Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
HTML Injection — Reflected (GET)-BWAPP

Description:Continue reading on Medium »
Read more...
Changing the Email preference of someone.

Sometime it is a feature but sometime converts into a Reward.Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Deepfakes Are on the Rise, but Don't Panic Just Yet

Deepfakes will likely give way to deep suspicion, as users try to sort legitimate media from malicious.
Reflected XSS Vulnerability In Depth

In this article, we will discuss one of the most seen vulnerabilities in web-based applications, which is:- Reflected XSS.Continue reading on Medium »
Read more...
In this article, we will discuss one of the most seen vulnerabilities in web-based applications, which is:- Reflected XSS.Continue reading on Medium » (https://gauravgandal.medium.com/reflected-xss-vulnerability-in-depth-6a81bb025fef?source=rss------bug_bounty-5)
Libinjection - SQL / SQLI Tokenizer Parser Analyzer

SQL / SQLI tokenizer parser analyzer. For C and C++ PHP Python Lua Java (external port) LuaJIT/FFI (https://github.com/p0pr0ck5/lua-ffi-libinjection) (external port) See https://www.client9.com/ for details and presentations. Simple example: fingerprint of '%s'\n", state.fingerprint); } return issqli; } ">#include <stdio.h>#include <strings.h>#include <errno.h>#include "libinjection.h"#include "libinjection_sqli.h"int main(int argc, const char* argv){ struct libinjection_sqli_state state; int issqli; const char* input = argv1; size_t slen = strlen(input); /* in real-world, you would url-decode the input, etc */ libinjection_sqli_init(&state, input, slen, FLAGNONE); issqli = libinjection\is_sqli(&state); if (issqli) { fprintf(stderr, "sqli detected with fingerprint of '%s'\n", state.fingerprint); } return issqli;} $ gcc -Wall -Wextra examples.c libinjection_sqli.c$ ./a.out "-1' and 1=1 union/* foo */select load_file('/etc/passwd')--"sqli detected with fingerprint of 's&1UE' More advanced samples: sqli_cli.c reader.c fptool VERSION INFORMATION See CHANGELOG for details. Versions are listed as "major.minor.point" Major are significant changes to the API and/or fingerprint format. Applications will need recompiling and/or refactoring. Minor are C code changes. These may include logical change to detect or suppress optimization changes code refactoring Point releases are purely data changes. These may be safely applied. QUALITY AND DIAGNOSITICS The continuous integration results at https://travis-ci.org/client9/libinjection tests the following: build and unit-tests under GCC build and unit-tests under Clang static analysis using clang static analyzer static analysis using cppcheck checks for memory errors using valgrind code coverage online using coveralls.io EMBEDDING The src directory contains everything, but you only need to copy the following into your source tree: src/libinjection.h src/libinjection_sqli.c src/libinjection_sqli_data.h COPYING Download Libinjection
Read more...