Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
RemotePotato0 : Just Another “Won’t Fix” Windows Privilege Escalation From User To Domain Admin

RemotePotato0 is an exploit that allows you to escalate your privileges from a generic User to Domain Admin. Briefly: It abuses the DCOM activation service and trigger an NTLM authentication of the user currently logged on in the target machine. It is required you have a shell in session 0 (e.g. WinRm shell or SSH […]

The post RemotePotato0 : Just Another “Won’t Fix” Windows Privilege Escalation From User To Domain Admin appeared first on Kali Linux Tutorials.
Admin Panel? Pwned!

The unstoppable power of recon
Read more...
How to spot and exploit postMessage vulnerablities?

Hey Hunters, I hope everyone is doing okay and able to use this time efficiently for self development and to self reflect. This corona…
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
My Library

Subconsciously all theses years I’ve been preparing myself for a career in Cybersecurity , and have created a small reference library of…

Continue reading on Medium »
hacking: security in practice
Looking for a ctf team

Hi. Im looking for a ctf team to join. I always wanted to collaborate with other hackers while hacking to learn and improve.

I have a fair knowledge in web hacking since im doing bug bounties. I can also do some basic reverse engineering on both mips and x86. I have some knowledge in binary exploitation too. I also have experience on iot hacking, especially reversing firmwares. Please let me join in your team

I am 16 years old and i live in Philippines. Thanks

submitted by /u/Noobexploiter
[link] [comments]
hacking: security in practice
Using Crontab For Persistence In Linux

I made a post here recently about establishing a persistent reverse shell on a linux system.
I ended up using creating a crontab entry as follows:

* * * * * shell_command

This works alright and all anytime I start a listener on the appropriate port, the connection is made. I have also tested and it appears the persistence survives server restarts
There are a few improvements I could use some help with.
1. Does running the command so frequently increase the risk of detection or increase server load?
2. How would I make the entry to the crontab undetectable?
On question 2, if I created a new root user and created the cronjob under that user, would that make a difference? And would another root user be able to reset this user and look in their crontab?

submitted by /u/nova_outis
[link] [comments]
i need help understanding Pentesting to determine my collage specialization.
https://www.reddit.com/r/Pentesting/comments/okr7uj/i_need_help_understanding_pentesting_to_determine/

<!-- SC_OFF -->hi everyone, i study information technology and i'm passionate about penetration testing and security. in my university I have to choose a specialization for elective subjects in the forth and fifth year, there are only 3 specializations: - Software Engineering. - Artificial Intelligence. - Networking. from my researches I know that penetration testing is security, and security in IT is always associated with networking. but in the same time penetration testing requires a deep knowledge in software engineering. thus I'm very confused and I can't determine weather I should specialize in networking or software engineering, and couldn't find a clue for which is more helpful for a beginner in pentesting. So i need someone who work in the field to inform me with what he needed the most in his work, and weather he had to dive deep in networks, and if he needed them both (software engineering knowledge ,networking knowledge ), which specialization could be better as a foundation for me. and I want to know also how both of software engineering, networking, is associated with penetration testing. I asked the professors in my university and everyone of them is telling me a different story because none of them has worked as a penetration tester! Thanks! <!-- SC_ON --> submitted by /u/MohaAmiry (https://www.reddit.com/user/MohaAmiry)
[link] (https://www.reddit.com/r/Pentesting/comments/okr7uj/i_need_help_understanding_pentesting_to_determine/) [comments] (https://www.reddit.com/r/Pentesting/comments/okr7uj/i_need_help_understanding_pentesting_to_determine/)
Transition From Software Engineer to Pentester
https://www.reddit.com/r/Pentesting/comments/ol1mco/transition_from_software_engineer_to_pentester/

Hi! I am 22 about to turn 23. I work as a software engineer at a big company and would like to transition into pentesting. Is there anyone that has done this and can share their experience? I have a degree in computer science and infosec at a very good uni in the uk but I feel like it's not enough. Are there any particular certificates that I should take or that would make this transition easier? And does my work as a software engineer have any value in the pentesting world (I have some experience securing microservices and apis)? I worked my way up from a graduate dev to a decent salary and I wouldn't want to have to repeat the same thing as a pentester. Thank you for your time if you reply and have a nice day! :D submitted by /u/Spirit-Technical (https://www.reddit.com/user/Spirit-Technical)
[link] (https://www.reddit.com/r/Pentesting/comments/ol1mco/transition_from_software_engineer_to_pentester/) [comments] (https://www.reddit.com/r/Pentesting/comments/ol1mco/transition_from_software_engineer_to_pentester/)

