hacking: security in practice
Advice for my specific learning style?
Hey guys, I am a graduate in computer science with no experience in the field. I was always passionate about cyber security and penetration testing but my university didn't offer much practical knowledge. I learn best by practicing for each subject.
Could anyone give me advice on which resource is best to learn pen testing?
Thanks in advance!
submitted by /u/Whonceuponatime
[link] [comments]
Advice for my specific learning style?
Hey guys, I am a graduate in computer science with no experience in the field. I was always passionate about cyber security and penetration testing but my university didn't offer much practical knowledge. I learn best by practicing for each subject.
Could anyone give me advice on which resource is best to learn pen testing?
Thanks in advance!
submitted by /u/Whonceuponatime
[link] [comments]
Reddit
From the hacking community on Reddit
Explore this post and more from the hacking community
https://preview.redd.it/p1g8mz2a77wb1.jpg?width=640&crop=smart&auto=webp&s=8d8e10562f81f8fec637b19f5fdd45dd707bb8dd I've recently stumbled upon an intriguing topic that I believe deserves our attention: the possibility of hiding a malicious URL within a report phishing button. It's crucial to remain vigilant and informed about potential tactics that cybercriminals might employ to deceive users.
We all know that the "Report Phishing" button is a critical feature offered by many email clients and web services. It allows users to report suspicious emails and URLs, contributing to the fight against phishing attacks. However, there's growing concern that some malicious actors may attempt to exploit this very feature.
The idea is simple – a phishing email contains a link or button that seemingly directs the user to a legitimate reporting page, but behind the scenes, it redirects them to a malicious website or initiates a download. This tactic can be incredibly deceiving, as users believe they're doing the right thing by reporting the phishing attempt, but in reality, they're falling into a trap.
Here are a few points to consider and discuss: 1. User Awareness: It's crucial for users to remain cautious, even when clicking on seemingly legitimate reporting buttons. Always double-check the URL in the address bar and ensure it matches the expected reporting page.
1.
Service Providers' Responsibility: Email providers and web services need to implement robust security measures to detect and prevent these deceptive tactics. Continuous monitoring and analysis of reported URLs can help uncover malicious intent.
2.
User Education: Raising awareness about this potential threat can be our best defense. The more users understand these tactics, the less likely they are to fall victim to such attacks.
3.
Reporting Safely: If you suspect a phishing email but are uncertain about the legitimacy of the reporting button, consider alternative ways to report the threat, such as directly contacting the service provider's support.
Let's open up a discussion about this evolving threat and how we, as a community, can work together to stay ahead of cybercriminals. Your insights and experiences are highly valuable in addressing this issue effectively.
Stay safe out there! ▪️▪️▪️
submitted by /u/Morphy_exe
[link] [comments]
We all know that the "Report Phishing" button is a critical feature offered by many email clients and web services. It allows users to report suspicious emails and URLs, contributing to the fight against phishing attacks. However, there's growing concern that some malicious actors may attempt to exploit this very feature.
The idea is simple – a phishing email contains a link or button that seemingly directs the user to a legitimate reporting page, but behind the scenes, it redirects them to a malicious website or initiates a download. This tactic can be incredibly deceiving, as users believe they're doing the right thing by reporting the phishing attempt, but in reality, they're falling into a trap.
Here are a few points to consider and discuss: 1. User Awareness: It's crucial for users to remain cautious, even when clicking on seemingly legitimate reporting buttons. Always double-check the URL in the address bar and ensure it matches the expected reporting page.
1.
Service Providers' Responsibility: Email providers and web services need to implement robust security measures to detect and prevent these deceptive tactics. Continuous monitoring and analysis of reported URLs can help uncover malicious intent.
2.
User Education: Raising awareness about this potential threat can be our best defense. The more users understand these tactics, the less likely they are to fall victim to such attacks.
3.
Reporting Safely: If you suspect a phishing email but are uncertain about the legitimacy of the reporting button, consider alternative ways to report the threat, such as directly contacting the service provider's support.
