Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Exploiting XSS with Cool Tricks
https://cdn-images-1.medium.com/max/1640/1*HhIS633kvMxP0-WOGelSRQ.png
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Continue reading on InfoSec Write-ups »
Exploiting XSS with Cool Tricks
https://cdn-images-1.medium.com/max/1640/1*HhIS633kvMxP0-WOGelSRQ.png
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Continue reading on InfoSec Write-ups »
Exploiting XSS with Cool Tricks
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Read more...
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Read more...
Exploiting XSS with Cool Tricks
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…Continue reading on InfoSec Write-ups »
Read more...
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…Continue reading on InfoSec Write-ups »
Read more...
Exploiting XSS with Cool Tricks
https://infosecwriteups.com/exploiting-xss-with-cool-tricks-75a605a0115b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/exploiting-xss-with-cool-tricks-75a605a0115b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Exploiting XSS with Cool Tricks
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/exploiting-xss-with-cool-tricks-75a605a0115b?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Exploiting XSS with Cool Tricks
Hey Cyberpunks, Ethical Kaps here, I’m back again with another powerful article. I hope you all are doing great in your life. If you are…
Black Hat Ethical Hacking
Leaked NSO Group Data Hints at Widespread Pegasus Spyware Infections
Leaked NSO Group Data Hints at Widespread Pegasus Spyware Infections
Beaconator: A beacon generator using Cobalt Strike and PEzor.
https://www.reddit.com/r/redteamsec/comments/onyeov/beaconator_a_beacon_generator_using_cobalt_strike/
submitted by /u/CaptMeelo (https://www.reddit.com/user/CaptMeelo)
[link] (https://github.com/capt-meelo/Beaconator) [comments] (https://www.reddit.com/r/redteamsec/comments/onyeov/beaconator_a_beacon_generator_using_cobalt_strike/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/onyeov/beaconator_a_beacon_generator_using_cobalt_strike/
submitted by /u/CaptMeelo (https://www.reddit.com/user/CaptMeelo)
[link] (https://github.com/capt-meelo/Beaconator) [comments] (https://www.reddit.com/r/redteamsec/comments/onyeov/beaconator_a_beacon_generator_using_cobalt_strike/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Beaconator: A beacon generator using Cobalt Strike and PEzor.
Posted in r/redteamsec by u/CaptMeelo • 2 points and 0 comments
hacking: security in practice
Hacking into snap?
Trying to hack into someone’s snap. Any help would be greatly appreciated 🙋🏻♂️
submitted by /u/flrs7
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hacking into snap?
Trying to hack into someone’s snap. Any help would be greatly appreciated 🙋🏻♂️
submitted by /u/flrs7
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hacking into snap?
Trying to hack into someone’s snap. Any help would be greatly appreciated 🙋🏻♂️
hacking: security in practice
What are the steps you take when cracking a hash?
I found a hash in a response header online, which I am positive is a MD5 hash. It’s labeled « X-MD5-Hash » on the website, hash-identifier and hashid see it as MD5, everyone sees it as MD5. My problem is that I ran it against an 84 billion dictionary without success - now it’s possible the password is something else entirely, but I doubt it very deeply considering the huge list I used.
Regardless of my beliefs, what do you guys usually do when cracking hashes you can’t find? What should be the next step for me?
submitted by /u/BioFrosted
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What are the steps you take when cracking a hash?
I found a hash in a response header online, which I am positive is a MD5 hash. It’s labeled « X-MD5-Hash » on the website, hash-identifier and hashid see it as MD5, everyone sees it as MD5. My problem is that I ran it against an 84 billion dictionary without success - now it’s possible the password is something else entirely, but I doubt it very deeply considering the huge list I used.
Regardless of my beliefs, what do you guys usually do when cracking hashes you can’t find? What should be the next step for me?
submitted by /u/BioFrosted
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What are the steps you take when cracking a hash?
I found a hash in a response header online, which I am positive is a MD5 hash. It’s labeled « X-MD5-Hash » on the website, hash-identifier and...