___________________________
@hacking_Attack
@Hacking_Video
Ventoy - A New Bootable USB Solution

Ventoy is an open source tool to create bootable USB drive for ISO/WIM/IMG/VHD(x)/EFI files. With ventoy, you don't need to format the disk over and over, you just need to copy the image files to the USB drive and boot it. You can copy many image files at a time and ventoy will give you a boot menu to select them. x86 Legacy BIOS, IA32 UEFI, x86_64 UEFI, ARM64 UEFI and MIPS64EL UEFI are supported in the same way. Both MBR and GPT partition style are supported in the same way. Most type of OS supported(Windows/WinPE/Linux/Unix/Vmware/Xen...) 700+ ISO files are tested. 90%+ distros in distrowatch.com supported.Features 100% open source Simple to use Fast (limited only by the speed of copying iso file) Can be installed in USB/Local Disk/SSD/NVMe/SD Card Directly boot from ISO/WIM/IMG/VHD(x)/EFI files, no extraction needed No need to be continuous in disk for ISO/IMG files MBR and GPT partition style supported (1.0.15+) x86 Legacy BIOS, IA32 UEFI, x86_64 UEFI, ARM64 UEFI, MIPS64EL UEFI supported IA32/x86_64 UEFI Secure Boot supported (1.0.07+) Persistence supported (1.0.11+) Windows auto installation supported (1.0.09+) RHEL7/8/CentOS/7/8/SUSE/Ubuntu Server/Debian ... auto installation supported (1.0.09+) FAT32/exFAT/NTFS/UDF/XFS/Ext2(3)(4) supported for main partition ISO files larger than 4GB supported Native boot menu style for Legacy & UEFI Most type of OS supported, 700+ iso files tested Linux vDisk boot supported Not only boot but also complete installation process Menu dynamically switchable between List/TreeView mode "Ventoy Compatible" concept Plugin Framework Injection files to runtime environment Boot configuration file dynamically replacement Highly customizable theme and menu USB drive write-protected support USB normal use unaffected Data nondestructive during version upgrade No need to update Ventoy when a new distro is released Installation Instructions See https://www.ventoy.net/en/doc_start.html for detail Compile Instructions Please refer to BuildVentoyFromSource.txt Document Title Link Install & Update https://www.ventoy.net/en/doc_start.html Secure Boot https://www.ventoy.net/en/doc_secure.html Customize Theme https://www.ventoy.net/en/plugin_theme.html Global Control https://www.ventoy.net/en/plugin_control.html Image List https://www.ventoy.net/en/plugin_imagelist.html Auto Installation https://www.ventoy.net/en/plugin_autoinstall.html Injection Plugin https://www.ventoy.net/en/plugin_injection.html Persistence Support https://www.ventoy.net/en/plugin_persistence.html Boot WIM file https://www.ventoy.net/en/plugin_wimboot.html Windows VHD Boot https://www.ventoy.net/en/plugin_vhdboot.html Linux vDisk Boot https://www.ventoy.net/en/plugin_vtoyboot.html DUD Plugin https://www.ventoy.net/en/plugin_dud.html Password Plugin https://www.ventoy.net/en/plugin_password.html Conf Replace Plugin https://www.ventoy.net/en/plugin_bootconf_replace.html Menu Class https://www.ventoy.net/en/plugin_menuclass.html Menu Alias https://www.ventoy.net/en/plugin_menualias.html Menu Extension https://www.ventoy.net/en/plugin_grubmenu.html Memdisk Mode https://www.ventoy.net/en/doc_memdisk.html TreeView Mode https://www.ventoy.net/en/doc_treeview.html Disk Layout MBR https://www.ventoy.net/en/doc_disk_layout.html Disk Layout GPT https://www.ventoy.net/en/doc_disk_layout_gpt.html Search Configuration https://www.ventoy.net/en/doc_search_path.html FAQ See https://www.ventoy.net/en/faq.html for detail Forum https://forums.ventoy.net Download Ventoy
Read more...
hacking: security in practice
Looking for the best encryption messaging app on android

With how crazy things are getting, on top of the current administration in the USA wanting to censor information through texts...well. I want to ask people who know far more than me. I'm on Android, and I want to send what I want and I want it yo be secure. Thank you so much in advance. I did research a little, but what is better than the people who use it every day right?

submitted by /u/DarthMaul_Lives
[link] [comments]
hacking: security in practice
What steps can I take to recover a stolen macbook air?

Hey everyone, my laptop was recently stolen along with some other valuables and firearms after a break in at my apartment this week. Since they have the laptop I’m wondering if there is any possible way to track it down.

