Cross-Site Request Forgery
https://stories-himash.medium.com/cross-site-request-forgery-e954f9afd9b9?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://stories-himash.medium.com/cross-site-request-forgery-e954f9afd9b9?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Cross-Site Request Forgery
False Positives in Burpsuite
False Positives in BurpsuiteContinue reading on Medium » (https://stories-himash.medium.com/cross-site-request-forgery-e954f9afd9b9?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Cross-Site Request Forgery
False Positives in Burpsuite
Black Hat Ethical Hacking
MacOS Targeted in WildPressure APT Malware Campaign
___________________________
@hacking_Attack
@Hacking_Video
MacOS Targeted in WildPressure APT Malware Campaign
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Cross-Site Request Forgery
https://cdn-images-1.medium.com/max/1247/0*2wqxEVNWEXiDS4tP.png
False Positives in Burpsuite
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Cross-Site Request Forgery
https://cdn-images-1.medium.com/max/1247/0*2wqxEVNWEXiDS4tP.png
False Positives in Burpsuite
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Medium
Cross-Site Request Forgery
False Positives in Burpsuite
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
ขั้นตอนการแฮก SLmail ด้วย Buffer Overflow อย่างละเอียด
https://cdn-images-1.medium.com/max/863/1*h69vrl6WKcJr-MNZ2qeKUA.jpeg
Application ที่ 2 คือ Slmail หน้าตาเป็นเหมือนในภาพเลย เป็นapplication โจมตีที่ server เป็น multi user…
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
ขั้นตอนการแฮก SLmail ด้วย Buffer Overflow อย่างละเอียด
https://cdn-images-1.medium.com/max/863/1*h69vrl6WKcJr-MNZ2qeKUA.jpeg
Application ที่ 2 คือ Slmail หน้าตาเป็นเหมือนในภาพเลย เป็นapplication โจมตีที่ server เป็น multi user…
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Medium
ขั้นตอนการแฮก SLmail POP3 Server ด้วย Buffer Overflow อย่างละเอียด
Application ที่ 2 คือ Slmail หน้าตาเป็นเหมือนในภาพเลย เป็นapplication โจมตีที่ server เป็น multi user…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
SUBDOMAIN TAKEOVER — AWS S3 BUCKET
https://cdn-images-1.medium.com/max/2600/0*0qXW0R47StDgxu9i
In this article, we are going to understand and know how a small vulnerability can cause havoc and result in a subdomain takeover.
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
SUBDOMAIN TAKEOVER — AWS S3 BUCKET
https://cdn-images-1.medium.com/max/2600/0*0qXW0R47StDgxu9i
In this article, we are going to understand and know how a small vulnerability can cause havoc and result in a subdomain takeover.
Continue reading on Medium »
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Medium
SUBDOMAIN TAKEOVER — AWS S3 BUCKET
In this article, we are going to understand and know how a small vulnerability can cause havoc and result in a subdomain takeover.
hacking: security in practice
Hey guys, there’s someone impersonating me on whatsapp. What are my options to track them down?
Hi, so i have the number that they’re using and i can also get ahold of their IP adress by using grabify on them. But I don’t know what else I could do. I know their rough location and maybe even their name if i get some info
submitted by /u/amaan-jawed
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hey guys, there’s someone impersonating me on whatsapp. What are my options to track them down?
Hi, so i have the number that they’re using and i can also get ahold of their IP adress by using grabify on them. But I don’t know what else I could do. I know their rough location and maybe even their name if i get some info
submitted by /u/amaan-jawed
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hey guys, there’s someone impersonating me on whatsapp. What are...
