Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Latvian Woman Charged for Role In Crafting Trickbot Malware
Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports.
___________________________
@hacking_Attack
@Hacking_Video
Latvian Woman Charged for Role In Crafting Trickbot Malware
Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Latvian Woman Charged for Role In Crafting Trickbot Malware
Alla Witte and her associates are accused of using Trickbot to infect tens of millions of computers around the world, the Justice Department reports.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
DoJ Seizes $2.3M in Bitcoin Paid to Colonial Pipeline Attackers
The amount allegedly represents a May 8 payment to the DarkSide ransomware group.
___________________________
@hacking_Attack
@Hacking_Video
DoJ Seizes $2.3M in Bitcoin Paid to Colonial Pipeline Attackers
The amount allegedly represents a May 8 payment to the DarkSide ransomware group.
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How To Scan the Internet in 5 Minutes
https://cdn-images-1.medium.com/max/1920/1*LzzY-Kp_IQ78fvAa-GGrSg.png
Masscan is an open source network security scanning tool that stands out among others, thanks to its high-speed capacity. We explored what…
Continue reading on FAUN »
___________________________
@hacking_Attack
@Hacking_Video
How To Scan the Internet in 5 Minutes
https://cdn-images-1.medium.com/max/1920/1*LzzY-Kp_IQ78fvAa-GGrSg.png
Masscan is an open source network security scanning tool that stands out among others, thanks to its high-speed capacity. We explored what…
Continue reading on FAUN »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Scan the Internet in 5 Minutes
Masscan is an open source network security scanning tool that stands out among others, thanks to its high-speed capacity. We explored what…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Kubesphere Community Delivers Global Kubernetes Workload Management, Kubernetes Clusters Under…
https://cdn-images-1.medium.com/max/600/0*kiw4gb39OXl5qDp8.png
These news articles were originally published on The Chief I/O Cloud Native news.
Continue reading on FAUN »
___________________________
@hacking_Attack
@Hacking_Video
Kubesphere Community Delivers Global Kubernetes Workload Management, Kubernetes Clusters Under…
https://cdn-images-1.medium.com/max/600/0*kiw4gb39OXl5qDp8.png
These news articles were originally published on The Chief I/O Cloud Native news.
Continue reading on FAUN »
___________________________
@hacking_Attack
@Hacking_Video
Medium
🗞Kubesphere Community Delivers Global Kubernetes Workload Management, Kubernetes Clusters Under Radar,
These news articles were originally published on The Chief I/O Cloud Native news.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
A Guide to Reproducing Ethereum Exploits: Fei Protocol
https://cdn-images-1.medium.com/max/2600/1*XPUSr4llHeDhv1RkaGSUTQ.jpeg
This guide, written by whitehat Lucash-dev for Immunefi, will help you set up a local environment and reproduce the Fei Protocol exploit…
Continue reading on Immunefi »
___________________________
@hacking_Attack
@Hacking_Video
A Guide to Reproducing Ethereum Exploits: Fei Protocol
https://cdn-images-1.medium.com/max/2600/1*XPUSr4llHeDhv1RkaGSUTQ.jpeg
This guide, written by whitehat Lucash-dev for Immunefi, will help you set up a local environment and reproduce the Fei Protocol exploit…
Continue reading on Immunefi »
___________________________
@hacking_Attack
@Hacking_Video
Medium
A Guide to Reproducing Ethereum Exploits: Fei Protocol
This guide, written by whitehat Lucash-dev for Immunefi, will help you set up a local environment and reproduce the Fei Protocol exploit…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Majority of $4.4 million cryptocurrency ransom payment in Colonial Pipeline hack recovered
https://cdn-images-1.medium.com/max/600/1*ZGAEaJDtZ6IYRekUOMGSYA.jpeg
Federal authorities dealt a blow to a criminal hacking group that forced the shutdown of the Colonial Pipeline, recovering the “majority”…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Majority of $4.4 million cryptocurrency ransom payment in Colonial Pipeline hack recovered
