In the complex and ever-evolving landscape of cybersecurity, much attention is often paid to sophisticated threats like malware, zero-day…Continue reading on Medium » (https://medium.com/@Land2Cyber/user-based-flaws-enhancing-security-from-the-ground-up-e35cd7fe1eee?source=rss------bug_bounty-5)
How to Know If Your Android Device Has Been Hacked and What to Do About It
https://rajput623929.medium.com/how-to-know-if-your-android-device-has-been-hacked-and-what-to-do-about-it-740ea5a18b9c?source=rss------bug_bounty-5
https://rajput623929.medium.com/how-to-know-if-your-android-device-has-been-hacked-and-what-to-do-about-it-740ea5a18b9c?source=rss------bug_bounty-5
In our increasingly digital world, the security of our mobile devices is paramount. With the vast amount of personal and sensitive…Continue reading on Medium » (https://rajput623929.medium.com/how-to-know-if-your-android-device-has-been-hacked-and-what-to-do-about-it-740ea5a18b9c?source=rss------bug_bounty-5)
A Story of Zero-click complete Account Takeover
Hello Fellow Hunters!!!!Continue reading on Medium »
Read more...
Hello Fellow Hunters!!!!Continue reading on Medium »
Read more...
Medium
A Story of Zero-click complete Account Takeover
Hello Fellow Hunters!!!!
A Story of Zero-click complete Account Takeover
https://medium.com/@shravanisheshasai/a-story-of-zero-click-complete-account-takeover-650784c2d229?source=rss------bug_bounty-5
https://medium.com/@shravanisheshasai/a-story-of-zero-click-complete-account-takeover-650784c2d229?source=rss------bug_bounty-5
Hello Fellow Hunters!!!!Continue reading on Medium » (https://medium.com/@shravanisheshasai/a-story-of-zero-click-complete-account-takeover-650784c2d229?source=rss------bug_bounty-5)
Decided on Exploit Before Kickoff
https://www.reddit.com/r/redteamsec/comments/1culew1/decided_on_exploit_before_kickoff/
<!-- SC_OFF -->So I work on an external pentest team for a gov agency. We have another contracted team that does pentesting for FISMA audits. Unfortunately, by the time I heard about this, they had moved on a month earlier and I couldn’t ask for a briefing. Our agency is big so the contracted team tested a large, diverse sample of the network. They came in with an exploit (not a0day) and at the kickoff meeting, told our upper management that’s how they were going to get in. They had no prior knowledge of the network at that point. They then used the exploit to get in. We always run through the normal process of: reconnaissance, scanning, vulnerability assessment, exploitation, and reporting. Are other teams really walking in with an exploit that they’re sure is going to work on a client and then using it to get in without following the normal process? Or was they just lucky that some exploit came out that wasn’t patched yet (like eternal blue back in the day)? This was last year. It’s giving me imposter syndrome. <!-- SC_ON --> submitted by /u/esch3 (https://www.reddit.com/user/esch3)
[link] (http://www.pentest-standard.org/index.php/PTES_Technical_Guidelines) [comments] (https://www.reddit.com/r/redteamsec/comments/1culew1/decided_on_exploit_before_kickoff/)
https://www.reddit.com/r/redteamsec/comments/1culew1/decided_on_exploit_before_kickoff/
<!-- SC_OFF -->So I work on an external pentest team for a gov agency. We have another contracted team that does pentesting for FISMA audits. Unfortunately, by the time I heard about this, they had moved on a month earlier and I couldn’t ask for a briefing. Our agency is big so the contracted team tested a large, diverse sample of the network. They came in with an exploit (not a0day) and at the kickoff meeting, told our upper management that’s how they were going to get in. They had no prior knowledge of the network at that point. They then used the exploit to get in. We always run through the normal process of: reconnaissance, scanning, vulnerability assessment, exploitation, and reporting. Are other teams really walking in with an exploit that they’re sure is going to work on a client and then using it to get in without following the normal process? Or was they just lucky that some exploit came out that wasn’t patched yet (like eternal blue back in the day)? This was last year. It’s giving me imposter syndrome. <!-- SC_ON --> submitted by /u/esch3 (https://www.reddit.com/user/esch3)
[link] (http://www.pentest-standard.org/index.php/PTES_Technical_Guidelines) [comments] (https://www.reddit.com/r/redteamsec/comments/1culew1/decided_on_exploit_before_kickoff/)
Mastering Network Scanning: Exploring Essential Nmap Commands :-
Nmap: A Comprehensive Introduction to Network Mapping.Continue reading on Medium »
Read more...