Find my is turned OFF on the macbook (unfortunately). I’ve changed all the passwords I could. I have the serial number and have already notified police as well as all the local pawn shops in the area, but was wondering if you smart people have any other advice as to how to catch the perps. Any advice is greatly appreciated!

submitted by /u/skatetaco59
[link] [comments]
Ventoy is an open source tool to create bootable USB drive for ISO/WIM/IMG/VHD(x)/EFI files.
With ventoy, you don't need to format the disk over and over, you just need to copy the image files to the USB drive and boot it. You can copy many image files at a time and ventoy will give you a boot menu to select them.
x86 Legacy BIOS, IA32 UEFI, x86_64 UEFI, ARM64 (https://www.kitploit.com/search/label/ARM64) UEFI (https://www.kitploit.com/search/label/UEFI) and MIPS64EL UEFI are supported in the same way.
Both MBR and GPT partition style are supported in the same way.
Most type of OS supported(Windows/WinPE/Linux/Unix/Vmware/Xen...)
700+ ISO files are tested. 90%+ distros in distrowatch.com supported.
Features
100% open source Simple to use Fast (limited only by the speed of copying iso file) Can be installed in USB/Local Disk/SSD/NVMe/SD Card Directly boot from ISO/WIM/IMG/VHD(x)/EFI files, no extraction needed No need to be continuous in disk for ISO/IMG files MBR and GPT partition style supported (1.0.15+) x86 Legacy BIOS, IA32 UEFI, x86_64 UEFI, ARM64 UEFI, MIPS64EL UEFI supported IA32/x86_64 UEFI Secure (https://www.kitploit.com/search/label/Secure) Boot supported (1.0.07+) Persistence supported (1.0.11+) Windows auto installation supported (1.0.09+) RHEL7/8/CentOS/7/8/SUSE/Ubuntu Server/Debian ... auto installation supported (1.0.09+) FAT32/exFAT/NTFS/UDF/XFS/Ext2(3)(4) supported for main partition ISO files larger than 4GB supported Native boot menu style for Legacy & UEFI Most type of OS supported, 700+ iso files tested Linux vDisk boot supported Not only boot but also complete installation process Menu dynamically switchable between List/TreeView mode "Ventoy Compatible" concept Plugin Framework Injection files to runtime environment Boot configuration file dynamically replacement Highly customizable (https://www.kitploit.com/search/label/Customizable) theme and menu USB drive write-protected support USB normal use unaffected Data nondestructive during version upgrade No need to update Ventoy when a new distro (https://www.kitploit.com/search/label/Distro) is released
Installation Instructions
See https://www.ventoy.net/en/doc_start.html for detail
Compile Instructions
Please refer to BuildVentoyFromSource.txt (https://github.com/ventoy/Ventoy/blob/master/DOC/BuildVentoyFromSource.txt)
Document
Title Link Install & Update https://www.ventoy.net/en/doc_start.html Secure Boot https://www.ventoy.net/en/doc_secure.html Customize Theme https://www.ventoy.net/en/plugin_theme.html Global Control https://www.ventoy.net/en/plugin_control.html Image List https://www.ventoy.net/en/plugin_imagelist.html Auto Installation https://www.ventoy.net/en/plugin_autoinstall.html Injection Plugin https://www.ventoy.net/en/plugin_injection.html Persistence Support https://www.ventoy.net/en/plugin_persistence.html Boot WIM file https://www.ventoy.net/en/plugin_wimboot.html Windows VHD Boot https://www.ventoy.net/en/plugin_vhdboot.html Linux vDisk Boot https://www.ventoy.net/en/plugin_vtoyboot.html DUD Plugin https://www.ventoy.net/en/plugin_dud.html Password Plugin https://www.ventoy.net/en/plugin_password.html Conf Replace Plugin https://www.ventoy.net/en/plugin_bootconf_replace.html Menu Class https://www.ventoy.net/en/plugin_menuclass.html Menu Alias https://www.ventoy.net/en/plugin_menualias.html Menu Extension https://www.ventoy.net/en/plugin_grubmenu.html Memdisk Mode https://www.ventoy.net/en/doc_memdisk.html TreeView Mode https://www.ventoy.net/en/doc_treeview.html Disk Layout MBR https://www.ventoy.net/en/doc_disk_layout.html Disk Layout GPT https://www.ventoy.net/en/doc_disk_layout_gpt.html Search Configuration https://www.ventoy.net/en/doc_search_path.html
FAQ
See https://www.ventoy.net/en/faq.html for detail
Forum