Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Arm or x86 ???
https://www.reddit.com/r/Pentesting/comments/ofbw03/arm_or_x86/

<!-- SC_OFF -->Guys, please be patient and read this dilemma of mine. I started my pentest journey about 2 months ago and my main system was 2017 MBA. Having an i5 and 8 gigs memory was not bad as I was able to ran multiple VMs simultaneously (giving a gig or less ram to each VMs). But as the journey continues, my mac was also getting old and was not able to cope with the increasing demand for the lab setup. So, it's time for me to buy a new machine. Now, my requirements are: *A bigger display, as 13" is definitely not enough. *At least 16gigs of memory. *A processor better than i9 10th gen. Seeing all this i came to two machines, one is Asus rog g17 with Ryzen 5900hx and second one is M1 iMac. Now, M1 is arm based but, the performance is really better that i9 10th gen and even beats the i9 11th gen in single core performance. It is debatable in multi core performance as the wattage which M1 uses is way lower than that of i9 11th gen. So, I find M1 iMac to be the perfect choice and offering overall the best value for money. It's having 24" 4.5k retina display (100%P3 - great clarity in reading small texts), 16gigs memory (skhynix LPDDR4X 4200MHz), very power efficient processor, offering surprisingly great performance. Also kali and Ubuntu have released native support for M1 with kernel v5.13. So, it's great to dual boot also. But..but..but, I didn't talked about the ROG. So, rog is offering 16gigs of ram with Ryzen 9 5900hx processor which is faster than i9 10th gen but not from 11th gen i9. Also am getting RTX3070 8 gb graphics memory. Display is FHD 17". This is not a bad machine and also price point is good. But in terms of what Apple iMac is offering, it doesn't meets that level. Also, am not really into gaming so having an RTX (which am also paying the price included ) is not really useful to me. Now I know you guys are thinking about password cracking stuff and all. The point is, I have to know the commands for how to crack passwords, am not going to actually sit 20 minutes to crack the password. I just have to practice it so for that I can make my own list and practice on that. Also am horrible with windows os. Now, by here am very confident that I will go with iMac but the architecture difference is holding me up. I was thinking, if I will create windows labs in M1 then it will be arm based so, does the vulnerability/exploit discovered for x86 will work on the arm based lab also ??? This thought horrified me and I was thinking "no way, I have to buy ROG now." Please anyone, help me out here. I can buy the iMac with student discount and also being a middle class family I can't really buy both to mitigate this confusion. Thanks! <!-- SC_ON --> submitted by /u/Shang_the_Monk (https://www.reddit.com/user/Shang_the_Monk)
[link] (https://www.reddit.com/r/Pentesting/comments/ofbw03/arm_or_x86/) [comments] (https://www.reddit.com/r/Pentesting/comments/ofbw03/arm_or_x86/)
hacking: security in practice
Do I know networks enough?

Hi I'm a 14-year-old who want to get into ethical hacking but wherever I go they tell me to learn some networks heck some say get a networks certification and while I'm getting the network+ I just wanna know how much?

how much do I gotta know of networks to start actual ethical hacking and not being a skiddie? to what extent do I gotta know of networks to start actually learning ethical hacking?

I just want to be an ethical hacker not a networks engineer.

submitted by /u/Fandeeno207
[link] [comments]
Broken Link Hijacking.

How I accidently Found a Bug called Broken Link Hijacking.Continue reading on Medium »
Read more...
Leveraging Burp Suite extension for finding HTTP Request Smuggling.

HTTP Request Smuggling is often left behind in bug bounty findings.Continue reading on InfoSec Write-ups »
Read more...
Through this article, we will discuss some tests and guidelines that are part of my Web Penetration Testing methodology.Continue reading on Medium » (https://corneacristian.medium.com/quick-guide-to-web-penetration-testing-546c6196c909?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Launch your CyberSec career with TryHackMe !

https://cdn-images-1.medium.com/max/824/1*1xQIcXZHHUFPXCi2sCkjfA.png
TryHackMe recently released a new learning path named ‘Pre-Security’, which aims at encapsulating fundamental concepts essential for a…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Pit Write-up (Hack The Box)

https://cdn-images-1.medium.com/max/2400/1*M1rdarUJvfuDyyBtv9aDrw.jpeg
This is a detailed write-up for the machine named Pit on the Hack The Box platform. If you don’t know about Hack The Box, It’s an online…

Continue reading on IoT Lab KIIT »
Quick Guide to Web Penetration Testing

Through this article, we will discuss some tests and guidelines that are part of my Web Penetration Testing methodology.Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles|Raj Chandel's Blog
Meterpreter for Pentester: Sessions

