hacking: security in practice
Looking for CTF team members/enthusiasts
I'm not sure if this is the right place, but figured worth a shot.
I haven't done CTFs in a couple of years due to life changes, work, etc, but I'd like to start doing them again for fun and skill honing/development.
Ideally I'd like to find a couple of people to start a small team of people to work on CTFs and problems, as well as hobbyist projects, from time to time and keep each other engaged and improving. I'm not looking to spend 24+ hrs on events, but just a couple of hours a day as available since life keeps me pretty busy.
If you know anyone, or are interested, please let me know. Prefer USA based people, and I live in the ET timezone.
submitted by /u/vitafortisnk
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Looking for CTF team members/enthusiasts
I'm not sure if this is the right place, but figured worth a shot.
I haven't done CTFs in a couple of years due to life changes, work, etc, but I'd like to start doing them again for fun and skill honing/development.
Ideally I'd like to find a couple of people to start a small team of people to work on CTFs and problems, as well as hobbyist projects, from time to time and keep each other engaged and improving. I'm not looking to spend 24+ hrs on events, but just a couple of hours a day as available since life keeps me pretty busy.
If you know anyone, or are interested, please let me know. Prefer USA based people, and I live in the ET timezone.
submitted by /u/vitafortisnk
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
Looking for CTF team members/enthusiasts
I'm not sure if this is the right place, but figured worth a shot. I haven't done CTFs in a couple of years due to life changes, work, etc,...
hacking: security in practice
Red Teaming Hardware
Hi Everyone
I'm interested in physical red teaming tools such as the USB Kill and USB Samurai. Can you guys please advise where I can find similar tools for red teaming exercises
Thank you
submitted by /u/messi1_0-
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
Red Teaming Hardware
Hi Everyone
I'm interested in physical red teaming tools such as the USB Kill and USB Samurai. Can you guys please advise where I can find similar tools for red teaming exercises
Thank you
submitted by /u/messi1_0-
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
Red Teaming Hardware
Hi Everyone I'm interested in physical red teaming tools such as the USB Kill and USB Samurai. Can you guys please advise where I can find...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Beginner Guide To Exploit Server Side Request Forgery (SSRF) Vulnerability — Indonesia
https://cdn-images-1.medium.com/max/802/0*Ey8ZXRAnTb-caH9F.png
Service Side Request Forgery (SSRF) sederhana nya adalah serangan yang dimana server akan melakukan request untuk si attacker baik itu ke…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Beginner Guide To Exploit Server Side Request Forgery (SSRF) Vulnerability — Indonesia
https://cdn-images-1.medium.com/max/802/0*Ey8ZXRAnTb-caH9F.png
Service Side Request Forgery (SSRF) sederhana nya adalah serangan yang dimana server akan melakukan request untuk si attacker baik itu ke…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Beginner Guide To Exploit Server Side Request Forgery (SSRF) Vulnerability — Indonesia
Service Side Request Forgery (SSRF) sederhana nya adalah serangan yang dimana server akan melakukan request untuk si attacker baik itu ke…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
GOLDENEYE: 1 Kernal Exploit [Without Metasploit]
https://cdn-images-1.medium.com/max/1366/1*1v0-NVslDWykbB8dQOY_pQ.png
They say this is the OSCP type practice vulnerable machine.The intermediate level machine.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
GOLDENEYE: 1 Kernal Exploit [Without Metasploit]
https://cdn-images-1.medium.com/max/1366/1*1v0-NVslDWykbB8dQOY_pQ.png
They say this is the OSCP type practice vulnerable machine.The intermediate level machine.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
GOLDENEYE: 1 Kernal Exploit [Without Metasploit]
They say this is the OSCP type practice vulnerable machine.The intermediate level machine.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HackTheBox — Previse Writeup
https://cdn-images-1.medium.com/max/600/0*6X4F86uQ83anl-ZR.png
So this is my write-up on one of the HackTheBox machines called Previse. Let’s go!
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HackTheBox — Previse Writeup
https://cdn-images-1.medium.com/max/600/0*6X4F86uQ83anl-ZR.png
So this is my write-up on one of the HackTheBox machines called Previse. Let’s go!
