WIRE TOR — The Ethical Hacking ServicesContinue reading on Medium » (https://medium.com/@wiretor/three-russian-german-nationals-charged-with-spying-for-russia-838f9b0d39d4?source=rss------bug_bounty-5)
Election Interference Exposed: Iranian and Russian Cyber Tactics in the Spotlight
https://medium.com/@wiretor/election-interference-exposed-iranian-and-russian-cyber-tactics-in-the-spotlight-3e9059006021?source=rss------bug_bounty-5
https://medium.com/@wiretor/election-interference-exposed-iranian-and-russian-cyber-tactics-in-the-spotlight-3e9059006021?source=rss------bug_bounty-5
WIRE TOR — The Ethical Hacking ServicesContinue reading on Medium » (https://medium.com/@wiretor/election-interference-exposed-iranian-and-russian-cyber-tactics-in-the-spotlight-3e9059006021?source=rss------bug_bounty-5)
Rhode Islanders’ Data Breach: Protect Yourself from Cyberattacks Today!
https://medium.com/@wiretor/rhode-islanders-data-breach-protect-yourself-from-cyberattacks-today-1c0f4f79b40b?source=rss------bug_bounty-5
https://medium.com/@wiretor/rhode-islanders-data-breach-protect-yourself-from-cyberattacks-today-1c0f4f79b40b?source=rss------bug_bounty-5
WIRE TOR — The Ethical Hacking ServicesContinue reading on Medium » (https://medium.com/@wiretor/rhode-islanders-data-breach-protect-yourself-from-cyberattacks-today-1c0f4f79b40b?source=rss------bug_bounty-5)
US Arrests Army Soldier Over AT&T, Verizon Hacking | Linked to Presidential Call Log Leaks
https://medium.com/@wiretor/us-arrests-army-soldier-over-at-t-verizon-hacking-linked-to-presidential-call-log-leaks-25897c6b4e0b?source=rss------bug_bounty-5
https://medium.com/@wiretor/us-arrests-army-soldier-over-at-t-verizon-hacking-linked-to-presidential-call-log-leaks-25897c6b4e0b?source=rss------bug_bounty-5
WIRE TOR — The Ethical Hacking ServicesContinue reading on Medium » (https://medium.com/@wiretor/us-arrests-army-soldier-over-at-t-verizon-hacking-linked-to-presidential-call-log-leaks-25897c6b4e0b?source=rss------bug_bounty-5)
Using CloudFlared for Tunneling and Persistence
https://www.reddit.com/r/redteamsec/comments/1hrvaj0/using_cloudflared_for_tunneling_and_persistence/
submitted by /u/Infosecsamurai (https://www.reddit.com/user/Infosecsamurai)
[link] (https://youtu.be/JC1hIppKLhI) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrvaj0/using_cloudflared_for_tunneling_and_persistence/)
https://www.reddit.com/r/redteamsec/comments/1hrvaj0/using_cloudflared_for_tunneling_and_persistence/
submitted by /u/Infosecsamurai (https://www.reddit.com/user/Infosecsamurai)
[link] (https://youtu.be/JC1hIppKLhI) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrvaj0/using_cloudflared_for_tunneling_and_persistence/)
Looking for a blue team partner
https://www.reddit.com/r/redteamsec/comments/1hrxwdd/looking_for_a_blue_team_partner/
<!-- SC_OFF -->Hey everyone, I’m actively working on improving my red team skills and would love to partner up with someone on the blue team side. My goal is to simulate realistic attacks and help sharpen defenses. If you’re looking to practice defending systems against simulated threats, feel free to reach out! We can collaborate, learn, and grow together. <!-- SC_ON --> submitted by /u/username7163620 (https://www.reddit.com/user/username7163620)
[link] (http://www.google.com/) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrxwdd/looking_for_a_blue_team_partner/)
https://www.reddit.com/r/redteamsec/comments/1hrxwdd/looking_for_a_blue_team_partner/
<!-- SC_OFF -->Hey everyone, I’m actively working on improving my red team skills and would love to partner up with someone on the blue team side. My goal is to simulate realistic attacks and help sharpen defenses. If you’re looking to practice defending systems against simulated threats, feel free to reach out! We can collaborate, learn, and grow together. <!-- SC_ON --> submitted by /u/username7163620 (https://www.reddit.com/user/username7163620)
[link] (http://www.google.com/) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrxwdd/looking_for_a_blue_team_partner/)
Evilginx detection
https://www.reddit.com/r/redteamsec/comments/1hrzywl/evilginx_detection/
<!-- SC_OFF -->Hi guys, I was testing Evilginx for a few days now, and I have faced an issue. When I enter the lure url into my chrome browser, I get a warning saying “Dangerous Site” from chrome. However it seems to work fine with other browsers. Is there a walk around to this? <!-- SC_ON --> submitted by /u/prath-10 (https://www.reddit.com/user/prath-10)
[link] (https://global.discourse-cdn.com/cloudflare/original/3X/9/0/90994131d155bbed4cf9f968d27cc8cae79d4752.png) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrzywl/evilginx_detection/)
https://www.reddit.com/r/redteamsec/comments/1hrzywl/evilginx_detection/