In this series of articles, we will be focusing on the various mechanisms of the Metasploit Framework that can be used by Penetration Testers. Today we are going to learn about the session’s command of the Metasploit Framework.  Sessions command helps us to interact and manipulate the various sessions created through the exploits while hacking. Sessions command is usually just used to get into the session but it is far more useful than just that. Table of Contents<o:p· Introduction<o:p· Sessions List<o:p· Concurrent Shell Commands<o:p· Verbose Sessions Details<o:p· Naming Sessions<o:p· List Active Sessions<o:p· Interacting with Session<o:p· Concurrent Meterpreter Commands<o:p· Quiet Mode<o:p· Killing a Particular Session<o:p· Extended Session Details<o:p· Kill All Sessions<o:p· Upgrading Shell to Meterpreter<o:p· Conclusion<o:pIntroduction<o:pSessions command can run a single command on multiple sessions, and also upgrade a normal shell to meterpreter among other things. Before beginning with the sessions command there are certain pre-requisites. Since the sessions commands is used to manage multiple sessions inside the Metasploit Framework. We will need to generate those multiple sessions. We have compromised some machines to generate the required sessions. You can use this article to get an understanding of gaining a session using Metasploit.<o:p

Once you have obtained the victim’s machine session you can perform many operations in the victim’s system for retrieving important information. Using the help option we can check the list of options that we can use with the sessions command.<o:p sessions -h<o:phttps://1.bp.blogspot.com/-6_WPDMdo4No/YOVRFt9kDHI/AAAAAAAAxU4/Zx186yFDfwM3BjNBb5_chVPj9NFh4xmvQCLcBGAsYHQ/s16000/1.png <v:shapetype<v:stroke<v:formulas<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:f<v:path<o:lock<v:shape<v:imagedata<o:p Sessions List<o:pWhile working with multiple sessions on Metasploit, you may require to observe the various sessions that you generated. Some exploits generate multiple sessions. Some payloads while working with privilege escalation will generate a session. Also, if you want to use any post-exploitation module in Metasploit then you would require to list all the sessions that you have acquired. This can be done just by typing sessions without any parameters or options. In the image provided below, it can be observed that there are two sessions generated with identifiers 2 and 3 respectively. Session 2 is a session generated on a Windows 7 Machine and session 3 is generated on a Windows 10 Machine. Both machines have the session for the user raj and IP Addresses of the machines are 192.168.1.16 for Windows 7 and 192.168.1.41 for Windows 10. We can also see that both the sessions were generated using the same exploit i.e., meterpreter x86/windows. <o:p sessions<o:phttps://1.bp.blogspot.com/-x4cmJEOd-X8/YOVRKaI-PPI/AAAAAAAAxU8/PDZ4MqBxl1UJzfq4pkPoh1urCYC0BeThACLcBGAsYHQ/s16000/2.png <v:shape<v:imagedata<o:p Concurrent Shell Commands<o:pNext, we have the -c option that can be used with the sessions command. It can be used in scenarios where you want to run a particular shell command on multiple sessions at once. One of the things to be kept in mind is that all the sessions must pertain to the same operating system since we are talking about the shell commands. Since we have the Windows-based operating system on both sessions, we can run the net user command on both sessions at once as shown in the image below[...]
Hacking Articles Tips Tricks Videos Tutorials
Hacking Articles|Raj Chandel's Blog Meterpreter for Pentester: Sessions In this series of articles, we will be focusing on the various mechanisms of the Metasploit Framework that can be used by Penetration Testers. Today we are going to learn about the session’s…
.<o:p sessions -c “net user” -i 2,3<o:phttps://1.bp.blogspot.com/-WBentG64PE8/YOVRV_LR8dI/AAAAAAAAxVE/F_Lb1S3S-8Q7gUVkRhbUix0ma0CY7UAXQCLcBGAsYHQ/s16000/3.png <v:shape<v:imagedata<o:p Verbose Sessions Details<o:pDuring penetration testing assessments, there comes a time when we want a general summary of the session that we acquired. This is where we can use the verbose option of the sessions command. It will print information about all the active sessions verbosely. The information includes Name of the Sessions (if any), Type of Session, Operating System, User, Domain, Tunnel used, Exploit, Encryption status and type, UUID, Check-ins’ and Registration Status.<o:p sessions -v<o:phttps://1.bp.blogspot.com/-dNIDid9Dob0/YOVRdjdk4PI/AAAAAAAAxVM/gzYgAmoXxQs0NL7UYoxOFlHpKX3F4cu6wCLcBGAsYHQ/s16000/4.png <v:shape<v:imagedata<o:p Naming Sessions<o:pFrom the verbose details that can sometimes overwhelm, let’s try out something that can be used to identify and differentiate our sessions from one another. It is possible to provide a name for each of the sessions you attain. It can be anything from the Machine Name or anything that can help you identify the session acquired. To name a session all that is required is the sessions command followed by the -n option with the Name that you want to apply the session and the session identifier for that particular session. In our demonstration below, we can see that we named session 2 as Raj and session 3 as Pavan. <o:p sessions -n Raj -i 2<o:psessions -n Pavan -i 3<o:psessions<o:phttps://1.bp.blogspot.com/-D0X2w3DhO0Q/YOVRjhFntlI/AAAAAAAAxVQ/HhYKLVrpIpYyNvbYM0eXUNYhMctUAsKdgCLcBGAsYHQ/s16000/5.png <v:shape<v:imagedata<o:p List Active Sessions<o:pWhen you want to get a list of all the sessions that you might have acquired then you can use the -l parameter to list all the active sessions. The sessions that are not active anymore will not be part of this list. There are two ways to list the sessions. One is the usage of the -l option or you can just type sessions as demonstrated earlier.<o:p sessions -l<o:phttps://1.bp.blogspot.com/-TCfk_1PnHo8/YOVRqJ9psXI/AAAAAAAAxVY/7LJ0xHD7Wr4P1mMB_5MkMG1WDFavyYbEwCLcBGAsYHQ/s16000/6.png <v:shape<v:imagedata<o:p Interacting with Sessions<o:pIt is possible that most penetration testers already know. It is interacting with a session. Most exploits inside Metasploit tend to move the user directly into the session as soon as they get one. However, there is a chance that one might get out of a session and then want to get back into one or change from one session to another. In both scenarios the -i option can come handy. When on the Metasploit shell you can use sessions -i followed by the session identifier to get into the session as demonstrated below.<o:p sessions -i 2<o:phttps://1.bp.blogspot.com/-evEk6tkg36w/YOVRvVHm0YI/AAAAAAAAxVg/7BLyt_AQbyUn_BUSRI_xtvZUn3fWi1ifACLcBGAsYHQ/s16000/7.png <v:shape<v:imagedata<o:p