Hi, so i have the number that they’re using and i can also get ahold of their IP adress by using grabify on them. But I don’t know what else I...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Red-Shadow : Lightspin AWS IAM Vulnerability Scanner
Red-Shadow is a tool for Lightspin AWS IAM Vulnerability Scanner. Scan your AWS IAM Configuration for shadow admins in AWS IAM based on misconfigured deny policies not affecting users in groups discovered by Lightspin’s Security Research Team. The tool detects the misconfigurations in the following IAM Objects: Managed Policies Users Inline Policies Groups Inline Policies […]
The post Red-Shadow : Lightspin AWS IAM Vulnerability Scanner appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
Red-Shadow : Lightspin AWS IAM Vulnerability Scanner
Red-Shadow is a tool for Lightspin AWS IAM Vulnerability Scanner. Scan your AWS IAM Configuration for shadow admins in AWS IAM based on misconfigured deny policies not affecting users in groups discovered by Lightspin’s Security Research Team. The tool detects the misconfigurations in the following IAM Objects: Managed Policies Users Inline Policies Groups Inline Policies […]
The post Red-Shadow : Lightspin AWS IAM Vulnerability Scanner appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
Red-Shadow : Lightspin AWS IAM Vulnerability Scanner
Red-Shadow is a tool for Lightspin AWS IAM Vulnerability Scanner. Scan your AWS IAM Configuration for shadow admins in AWS IAM.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Resources to train an amazing hacker — Part 2
https://cdn-images-1.medium.com/max/2600/0*pe5hvo-LFf-ABJjm
In this chapter we will go deeper into hacking resources
Continue reading on Geek Culture »
___________________________
@hacking_Attack
@Hacking_Video
Resources to train an amazing hacker — Part 2
https://cdn-images-1.medium.com/max/2600/0*pe5hvo-LFf-ABJjm
In this chapter we will go deeper into hacking resources
Continue reading on Geek Culture »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Resources to train an amazing hacker — Part 2
In this chapter we will go deeper into hacking resources
Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More...
http://www.kitploit.com/2021/07/cariddi-take-list-of-domains-crawl-urls.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2021/07/cariddi-take-list-of-domains-crawl-urls.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More...
Take a list of domains, crawl urls and scan (https://www.kitploit.com/search/label/Scan) for endpoints, secrets, api keys, file extensions, tokens and more...
Preview
___________________________
@hacking_Attack
@Hacking_Video
Preview
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.
Installation
You need Go (https://golang.org/). Linux git clone https://github.com/edoardottt/cariddi.git cd cariddi go get make linux (to install) make unlinux (to uninstall) Or in one line: git clone https://github.com/edoardottt/cariddi.git; cd cariddi; go get; make linux Windows (executable works only in cariddi folder.) git clone https://github.com/edoardottt/cariddi.git cd cariddi go get .\make.bat windows (to install) .\make.bat unwindows (to uninstall)
Get Started
cariddi -h prints the help in the command line. Usage of cariddi:
-c int
Concurrency level. (default 20)
-cache
Use the .cariddi_cache folder as cache.
-d int
Delay between a page crawled and another.
-e Hunt for juicy endpoints.
-ef string
Use an external file (txt, one per line) to use custom parameters for endpoints hunting.
-examples
Print the examples.
-ext int
Hunt for juicy file extensions. Integer from 1(juicy) to 7(not juicy).
-h Print the help.
-i string
Ignore the URL containing at least one of the elements of this array.
-it string
Ignore the URL containing at least one of the lines of this file.
-oh string
Write the output into an HTML file.
-ot string
Write the output into a TXT file.
-plain
Print only the results.
-s Hunt for secrets.
-sf string
Use an external file (txt, one per line) to use custom regexes for s ecrets hunting.
-version
Print the version.