Let's open up a discussion about this evolving threat and how we, as a community, can work together to stay ahead of cybercriminals. Your insights and experiences are highly valuable in addressing this issue effectively.
Stay safe out there! ▪️▪️▪️
submitted by /u/Morphy_exe
[link] [comments]
hacking: security in practice
Quasar
So im trying to build a lab for pentesting, quasar is not downloading the release file. Either one, ive disabled all windows defender options i can think of in my VM.....yet i get the feeling the AV is blocking the release files i need to complete installation. Anybody know about this? I tried compiling in Virtual Studio..still not luck. Pls halp
submitted by /u/Cma1234
[link] [comments]
Quasar
So im trying to build a lab for pentesting, quasar is not downloading the release file. Either one, ive disabled all windows defender options i can think of in my VM.....yet i get the feeling the AV is blocking the release files i need to complete installation. Anybody know about this? I tried compiling in Virtual Studio..still not luck. Pls halp
submitted by /u/Cma1234
[link] [comments]
Reddit
From the hacking community on Reddit
Explore this post and more from the hacking community
hacking: security in practice
Built a tool that dynamically uses known exploits to spread across any net it's in
So I'm wondering whether this is something that has already been done. I wrote a script that automatically scans all the devices in the network, and looks for known exploits in order to gain RCE access. It then re-downloads itself from a remote server, and sets itself to run periodically, so as to be able to spread across multiple networks and multiple devices.
Has this been done before? Have you heard of anything like this?
submitted by /u/dvnci1452
[link] [comments]
Built a tool that dynamically uses known exploits to spread across any net it's in
So I'm wondering whether this is something that has already been done. I wrote a script that automatically scans all the devices in the network, and looks for known exploits in order to gain RCE access. It then re-downloads itself from a remote server, and sets itself to run periodically, so as to be able to spread across multiple networks and multiple devices.
Has this been done before? Have you heard of anything like this?
submitted by /u/dvnci1452
[link] [comments]
Reddit
From the hacking community on Reddit
Explore this post and more from the hacking community
https://b.thumbs.redditmedia.com/mhRPRnQJRIEOqSLBqyxZqUm7KONYHbsbUXCl6ZalFAw.jpg
I've noticed that Malwarebytes has been blocking this website called \"thewallet\". I have never seen it and no windows open when that happens. Does anyone know what it could be ? No tasks in taskmaster either. Thanks in advance!
submitted by /u/WollandxD
[link] [comments]
I've noticed that Malwarebytes has been blocking this website called \"thewallet\". I have never seen it and no windows open when that happens. Does anyone know what it could be ? No tasks in taskmaster either. Thanks in advance!
submitted by /u/WollandxD
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
OMG-Duino / A budget and open implementation of HAK-5`s OMG-Plug built with the Arduino pro micro and the ESP8266
https://external-preview.redd.it/3mh0xel_JQ2J-t1fOuSm81XhoBab93ZfkcCb-qMCmek.jpg?width=640&crop=smart&auto=webp&s=0d095fd803fb9923e637329d796032086dfb4bba submitted by /u/UpstairsScarcity229
[link] [comments]
OMG-Duino / A budget and open implementation of HAK-5`s OMG-Plug built with the Arduino pro micro and the ESP8266
https://external-preview.redd.it/3mh0xel_JQ2J-t1fOuSm81XhoBab93ZfkcCb-qMCmek.jpg?width=640&crop=smart&auto=webp&s=0d095fd803fb9923e637329d796032086dfb4bba submitted by /u/UpstairsScarcity229
[link] [comments]
Hacking on Medium
How can I improve my grades in university
It’s disappointing when your grades are lower than you want them to be, but don’t get discouraged! It happens to almost everyone at some…
Continue reading on Medium »
How can I improve my grades in university
It’s disappointing when your grades are lower than you want them to be, but don’t get discouraged! It happens to almost everyone at some…
Continue reading on Medium »
Medium
How can I improve my grades in university
It’s disappointing when your grades are lower than you want them to be, but don’t get discouraged! It happens to almost everyone at some…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HTB Zipping writeup
https://cdn-images-1.medium.com/max/1587/1*xcRilmINDUpuQyzbv9hq1w.png
Hello everyone. I am really excited. This is my first write-up on HTB box. Today I will be sharing with you my journey with Zipping a…
Continue reading on Medium »
HTB Zipping writeup
https://cdn-images-1.medium.com/max/1587/1*xcRilmINDUpuQyzbv9hq1w.png
Hello everyone. I am really excited. This is my first write-up on HTB box. Today I will be sharing with you my journey with Zipping a…
Continue reading on Medium »
Hacking on Medium
تنزيل لعبة Dancing Road مهكرة اخر اصدارللاندرويد والايفون من ميديا فاير .