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HackTheBox — Previse Writeup
So this is my write-up on one of the HackTheBox machines called Previse. Let’s go!
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
“Defend the Web” write-up (Crypt2 / Crypt — cracking Caesar cipher encryption)
https://cdn-images-1.medium.com/max/1545/1*aHVz2XLDAQ56AyBCAqxp6A.png
A Caesar cipher, also known as Caesar’s cipher, the shift cipher, Caesar’s code, or Caesar shift in cryptography, is one of the most basic…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
“Defend the Web” write-up (Crypt2 / Crypt — cracking Caesar cipher encryption)
https://cdn-images-1.medium.com/max/1545/1*aHVz2XLDAQ56AyBCAqxp6A.png
A Caesar cipher, also known as Caesar’s cipher, the shift cipher, Caesar’s code, or Caesar shift in cryptography, is one of the most basic…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
Medium
“Defend the Web” write-up (Crypt2 / Crypt — cracking Caesar cipher encryption)
A Caesar cipher, also known as Caesar’s cipher, the shift cipher, Caesar’s code, or Caesar shift in cryptography, is one of the most basic…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
“Defend the Web” write-up (Sid / Intro — cookie tampering)
https://cdn-images-1.medium.com/max/1423/1*CrGGnVxpRB9OMcIxbIZSnQ.png
While temporary cookies are primarily used to store the session identifier, many applications also utilize them to store additional…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
“Defend the Web” write-up (Sid / Intro — cookie tampering)
https://cdn-images-1.medium.com/max/1423/1*CrGGnVxpRB9OMcIxbIZSnQ.png
While temporary cookies are primarily used to store the session identifier, many applications also utilize them to store additional…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
Medium
“Defend the Web” write-up (Sid / Intro — cookie tampering)
While temporary cookies are primarily used to store the session identifier, many applications also utilize them to store additional…
Apple Hall Of Fame
https://medium.com/@sagarjana2/apple-hall-of-fame-d148832cbbaf?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@sagarjana2/apple-hall-of-fame-d148832cbbaf?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hall Of Fame!!
Hello Guys ! I am Sagar Jana a Security Researcher. I have found a Content Spoofing/Text Injection vulnerability on domain www.apple.com
Hello Guys ! I am Sagar Jana a Security Researcher. I have found a Content Spoofing/Text Injection vulnerability on domain www.apple.comContinue reading on Medium » (https://medium.com/@sagarjana2/apple-hall-of-fame-d148832cbbaf?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hall Of Fame!!
Hello Guys ! I am Sagar Jana a Security Researcher. I have found a Content Spoofing/Text Injection vulnerability on domain www.apple.com
Red Teaming Hardware
https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/
Hi Everyone I'm interested in physical red teaming tools such as the USB Kill and USB Samurai. Can you guys please advise where I can find similar tools for red teaming exercises Thank you submitted by /u/messi1_0- (https://www.reddit.com/user/messi1_0-)
[link] (https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/) [comments] (https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/
Hi Everyone I'm interested in physical red teaming tools such as the USB Kill and USB Samurai. Can you guys please advise where I can find similar tools for red teaming exercises Thank you submitted by /u/messi1_0- (https://www.reddit.com/user/messi1_0-)
[link] (https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/) [comments] (https://www.reddit.com/r/redteamsec/comments/pjljvn/red_teaming_hardware/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
From the redteamsec community on Reddit
Explore this post and more from the redteamsec community
Hacking Articles Tips Tricks Videos Tutorials
Photo
Deep Web
🔥🔥
https://external-preview.redd.it/apCKkcDzBGMzYTzIJmsir0HKAeJvI6k7c4n2DocgINA.jpg?width=320&crop=smart&auto=webp&s=82d341d01ad77afe6a6b5aea72fbdf65c0226a96 submitted by /u/rawrollingtray
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
🔥🔥
https://external-preview.redd.it/apCKkcDzBGMzYTzIJmsir0HKAeJvI6k7c4n2DocgINA.jpg?width=320&crop=smart&auto=webp&s=82d341d01ad77afe6a6b5aea72fbdf65c0226a96 submitted by /u/rawrollingtray
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
🔥🔥
Posted in r/deepweb by u/rawrollingtray • 3 points and 1 comment
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles|Raj Chandel's Blog
MSSQL for Pentester: Abusing Trustworthy
In this article, we will learn how to give sysadmin rights to the user who has only fundamental public rights. Technically, we will apply privilege escalation logic and give sysadmin the privilege to a regular public user. And abuse the trustworthy property, given that it is enabled on the Database.
