XSS that requires specific request header
https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/
<!-- SC_OFF -->I just came across a reflected XSS by URL injection. The catch is that the server expects a Content-Type header in the request, so if I simply click on the malicious URL, the server rejects the request and does not reflect the payload. Is the XSS exploitable on a third party in this case? <!-- SC_ON --> submitted by /u/Lupius (https://www.reddit.com/user/Lupius)
[link] (https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/) [comments] (https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/)
https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/
<!-- SC_OFF -->I just came across a reflected XSS by URL injection. The catch is that the server expects a Content-Type header in the request, so if I simply click on the malicious URL, the server rejects the request and does not reflect the payload. Is the XSS exploitable on a third party in this case? <!-- SC_ON --> submitted by /u/Lupius (https://www.reddit.com/user/Lupius)
[link] (https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/) [comments] (https://www.reddit.com/r/Pentesting/comments/o5qj2j/xss_that_requires_specific_request_header/)
Cracking Encrypted Credit Card Numbers Exposed By API
https://infosecwriteups.com/cracking-encrypted-credit-card-numbers-exposed-by-api-977c6f7b996f?source=rss------bug_bounty-5
https://infosecwriteups.com/cracking-encrypted-credit-card-numbers-exposed-by-api-977c6f7b996f?source=rss------bug_bounty-5
I found an API that exposed encrypted credit card numbers. Here’s how I cracked them to reveal the full card details.Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/cracking-encrypted-credit-card-numbers-exposed-by-api-977c6f7b996f?source=rss------bug_bounty-5)
information leakage
https://0xprabir.medium.com/information-leakage-8d542cbe419?source=rss------bug_bounty-5
What is information disclosure?Continue reading on Medium » (https://0xprabir.medium.com/information-leakage-8d542cbe419?source=rss------bug_bounty-5)
https://0xprabir.medium.com/information-leakage-8d542cbe419?source=rss------bug_bounty-5
What is information disclosure?Continue reading on Medium » (https://0xprabir.medium.com/information-leakage-8d542cbe419?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
NSA Funds Development & Release of D3FEND Framework
The framework, now available through MITRE, provides countermeasures to attacks.
NSA Funds Development & Release of D3FEND Framework
The framework, now available through MITRE, provides countermeasures to attacks.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Identity Eclipses Malware Detection at RSAC Startup Competition
All 10 finalists in the Innovation Sandbox were focused on identity, rather than security's mainstay for the last 20 years: Malware detection.
Identity Eclipses Malware Detection at RSAC Startup Competition
All 10 finalists in the Innovation Sandbox were focused on identity, rather than security's mainstay for the last 20 years: Malware detection.
Insecure Deserialization ?
Hello and welcome to this blog, in this blog we’re going to discover what insecure deserialization is ? we’re going to take some code…
Read more...
Hello and welcome to this blog, in this blog we’re going to discover what insecure deserialization is ? we’re going to take some code…
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Help finding a talk about Stuxnet
Hi, I remember having seen a video talking about Stuxnet, although I kind of remember it was named differently or something, I remember something as "fire storm" or something like that.
I could almost swear that it was a TED talk by Mikko Hypponen but I kind of fast checked his three TED talks and didn't find what I wanted, he just barely mentions it in his Virus talk.
What I am looking for is specifically is a video that talked about how the creators of this virus were able to target the Iranian (or somewhere's government) reactors by using photos (like the ones in this article) they took and posted online, thus giving the attackers important information about the arrays in the nuclear plant.
I think it's a great video that explains very clearly the risks of information leaks and the lengths an attacker will go to harm a system.
Thanks in advance.
submitted by /u/pinchitony
[link] [comments]
Help finding a talk about Stuxnet
Hi, I remember having seen a video talking about Stuxnet, although I kind of remember it was named differently or something, I remember something as "fire storm" or something like that.
I could almost swear that it was a TED talk by Mikko Hypponen but I kind of fast checked his three TED talks and didn't find what I wanted, he just barely mentions it in his Virus talk.
What I am looking for is specifically is a video that talked about how the creators of this virus were able to target the Iranian (or somewhere's government) reactors by using photos (like the ones in this article) they took and posted online, thus giving the attackers important information about the arrays in the nuclear plant.
