Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
OSINT AND DORKING TOOLS

Hello,Continue reading on Medium »
Read more...
200$ DLL Hijacking Attack

Bug Hunting + Malware DevelopmentContinue reading on Cyber Security Write-ups »
Read more...
CVE-2024–54385 | WordPress Plugin

I discovered a Server-Side Request Forgery (SSRF) vulnerability in the Radio Player WordPress plugin, assigned as CVE-2024–54385Continue reading on Medium »
Read more...
Utilizing MITRE ATT&CK Framework: Examples and Practical Applications

The MITRE ATT&CK framework stands as a cornerstone for cybersecurity teams looking to enhance their defensive strategies. By understanding…Continue reading on Medium »
Read more...
I discovered a Server-Side Request Forgery (SSRF) vulnerability in the Radio Player WordPress plugin, assigned as CVE-2024–54385Continue reading on Medium » (https://medium.com/@malvinval/cve-2024-54385-wordpress-plugin-7ff0f8e5ad1d?source=rss------bug_bounty-5)
The MITRE ATT&CK framework stands as a cornerstone for cybersecurity teams looking to enhance their defensive strategies. By understanding…Continue reading on Medium » (https://medium.com/@paritoshblogs/utilizing-mitre-att-ck-framework-examples-and-practical-applications-0c4ea468ad53?source=rss------bug_bounty-5)
Bypassing crowdstrike falcon
https://www.reddit.com/r/redteamsec/comments/1hg4d5g/bypassing_crowdstrike_falcon/

<!-- SC_OFF -->Hi, I’m conducting an internal red teaming activity on a Windows machine protected by Falcon. I can’t run PowerView or any tools as they’re getting blocked immediately. Is there any bypass or workaround to get these tools working? <!-- SC_ON --> submitted by /u/Cute_Biscotti_7016 (https://www.reddit.com/user/Cute_Biscotti_7016)
[link] (http://hha.com/) [comments] (https://www.reddit.com/r/redteamsec/comments/1hg4d5g/bypassing_crowdstrike_falcon/)
What other position after pentester?
https://www.reddit.com/r/Pentesting/comments/1hg1zuk/what_other_position_after_pentester/

<!-- SC_OFF -->I know this easy to find but I want to here from the real life experience I have worked in penetration tester role for almost 2 years and now want to try something new what position should I looking for to learn more in this field I do have experience in Pentest (main job), bug bounty(free time), 2 CVE What do you think? <!-- SC_ON --> submitted by /u/diamond1750 (https://www.reddit.com/user/diamond1750)
[link] (https://www.reddit.com/r/Pentesting/comments/1hg1zuk/what_other_position_after_pentester/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hg1zuk/what_other_position_after_pentester/)
Hello guys! I’m back again with a real-life example of how I turned a simple open redirect vulnerability into a reflected XSS exploit.Continue reading on Medium » (https://medium.com/@iPsalmy/open-redirect-to-xss-chaining-vulnerabilities-for-maximum-impact-36ae8dd9f198?source=rss------bug_bounty-5)
Open Redirect to XSS: Chaining Vulnerabilities for Maximum Impact

Hello guys! I’m back again with a real-life example of how I turned a simple open redirect vulnerability into a reflected XSS exploit.Continue reading on Medium »
Read more...
API Keys Attack: How to Find and Exploit Secrets in Web Applications

API keys play a crucial role in web application security, serving as access credentials for APIs. However, improper implementation or…Continue reading on Medium »
Read more...