Is the Comptia Security+ Certification useful if you want to get into pentesting?
https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/
submitted by /u/aqestfrgyjkltech (https://www.reddit.com/user/aqestfrgyjkltech)
[link] (https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/) [comments] (https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/
submitted by /u/aqestfrgyjkltech (https://www.reddit.com/user/aqestfrgyjkltech)
[link] (https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/) [comments] (https://www.reddit.com/r/Pentesting/comments/onyakk/is_the_comptia_security_certification_useful_if/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is the Comptia Security+ Certification useful if you want to get...
Posted in r/Pentesting by u/aqestfrgyjkltech • 10 points and 8 comments
All your files belongs to Me (An IDOR Story)
This is small story about IDOR bug in private bug bounty program, I do bug bounties as a hobby in my free time and this lead to an…Continue reading on Medium »
Read more...
This is small story about IDOR bug in private bug bounty program, I do bug bounties as a hobby in my free time and this lead to an…Continue reading on Medium »
Read more...
All your files belongs to Me (An IDOR Story)
https://medium.com/@prayas.kulshresth/all-your-files-belongs-to-me-an-idor-story-2b2b130daf1c?source=rss------bug_bounty-5
This is small story about IDOR bug in private bug bounty program, I do bug bounties as a hobby in my free time and this lead to an…Continue reading on Medium » (https://medium.com/@prayas.kulshresth/all-your-files-belongs-to-me-an-idor-story-2b2b130daf1c?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@prayas.kulshresth/all-your-files-belongs-to-me-an-idor-story-2b2b130daf1c?source=rss------bug_bounty-5
This is small story about IDOR bug in private bug bounty program, I do bug bounties as a hobby in my free time and this lead to an…Continue reading on Medium » (https://medium.com/@prayas.kulshresth/all-your-files-belongs-to-me-an-idor-story-2b2b130daf1c?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
All your files belongs to Me (An IDOR Story)
This is small story about IDOR bug in private bug bounty program, I do bug bounties as a hobby in my free time and this lead to an…
Breaking Application’s Logic to DOS Attack
https://medium.com/@abhiunix/breaking-applications-logic-to-dos-attack-b38d5e1794b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@abhiunix/breaking-applications-logic-to-dos-attack-b38d5e1794b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Breaking Application’s Logic to DOS Attack
Hey guys,
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…
Hey guys,
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…Continue reading on Medium » (https://medium.com/@abhiunix/breaking-applications-logic-to-dos-attack-b38d5e1794b?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…Continue reading on Medium » (https://medium.com/@abhiunix/breaking-applications-logic-to-dos-attack-b38d5e1794b?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
Breaking Application’s Logic to DOS Attack
Hey guys,
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…
Recently I had found a bug which was fine enough to deserve this post. So, I thought of writing it up here. I can not disclose…
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Regexploit - Find Regular Expressions Which Are Vulnerable To ReDoS (Regular Expression Denial Of Service)
https://1.bp.blogspot.com/-UjWm8eord38/YO93rWcho5I/AAAAAAAAjQ0/Xwl7ZZuO-SUdvH7ODpTuRdsNolgYLWpowCNcBGAsYHQ/w640-h126/regexploit_1.png Find regexes which are vulnerable to Regular Expression Denial of Service (ReDoS).
More info on the Doyensec blog
Many default regular expression parsers have unbounded worst-case complexity. Regex matching may be quick when presented with a matching input string. However, certain non-matching input strings can make the regular expression matcher go into crazy backtracking loops and take ages to process. This can cause denial of service, as the CPU will be stuck trying to match the regex.
This tool is designed to:
* find regular expressions which are vulnerable to ReDoS
* give an example malicious string which will cause catastrophic backtracking Worst-case complexityThis reflects the complexity of the regular expression matcher's backtracking procedure with respect to the length of the entered string.
Cubic complexity here means that if the vulnerable part of the string is doubled in length, the execution time should be about 8 times longer (2^3). For exponential ReDoS with starred stars e.g.