https://cdn-images-1.medium.com/max/600/1*ZGAEaJDtZ6IYRekUOMGSYA.jpeg
Federal authorities dealt a blow to a criminal hacking group that forced the shutdown of the Colonial Pipeline, recovering the “majority”…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Majority of $4.4 million cryptocurrency ransom payment in Colonial Pipeline hack recovered
Federal authorities dealt a blow to a criminal hacking group that forced the shutdown of the Colonial Pipeline, recovering the “majority”…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Comment installer Kali Nethunter sur un Android ? Guide étape par étape
https://cdn-images-1.medium.com/max/650/1*Kjx5kXJpyx6qKWyoCiC8Vg.jpeg
Notez que vous êtes responsable de ce que vous faites avec votre appareil. Si vous ne savez pas faire de sauvegarde de vos appareils, je…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Comment installer Kali Nethunter sur un Android ? Guide étape par étape
https://cdn-images-1.medium.com/max/650/1*Kjx5kXJpyx6qKWyoCiC8Vg.jpeg
Notez que vous êtes responsable de ce que vous faites avec votre appareil. Si vous ne savez pas faire de sauvegarde de vos appareils, je…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Comment installer Kali Nethunter sur un Android ? Guide étape par étape
Notez que vous êtes responsable de ce que vous faites avec votre appareil. Si vous ne savez pas faire de sauvegarde de vos appareils, je…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Descubren el primer malware conocido dirigido a contenedores de Windows.
https://cdn-images-1.medium.com/max/1014/0*uPyo2UWLX25d9ud8
PUBLICADO EN 7 JUNIO, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Descubren el primer malware conocido dirigido a contenedores de Windows.
https://cdn-images-1.medium.com/max/1014/0*uPyo2UWLX25d9ud8
PUBLICADO EN 7 JUNIO, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Descubren el primer malware conocido dirigido a contenedores de Windows.
PUBLICADO EN 7 JUNIO, 2021 POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
That Anonymous Video Threatening Elon Musk is Incredibly Lame. Here’s Why.
https://cdn-images-1.medium.com/max/1280/0*7NLIswKPTRt3xrYL
The infamous hacker group ‘Anonymous’ (although not considered contiguous in its nature), has launched threats against tech big-wig and…
Continue reading on The Uncomanor »
___________________________
@hacking_Attack
@Hacking_Video
That Anonymous Video Threatening Elon Musk is Incredibly Lame. Here’s Why.
https://cdn-images-1.medium.com/max/1280/0*7NLIswKPTRt3xrYL
The infamous hacker group ‘Anonymous’ (although not considered contiguous in its nature), has launched threats against tech big-wig and…
Continue reading on The Uncomanor »
___________________________
@hacking_Attack
@Hacking_Video
Medium
That Anonymous Video Threatening Elon Musk is Incredibly Lame. Here’s Why.
The infamous hacker group ‘Anonymous’ (although not considered contiguous in its nature), has launched threats against tech big-wig and…
Hacking Articles Tips Tricks Videos Tutorials
GIF
KitPloit - PenTest Tools!
Totp-Ssh-Fluxer - Take Security By Obscurity To The Next Level (This Is A Bad Idea, Don'T Really Use This Please)
https://1.bp.blogspot.com/-AKkC7r7JH88/YLc4c7ouPTI/AAAAAAAAXu8/xUUwB4NfrB4AxMzYryAxlY0lzRMw35hOgCNcBGAsYHQ/w640-h470/totp-ssh-fluxer_1.gif
Some people change their SSH port on their servers so that it is slightly harder to find for bots or other nasties, and while that is generally viewed as an action of security through obscurity it does work very well at killing a lot of the automated logins you always see in
However what if we could go take this to a ridiculous level? What if we could use TOTP codes that are normally used as 2nd factor codes to login to websites to actually know what port the sshd server is listening on?
For this, I present totp-ssh-flux, a way to make sure your sshd port changes every 30 seconds, and possibly causing your adversaries a small period of frustration.
What you can see here is my phone (using a generic TOTP client) generating codes, that I can then use as the port to SSH into on a server.
