Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
PickleC2 - A Post-Exploitation And Lateral Movements Framework

PickleC2 is a post-exploitation and lateral movements framework. Documentation ReadTheDocs Overview PickleC2 is a simple C2 framework written in python3 used to help the community in Penetration Testers in their red teaming engagements. PickleC2 has the ability to import your own PowerShell module for Post-Exploitation and Lateral Movement or automate the process. Features There is a one implant for the beta version which is powershell. PickleC2 is fully encrypted communications, protecting the confidentiality and integrity of the C2 traffic even when communicating over HTTP. PickleC2 can handle multiple listeners and implants with no issues PickleC2 supports anyone who would like to add his own PowerShell Module Future Features In the up coming updates pickle will support: Go Implant Powershell-Less Implant that don’t use System.Management.Automation.dll. Malleable C2 Profile will be supported. HTTPS communications will be supported. NOTE: Even HTTP communications is fully encrypted. Install git clone https://github.com/xRET2pwn/PickleC2.gitcd PickleC2sudo apt install python3 python3-pippython3 -m pip install -r requirements.txt./run.py Download PickleC2
Read more...
PickleC2 is a post-exploitation and lateral movements framework.

Documentation
ReadTheDocs (https://picklec2.readthedocs.io/)
Overview
PickleC2 is a simple C2 framework written in python3 used to help the community in Penetration Testers in their red teaming (https://www.kitploit.com/search/label/Red%20Teaming) engagements. PickleC2 has the ability to import your own PowerShell (https://www.kitploit.com/search/label/PowerShell) module for Post-Exploitation (https://www.kitploit.com/search/label/Post-Exploitation) and Lateral Movement (https://www.kitploit.com/search/label/Lateral%20Movement) or automate the process.
Features
There is a one implant for the beta version which is powershell. PickleC2 is fully encrypted communications, protecting the confidentiality and integrity of the C2 traffic even when communicating over HTTP. PickleC2 can handle multiple listeners and implants with no issues PickleC2 supports anyone who would like to add his own PowerShell Module
Future Features
In the up coming updates pickle will support: Go Implant Powershell-Less Implant that don’t use System.Management.Automation.dll. Malleable C2 Profile will be supported. HTTPS communications will be supported. NOTE: Even HTTP communications is fully encrypted.
Install
git clone https://github.com/xRET2pwn/PickleC2.git
cd PickleC2
sudo apt install python3 python3-pip
python3 -m pip install -r requirements.txt
./run.py

Download PickleC2 (https://github.com/xRET2pwn/PickleC2)
hacking: security in practice
Beginner Seeking Advice on Revenge Hacking "Ethics"...

So I've been a graphic designer for 8 years, just transitioned careers into software engineering about 3 months ago, so I feel I'm somewhat proficient with programming but obviously have a lot to learn. As I've been studying web languages, the prospect of cyber security/hacking has stood out to me as a potential area I'd like to expand into over the next few years, and an opportunity has arisen that I feel can help motivate me to dig in.

On to the topic at hand - my gf was recently scammed by a small local "entrepreneur" - sent a deposit via cashapp and was immediately blocked. Went to the given address and turns out to be someone different. I figured a shady small business owner would be a great target to practice on, but am at a loss for where to start exactly. I've got her Facebook page both personal and professional, as well as her Instagram and cashapp address. They don't have a website, which I thought would open the door for me to offer a cheap website build and then just dip out after getting payment but... There's less opportunity to learn by going that route.

If I were to pursue this "educational hacking experience", what would be some of the possible legal ramifications if I do it poorly? I imagine messing with behemoths like Facebook and Instagram would require a significant amount of expertise to begin with, much less not get caught - but if it's possible, are there any specific tools that you'd recommend? I'm not in any rush, and looking at this as a personal growth project to tinker with in my spare time. But any advice to point me in the right direction would be greatly appreciated 🙏

submitted by /u/Guilteus
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Am I correct in assuming that packet sniffing isn't really a threat these days?

If my Wi-Fi is unsecured, almost everything is sent using HTTPS anyway so the most an attacker can see is the domain names I visit.

Even through a man in the middle attack, it seems to me like the there isn't a reliable way to spoof the certificates to decrypt HTTPS.

Am I totally missing something here? It seems like MITM attacks and packet spoofing aren't really a major concern in 2021.
I fully accept if I'm wrong, I'm quite new to this stuff so feel free to correct me!

submitted by /u/EeyoresM8
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
PickleC2 - A Post-Exploitation And Lateral Movements Framework

http://2.bp.blogspot.com/-BJz3rJkO40I/YRYFs4cOcmI/AAAAAAAAp5A/93aHuuKRrHUZ3TS7EFG5RnCdiJyDZEBogCK4BGAYYCw/w640-h274/PickleC2_1_c2-792326.png

PickleC2 is a post-exploitation and lateral movements framework.
Documentation

ReadTheDocs

Overview

PickleC2 is a simple C2 framework written in python3 used to help the community in Penetration Testers in their red teaming engagements.

PickleC2 has the ability to import your own PowerShell module for Post-Exploitation and Lateral Movement or automate the process.

Features

There is a one implant for the beta version which is powershell.

1.
PickleC2 is fully encrypted communications, protecting the confidentiality and integrity of the C2 traffic even when communicating over HTTP.

2.
PickleC2 can handle multiple listeners and implants with no issues

3.
PickleC2 supports anyone who would like to add his own PowerShell Module
Future Features

In the up coming updates pickle will support:

1.
Go Implant

2.
Powershell-Less Implant that don’t use System.Management.Automation.dll.

3.
Malleable C2 Profile will be supported.

4.
HTTPS communications will be supported. NOTE: Even HTTP communications is fully encrypted.
Install

git clone https://github.com/xRET2pwn/PickleC2.git
cd PickleC2
sudo apt install python3 python3-pip
python3 -m pip install -r requirements.txt
./run.py

Download PickleC2

___________________________
@hacking_Attack
@Hacking_Video
Deep Web
What does auto finalization mean?

When you make an order, what does “the order will auto finalize on____ at___.” Is the order supposed to come by then, or does it mean something else? Please help. It’s my first time and I don’t know what the right thing to do is. Thank you

submitted by /u/autistic__angel
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Following the biggest hack in DeFi history, Poly Network is joining Immunefi with a bug bounty of $100,000 for critical vulnerabilities…Continue reading on Immunefi » (https://medium.com/immunefi/poly-network-joins-immunefi-with-100-000-bug-bounty-after-hack-d349e1192853?source=rss------bug_bounty-5)