hacking: security in practice
Finding the website root directory on a Windows IIS web server using LFI exploit
I am currently doing a CTF and everything here is part of it.
I have found an LFI vulnerability in a website that allows me to download files on both the C drive and D drive. The D drive contains content relevant to the website however no jsp (the site uses jsp) scripts that I can download which could contain useful information.
I found a way to read the D drive using the exploit and have gathered several config files. I attempted to access what I believed to be the website root directory at C:/inetpub/wwwroot and it contains an iisstart.htm file however there is nothing related to the actual site.
Is there a config, log or any kind of file on the system which may give me more information as to where the website root is? Maybe I'm missing a config file or it could be located in a log? I have even downloaded and checked files such as lnk files to see if it contains useful paths.
submitted by /u/_chun_chun_maru
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Finding the website root directory on a Windows IIS web server using LFI exploit
I am currently doing a CTF and everything here is part of it.
I have found an LFI vulnerability in a website that allows me to download files on both the C drive and D drive. The D drive contains content relevant to the website however no jsp (the site uses jsp) scripts that I can download which could contain useful information.
I found a way to read the D drive using the exploit and have gathered several config files. I attempted to access what I believed to be the website root directory at C:/inetpub/wwwroot and it contains an iisstart.htm file however there is nothing related to the actual site.
Is there a config, log or any kind of file on the system which may give me more information as to where the website root is? Maybe I'm missing a config file or it could be located in a log? I have even downloaded and checked files such as lnk files to see if it contains useful paths.
submitted by /u/_chun_chun_maru
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
Finding the website root directory on a Windows IIS web server...
I am currently doing a CTF and everything here is part of it. I have found an LFI vulnerability in a website that allows me to download files on...
hacking: security in practice
What is Stopping Cryptocurrency from Being Broken by a Large Botnet?
I will admit that my understanding of cryptocurrency is limited, but it seems to be vulnerable to a botnet attack, wherein malware silently infects devices that validates/stores transactions, and manipulates their ledgers simultaneously. Is my theory bunk, or is it a real threat? If you could manipulate enough ledgers at enough nodes, wouldn't this be feasible? Do we think something like this might be underway?
submitted by /u/Derangedteddy
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
What is Stopping Cryptocurrency from Being Broken by a Large Botnet?
I will admit that my understanding of cryptocurrency is limited, but it seems to be vulnerable to a botnet attack, wherein malware silently infects devices that validates/stores transactions, and manipulates their ledgers simultaneously. Is my theory bunk, or is it a real threat? If you could manipulate enough ledgers at enough nodes, wouldn't this be feasible? Do we think something like this might be underway?
submitted by /u/Derangedteddy
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
What is Stopping Cryptocurrency from Being Broken by a Large Botnet?
I will admit that my understanding of cryptocurrency is limited, but it seems to be vulnerable to a botnet attack, wherein malware silently...
hacking: security in practice
Proxy on twitter
Hi, I would like to keep my actual location anonymous, will a proxy setting on my Twitter application help? Please guide me As I already using VPN service as well.
submitted by /u/eik_bunjara
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Proxy on twitter
Hi, I would like to keep my actual location anonymous, will a proxy setting on my Twitter application help? Please guide me As I already using VPN service as well.
submitted by /u/eik_bunjara
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
Proxy on twitter
Hi, I would like to keep my actual location anonymous, will a proxy setting on my Twitter application help? Please guide me As I already using...
Story OF MY 3RD Bounty From Facebook
https://imajk.medium.com/story-of-my-3rd-bounty-from-facebook-fef352853d1b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://imajk.medium.com/story-of-my-3rd-bounty-from-facebook-fef352853d1b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Story OF MY 3RD Bounty From Facebook
Hi , I am Aashish Jung Kunwar from Dhangadhi , Nepal . Today I am back with a new writeup . The writeup is about how I got my 3rd bounty…
Hi , I am Aashish Jung Kunwar from Dhangadhi , Nepal . Today I am back with a new writeup . The writeup is about how I got my 3rd bounty…Continue reading on Medium » (https://imajk.medium.com/story-of-my-3rd-bounty-from-facebook-fef352853d1b?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Story OF MY 3RD Bounty From Facebook
Hi , I am Aashish Jung Kunwar from Dhangadhi , Nepal . Today I am back with a new writeup . The writeup is about how I got my 3rd bounty…
How I accidentally found my first bug
https://medium.com/@noobdog/how-i-accidentally-found-my-first-bug-d068ac259e6f?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@noobdog/how-i-accidentally-found-my-first-bug-d068ac259e6f?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I accidentally found my first bug
Hello guys, this is my first blog and I have tried it to make it as simple as possible so everyone can understand.