The software behind it is fairly simple, It runs in a loop that does the following
* Generates a TOTP token
* Takes the last digit, if the result is above 65536, do that again
* Adds a iptables PREROUTING rule to redirect that number generated above
* Waits 30 seconds, removes that rule, repeat.
The neat thing is, because this is done in
Installation
You will most likely find more up to date instructions on the totp-ssh-flux project readme
Beware, currently I would not really recommend running this software, it was only written as a joke.
At the time of writing the project is just a single file, You will need to install golang and then
Run the program as root ( it needs to, sorry, it's editing iptables )
Upon first run, the program will generate a token for the host in
You can confirm it works by running
Want to see more insanity like this? Follow me on twitter @benjojo12
Download Totp-Ssh-Fluxer
___________________________
@hacking_Attack
@Hacking_Video
Totp-Ssh-Fluxer - Take Security By Obscurity To The Next Level (This Is A Bad Idea, Don'T Really Use This Please)
https://1.bp.blogspot.com/-AKkC7r7JH88/YLc4c7ouPTI/AAAAAAAAXu8/xUUwB4NfrB4AxMzYryAxlY0lzRMw35hOgCNcBGAsYHQ/w640-h470/totp-ssh-fluxer_1.gif
Some people change their SSH port on their servers so that it is slightly harder to find for bots or other nasties, and while that is generally viewed as an action of security through obscurity it does work very well at killing a lot of the automated logins you always see in
/var/log/auth.logHowever what if we could go take this to a ridiculous level? What if we could use TOTP codes that are normally used as 2nd factor codes to login to websites to actually know what port the sshd server is listening on?
For this, I present totp-ssh-flux, a way to make sure your sshd port changes every 30 seconds, and possibly causing your adversaries a small period of frustration.
What you can see here is my phone (using a generic TOTP client) generating codes, that I can then use as the port to SSH into on a server.
The software behind it is fairly simple, It runs in a loop that does the following
* Generates a TOTP token
* Takes the last digit, if the result is above 65536, do that again
* Adds a iptables PREROUTING rule to redirect that number generated above
* Waits 30 seconds, removes that rule, repeat.
The neat thing is, because this is done in
PREROUTING, even if the code expires, established connections stay connected.Installation
You will most likely find more up to date instructions on the totp-ssh-flux project readme
Beware, currently I would not really recommend running this software, it was only written as a joke.
At the time of writing the project is just a single file, You will need to install golang and then
go getand go buildRun the program as root ( it needs to, sorry, it's editing iptables )
Upon first run, the program will generate a token for the host in
/etc/ssh-flux-key( you can use the -keypathoption to change that ) and you can input that into your phone or other clients.You can confirm it works by running
watch iptables -vL -t natand waiting for the iptables rules to be inserted and removed.Want to see more insanity like this? Follow me on twitter @benjojo12
Download Totp-Ssh-Fluxer
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Totp-Ssh-Fluxer - Take Security By Obscurity To The Next Level (This Is A Bad Idea, Don'T Really Use This Please)
As computer security auditors, what is your experience most similar to a hacker movie?
https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/
I'm dedicated to offensive security on websites, and once in a while I have found myself in almost comical situations where you can glimpse the occasional similarity to some exaggerated hacker movie. However other times things can get tense. Have you had an intense experience that you consider almost cinematic? submitted by /u/TimeTravel_07 (https://www.reddit.com/user/TimeTravel_07)
[link] (https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/) [comments] (https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/
I'm dedicated to offensive security on websites, and once in a while I have found myself in almost comical situations where you can glimpse the occasional similarity to some exaggerated hacker movie. However other times things can get tense. Have you had an intense experience that you consider almost cinematic? submitted by /u/TimeTravel_07 (https://www.reddit.com/user/TimeTravel_07)
[link] (https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/) [comments] (https://www.reddit.com/r/Pentesting/comments/nuq9c4/as_computer_security_auditors_what_is_your/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
As computer security auditors, what is your experience most...
I'm dedicated to offensive security on websites, and once in a while I have found myself in almost comical situations where you can glimpse the...