Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
66K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Utilizar a ferramenta Metagoofil

https://cdn-images-1.medium.com/max/798/1*RqMwZSHv_c3Ve1BiJS5UQw.png
Metagoofil é uma ferramenta de coleta de informações desenhada para extrair metadados de documentos públicos nos seguintes formatos de…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Avoid Zoom’s Web Client — Alternatives

https://cdn-images-1.medium.com/max/981/1*PVvzvqzQ9mS_bwPx7ThlAw.png
Keep yourself safe and don’t install Zoom’s Client. Although Zoom aggressively works to get you to download and install their software for…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
PoC: The easiest 125 Euro’s I Ever made

https://cdn-images-1.medium.com/max/2600/0*LdmFMvhQfAptefH3
Hello amazing hackers I hope you are all doing well! Today i’d like to talk to you all about the easiest money i ever made. You will see…

Continue reading on Medium »
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium » (https://surajdubey915.medium.com/html-injection-via-email-970e4f5c48cb?source=rss------bug_bounty-5)
hacking: security in practice
Could the Ever Given been hacked?

I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through some sort of a cyber attack either on or off the ship?

submitted by /u/nmscientist
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Potential Security Breach At Streaming Website Shudder: What Do I Do, How Do I Report This?

Also posted this in r/Streaming:

Twice I have tried logging into my shudder account on Firefox and was randomly logged into random peoples accounts. This only happened in Firefox. I had a friend do the same thing on his computer (he does not have a shudder account and lives in another state so obviously different internet network). It did not work on Chrome but he was able to simple access content on some random person's account on Shudder having never visited the website today. I do not know where or how to report such a security breach.

Accounts Unintentionally Accessed

submitted by /u/30ChefCurry
[link] [comments]
hacking: security in practice
Streaming sites blocking screen record?

So the new Justice League movie recently came out on HBO Max but it's not available to buy because it's an "exclusive". I think this is ridiculous so I decided I would just screen capture the whole movie only to find out that it knows when I'm doing this and will turn the screen black. So hypothetically, is there some way to block the site from seeing when I am screen recording?

submitted by /u/chriipping
[link] [comments]
How to test SSO/SAML Implementation for Web Apps?
https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/

<!-- SC_OFF -->I am currently on an assessment for a large organization. I am tasked to specifically test the authentication mechanism for several web apps which are now starting to use ADFS/SSO and SAML. However, are there actually vulnerabilities associated with this? I assume they are using existing framework to implement it? Basically, lost on how exactly to test it, as it is generating a randomly generated token in Burp as far as I can see. Can't edit anything with SAMLRaider extension. ​ I just want to learn more about how to properly test it as don't have skillset to reverse engineer it. Any good blogs, videos, threads where I can learn to test them properly? Thanks! <!-- SC_ON --> submitted by /u/SlickTA (https://www.reddit.com/user/SlickTA)
[link] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/) [comments] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/)
HTML injection via email

Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium »
Read more...
Subdomain Enumeration Methodology

How i enumerate subdomains with custom scriptContinue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HTML injection via email

https://cdn-images-1.medium.com/max/1024/0*i8pYLNaHoyz4lVbk.png
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
[TryHackMe]- Bounty Hacker

https://cdn-images-1.medium.com/max/1219/1*IxUScBh5Cl5SLQCQsAwzBw.png
Langkah pertama lakukan enumerasi pada 10.10.130.216 dengan cara melakukan scanning pada port (Nmap) dan juga scanning directory…

Continue reading on Medium »