Examples
cariddi -version (Print the version) cariddi -h (Print the help) cariddi -examples (Print the examples) cat urls | cariddi -s (Hunt for secrets) cat urls | cariddi -d 2 (2 seconds between a page crawled and another) cat urls | cariddi -c 200 (Set the concurrency level to 200) cat urls | cariddi -e (Hunt for juicy endpoints) cat urls | cariddi -plain (Print only useful things) cat urls | cariddi -ot target_name (Results in txt file) cat urls | cariddi -oh target_name (Results in html file) cat urls | cariddi -ext 2 (Hunt for juicy (level 2 of 7) files) cat urls | cariddi -e -ef endpoints_file (Hunt for custom endpoints) cat urls | cariddi -s -sf secrets_file (Hunt for custom secrets) cat urls | cariddi -i forum,blog,community,open (Ignore urls containing these words) cat urls | cariddi -it ignore_file (Ignore urls containing at least one line in the input file) cat urls | cariddi -cache (Use the .cariddi_cache folder as cache.) For Windows (https://www.kitploit.com/search/label/Windows) use powershell.exe -Command "cat urls | .\cariddi.exe"
Contributing
Just open an issue/pull request. See also CONTRIBUTING.md (https://github.com/edoardottt/cariddi/blob/master/CONTRIBUTING.md) and CODE OF CONDUCT.md (https://github.com/edoardottt/cariddi/blob/master/CODE_OF_CONDUCT.md) Help me building this! A special thanks to: zricethezav (https://github.com/zricethezav/gitleaks/blob/master/config/default.go) To do: Tests Tor support Proxy support Ignore specific types of urls Plain output (print only results) HTML output Build an Input Struct and use it as parameter Output color Endpoints (https://www.kitploit.com/search/label/Endpoints) (parameters) scan Secrets (https://www.kitploit.com/search/label/Secrets) scan Extensions scan TXT output
Download Cariddi (https://github.com/edoardottt/cariddi)
___________________________
@hacking_Attack
@Hacking_Video
You need Go (https://golang.org/). Linux git clone https://github.com/edoardottt/cariddi.git cd cariddi go get make linux (to install) make unlinux (to uninstall) Or in one line: git clone https://github.com/edoardottt/cariddi.git; cd cariddi; go get; make linux Windows (executable works only in cariddi folder.) git clone https://github.com/edoardottt/cariddi.git cd cariddi go get .\make.bat windows (to install) .\make.bat unwindows (to uninstall)
Get Started
cariddi -h prints the help in the command line. Usage of cariddi:
-c int
Concurrency level. (default 20)
-cache
Use the .cariddi_cache folder as cache.
-d int
Delay between a page crawled and another.
-e Hunt for juicy endpoints.
-ef string
Use an external file (txt, one per line) to use custom parameters for endpoints hunting.
-examples
Print the examples.
-ext int
Hunt for juicy file extensions. Integer from 1(juicy) to 7(not juicy).
-h Print the help.
-i string
Ignore the URL containing at least one of the elements of this array.
-it string
Ignore the URL containing at least one of the lines of this file.
-oh string
Write the output into an HTML file.
-ot string
Write the output into a TXT file.
-plain
Print only the results.
-s Hunt for secrets.
-sf string
Use an external file (txt, one per line) to use custom regexes for s ecrets hunting.
-version
Print the version.
Examples
cariddi -version (Print the version) cariddi -h (Print the help) cariddi -examples (Print the examples) cat urls | cariddi -s (Hunt for secrets) cat urls | cariddi -d 2 (2 seconds between a page crawled and another) cat urls | cariddi -c 200 (Set the concurrency level to 200) cat urls | cariddi -e (Hunt for juicy endpoints) cat urls | cariddi -plain (Print only useful things) cat urls | cariddi -ot target_name (Results in txt file) cat urls | cariddi -oh target_name (Results in html file) cat urls | cariddi -ext 2 (Hunt for juicy (level 2 of 7) files) cat urls | cariddi -e -ef endpoints_file (Hunt for custom endpoints) cat urls | cariddi -s -sf secrets_file (Hunt for custom secrets) cat urls | cariddi -i forum,blog,community,open (Ignore urls containing these words) cat urls | cariddi -it ignore_file (Ignore urls containing at least one line in the input file) cat urls | cariddi -cache (Use the .cariddi_cache folder as cache.) For Windows (https://www.kitploit.com/search/label/Windows) use powershell.exe -Command "cat urls | .\cariddi.exe"
Contributing
Just open an issue/pull request. See also CONTRIBUTING.md (https://github.com/edoardottt/cariddi/blob/master/CONTRIBUTING.md) and CODE OF CONDUCT.md (https://github.com/edoardottt/cariddi/blob/master/CODE_OF_CONDUCT.md) Help me building this! A special thanks to: zricethezav (https://github.com/zricethezav/gitleaks/blob/master/config/default.go) To do: Tests Tor support Proxy support Ignore specific types of urls Plain output (print only results) HTML output Build an Input Struct and use it as parameter Output color Endpoints (https://www.kitploit.com/search/label/Endpoints) (parameters) scan Secrets (https://www.kitploit.com/search/label/Secrets) scan Extensions scan TXT output
Download Cariddi (https://github.com/edoardottt/cariddi)
___________________________
@hacking_Attack
@Hacking_Video
go.dev
The Go Programming Language
Go is an open source programming language that makes it simple to build secure, scalable systems.