hacking: security in practice
Can conversations recorded without my consent be used against me in court?
Sorry I don’t know if this is the right place to ask this but… that’s basically what I want to know. My ex hacked my iPhone and is trying to use recordings he obtained through hacking to get my children taken away
submitted by /u/Rumanda
[link] [comments]
Can conversations recorded without my consent be used against me in court?
Sorry I don’t know if this is the right place to ask this but… that’s basically what I want to know. My ex hacked my iPhone and is trying to use recordings he obtained through hacking to get my children taken away
submitted by /u/Rumanda
[link] [comments]
reddit
Can conversations recorded without my consent be used against me...
Sorry I don’t know if this is the right place to ask this but… that’s basically what I want to know. My ex hacked my iPhone and is trying to use...
hacking: security in practice
Airodump-ng won't show stations on some networks
So I've just downloaded aircrack and it's not working on some networks. I have the rt5372 chipset. I've tried airodump on one network and it won't show any stations and my phone is hooked up to it so I know it's there. But I've tried another where my phone is hooked up and it will show it. I've tried to reinstall aircrack and I've tried to upgrade kali. I've also tried it on my manjaro box as well and it's the same results. My guess is that I need to install an older version of aircrack. Does anyone have any fixes? Thank you.
submitted by /u/grim_ops
[link] [comments]
Airodump-ng won't show stations on some networks
So I've just downloaded aircrack and it's not working on some networks. I have the rt5372 chipset. I've tried airodump on one network and it won't show any stations and my phone is hooked up to it so I know it's there. But I've tried another where my phone is hooked up and it will show it. I've tried to reinstall aircrack and I've tried to upgrade kali. I've also tried it on my manjaro box as well and it's the same results. My guess is that I need to install an older version of aircrack. Does anyone have any fixes? Thank you.
submitted by /u/grim_ops
[link] [comments]
reddit
Airodump-ng won't show stations on some networks
So I've just downloaded aircrack and it's not working on some networks. I have the rt5372 chipset. I've tried airodump on one network and it won't...
hacking: security in practice
What do you do that unethical one?
One who midgets into others life for fun but lives a block away from your house?
submitted by /u/f3rmisparadoX
[link] [comments]
What do you do that unethical one?
One who midgets into others life for fun but lives a block away from your house?
submitted by /u/f3rmisparadoX
[link] [comments]
reddit
What do you do that unethical one?
One who midgets into others life for fun but lives a block from your house?
hacking: security in practice
Hello everyone
A recent event has occurred in regards to A video game called Black Ops 3 and YouTube Stars.
Essentially, there is these YouTubers that record gameplay of “custom BO3 zombies.” Some do it for a living, and some play other games as well. This gives people, such as me; the entertainment we subscribed to them for.
Well, recently, a group of hackers have found code in the game that allows them to crash anyone’s game just by knowing their “steam id” or in other words, their username. They have been targeting these YouTubers, such as NoahJ456, creating quite the hit in revenue from his videos.
If there is any tips you have for them, please let me or them know.
The game developers are not prioritizing the game because it is a few years old, but the only one with this “custom zombies” game mode.
I will put a link of the video in the description.
submitted by /u/STRAlGHTCANCER
[link] [comments]
Hello everyone
A recent event has occurred in regards to A video game called Black Ops 3 and YouTube Stars.
Essentially, there is these YouTubers that record gameplay of “custom BO3 zombies.” Some do it for a living, and some play other games as well. This gives people, such as me; the entertainment we subscribed to them for.
Well, recently, a group of hackers have found code in the game that allows them to crash anyone’s game just by knowing their “steam id” or in other words, their username. They have been targeting these YouTubers, such as NoahJ456, creating quite the hit in revenue from his videos.
If there is any tips you have for them, please let me or them know.
The game developers are not prioritizing the game because it is a few years old, but the only one with this “custom zombies” game mode.