<!-- SC_OFF -->Hi guys, I was testing Evilginx for a few days now, and I have faced an issue. When I enter the lure url into my chrome browser, I get a warning saying “Dangerous Site” from chrome. However it seems to work fine with other browsers. Is there a walk around to this? <!-- SC_ON --> submitted by /u/prath-10 (https://www.reddit.com/user/prath-10)
[link] (https://global.discourse-cdn.com/cloudflare/original/3X/9/0/90994131d155bbed4cf9f968d27cc8cae79d4752.png) [comments] (https://www.reddit.com/r/redteamsec/comments/1hrzywl/evilginx_detection/)
SQL Injection: A Beginner’s Guide PART 1
https://medium.com/@hamzamabdulrhman/sql-injection-a-beginners-guide-part-1-0bdb41ec8609?source=rss------bug_bounty-5
https://medium.com/@hamzamabdulrhman/sql-injection-a-beginners-guide-part-1-0bdb41ec8609?source=rss------bug_bounty-5
IntroductionContinue reading on Medium » (https://medium.com/@hamzamabdulrhman/sql-injection-a-beginners-guide-part-1-0bdb41ec8609?source=rss------bug_bounty-5)
Improving pentests in locked env
https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/
<!-- SC_OFF -->Any suggestions on articles/channels/courses that teach adv practical red teaming. I recently started to “live off the land”, whenever possible, its manual thus a bit more exhausting but results are amazing. So just wanted to know any of more such techniques to work in a today’s secure and locked environment. I don’t usually follow a ctf approach during my pentests bcz I want to expose as many vuln as possible and not just head for DC. So any suggestions to advance these techniques are appreciated. <!-- SC_ON --> submitted by /u/Meteor450 (https://www.reddit.com/user/Meteor450)
[link] (https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/)
https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/
<!-- SC_OFF -->Any suggestions on articles/channels/courses that teach adv practical red teaming. I recently started to “live off the land”, whenever possible, its manual thus a bit more exhausting but results are amazing. So just wanted to know any of more such techniques to work in a today’s secure and locked environment. I don’t usually follow a ctf approach during my pentests bcz I want to expose as many vuln as possible and not just head for DC. So any suggestions to advance these techniques are appreciated. <!-- SC_ON --> submitted by /u/Meteor450 (https://www.reddit.com/user/Meteor450)
[link] (https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hs4nzo/improving_pentests_in_locked_env/)
What to do with the DC Hash?
https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/
<!-- SC_OFF -->I am working through an Active Directory lab and I have two big questions. The first is I used printerbug to dump the DC NTLMv2 hash. I can't crack it. It feels like this should be a huge win, but u can't figure out how to use it since I don't have a username. Another question I have is what can I do if I have the Kerberos username and password? It's another moment that feels like a win, but I still don't know the value of it. Any help would be appreciated! <!-- SC_ON --> submitted by /u/Mobile-Actuator9798 (https://www.reddit.com/user/Mobile-Actuator9798)
[link] (https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/)
https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/
<!-- SC_OFF -->I am working through an Active Directory lab and I have two big questions. The first is I used printerbug to dump the DC NTLMv2 hash. I can't crack it. It feels like this should be a huge win, but u can't figure out how to use it since I don't have a username. Another question I have is what can I do if I have the Kerberos username and password? It's another moment that feels like a win, but I still don't know the value of it. Any help would be appreciated! <!-- SC_ON --> submitted by /u/Mobile-Actuator9798 (https://www.reddit.com/user/Mobile-Actuator9798)
[link] (https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hsa1jf/what_to_do_with_the_dc_hash/)
P4 Bugs and POC | Part 1
P4 Bugs and POC | Part 1: Broken Link HijackingContinue reading on Medium »
Read more...
P4 Bugs and POC | Part 1: Broken Link HijackingContinue reading on Medium »
Read more...
Medium
P4 Bugs and POC | Part 1
P4 Bugs and POC | Part 1: Broken Link Hijacking
OAuth-some Security Tricks: Yet more OAuth abuse
https://www.reddit.com/r/redteamsec/comments/1hsc7wz/oauthsome_security_tricks_yet_more_oauth_abuse/
submitted by /u/Party_Wolf6604 (https://www.reddit.com/user/Party_Wolf6604)
[link] (https://www.youtube.com/watch?v=F-s1OAq9C64) [comments] (https://www.reddit.com/r/redteamsec/comments/1hsc7wz/oauthsome_security_tricks_yet_more_oauth_abuse/)
https://www.reddit.com/r/redteamsec/comments/1hsc7wz/oauthsome_security_tricks_yet_more_oauth_abuse/
submitted by /u/Party_Wolf6604 (https://www.reddit.com/user/Party_Wolf6604)
[link] (https://www.youtube.com/watch?v=F-s1OAq9C64) [comments] (https://www.reddit.com/r/redteamsec/comments/1hsc7wz/oauthsome_security_tricks_yet_more_oauth_abuse/)