Hacking Articles Tips Tricks Videos Tutorials
mpany was not even taking action for them. His first ISP was AOL, and he was curious to know what went on behind the scenes. He found multiple vulnerabilities and he was able to crack into the company’s network. As a teenager, Adrian became known in the…
Series of chats between Adrian and Chelsea - source: wikipedia.com
Chelsea started helping and providing WikiLeaks with leaked stories/content at the end of 2009 when she found herself involved in something she was completely against. He leaked various material including videos of airstrikes in Bagdad, Afghanistan, thousands of diplomatic cables of the U.S (the cables contain diplomatic analysis from world leaders, and the diplomats’ assessment of host countries and their officials) and half a million Army reports that later came to be known as the “Iraq War Logs” and “Afghan War Diary”.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/The-homepage-of-the-WikiLeaks.org-website-circa-2010.-The-Manning-leaks-put-a-little-known-transparency-organizati-1024x681.png
The homepage of the WikiLeaks.org website circa 2010. The Manning leaks put a little-known transparency organization on the map and made its founder, Julian Assange, a household name. - source: www.npr.org
She said she hoped that the material would lead to “hopefully worldwide discussion, debates, and reforms, and if not, we’re doomed as a species.”
Lamo as a whistleblower – chat logs got published
After the first chat with Manning on the 21st of May 2010, Adrian got in touch with Chet Uber, who was working for the Project Vigilant, which was researching cybercrime, and with a friend, Tim Webster, who was working in Army counterintelligence. The possibility that Adrian was under surveillance and that his chats with Manning were monitored, thus resulting to prosecute him as an accessory to the leaks may played a role in reporting her.
After he told them about the chat he went to the authorities, telling them that he believed Manning was endangering lives. He met with FBI investigators on May 25 in California where he showed them the chat logs, while also told the story to the reporter of Wired, Kevin Poulsen.
The FBI informed the Army officials and arrested Chelsea in Iraq on May 27th.
Kevin proceeded with breaking the news of the story in Wired on June 6th. Wired then, published some of the chat logs on June 6th to 10th and the whole logs in July the next year.
Arrest and charges of Chelsea Manning and Lamo’s criticism from the hacker community
Chelsea was then charged with several offenses, including violations of Articles 92 and 134 of the Uniform Code of Military Justice, and the Espionage Act.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/Adrian-Lamo-center-walks-out-of-a-courthouse-in-Fort-Meade-Md.-where-Chelsea-Mannings-court-martial-was-held-1024x681.png
Adrian Lamo (center) walks out of a courthouse in Fort Meade, Md.,where Chelsea Manning's court-martial was held, on Dec. 20, 2011. - source: www.npr.org
His methodology and motivation had been under scrutiny ever since he turned in Chelsea. He was largely ostracized by the hacker community afterward, such as those at the “Hackers on Planet Earth” conference in 2010, who labeled him as a “snitch”.
Julian Assange, the founder of WikiLeaks also criticized Lamo’s actions, stating that it was “mischievous to suggest the individual has anything to do with WikiLeaks.”
However, from another perspective, it was thanks to Adrian that the government had months to amend any harm caused by the release of the diplomatic cables, but the opinions will always be widely divergent on such controversial issues as those.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/andrian-lamo-snitch.png
Adrian Lamo in a motel room on Long Island, N.Y. Lamo tried to make light of his reputation as a snitch, even wearing a hat that labeled him as such. - source: www.npr.org
For some time in the early 2011s, he was allegedly “in hiding”, and claiming that his “life was under threat” after turning in Manning.
Manning was incarcerated in the U.S military justice system and later sentenced to 35 years in prison. However, President Barrack Ob[...]