Nmap: A Comprehensive Introduction to Network Mapping.Continue reading on Medium »
Read more...
Medium
Mastering Network Scanning: Exploring Essential Nmap Commands :-
Nmap: A Comprehensive Introduction to Network Mapping.
Mastering Network Scanning: Exploring Essential Nmap Commands (Part -2) :-
SCAN TECHNIQUES:-Continue reading on Medium »
Read more...
SCAN TECHNIQUES:-Continue reading on Medium »
Read more...
Medium
Mastering Network Scanning: Exploring Essential Nmap Commands (Part -2) :-
SCAN TECHNIQUES:-
HOW I HACKED INTO HARVARD UNIVERSITY’S DIGITAL INFRASTRUCTURE -Cycus Pectus
IntroducionContinue reading on Medium »
Read more...
IntroducionContinue reading on Medium »
Read more...
Medium
HOW I HACKED INTO HARVARD UNIVERSITY’S DIGITAL INFRASTRUCTURE -Cycus Pectus
Introducion
Mastering Network Scanning: Exploring Essential Nmap Commands :-
https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-3843f01e419e?source=rss------bug_bounty-5
Nmap: A Comprehensive Introduction to Network Mapping.Continue reading on Medium » (https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-3843f01e419e?source=rss------bug_bounty-5)
https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-3843f01e419e?source=rss------bug_bounty-5
Nmap: A Comprehensive Introduction to Network Mapping.Continue reading on Medium » (https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-3843f01e419e?source=rss------bug_bounty-5)
Mastering Network Scanning: Exploring Essential Nmap Commands (Part -2) :-
https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-part-2-9d24e2291fb6?source=rss------bug_bounty-5
SCAN TECHNIQUES:-Continue reading on Medium » (https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-part-2-9d24e2291fb6?source=rss------bug_bounty-5)
https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-part-2-9d24e2291fb6?source=rss------bug_bounty-5
SCAN TECHNIQUES:-Continue reading on Medium » (https://medium.com/@shaikhwasim8120/mastering-network-scanning-exploring-essential-nmap-commands-part-2-9d24e2291fb6?source=rss------bug_bounty-5)
HOW I HACKED INTO HARVARD UNIVERSITY’S DIGITAL INFRASTRUCTURE -Cycus Pectus
https://medium.com/@pectuscycus/how-i-hacked-into-harvard-universitys-digital-infrastructure-cycus-pectus-5d5e65e74a61?source=rss------bug_bounty-5
https://medium.com/@pectuscycus/how-i-hacked-into-harvard-universitys-digital-infrastructure-cycus-pectus-5d5e65e74a61?source=rss------bug_bounty-5
IntroducionContinue reading on Medium » (https://medium.com/@pectuscycus/how-i-hacked-into-harvard-universitys-digital-infrastructure-cycus-pectus-5d5e65e74a61?source=rss------bug_bounty-5)
Analyzing JavaScript Files To Find Bugs
https://rajput623929.medium.com/analyzing-javascript-files-to-find-bugs-2b7d67a52c4e?source=rss------bug_bounty-5
https://rajput623929.medium.com/analyzing-javascript-files-to-find-bugs-2b7d67a52c4e?source=rss------bug_bounty-5
Hi Hackers, Horbio this sideContinue reading on Medium » (https://rajput623929.medium.com/analyzing-javascript-files-to-find-bugs-2b7d67a52c4e?source=rss------bug_bounty-5)
Analyzing JavaScript Files To Find Bugs
Hi Hackers, Horbio this sideContinue reading on Medium »
Read more...
Hi Hackers, Horbio this sideContinue reading on Medium »
Read more...
Medium
Analyzing JavaScript Files To Find Bugs
Hi Hackers, Horbio this side