I think it's a great video that explains very clearly the risks of information leaks and the lengths an attacker will go to harm a system.
Thanks in advance.
submitted by /u/pinchitony
[link] [comments]
Dirb question
https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/
I have run dirb in kali Linux against a domain and it has brought up a lot of results. Some include /.passwd and such as /.ssh. Is there any way to access this or is it blocked by a firewall? I am just trying to understand submitted by /u/001011001101 (https://www.reddit.com/user/001011001101)
[link] (https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/) [comments] (https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/
I have run dirb in kali Linux against a domain and it has brought up a lot of results. Some include /.passwd and such as /.ssh. Is there any way to access this or is it blocked by a firewall? I am just trying to understand submitted by /u/001011001101 (https://www.reddit.com/user/001011001101)
[link] (https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/) [comments] (https://www.reddit.com/r/Pentesting/comments/o5y84s/dirb_question/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
r/Pentesting - Dirb question
0 votes and 0 comments so far on Reddit
HashCheck - Tool To Assist In The Search For Leaked Passwords
http://www.kitploit.com/2021/06/hashcheck-tool-to-assist-in-search-for.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2021/06/hashcheck-tool-to-assist-in-search-for.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
HashCheck - Tool To Assist In The Search For Leaked Passwords
This project aims to assist in the search for leaked passwords (https://www.kitploit.com/search/label/Passwords) while maintaining a high level of privacy (https://www.kitploit.com/search/label/Privacy) using the k-anonymity method. To achieve this, the APIs of different services are used, sending only a part of the Hash of the password we want to check, for example, the first 5 characters.
Prerequisites
The project needs some libraries in order to work, to install it use the next command: pip install -r requirements Remember that Python 3 (https://www.kitploit.com/search/label/Python%203) is required.
Usage
passme.py [FUNC] [ELEMENT] -engine [ENGINE] -api_key [API_KEY] FUNC: The kind of element tha you want to check, it can be -h/--hash or -p/--password
or -f/--file or -l/--list or --help.
ELEMENT: The "Hash", "Password" or the name of the file that contains a list of
hashes or password separeted by a new line.
ENGINE: The leaks engine that you want to be used, by default it uses HIBP (Have I been PWN).
API_KEY: The API_KEY necessary for some functions of some engines.
Functions
PASSME_HASH
The main project function receives the hashed password, the engine to be used and the API key. Depending on the engine that is received, both the API key and the hashed password will be sent to one function or another. If you want to add your own engine or an engine that is not already implemented, simply add one more option here. passme_hash(hashed_password, engine="HIBP", api_key="0")
PASSME_PASSWORD
This function hashes the password it receives using SHA-1 and sends the hash to the passme_hash() function. passme_password(password, engine="HIBP", api_key="0")
PASSME_FILE
This function reads one by one the lines of the received file to check each password, giving information about the received password and whether it has been filtered or not. passme_file(filename, engine="HIBP", api_key="0")
PASSME_LIST
This function reads one by one the lines of the received file to check each hash, giving information about the received hash and whether it has been filtered or not. passme_list(filename, engine="HIBP", api_key="0")
PASSME_LIST
The function that deals with the HIBP (Have i been pwned) API, sends the first five characters of the hash, then compares it with the full hash to see if the password/hash has been leaked. engine_HIBP(hashed_password, engine, api_key)
Test
This project has a series of tests to check the correct operation of all its functions, for this purpose the "pytest" library (https://www.kitploit.com/search/label/Library) has been used. To run the tests, install pytest with the following command: pip install pytest Once installed, simply run the "pytest" command to have the tests run automatically, any errors encountered will be returned by the terminal. The results of the test in the lab are the following: Python Version Function Hash Function List Function Password RANDOM Hash RANDOM Password Comment 3.9 ✅ ✅ ✅ ✅ ✅ 3.8 ✅ ✅ ✅ ✅ ✅ 3.7 ✅ ✅ ✅ ✅ ✅ 3.6 ✅ ✅ ✅ ✅ ✅ 3.5 ✅ ✅ ✅ ❌ ❌ Random.choice is not available in Python 3.5 // Deprecated Python Version
Contact
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. This software doesn't have a QA Process. This software is a Proof of Concept. If you have any problems, you can contact: ideaslocas@telefonica.com (mailto:ideaslocas@telefonica.com) - Ideas Locas CDCO - Telefónica
Disclaimer
___________________________
@hacking_Attack
@Hacking_Video
Prerequisites
The project needs some libraries in order to work, to install it use the next command: pip install -r requirements Remember that Python 3 (https://www.kitploit.com/search/label/Python%203) is required.