Chelsea started helping and providing WikiLeaks with leaked stories/content at the end of 2009 when she found herself involved in something she was completely against. He leaked various material including videos of airstrikes in Bagdad, Afghanistan, thousands of diplomatic cables of the U.S (the cables contain diplomatic analysis from world leaders, and the diplomats’ assessment of host countries and their officials) and half a million Army reports that later came to be known as the “Iraq War Logs” and “Afghan War Diary”.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/The-homepage-of-the-WikiLeaks.org-website-circa-2010.-The-Manning-leaks-put-a-little-known-transparency-organizati-1024x681.png
The homepage of the WikiLeaks.org website circa 2010. The Manning leaks put a little-known transparency organization on the map and made its founder, Julian Assange, a household name. - source: www.npr.org
She said she hoped that the material would lead to “hopefully worldwide discussion, debates, and reforms, and if not, we’re doomed as a species.”
Lamo as a whistleblower – chat logs got published
After the first chat with Manning on the 21st of May 2010, Adrian got in touch with Chet Uber, who was working for the Project Vigilant, which was researching cybercrime, and with a friend, Tim Webster, who was working in Army counterintelligence. The possibility that Adrian was under surveillance and that his chats with Manning were monitored, thus resulting to prosecute him as an accessory to the leaks may played a role in reporting her.
After he told them about the chat he went to the authorities, telling them that he believed Manning was endangering lives. He met with FBI investigators on May 25 in California where he showed them the chat logs, while also told the story to the reporter of Wired, Kevin Poulsen.
The FBI informed the Army officials and arrested Chelsea in Iraq on May 27th.
Kevin proceeded with breaking the news of the story in Wired on June 6th. Wired then, published some of the chat logs on June 6th to 10th and the whole logs in July the next year.
Arrest and charges of Chelsea Manning and Lamo’s criticism from the hacker community
Chelsea was then charged with several offenses, including violations of Articles 92 and 134 of the Uniform Code of Military Justice, and the Espionage Act.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/Adrian-Lamo-center-walks-out-of-a-courthouse-in-Fort-Meade-Md.-where-Chelsea-Mannings-court-martial-was-held-1024x681.png
Adrian Lamo (center) walks out of a courthouse in Fort Meade, Md.,where Chelsea Manning's court-martial was held, on Dec. 20, 2011. - source: www.npr.org
His methodology and motivation had been under scrutiny ever since he turned in Chelsea. He was largely ostracized by the hacker community afterward, such as those at the “Hackers on Planet Earth” conference in 2010, who labeled him as a “snitch”.
Julian Assange, the founder of WikiLeaks also criticized Lamo’s actions, stating that it was “mischievous to suggest the individual has anything to do with WikiLeaks.”
However, from another perspective, it was thanks to Adrian that the government had months to amend any harm caused by the release of the diplomatic cables, but the opinions will always be widely divergent on such controversial issues as those.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/andrian-lamo-snitch.png
Adrian Lamo in a motel room on Long Island, N.Y. Lamo tried to make light of his reputation as a snitch, even wearing a hat that labeled him as such. - source: www.npr.org
For some time in the early 2011s, he was allegedly “in hiding”, and claiming that his “life was under threat” after turning in Manning.
Manning was incarcerated in the U.S military justice system and later sentenced to 35 years in prison. However, President Barrack Ob[...]
Hacking Articles Tips Tricks Videos Tutorials
Series of chats between Adrian and Chelsea - source: wikipedia.com Chelsea started helping and providing WikiLeaks with leaked stories/content at the end of 2009 when she found herself involved in something she was completely against. He leaked various material…
ama commuted the sentence to a total of seven years at the end of his presidential term.
She was first released from prison on May 17, 2017, but had rough following years spending time in and out of courts where she was served with multiple subpoenas to testify against the case of WikiLeaks and Julian Assange which she refused to testify multiple times.
On March 11, 2020, she tried to commit suicide in the prison where she was held, a couple of days before it was scheduled to appear before a judge on a motion to terminate sanctions. She recovered well in the hospital and the grand jury decided that her testimony was no longer needed. The judge found that her detention was no longer needed and she was released.