I will put a link of the video in the description.
submitted by /u/STRAlGHTCANCER
[link] [comments]
reddit
Hello everyone
A recent event has occurred in regards to A video game called Black Ops 3 and YouTube Stars. Essentially, there is these YouTubers that record...
hacking: security in practice
Ports to be opened at Firewall for Kali to work from outside
Which ports at Firewall have to be opened for Kali to work from external segment ? Any insight would be appreciated.
submitted by /u/Pamelaxyz
[link] [comments]
Ports to be opened at Firewall for Kali to work from outside
Which ports at Firewall have to be opened for Kali to work from external segment ? Any insight would be appreciated.
submitted by /u/Pamelaxyz
[link] [comments]
reddit
Ports to be opened at Firewall for Kali to work from outside
Which ports at Firewall have to be opened for Kali to work from external segment ? Any insight would be appreciated.
hacking: security in practice
Google Issues
I'm looking to get back into my old email after someone hacked it,
google keeps saying the following
An email with a verification code was just sent to wef••••••••••••@pro•••••••.com
what email is this? Where can i acquire the tools to hack back my email or that one to get my email back? Any form of help would be lovely thank you
submitted by /u/Ominosu_Nebyura
[link] [comments]
Google Issues
I'm looking to get back into my old email after someone hacked it,
google keeps saying the following
An email with a verification code was just sent to wef••••••••••••@pro•••••••.com
what email is this? Where can i acquire the tools to hack back my email or that one to get my email back? Any form of help would be lovely thank you
submitted by /u/Ominosu_Nebyura
[link] [comments]
reddit
Google Issues
I'm looking to get back into my old email after someone hacked it, google keeps saying the following An email with a...
hacking: security in practice
COM ports not showing up
I'm setting up this esp8266 but the pc doesn't detect any COM device which is weird because It should detect the esp, I go check into device manager and there's nothing there, how do I fix
submitted by /u/xX_zEnUs_Xx
[link] [comments]
COM ports not showing up
I'm setting up this esp8266 but the pc doesn't detect any COM device which is weird because It should detect the esp, I go check into device manager and there's nothing there, how do I fix
submitted by /u/xX_zEnUs_Xx
[link] [comments]
reddit
COM ports not showing up
I'm setting up this esp8266 but the pc doesn't detect any COM device which is weird because It should detect the esp, I go check into device...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Digital Forensics in Medical Devices
Hi, I’m a researcher with the University of Minnesota working on a project related to digital forensics in Medical devices. We were hoping to get some more insight into the digital forensics field. If you have any insights in forensics, cybersecurity or medical devices and would be willing to fill out the following form that would be greatly appreciated.
Digital Forensics Survey
submitted by /u/Nosrack_
[link] [comments]
Digital Forensics in Medical Devices
Hi, I’m a researcher with the University of Minnesota working on a project related to digital forensics in Medical devices. We were hoping to get some more insight into the digital forensics field. If you have any insights in forensics, cybersecurity or medical devices and would be willing to fill out the following form that would be greatly appreciated.
Digital Forensics Survey
submitted by /u/Nosrack_
[link] [comments]
hacking: security in practice
Bypassing geo-blocking
My company issues pre-built laptops which use certificate based VPNs to connect to the infrastructure. Furthermore, there is IP based geo-blocking in place to deter outside access. The only possible thing that can be changed are the WiFi settings to connect to a home WiFi network for remote working. No ethernet port. I'm of the opinion that it should be possible to setup a secondary device to create a WiFi that tunnels all traffic through a VPN to a location of my choosing. My boss thinks it's not possible so I would like to work up a proof of concept to show that it's not as safe as they think.
Does anyone have any pointers/ideas/guides how I could set this up with e.g. a 2nd laptop acting as the gateway device?
Thanks for any input
submitted by /u/Handsome_Me
[link] [comments]
Bypassing geo-blocking
My company issues pre-built laptops which use certificate based VPNs to connect to the infrastructure. Furthermore, there is IP based geo-blocking in place to deter outside access. The only possible thing that can be changed are the WiFi settings to connect to a home WiFi network for remote working. No ethernet port. I'm of the opinion that it should be possible to setup a secondary device to create a WiFi that tunnels all traffic through a VPN to a location of my choosing. My boss thinks it's not possible so I would like to work up a proof of concept to show that it's not as safe as they think.