The syntax that we discussed right now isn’t the only method to get into a session. Using the -i interacting with sessions seems logical but it is possible to do this just by typing sessions followed by the session identifier as demonstrated below. <o:p sessions 2<o:phttps://1.bp.blogspot.com/-EQL4CUpyDYs/YOVR00QgP_I/AAAAAAAAxVk/EhYP6K99Pioi_KUUqXS5BUQfn2cLYRIHACLcBGAsYHQ/s16000/8.png <v:shape<v:imagedata<o:p

Even though this section might seem like it was something that is common knowledge. But in both of our examples, we ran the sessions command from the Metasploit shell. But it is possible to use the sessions command from the meterpreter shell as well. When diverged into a meterpreter shell, you feel the need to get into anoth[...]
Hacking Articles Tips Tricks Videos Tutorials
.<o:p sessions -c “net user” -i 2,3<o:phttps://1.bp.blogspot.com/-WBentG64PE8/YOVRV_LR8dI/AAAAAAAAxVE/F_Lb1S3S-8Q7gUVkRhbUix0ma0CY7UAXQCLcBGAsYHQ/s16000/3.png <v:shape<v:imagedata<o:p Verbose Sessions Details<o:pDuring penetration testing assessments, there…
er session then you don’t need to put the current session in the background, you can just run the sessions command directly from the meterpreter shell as we demonstrated below.<o:p sessions 2<o:psysteminfo<o:psessions 3<o:psysteminfo<o:phttps://1.bp.blogspot.com/-5s5rBojGm6U/YOVR6-KLw1I/AAAAAAAAxVs/MNs7Gk7zArs0b91GcHVGE_SmJMuUC2UoACLcBGAsYHQ/s16000/9.png <v:shape<v:imagedata<o:p Concurrent Meterpreter Commands<o:pThis option should not be confused with the one that we discussed earlier. It is the -C (Capital C). The difference with the one before is that you can use it to run the meterpreter commands along with various sessions. All the commands supported by the meterpreter shell can be used here but the only limit is the fact that those must be related to the sessions. Such screenshot command is cross-platform and can be run across multiple sessions as we demonstrated below. It requires the sessions identifiers to know which sessions should be targeted.<o:p sessions -C screenshot -i 2,3<o:phttps://1.bp.blogspot.com/-dhE4WCbiSSg/YOVR_KwcUFI/AAAAAAAAxV0/JjiZI9kdFIEBUVndBBZtp8hNH4B-frGmgCLcBGAsYHQ/s16000/10.png <v:shape<v:imagedata<o:p