She received multiple awards over the years and made multiple appearances on TV and Universities, giving interviews and speaking engagements.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/800px-Chelsea_Manning_on_21_April_2020.jpg
Photo of manning 40 days after her release. Manning (left) in Brooklyn during the coronavirus pandemic in April 2020, forty days after her release from jail. - source: Wikipedia.com
Death
Adrian died unexpectedly on March 14, 2018, at the age of 37 in Kansas.
His death was made public from his father’s post on Facebook who wrote “With great sadness and a broken heart I have to let know all of Adrian’s friends and acquaintances that he is dead. A bright mind and compassionate soul is gone, he was my beloved son.”
They found several bottles of pills in his home and the medical examiner, Scott Kipper, who handled Adrian’s autopsy explained that he couldn’t even rule out murder. He pointed out several irregularities in Lamo’s case such as a sticker found on Adrian’s left thigh, that read “Adrian Lamo, Assistant Director, ProjectVigilant, 70 Bates Street, NW, Washington, DC. “, but that wasn’t enough to point them in a definite answer.
After three months later, the Sedwick County Regional Forensic Science report showed no definitive cause of death, despite a complete autopsy.
A long list of chemicals found in Lamo’s bloodstream like Benadryl, chlorpheniramine, citalopram, gabapentin, clonazepam, etizolam, flubromazepam, and some of them were benzodiazepines that were prescribed by his doctor to treat his anxiety disorder. However according to the medical examiners, those drugs weren’t enough to kill Adrian, but he was likely in a sedated state. He would probably overmedicate due to his substantial anxiety.
The most probable cause of Adrian’s death was that he unknowingly combined the benzodiazepines with kratom, a recreational drug. The FDA came out with a medical alert just a month before Adrian died with a warning against mixing the benzodiazepines with kratom which was a combination that had been linked to dozens of deaths.
Adrian Lamo was the kind of hacker that wanted to challenge others to find different ways to get companies to take their security seriously. His role as a hacker was to find new and innovative ways of accomplishing things, beyond what an average person would think, ways to use existing resources differently and more efficiently to overcome unseen barriers.
He will remain forever “a very disreputable character” and a controversial figure in the hacker community.
style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="3193330934"
data-ad-format="auto"
data-full-width-responsive="true">
References:
⦿ Hacker Adrian Lamo who turned Wikileaks’ source Chelsea Manning in to the FBI dead at 37, says father ⦿ Out of prison, Chelsea Manning looks forward to exploring life as a woman ⦿ Alleged Army Whistleblower Felt “Isolated” ⦿ Chelsea Manning- Wikipedia
⦿ The Mysterious Death Of The Hacker Who Turned In Chelsea Manning ⦿ Q&A: Adrian Lamo, the hacker philosopher ⦿ Interview Adrian Lamo ⦿ Ex-Hacker Adrian Lamo Institutionalized, Diagnosed with Asperger’s ⦿ He hacks by da[...]
She was first released from prison on May 17, 2017, but had rough following years spending time in and out of courts where she was served with multiple subpoenas to testify against the case of WikiLeaks and Julian Assange which she refused to testify multiple times.
On March 11, 2020, she tried to commit suicide in the prison where she was held, a couple of days before it was scheduled to appear before a judge on a motion to terminate sanctions. She recovered well in the hospital and the grand jury decided that her testimony was no longer needed. The judge found that her detention was no longer needed and she was released.
She received multiple awards over the years and made multiple appearances on TV and Universities, giving interviews and speaking engagements.
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/800px-Chelsea_Manning_on_21_April_2020.jpg
Photo of manning 40 days after her release. Manning (left) in Brooklyn during the coronavirus pandemic in April 2020, forty days after her release from jail. - source: Wikipedia.com
Death
Adrian died unexpectedly on March 14, 2018, at the age of 37 in Kansas.
His death was made public from his father’s post on Facebook who wrote “With great sadness and a broken heart I have to let know all of Adrian’s friends and acquaintances that he is dead. A bright mind and compassionate soul is gone, he was my beloved son.”
