Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
131K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Open Ports on Home Network

Hey guys,

for the last week i am trying to improve the overall security of my network, devices and accounts.

While doing so i tried to analyse my home network. I scanned my network using " nmap -sT ipAddr " I used the public IP Address i found on my router interface.

I scanned via phone app Termux on mobile network.

The scan results were shocking. Except a few ports, every single one is open.

How can this be?

I got a cable router/modem from my ISP, no bridge mode with another router ( i am looking forward to change this in the near future).

Did i really scan my network at all or did i somehow scanned or got redirected to some ISP network stuff?

I can't believe that there are so many ports open, since this would be a massive vulnerability.

submitted by /u/DeSpTG
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Hiding IP with metasploit

Hello! Recently I have been getting back into hacking, and became curious about android phones. I am using msfvenom(specifically the reverse tcp exploit for android) and was wondering if there is anyway to hide my IP address short of paying for a foreign Virtual Machine. Any help would be appreciated. Thank you!

submitted by /u/manifest_destiny_2
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
https://b.thumbs.redditmedia.com/JJ6kyBMhqi2oIR6R3bjPzwbVx_BVjSQ7kA6Iast-sjQ.jpg

https://preview.redd.it/etgdo47fs2i71.png?width=1400&format=png&auto=webp&s=a15ccd3e26a7a0bf399a8adb372a54716a58c20a

MetaBUIDL with NEAR ($1.000.000)

Official site: https://metabuidl.splashthat.com/

This is a global event that will bring together the best teams of WEB 3.0 developers and help them realize themselves, as it was, for example, with 1inch. Yes, they also started with a hackathon.

Among the speakers and judges of the teams of well-known projects, for example: Illia Polosukhin (NEAR), Anton Bukov (1inch), Li Jin (Atelier Ventures), James Young (Collab Land) and others.

First Series: August 27 — September 12.



https://preview.redd.it/sbl3pihgs2i71.png?width=700&format=png&auto=webp&s=f48cfde351346d0ed618e2cdb463a91c1e3e4cb3

Let’s look at the awards and the purpose of this hackathon.

The total prize pool will be $ 1 million, it will be distributed before the end of the year. This is an astronomical amount funded from the NEAR fund. At the moment, several directions are available.

Partner Challenge Pool ($100k)

https://gov.near.org/t/open-call-challenge-partners-for-metabuidl-aug27-sep12/3903

This direction allows you to interact with projects on the NEAR blockchain directly.

https://airtable.com/shrdNEynK25TGJ91h/tblTtriXzrEiCfpoy — here you can find live examples of tasks and have already decided on the vector of activity.

The basic grant amount in the Partner Challenge Pool is 5 thousand dollars, you can choose several partners to start solving their problem, no one limits you. At the moment, the Partner Challenge Pool includes 22 projects with a total prize fund of just over 100 thousand dollars.

Let’s figure out how everything works there.

For example, let’s take a task from HumanGuild.



https://preview.redd.it/tyczz0fjs2i71.png?width=700&format=png&auto=webp&s=7bb135d95e6d5387350aa4c1d06fe5b7255e9b0a

The task.



https://preview.redd.it/fqf9houks2i71.png?width=472&format=png&auto=webp&s=821263f328902b706c24884f488ee6b26b4a369a

All the participants of the hackathon need is to familiarize themselves with the task and prepare for its implementation on August 27. By the way, the HumanGuild task sounds very interesting, I advise you to read it.

https://medium.com/electric-capital/5-new-frontiers-for-nfts-c77de367631d

The reward for this task is $7,500 in NEAR. This is a very good amount, but that’s not all, if your project attracts interest from investors and the fund, then you can get additional investments.
This is [...]

___________________________
@hacking_Attack
@Hacking_Video
How I found Reflected XSS on a WebGIS

In this write-up, I will share how I found a Reflected XSS vulnerability on a website that uses Geographic Information System (WebGIS).
Read more...
How I Bought a £240.00 Annual Subscription for Bargain £0.01

I found a way to alter a premium subscription service price and bought it for a penny. This is how I did it.Continue reading on InfoSec Write-ups »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Bug in Millions of Flawed IoT Devices Lets Attackers Eavesdrop

https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Bug in Millions of Flawed IoT Devices Lets Attackers EavesdropPost Views: 84
Reading Time: 3 Minutes
A remote attacker could exploit a critical vulnerability to eavesdrop on live audio & video or take control. The bug is in ThroughTek’s Kalay network, used in 83m devices.
Security researchers have discovered a critical flaw that affects tens of millions of internet-of-things (IoT) devices – one that exposes live video and audio streams to eavesdropping threat actors and which could enable attackers to take over control of devices, including security webcams and connected baby monitors.

The flaw, tracked as CVE-2021-28372 and FEYE-2021-0020 and assigned a critical CVSS3.1 base score of 9.6, was found in devices connected via ThroughTek’s Kalay IoT cloud platform.

The alarm was sounded on Tuesday by Mandiant, in coordination with the Cybersecurity and Infrastructure Security Agency (CISA) and ThroughTek. Mandiant’s Red Team discovered the vulnerability in late 2020.

“CVE-2021-28372 poses a huge risk to an end user’s security and privacy and should be mitigated appropriately,” according to Mandiant’s post. “Unprotected devices, such as IoT cameras, can be compromised remotely with access to a UID and further attacks are possible depending on the functionality exposed by a device.”

