Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Mastering 403 Bypass Techniques: A Penetration Tester’s Guide

Exploring Methods to Bypass Forbidden Access Restrictions in Web ApplicationsContinue reading on Medium »
Read more...
PicoCTF Writeups — dont-use-client-side

Welcome back, CTF enthusiasts! Today, we’re solving the “dont-use-client-side” challenge from PicoCTF 2019. This challenge highlights why…Continue reading on Medium »
Read more...
I’m a security researcher, and I’ve taken on the challenge of explaining one bug bounty report every day for the next 30 days — 30 days, 30Continue reading on Medium » (https://medium.com/@zerodaystories/improper-access-control-in-apis-earns-3-900-bounty-4-30-days-5a8668695b84?source=rss------bug_bounty-5)
Vulnerability Testing Techniques

4.1 High-Priority VulnerabilitiesContinue reading on Medium »
Read more...
TOP 10 VULNERABILITIES IN CYBER SECURITY

In 2023, the top vulnerabilities were CVE-2023–27350, CVE-2021–44228 (Log4Shell), and CVE-2020–1472 (ZeroLogon). Other notable…Continue reading on Medium »
Read more...
P4 Bugs and PoC | Part 3

👋 Hi everyone! I’m Abhijeet Kumawat, a passionate bug bounty hunter and security researcher.Continue reading on Medium »
Read more...
I have a Golden Ticket, but I’m stuck
https://www.reddit.com/r/Pentesting/comments/1hszaed/i_have_a_golden_ticket_but_im_stuck/

<!-- SC_OFF -->I am working through an Active Directory lab and I have successfully used a Golden Ticket account. I did this by remotely downloading mimikatz and running the Kerberos Golden Ticket account basically from a meterpreter shell. When I have access to the actual machine, I know I can then use misc::cmd and then I'm in. Since I am on a Linux machine, the cmd line isn't opening up. Am I doing something wrong? I've tried to look everywhere <!-- SC_ON --> submitted by /u/Mobile-Actuator9798 (https://www.reddit.com/user/Mobile-Actuator9798)
[link] (https://www.reddit.com/r/Pentesting/comments/1hszaed/i_have_a_golden_ticket_but_im_stuck/) [comments] (https://www.reddit.com/r/Pentesting/comments/1hszaed/i_have_a_golden_ticket_but_im_stuck/)
How I Found an Open AWS S3 Bucket and Used It to Take Over a Subdomain

Greetings, fellow hackers!Continue reading on Medium »
Read more...