They found several bottles of pills in his home and the medical examiner, Scott Kipper, who handled Adrian’s autopsy explained that he couldn’t even rule out murder. He pointed out several irregularities in Lamo’s case such as a sticker found on Adrian’s left thigh, that read “Adrian Lamo, Assistant Director, ProjectVigilant, 70 Bates Street, NW, Washington, DC. “, but that wasn’t enough to point them in a definite answer.
After three months later, the Sedwick County Regional Forensic Science report showed no definitive cause of death, despite a complete autopsy.
A long list of chemicals found in Lamo’s bloodstream like Benadryl, chlorpheniramine, citalopram, gabapentin, clonazepam, etizolam, flubromazepam, and some of them were benzodiazepines that were prescribed by his doctor to treat his anxiety disorder. However according to the medical examiners, those drugs weren’t enough to kill Adrian, but he was likely in a sedated state. He would probably overmedicate due to his substantial anxiety.
The most probable cause of Adrian’s death was that he unknowingly combined the benzodiazepines with kratom, a recreational drug. The FDA came out with a medical alert just a month before Adrian died with a warning against mixing the benzodiazepines with kratom which was a combination that had been linked to dozens of deaths.
Adrian Lamo was the kind of hacker that wanted to challenge others to find different ways to get companies to take their security seriously. His role as a hacker was to find new and innovative ways of accomplishing things, beyond what an average person would think, ways to use existing resources differently and more efficiently to overcome unseen barriers.
He will remain forever “a very disreputable character” and a controversial figure in the hacker community.
style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="3193330934"
data-ad-format="auto"
data-full-width-responsive="true">
References:
⦿ Hacker Adrian Lamo who turned Wikileaks’ source Chelsea Manning in to the FBI dead at 37, says father ⦿ Out of prison, Chelsea Manning looks forward to exploring life as a woman ⦿ Alleged Army Whistleblower Felt “Isolated” ⦿ Chelsea Manning- Wikipedia
⦿ The Mysterious Death Of The Hacker Who Turned In Chelsea Manning ⦿ Q&A: Adrian Lamo, the hacker philosopher ⦿ Interview Adrian Lamo ⦿ Ex-Hacker Adrian Lamo Institutionalized, Diagnosed with Asperger’s ⦿ He hacks by da[...]
Hacking Articles Tips Tricks Videos Tutorials
ama commuted the sentence to a total of seven years at the end of his presidential term. She was first released from prison on May 17, 2017, but had rough following years spending time in and out of courts where she was served with multiple subpoenas to…
y squats by night
⦿ WikiLeaks Cables US ⦿ United States diplomatic cables leak – Wikipedia
⦿ Archive – WikiLeaks snitch hacker Andrian Lamo faces wrath of his peers Recent Articles* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/photo-1468436139062-f60a71c5c892-scaled-90x90.jpg “Worst” MacOS Security Bug Recently Patched by Apple2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/wallpaperflare.com_wallpaper-90x90.jpg Jeff Moss, aka Dark Tangent, the person who founded DEF CON and Black Hat1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Xbox-Underground-90x90.png Hacking Stories: Xbox Underground2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Pentago-hak-90x90.png Hacking Stories: When two young hackers played war games with Pentagon3 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/picture-788930-90x90.jpg Hacking Stories: Albert Gonzalez & the ‘Get Rich or Die Trying’ Crew who stole 130 million credit-card numbers4 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/cover-photo-90x90.png SolarWinds Supply Chain Hack – The hack that shone a light on the gaps in the cybersecurity of governments and big companies5 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/12/1_alk8KxcB-XwJfMK71kQjvw-90x90.jpeg Steganography – How images can hide secret messages in plain sight7 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/10/pg-6-gary-mckinnon-ap-90x90.jpg Hacking Stories: Gary McKinnon and the “biggest military computer hack of all time”7 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/10/FBOs81602486302-90x90.png The history of Internet and how it became a worldwide “thing”9 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/09/kevin-mitnick-90x90.jpg Kevin Mitnick – Once the world’s most wanted hacker, now he’s getting paid to hack companies legally10 months ago
style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="8337846400"
data-ad-format="auto"
data-full-width-responsive="true">
The post Hacking Stories: Andrian Lamo – The ‘homeless’ Hacker first appeared on Black Hat Ethical Hacking.