From the previous image, we can see that the screenshots captured are saved inside the root directory with peculiar names. Instead of trying to pronounce them, we would like to show you as below. The two sessions belonged to the Windows 7 and Windows 10 systems who seemed to have the wallpapers to speak for themselves. <o:p https://1.bp.blogspot.com/-HQ-2B0RDKX0/YOVSFKUVvGI/AAAAAAAAxV4/qWLvBWoVOPUdrRCM9h2R2ZmK6lOow6dbACLcBGAsYHQ/s16000/11.png <v:shape<v:imagedata<o:p Quiet Mode<o:pThe next option that we have to discover is the Quiet Mode. It can be triggered with the -q options with the session identifier to direct it to the particular session. When run along with the attempt without the quiet mode, you can observe that when we ran without it a message was shown stating that the interaction with the session was beginning. But when we used the quiet mode, we didn’t get the message as before. <o:p sessions -q -i 2<o:phttps://1.bp.blogspot.com/-cCaZeDvmTHM/YOVSLCr9qXI/AAAAAAAAxWA/DRgOIp31vWAjuQBKRqyJbYTJNGroW84-gCLcBGAsYHQ/s16000/12.png <v:shape<v:imagedata<o:p Killing a Particular Session<o:pThere can be various if one wants to kill or terminate a particular session. We all must have been in a scenario where we have a shell on our hands that is difficult to interact with or straight up not works at all. You can just terminate the sessions using the -k option and the session identifier to direct it as demonstrated below.<o:p sessions<o:psession -k 4<o:psessions<o:phttps://1.bp.blogspot.com/-pScvsfj1ts8/YOVSQYKdDWI/AAAAAAAAxWI/NyWKRmn_nUU4lg10dUYVl8vCgDe4pMAeQCLcBGAsYHQ/s16000/13.png <v:shape<v:imagedata<o:p Extended Session Details<o:pWe went into the additional information about the session while using the verbose option. But if you are a penetration tester who deals with a significant number of sessions then having the information about the Encryption and other information in the paragraphs as verbose command can be difficult to read and comprehend. This is where the -x option comes in handy as it adds that information to the session table as depicted below.<o:p sessions -x<o:p https://1.bp.blogspot.com/-0cXT8tRfP-M/YOVSVcnqcEI/AAAAAAAAxWM/EekECokRaSQTuByoiQVygQTFXIW-ikb0wCLcBGAsYHQ/s16000/14.png <v:shape<v:imagedata<o:p Kill All Sessions<o:pWe did the killing a particular session with the -k (lowercase k) but in case you are in a situation where you are riddled with a long list of sessions as some exploits can generate a lot of sessions at once and then there are[...]
Hacking Articles Tips Tricks Videos Tutorials
er session then you don’t need to put the current session in the background, you can just run the sessions command directly from the meterpreter shell as we demonstrated below.<o:p sessions 2<o:psysteminfo<o:psessions 3<o:psysteminfo<o:phttps://1.bp.blogspot.com/…
some persistence exploits that just never give up generating a session. This is where the -K (uppercase K) comes into the picture. You can use it to terminate all the sessions in your collection as demonstrated.<o:p sessions -K<o:phttps://1.bp.blogspot.com/-aFk9KGnRxng/YOVSabTmzbI/AAAAAAAAxWQ/Zr5unlBWrYkvuoksYV_13cDsOO7LP1OpgCLcBGAsYHQ/s16000/15.png <v:shape<v:imagedata<o:p Upgrading Shell to Meterpreter<o:pWe put off the most important to the last. While performing penetration testing it is possible to use be a situation where the exploit that you use gives you a reverse shell than a meterpreter shell. Although having a reverse shell has its uses but meterpreter shell can help you perform many actions with ease. It includes port forwarding, downloading files from the target machine and uploading files to the target machine, and much more. Hence, by using the -u option you won’t need to run a post-exploitation shell to meterpreter exploit. In the demonstration below we converted an SSH shell into a meterpreter with ease. <o:p sessions<o:psession -u 1<o:psessions<o:phttps://1.bp.blogspot.com/-j0TrAyAYejQ/YOVSd9tqz_I/AAAAAAAAxWY/Gi1Zr6DT3Us3HWnxPWooUdCiiJ_1Mk6RQCLcBGAsYHQ/s16000/16.png <v:shape<v:imagedata<o:p Conclusion<o:pMetasploit is one of the oldest Frameworks in this domain. It was designed in a way to ease the work of a Penetration Tester so that they can focus more on the attacking. Even after working with, it for years, it still surprises me with some hidden quirk that I didn’t know about. I will be continuing this journey and find out more about the legendary Metasploit Framework!<o:p