Hello guys, this is my first blog and I have tried it to make it as simple as possible so everyone can understand.Continue reading on Medium » (https://medium.com/@noobdog/how-i-accidentally-found-my-first-bug-d068ac259e6f?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I accidentally found my first bug
Hello guys, this is my first blog and I have tried it to make it as simple as possible so everyone can understand.
CAREER PATHS IN CYBER SECURITY
https://parshwa-fabaf.medium.com/career-paths-in-cyber-security-b0e621c1df0a?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://parshwa-fabaf.medium.com/career-paths-in-cyber-security-b0e621c1df0a?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
CAREER PATHS IN CYBER SECURITY
Hello Folks ,
Hello Folks ,Continue reading on Medium » (https://parshwa-fabaf.medium.com/career-paths-in-cyber-security-b0e621c1df0a?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
CAREER PATHS IN CYBER SECURITY
Hello Folks ,
How I accidentally found my first bug
Hello guys, this is my first blog and I have tried it to make it as simple as possible so everyone can understand.Continue reading on Medium »
Read more...
Hello guys, this is my first blog and I have tried it to make it as simple as possible so everyone can understand.Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
ARTIF : An Advanced Real Time Threat Intelligence Framework To Identify Threats And Malicious Web Traffic On The Basis Of IP Reputation And Historical Data.
ARTIF is a new advanced real time threat intelligence framework built that adds another abstraction layer on the top of MISP to identify threats and malicious web traffic on the basis of IP reputation and historical data. It also performs automatic enrichment and threat scoring by collecting, processing and correlating observables based on different factors. […]
The post ARTIF : An Advanced Real Time Threat Intelligence Framework To Identify Threats And Malicious Web Traffic On The Basis Of IP Reputation And Historical Data. appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
ARTIF : An Advanced Real Time Threat Intelligence Framework To Identify Threats And Malicious Web Traffic On The Basis Of IP Reputation And Historical Data.
ARTIF is a new advanced real time threat intelligence framework built that adds another abstraction layer on the top of MISP to identify threats and malicious web traffic on the basis of IP reputation and historical data. It also performs automatic enrichment and threat scoring by collecting, processing and correlating observables based on different factors. […]
The post ARTIF : An Advanced Real Time Threat Intelligence Framework To Identify Threats And Malicious Web Traffic On The Basis Of IP Reputation And Historical Data. appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
ARTIF : Advanced Real Time Threat Intelligence Framework
ARTIF is a new advanced real time threat intelligence framework built that adds another abstraction layer on the top of MISP .
Blockzero Labs opens $10,000 Bug Bounty for the AquaFi Protocol
https://medium.com/bombx/blockzero-labs-opens-10-000-bug-bounty-for-the-aquafi-protocol-75c03a0b1337?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/bombx/blockzero-labs-opens-10-000-bug-bounty-for-the-aquafi-protocol-75c03a0b1337?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Blockzero Labs opens $10,000 Bug Bounty for the AquaFi Protocol
$10,000 AquaFi Bug Bounty
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
CAREER PATHS IN CYBER SECURITY
https://cdn-images-1.medium.com/max/640/1*xa1M1vil_SpkRUEBRsudXA.png
Hello Folks ,
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
CAREER PATHS IN CYBER SECURITY
https://cdn-images-1.medium.com/max/640/1*xa1M1vil_SpkRUEBRsudXA.png
Hello Folks ,
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
CAREER PATHS IN CYBER SECURITY
Hello Folks ,