⦿ WikiLeaks Cables US ⦿ United States diplomatic cables leak – Wikipedia
⦿ Archive – WikiLeaks snitch hacker Andrian Lamo faces wrath of his peers Recent Articles* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/06/photo-1468436139062-f60a71c5c892-scaled-90x90.jpg “Worst” MacOS Security Bug Recently Patched by Apple2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/wallpaperflare.com_wallpaper-90x90.jpg Jeff Moss, aka Dark Tangent, the person who founded DEF CON and Black Hat1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Xbox-Underground-90x90.png Hacking Stories: Xbox Underground2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Pentago-hak-90x90.png Hacking Stories: When two young hackers played war games with Pentagon3 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/picture-788930-90x90.jpg Hacking Stories: Albert Gonzalez & the ‘Get Rich or Die Trying’ Crew who stole 130 million credit-card numbers4 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/cover-photo-90x90.png SolarWinds Supply Chain Hack – The hack that shone a light on the gaps in the cybersecurity of governments and big companies5 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/12/1_alk8KxcB-XwJfMK71kQjvw-90x90.jpeg Steganography – How images can hide secret messages in plain sight7 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/10/pg-6-gary-mckinnon-ap-90x90.jpg Hacking Stories: Gary McKinnon and the “biggest military computer hack of all time”7 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/10/FBOs81602486302-90x90.png The history of Internet and how it became a worldwide “thing”9 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/09/kevin-mitnick-90x90.jpg Kevin Mitnick – Once the world’s most wanted hacker, now he’s getting paid to hack companies legally10 months ago
style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="8337846400"
data-ad-format="auto"
data-full-width-responsive="true">
The post Hacking Stories: Andrian Lamo – The ‘homeless’ Hacker first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Joern : Open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs
Joern is an open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs. Quick Installation wget https://github.com/ShiftLeftSecurity/joern/releases/latest/download/joern-install.shchmod +x ./joern-install.shsudo ./joern-install.shjoernCompiling (synthetic)/ammonite/predef/interpBridge.scCompiling (synthetic)/ammonite/predef/replBridge.scCompiling (synthetic)/ammonite/predef/DefaultPredef.scCompiling /home/tmp/shiftleft/joern/(console)██╗ ██████╗ ███████╗██████╗ ███╗ ██╗██║██╔═══██╗██╔════╝██╔══██╗████╗ ██║██║██║ ██║█████╗ ██████╔╝██╔██╗ ██║██ ██║██║ ██║██╔══╝ ██╔══██╗██║╚██╗██║╚█████╔╝╚██████╔╝███████╗██║ ██║██║ ╚████║╚════╝ ╚═════╝ ╚══════╝╚═╝ ╚═╝╚═╝ ╚═══╝joern> If the installation script fails for any reason, try ./joern-install –interactive
The post Joern : Open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs appeared first on Kali Linux Tutorials.