The world has already been inundated with tales of what can happen when these kind of devices are misconfigured or riddled with vulnerabilities, and this just adds to the growing pile of scary headlines. For example, in February, a vulnerability affecting multiple baby monitors was found to expose hundreds of thousands of live devices, potentially allowing someone to drop in and view a camera’s video stream.

As Mandiant explained, the flaw would enable adversaries “to remotely compromise victim IoT devices, resulting in the ability to listen to live audio, watch real time video data, and compromise device credentials for further attacks based on exposed device functionality. These further attacks could include actions that would allow an adversary to remotely control affected devices.”

In a Tuesday post, researchers Jake Valletta, Erik Barzdukas and Dillon Franke – who discovered the bug – explained that it’s impossible to compile a comprehensive list of companies and products affected, given how the Kalay protocol is integrated by manufacturers and resellers before devices reach consumers. Though they couldn’t come up with a definitive list of affected companies and products that implement the Kalay platform, they strongly advised users of IoT devices “to keep device software and applications up to date and use complex, unique passwords for any accounts associated with these devices.”
See Also: Critical Valve Bug Lets Gamers Add Unlimited Funds to Steam Wallets Mandiant also recommends that device owners avoid connecting to affected devices from untrusted networks, such as public Wi-Fi: a recommendation that’s already part of wireless best practices, as the National Security Agency (NSA) recently advised in a public service announcement (PDF). Kalay: A Newly Unappealing HandshakeAccording to ThroughTek, “Kalay” is an indigenous Dawu word that means “handshake,” “symbolizing the universal link in an interconnected world.”

ThroughTek implements that handshake – the Kalay protocol – as a software development kit (SDK). The Kalay SDK provides a plug-and-play network to easily connect smart devices with corresponding mobile apps.

The researchers provided an illustration that g[...]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Bug in Millions of Flawed IoT Devices Lets Attackers Eavesdrop https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Bug in Millions of Flawed IoT Devices Lets Attackers EavesdropPost…
ives an example of how it works: The figure below shows a typical device registration process and client connection on the Kalay network. In this example, a user remotely accesses their home network’s Kalay-enabled camera on a mobile app from a remote network: for example, a user would view their home camera’s feed while in a coffee shop or on a mobile phone network https://media.threatpost.com/wp-content/uploads/sites/103/2021/08/17103055/Kalay-flow-e1629210749791.jpg Kalay flow. Source: Mandiant. How Many Devices Are Affected? Impossible to SayTo get a high-level view of the scope of potentially affected products and companies, researchers pointed to ThroughTek’s advertising, which boasts of supporting upwards of 83 million active devices and more than 1.1 billion monthly connections on the platform. ThroughTek also supports 250 systems-on-a-chip (SOCs): the microchips that contain all the necessary electronic circuits and parts for small consumer electronic devices, such as smartphones or wearable computers.

Mandiant said that affected Kalay products include IoT camera manufacturers, smart baby monitors, and Digital Video Recorder (DVR) products.

Researchers noted that this ThroughTek bug is worse than the critical Nozomi Networks vulnerability disclosed in May: a bug that was already quite severe in that it laid open millions of connected cameras, leaving them prey to having remote attackers get at camera feeds. But besides eavesdropping, this latest Kalay vulnerability means that devices could be remotely controlled by people who have no business tinkering with other people’s baby monitors, webcams or other IoT gadgets, Mandiant said.

“This latest vulnerability allows attackers to communicate with devices remotely,” researchers explained. “As a result, further attacks could include actions that would allow an adversary to remotely control affected devices and could potentially lead to remote code execution.”
See Also: Offensive Security Tool: Warcannon How the Bug WorksMandiant determined that the problem lies in the device registration process, which requires only a device’s 20-byte, uniquely assigned identifier – which they refer to as a UID – to access the network. Mandiant’s testing showed that, typically, the UID is provided by a Kalay-enabled client, such as a mobile app, from a web API hosted by the company that markets and sells a given device.

In order to exploit the vulnerability, an attacker would need both deep knowledge of the Kalay protocol and the ability to generate and send messages. They’d also have to get their hands on those Kalay UIDs, which they could wriggle away via “social engineering or other vulnerabilities in APIs or services that return Kalay UIDs,” the researchers said. As an alternative, Mandiant also investigated brute forcing ThroughTek UIDs, but researchers said that it sucked up too much time and resources.

After they get their hands on the UIDs, an attacker could take over the associated, affected devices. With some knowledge of the Kalay protocol, they’d be able to re-register the UID, overwriting the existing Kalay device on the Kalay servers. Then, whenever the legitimate owner tries to access the device, the UID will be directed to the attacker, in effect leading to hijacking of the connection.

As Mandiant director Jake Valletta told Wired, the legitimate device owner would experience a few seconds of lag, but that’s the only difference that would be apparent from their perspective.

After that, the attacker can continue with the connection process in order to steal the device owner’s username and password. The figure below shows what happens when both a victimized device and a malicious device with the same UID exist on the network: Namely, the malicious registration overwrites the existing registration and force the legitimate device’s connections to be re-routed to the attacker’s device. https://media.threatpost.com/wp-co[...]

___________________________
@hacking_Attack
@Hacking_Video