Usage
passme.py [FUNC] [ELEMENT] -engine [ENGINE] -api_key [API_KEY] FUNC: The kind of element tha you want to check, it can be -h/--hash or -p/--password
or -f/--file or -l/--list or --help.
ELEMENT: The "Hash", "Password" or the name of the file that contains a list of
hashes or password separeted by a new line.
ENGINE: The leaks engine that you want to be used, by default it uses HIBP (Have I been PWN).
API_KEY: The API_KEY necessary for some functions of some engines.
Functions
PASSME_HASH
The main project function receives the hashed password, the engine to be used and the API key. Depending on the engine that is received, both the API key and the hashed password will be sent to one function or another. If you want to add your own engine or an engine that is not already implemented, simply add one more option here. passme_hash(hashed_password, engine="HIBP", api_key="0")
PASSME_PASSWORD
This function hashes the password it receives using SHA-1 and sends the hash to the passme_hash() function. passme_password(password, engine="HIBP", api_key="0")
PASSME_FILE
This function reads one by one the lines of the received file to check each password, giving information about the received password and whether it has been filtered or not. passme_file(filename, engine="HIBP", api_key="0")
PASSME_LIST
This function reads one by one the lines of the received file to check each hash, giving information about the received hash and whether it has been filtered or not. passme_list(filename, engine="HIBP", api_key="0")
PASSME_LIST
The function that deals with the HIBP (Have i been pwned) API, sends the first five characters of the hash, then compares it with the full hash to see if the password/hash has been leaked. engine_HIBP(hashed_password, engine, api_key)
Test
This project has a series of tests to check the correct operation of all its functions, for this purpose the "pytest" library (https://www.kitploit.com/search/label/Library) has been used. To run the tests, install pytest with the following command: pip install pytest Once installed, simply run the "pytest" command to have the tests run automatically, any errors encountered will be returned by the terminal. The results of the test in the lab are the following: Python Version Function Hash Function List Function Password RANDOM Hash RANDOM Password Comment 3.9 ✅ ✅ ✅ ✅ ✅ 3.8 ✅ ✅ ✅ ✅ ✅ 3.7 ✅ ✅ ✅ ✅ ✅ 3.6 ✅ ✅ ✅ ✅ ✅ 3.5 ✅ ✅ ✅ ❌ ❌ Random.choice is not available in Python 3.5 // Deprecated Python Version
Contact
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. This software doesn't have a QA Process. This software is a Proof of Concept. If you have any problems, you can contact: ideaslocas@telefonica.com (mailto:ideaslocas@telefonica.com) - Ideas Locas CDCO - Telefónica
Disclaimer
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.
In many places it can be a crime to install software on a computer that does not belong to you, without the owner's consent. We do not approve the use of PoC for any illegal purpose. To download or use our software in any way, you must acknowledge and approve the following: 1 - You declare that this PoC will be used exclusively in a legal manner. If you are in doubt as to the legality, consult a licensed attorney in the jurisdiction where you will be using this PoC. 2 - You acknowledge that the computer on which the software is to be installed is yours or you have the owner's consent to manage and install the software on it.
Download HashCheck (https://github.com/Telefonica/HashCheck)
___________________________
@hacking_Attack
@Hacking_Video
Download HashCheck (https://github.com/Telefonica/HashCheck)
___________________________
@hacking_Attack
@Hacking_Video
GitHub
GitHub - Telefonica/HashCheck: Ideaslocas Repository
Ideaslocas Repository. Contribute to Telefonica/HashCheck development by creating an account on GitHub.