Joern : Open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs
Joern is an open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs. Quick Installation wget https://github.com/ShiftLeftSecurity/joern/releases/latest/download/joern-install.shchmod +x ./joern-install.shsudo ./joern-install.shjoernCompiling (synthetic)/ammonite/predef/interpBridge.scCompiling (synthetic)/ammonite/predef/replBridge.scCompiling (synthetic)/ammonite/predef/DefaultPredef.scCompiling /home/tmp/shiftleft/joern/(console)██╗ ██████╗ ███████╗██████╗ ███╗ ██╗██║██╔═══██╗██╔════╝██╔══██╗████╗ ██║██║██║ ██║█████╗ ██████╔╝██╔██╗ ██║██ ██║██║ ██║██╔══╝ ██╔══██╗██║╚██╗██║╚█████╔╝╚██████╔╝███████╗██║ ██║██║ ╚████║╚════╝ ╚═════╝ ╚══════╝╚═╝ ╚═╝╚═╝ ╚═══╝joern> If the installation script fails for any reason, try ./joern-install –interactive
The post Joern : Open-source Code Analysis Platform For C/C++/Java Based On Code Property Graphs appeared first on Kali Linux Tutorials.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Operationalizing and Improving Cybersecurity Posture
Cybersecurity posture, also known as security posture, is the strength possessed by an organization to mitigate threats. A strong security…
Continue reading on Medium »
Operationalizing and Improving Cybersecurity Posture
Cybersecurity posture, also known as security posture, is the strength possessed by an organization to mitigate threats. A strong security…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Window 10 Administrator privilege escalation.
https://cdn-images-1.medium.com/max/1214/1*oKje8M6QHbbWRKKAqTcYuw.png
Hi the day was going typical and I was doing practice for my pen testing and an learn a way haw to exploit the windows system.
Continue reading on Medium »
Window 10 Administrator privilege escalation.
https://cdn-images-1.medium.com/max/1214/1*oKje8M6QHbbWRKKAqTcYuw.png
Hi the day was going typical and I was doing practice for my pen testing and an learn a way haw to exploit the windows system.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
GIF
Hacking on Medium
CSC CTF 2021 — Flag Shop (Reverse Engineering Android)(Smali Patch) #1
https://cdn-images-1.medium.com/max/600/1*-WdH9aSLgRBDYmv8aXhy0Q.gif
Pada kali ini saya sebagai penulis akan membahas salah satu soal yang terdapat pada CTF CSC 2021. Soal ini merupakan soal bertipe Reverse…
Continue reading on Medium »
CSC CTF 2021 — Flag Shop (Reverse Engineering Android)(Smali Patch) #1
https://cdn-images-1.medium.com/max/600/1*-WdH9aSLgRBDYmv8aXhy0Q.gif
Pada kali ini saya sebagai penulis akan membahas salah satu soal yang terdapat pada CTF CSC 2021. Soal ini merupakan soal bertipe Reverse…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Lame HTB Writeup
https://cdn-images-1.medium.com/max/1312/1*6i8evcn64xH5jnkrkUv3Bw.png
Hi everyone, this is my writeup for box “Lame” found on HackTheBox .
Continue reading on Medium »
Lame HTB Writeup
https://cdn-images-1.medium.com/max/1312/1*6i8evcn64xH5jnkrkUv3Bw.png
Hi everyone, this is my writeup for box “Lame” found on HackTheBox .
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to fix WordPress redirect hacks
https://cdn-images-1.medium.com/max/1280/1*UtLRdzqUJQC5l_HQqJvX5Q.jpeg
WordPress redirect hack is one of the common types of hacks, happens on WordPress. But it causes more severe side effects to your website.
Continue reading on Medium »
How to fix WordPress redirect hacks
https://cdn-images-1.medium.com/max/1280/1*UtLRdzqUJQC5l_HQqJvX5Q.jpeg
WordPress redirect hack is one of the common types of hacks, happens on WordPress. But it causes more severe side effects to your website.
