Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Elevating Cross-Frame Scripting (why it matters more than experts think…)

Are you able to hijack the source of an iFrame, or execute JavaScript inside? This attack (called an XFS attack) typically is considered…Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Aggrokatz : An Aggressor Plugin Extension For Cobalt Strike Which Enables Pypykatz To Interface With The Beacons Remotely

aggrokatz is an Aggressor plugin extension for CobaltStrike which enables pypykatz to interface with the beacons remotely.The current version of aggrokatz allows pypykatz to parse LSASS dump files and Registry hive files to extract credentials and other secrets stored without downloading the file and without uploading any suspicious code to the beacon (Cobalt Strike is already there anyhow). In the future this project aims […]

The post Aggrokatz : An Aggressor Plugin Extension For Cobalt Strike Which Enables Pypykatz To Interface With The Beacons Remotely appeared first on Kali Linux Tutorials.
First of all, just learn to recon and improve your methodology in recon don’t just follow another one’s recon tip if you do so there is no…Continue reading on Techiepedia » (https://medium.com/techiepedia/misconfigured-3-bucket-a-semi-opened-environment-9cfb9dee782d?source=rss------bug_bounty-5)
https://b.thumbs.redditmedia.com/HGc9fc5hJfVzQpBbW3h7J_JS2Y7NkorNuX_Oof1wglE.jpg I ain't asking for any help but just wanted to know if I did the correct thing. I basically found the process by simply using task manager, and then the program's location. Turned on windows safe mode and then deleted the program and its folder.

Does anyone know how I can see all recently created program files? Need to know if the program is still on my pc. Sorry about being a complete pc noob.



If anyone wants to know what the program was then: (The file is on a USB, not my pc)

https://preview.redd.it/wbfm07fezu771.png?width=627&format=png&auto=webp&s=663f347ed7eca6255c4daf8b3b48f2cab6aed2c9

https://preview.redd.it/fpy0a7fezu771.png?width=636&format=png&auto=webp&s=52802ab962540f90b169709b472669999230073f



https://preview.redd.it/yrwdxu2a0v771.png?width=362&format=png&auto=webp&s=15c57fd0fa9ad3a85c08a8cac0efc75383180092

I couldn't upload the text files so I took some screenshots. Hope that's cool.



https://preview.redd.it/yjbbsvvuzu771.png?width=1656&format=png&auto=webp&s=49e8f879905ca93e99af934a3106ef6456681e70

https://preview.redd.it/wcf3fwvuzu771.png?width=717&format=png&auto=webp&s=23cebe99e681d8bbc8a15e0618b5285ea0bd2b32

https://preview.redd.it/ajdltwvuzu771.png?width=534&format=png&auto=webp&s=5c696da98fe8553219553b3ff60345621e947161

submitted by /u/35615054
[link] [comments]
hacking: security in practice
bruteforce huawei bootloader unlocking

does ANYONE have some bruteforce bootloader unlocker for Huawei devices? im trying over 8 hours searching for WORKING program but none of them works!

my device is Huawei Y3 II Lua-L21

submitted by /u/Silver_Illustrator_4
[link] [comments]
hacking: security in practice
Steam streaming as a RAT

Tl;Dr Steam game streaming allows you to access the other computer's desktop

While goofing around the shared Steam account between me and my brother, I wanted to play a game we had installed on both of our computers. I, however, did not select my local mashine when clicking what I thought was the "Play" button and so launched the game on HIS computer. When I realised that, I pressed the windows key to exit it and this brought me to the desktop on his computer, not mine. This got me thinking, can this be used as a RAT?

Imagine the following situation: someone "gifts" you a steam account with a cheap-ish game. Nothing majour, just like a 3 dollar game or somenthing. They launch the game and at 2, 3, 4 AM you connect to stream it. Then, with direct controll over the PC, you can exfiltrate passwords saved in their browser, install apps, download their files and many other malicous purposes. I am thinking on making a POC video, what do you guys think about this? Is it a real threat?

submitted by /u/StillPackage4369
[link] [comments]
hacking: security in practice
Anyone wants to join a CTF team?

Hi,

A while ago I started a small group to do some CTF (HTB/THM) and help each other. We did lose some as time went. Hacking is not for everyone. We take anyone who wants to learn and remain ethical (no illegal stuff). Don't ask how to do anything to hack a friend or any similar request as we will ban you right away. We need people in Asia, Europe and mostly North America.

The goal is to get an active community going to participate as an official team for CTFs.

submitted by /u/alexsuavex3
[link] [comments]