Table of contentIntroduction to Trustworthy Trustworthy database property helps to determine that whether the SQL server relies on a database or not. When working with CRL, there will be many instances where special commands or procedures deem it vital to have particular privileges. It requires such a license so that it can protect the Database from malicious scenarios. Many properties can be used in windows servers and SQL servers to determine if the Database is trusted. The properties must be set accordingly to allow the SQL server to function. One method for doing this is by adding the trust command on both servers.Lab SetupTo perform the practical and for it to be successful, we will first set up our MSSQL server lab and for that, let us create a new database by right-clicking on the Database and selecting the New Database option as shown in the image below:OKbutton as shown in the image below:Loginsand choose the New Loginoption as shown in the image below:OKbutton as shown in the image below:User Mapping,and there select igniteDatabase for your user. In the role membership panel, choose the db_owneroption, then click on the OKbutton as shown in the image below:select name,is_trustworthy_on from sys.databaseshttps://1.bp.blogspot.com/-ncK71FhZRSU/YTc7aOLaPjI/AAAAAAAAyfY/xSvKieHUNgETaeAA4DbBRo5VayLYJLMCQCLcBGAsYHQ/s16000/7.png As you can see that the Database we[...]
___________________________
@hacking_Attack
@Hacking_Video
MSSQL for Pentester: Abusing Trustworthy
In this article, we will learn how to give sysadmin rights to the user who has only fundamental public rights. Technically, we will apply privilege escalation logic and give sysadmin the privilege to a regular public user. And abuse the trustworthy property, given that it is enabled on the Database.
Table of contentIntroduction to Trustworthy Trustworthy database property helps to determine that whether the SQL server relies on a database or not. When working with CRL, there will be many instances where special commands or procedures deem it vital to have particular privileges. It requires such a license so that it can protect the Database from malicious scenarios. Many properties can be used in windows servers and SQL servers to determine if the Database is trusted. The properties must be set accordingly to allow the SQL server to function. One method for doing this is by adding the trust command on both servers.Lab SetupTo perform the practical and for it to be successful, we will first set up our MSSQL server lab and for that, let us create a new database by right-clicking on the Database and selecting the New Database option as shown in the image below:OKbutton as shown in the image below:Loginsand choose the New Loginoption as shown in the image below:OKbutton as shown in the image below:User Mapping,and there select igniteDatabase for your user. In the role membership panel, choose the db_owneroption, then click on the OKbutton as shown in the image below:select name,is_trustworthy_on from sys.databaseshttps://1.bp.blogspot.com/-ncK71FhZRSU/YTc7aOLaPjI/AAAAAAAAyfY/xSvKieHUNgETaeAA4DbBRo5VayLYJLMCQCLcBGAsYHQ/s16000/7.png As you can see that the Database we[...]
___________________________
@hacking_Attack
@Hacking_Video
Blogspot
MSSQL for Pentester: Abusing Trustworthy
Hacking Articles is a very interesting blog about information security, penetration testing and vulnerability assessment managed by Raj Chandel.
Hacking Articles|Raj Chandel's Blog
MSSQL for Pentester: Abusing Trustworthy
___________________________
@hacking_Attack
@Hacking_Video
MSSQL for Pentester: Abusing Trustworthy
___________________________
@hacking_Attack
@Hacking_Video
Blogspot
MSSQL for Pentester: Abusing Trustworthy
Hacking Articles is a very interesting blog about information security, penetration testing and vulnerability assessment managed by Raj Chandel.