential for an ideological thread of 'ecoterrorism', that is terrorists motivated by environmentalist sentiments. Oil and meat are said to be major contributors to greenhouse gases, destruction of local ecosystems, and displacement of people (often Indigenous peoples).
That they were targeting Brazil, still doesn't make that implausible. Considering the actions of Bolsonaro towards Indigenous people there, as well as the rain forest destruction caused by farming, it makes a target that still fits that motive IMO.
However, they discuss their business model and I think that it's still very plausible this is motivated by profit and nationalism, because that's what it seems on the face of it and sometimes a something is just a something.
Also their targets may line up because they are industries that cut corners on security and modernization, so essentially they're convenient and reliable. Like picking off the weak of the herd or whatever. I find the assertion they'd be killed if they came to the United States odd; I have no faith in the USA to be fair, but that seems like an almost sheltered view of what might happen, which seems ideological/nationalist.
Or perhaps indicates this is a paramilitary or quasi-governmental group; regardless of what, a black site or indefinite detention seems more plausible to me. Visibility now would be their biggest asset in that, as such detainment would be more obvious to the world.
I don't know really, I haven't watched their videos or done more research yet, so most of this is just speculation other than what they say in those linked articles above. Still, interesting.
PS - the name of their ransomware reminds me of an old Linux game. You might want to try it, but it probably helps if you're a bit masochistic and into games from the 90s. It also cracks me up about the casino affiliate thing or whatever it is.
submitted by /u/redrosesburningblack
[link] [comments]