Continue reading on Medium »
An attempt to escalate a low-impact hidden input XSS
https://officialaimm.medium.com/an-attempt-to-escalate-a-low-impact-hidden-input-xss-9f4b9c88f19c?source=rss------bug_bounty-5
https://officialaimm.medium.com/an-attempt-to-escalate-a-low-impact-hidden-input-xss-9f4b9c88f19c?source=rss------bug_bounty-5
IntroductionContinue reading on Medium » (https://officialaimm.medium.com/an-attempt-to-escalate-a-low-impact-hidden-input-xss-9f4b9c88f19c?source=rss------bug_bounty-5)
Heappy - A Happy Heap Editor To Support Your Exploitation Process
Heappy is an editor based on gdb/gef that helps you to handle the heap during your exploitation development. The project should be considered a didactic tool useful to understand the evolution of the heap during the process life cycle. It has been created to simplify the study of the most common heap exploitation techniques and to support you to solve some binary exploitation CTFs related to this fantastic topic.Main features This is what Heappy implements:✅ take heap snapshots and compare them each other✅ recognize immediately type and fields of heap bins✅ search and edit heap values by decimal, hex or string✅ find yourself with the panoramic view of the heap status✅ take notes about a cell in the comment column✅ enjoy the light and dark modeGetting Started These instructions will help you to install and run Heappy fastly. Prerequisites If you don't have it, install GEF in GDB: wget -q -O- https://github.com/hugsy/gef/raw/master/scripts/gef.sh | sh md5(gef.sh): eb053864d050048cb001c80c79fde7b5 Installing Install Node.js and npm: apt updatesudo apt install nodejs npm Download and install Heappy: git clone https://github.com/gand3lf/heappycd heappy/npm install Load the server inside GDB: gef➤ source /my/path/heappy/server/heappy.py It is suggested to run the Heappy GUI after that the target heap has been initialized. For example: gef➤ break maingef➤ run From another terminal launch the GUI: cd /my/path/heappy/npm start Have fun! Not yet implemented 32-bit addresses support (coming soon) multiple heaps support gdb checkpoint integrationDownload Heappy
Read more...
Heappy is an editor based on gdb/gef that helps you to handle the heap during your exploitation development. The project should be considered a didactic tool useful to understand the evolution of the heap during the process life cycle. It has been created to simplify the study of the most common heap exploitation techniques and to support you to solve some binary exploitation CTFs related to this fantastic topic.Main features This is what Heappy implements:✅ take heap snapshots and compare them each other✅ recognize immediately type and fields of heap bins✅ search and edit heap values by decimal, hex or string✅ find yourself with the panoramic view of the heap status✅ take notes about a cell in the comment column✅ enjoy the light and dark modeGetting Started These instructions will help you to install and run Heappy fastly. Prerequisites If you don't have it, install GEF in GDB: wget -q -O- https://github.com/hugsy/gef/raw/master/scripts/gef.sh | sh md5(gef.sh): eb053864d050048cb001c80c79fde7b5 Installing Install Node.js and npm: apt updatesudo apt install nodejs npm Download and install Heappy: git clone https://github.com/gand3lf/heappycd heappy/npm install Load the server inside GDB: gef➤ source /my/path/heappy/server/heappy.py It is suggested to run the Heappy GUI after that the target heap has been initialized. For example: gef➤ break maingef➤ run From another terminal launch the GUI: cd /my/path/heappy/npm start Have fun! Not yet implemented 32-bit addresses support (coming soon) multiple heaps support gdb checkpoint integrationDownload Heappy
Read more...
hacking: security in practice
what is your favorite Subdomain scanner?
been using some tool but any suggestion would be cool
submitted by /u/riotsun
[link] [comments]
what is your favorite Subdomain scanner?
been using some tool but any suggestion would be cool
submitted by /u/riotsun
[link] [comments]
reddit
what is your favorite Subdomain scanner?
been using some tool but any suggestion would be cool
Easter egg for pentest
https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/
<!-- SC_OFF -->Our company will have a pentest audit in the next week. Any idea of a good easter egg for them to find and brighten their day? <!-- SC_ON --> submitted by /u/Dark_Horse1995 (https://www.reddit.com/user/Dark_Horse1995)
[link] (https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/) [comments] (https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/)
https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/
<!-- SC_OFF -->Our company will have a pentest audit in the next week. Any idea of a good easter egg for them to find and brighten their day? <!-- SC_ON --> submitted by /u/Dark_Horse1995 (https://www.reddit.com/user/Dark_Horse1995)
[link] (https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/) [comments] (https://www.reddit.com/r/Pentesting/comments/o9jz04/easter_egg_for_pentest/)