For explotability, cubic complexity or higher is typically required unless truly giant strings are allowed as input. ExampleRun
As another example, install a module version vulnerable to ReDoS such as
___________________________
@hacking_Attack
@Hacking_Video
Regexploit - Find Regular Expressions Which Are Vulnerable To ReDoS (Regular Expression Denial Of Service)
https://1.bp.blogspot.com/-UjWm8eord38/YO93rWcho5I/AAAAAAAAjQ0/Xwl7ZZuO-SUdvH7ODpTuRdsNolgYLWpowCNcBGAsYHQ/w640-h126/regexploit_1.png Find regexes which are vulnerable to Regular Expression Denial of Service (ReDoS).
More info on the Doyensec blog
Many default regular expression parsers have unbounded worst-case complexity. Regex matching may be quick when presented with a matching input string. However, certain non-matching input strings can make the regular expression matcher go into crazy backtracking loops and take ages to process. This can cause denial of service, as the CPU will be stuck trying to match the regex.
This tool is designed to:
* find regular expressions which are vulnerable to ReDoS
* give an example malicious string which will cause catastrophic backtracking Worst-case complexityThis reflects the complexity of the regular expression matcher's backtracking procedure with respect to the length of the entered string.
Cubic complexity here means that if the vulnerable part of the string is doubled in length, the execution time should be about 8 times longer (2^3). For exponential ReDoS with starred stars e.g.
(a*)*$a fudge factor is used and the complexity will be greater than 10.For explotability, cubic complexity or higher is typically required unless truly giant strings are allowed as input. ExampleRun
regexploitand enter the regular expression v\w*_\w*_\w*$at the command line. $ regexploit
v\w*_\w*_\w*$
Pattern: v\w*_\w*_\w*$
---
Worst-case complexity: 3 ⭐⭐⭐ (cubic)
Repeated character: [5f:_]
Final character to cause backtracking: [^WORD]
Example: 'v' + '_' * 3456 + '!' The part \w*_\w*_\w*contains three overlapping repeating groups (\w matches letters, digits and underscores). As showed in the line Repeated character: [5f:_], a long string of _(0x5f) will match this section in many different ways. The worst-case complexity is 3 as there are 3 infinitely repeating groups. An example to cause ReDoS is given: it consists of the required prefix v, a long string of _and then a !(non-word character) to cause backtracking. Not all ReDoSes require a particular character at the end, but in this case, a long string of _will match the regex successfully and won't backtrack. The line Final character to cause backtracking: [^WORD]shows that a non-matching character (not a word character) is required at the end to prevent matching and cause ReDoS.As another example, install a module version vulnerable to ReDoS such as
pip install ua-parser==0.9.0. To scan the installed python modules run regexploit-python-env. Importing ua_parser.user_agent_parser
Vulnerable regex in /somewhere/.env/lib/python3.9/site-packages/ua_parser/user_agent_parser.py #183
Pattern: \bSmartWatch *\( *([^;]+) *; *([^;]+) *;
Context: self.user_agent_re = re.compile(self.pattern)
---
Worst-case complexity: 3 ⭐⭐⭐
Repeated character: [20]
Example: 'SmartWatch(' + ' ' * 3456
Worst-case complexity: 3 ⭐⭐⭐
Repeated character: [20]
Example: 'SmartWatch(0;' + ' ' * 3456
Vulnerable regex in /somewhere/.env/lib/python3.9/site-packages/ua_parser/user_agent_parser.py #183
Pattern: ; *([^;/]+) Build[/ ]Huawei(MT1-U06|[A-Z]+\d+[^\);]+)[^\);]*\)
Context: self.user_agent_re = re.compile(self.pattern)
---
Worst-case complexity: 3 ⭐⭐⭐
Repeated character: [[0-9]]
Example: ';0 Build/HuaweiA' + '0' * 3456
... For each vulnerable regular expression it prints one or more malicious string to trigger ReDoS. Setting your user agent to ;0 Build/HuaweiA000000000000000...[...]___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Regexploit - Find Regular Expressions Which Are Vulnerable To ReDoS (Regular Expression Denial Of Service)