Does anyone have any pointers/ideas/guides how I could set this up with e.g. a 2nd laptop acting as the gateway device?
Thanks for any input
submitted by /u/Handsome_Me
[link] [comments]
reddit
Bypassing geo-blocking
My company issues pre-built laptops which use certificate based VPNs to connect to the infrastructure. Furthermore, there is IP based geo-blocking...
hacking: security in practice
Cyberflix
Dunno if this belongs in this sub, but I have cyberflix that a friend of mine put on my fire for me to use to watch whatever. However, I find that very often that most titles have no links to spare, or the ones that do exist don’t work/load.
What alternative apps do you suggest? Or am I cyberflixing wrong?
submitted by /u/mmmalloryknox
[link] [comments]
Cyberflix
Dunno if this belongs in this sub, but I have cyberflix that a friend of mine put on my fire for me to use to watch whatever. However, I find that very often that most titles have no links to spare, or the ones that do exist don’t work/load.
What alternative apps do you suggest? Or am I cyberflixing wrong?
submitted by /u/mmmalloryknox
[link] [comments]
reddit
Cyberflix
Dunno if this belongs in this sub, but I have cyberflix that a friend of mine put on my fire for me to use to watch whatever. However, I find that...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Atlassian Jira Server/Data Center 8.16.0 Cross Site Scripting
https://4.bp.blogspot.com/-khon6dqGLkI/WWlvkVAr7qI/AAAAAAAAIQw/JwPgE9u6PkcV9AqklLFI3rOjfEX9YXC4QCLcBGAs/s1600/h96.png
Atlassian Jira Server / Data Center version 8.16.0 suffer from a cross site scripting vulnerability.
MD5 |
Download
Source:packetstormsecurity.com
Atlassian Jira Server/Data Center 8.16.0 Cross Site Scripting
https://4.bp.blogspot.com/-khon6dqGLkI/WWlvkVAr7qI/AAAAAAAAIQw/JwPgE9u6PkcV9AqklLFI3rOjfEX9YXC4QCLcBGAs/s1600/h96.png
Atlassian Jira Server / Data Center version 8.16.0 suffer from a cross site scripting vulnerability.
MD5 |
cf784a036af7c8f27e355469c33191eaDownload
# Exploit Title: Atlassian Jira Server/Data Center 8.16.0 - Reflected Cross-Site Scripting (XSS)
# Date: 06/05/2021
# Exploit Author: CAPTAIN_HOOK
# Vendor Homepage: https://www.atlassian.com/
# Software Link: https://www.atlassian.com/software/jira/download/data-center
# Version: versions < 8.5.14, 8.6.0 ≤ version < 8.13.6, 8.14.0 ≤ version < 8.16.1
# Tested on: ANY
# CVE : CVE-2021-26078
Description:
The number range searcher component in Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before version 8.13.6, and from version 8.14.0 before version 8.16.1 allows remote attackers inject arbitrary HTML or JavaScript via across site scripting (XSS) vulnerability
*Fixed versions:*
- 8.5.14
- 8.13.6
- 8.16.1
- 8.17.0
POC:
- *Story points* custom field that exists by default in all JIRA Server has 3 types of Search template ( None , number range searcher, number searcher) By default the value of Search template is number range searcher OR number searcher. if the value of Search template was set on number range searcher the JIRA server is vulnerable to XSS attack by lowest privilege . For Testing Check the Story points custom field and it's details ( for verifying that the Search template sets on number range searcher) with your ADMIN account ( just like the images) and in the other window Type this With your least privilege
user : jql=issuetype%20%3D%20Epic%20AND%20%22Story%20Points%22%20%3C%3D%20%22%5C%22%3E%3Cscript%3Ealert(document.cookie)%3C%2Fscript%3E%22%20AND%20%22Story%20Points%22%20%3E%3D%20%221%22
Your XSS Will be triggered immediately.
Reference:
https://jira.atlassian.com/browse/JRASERVER-72392?error=login_required&error_description=Login+required&state=9b05ec1f-587c-4014-9053-b6fdbb1efa21
Source:packetstormsecurity.com