#hackegy #هاك_ايجي #موقع_هاك_ايجي #mod_apk #apk_mod #العاب_مجانية #العاب_اندرويد #العاب_موبايل #تحميل_العاب_مهكرة
Continue reading on Medium »
تنزيل لعبة Dancing Road مهكرة اخر اصدارللاندرويد والايفون من ميديا فاير .
#hackegy #هاك_ايجي #موقع_هاك_ايجي #mod_apk #apk_mod #العاب_مجانية #العاب_اندرويد #العاب_موبايل #تحميل_العاب_مهكرة
Continue reading on Medium »
Medium
تنزيل لعبة Dancing Road مهكرة اخر اصدارللاندرويد والايفون من ميديا فاير .
#hackegy #هاك_ايجي #موقع_هاك_ايجي #mod_apk #apk_mod #العاب_مجانية #العاب_اندرويد #العاب_موبايل #تحميل_العاب_مهكرة
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
The 21 GitHub repositories with cool swag
https://cdn-images-1.medium.com/max/2028/1*pNrCkCdRLlifxYPv1RDeyQ.png
Long live the Hacktoberfest T-shirt. Though the original Hacktoberfest has gone digital-only this year for rewards, there are plenty of…
Continue reading on Medium »
The 21 GitHub repositories with cool swag
https://cdn-images-1.medium.com/max/2028/1*pNrCkCdRLlifxYPv1RDeyQ.png
Long live the Hacktoberfest T-shirt. Though the original Hacktoberfest has gone digital-only this year for rewards, there are plenty of…
Continue reading on Medium »
how attackers use browser extentions for malicious purpose!
Attackers can use browser extensions for malicious purposes by creating or distributing extensions that appear to provide useful features…Continue reading on Medium »
Read more...
Attackers can use browser extensions for malicious purposes by creating or distributing extensions that appear to provide useful features…Continue reading on Medium »
Read more...
Medium
how attackers use browser extentions for malicious purpose!
Attackers can use browser extensions for malicious purposes by creating or distributing extensions that appear to provide useful features…
how attackers use browser extentions for malicious purpose!
https://medium.com/@paritoshblogs/how-attackers-use-browser-extentions-for-malicious-purpose-6799bca4f6f5?source=rss------bug_bounty-5
https://medium.com/@paritoshblogs/how-attackers-use-browser-extentions-for-malicious-purpose-6799bca4f6f5?source=rss------bug_bounty-5
Attackers can use browser extensions for malicious purposes by creating or distributing extensions that appear to provide useful features…Continue reading on Medium » (https://medium.com/@paritoshblogs/how-attackers-use-browser-extentions-for-malicious-purpose-6799bca4f6f5?source=rss------bug_bounty-5)
Unmasking an Open Redirect Vulnerability
https://medium.com/@ahmedshehab589/unmasking-an-open-redirect-vulnerability-995a7d5aa680?source=rss------bug_bounty-5
Introduction:Continue reading on Medium » (https://medium.com/@ahmedshehab589/unmasking-an-open-redirect-vulnerability-995a7d5aa680?source=rss------bug_bounty-5)
https://medium.com/@ahmedshehab589/unmasking-an-open-redirect-vulnerability-995a7d5aa680?source=rss------bug_bounty-5
Introduction:Continue reading on Medium » (https://medium.com/@ahmedshehab589/unmasking-an-open-redirect-vulnerability-995a7d5aa680?source=rss------bug_bounty-5)