Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Utilizar a ferramenta Metagoofil
https://cdn-images-1.medium.com/max/798/1*RqMwZSHv_c3Ve1BiJS5UQw.png
Metagoofil é uma ferramenta de coleta de informações desenhada para extrair metadados de documentos públicos nos seguintes formatos de…
Continue reading on Medium »
Utilizar a ferramenta Metagoofil
https://cdn-images-1.medium.com/max/798/1*RqMwZSHv_c3Ve1BiJS5UQw.png
Metagoofil é uma ferramenta de coleta de informações desenhada para extrair metadados de documentos públicos nos seguintes formatos de…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Avoid Zoom’s Web Client — Alternatives
https://cdn-images-1.medium.com/max/981/1*PVvzvqzQ9mS_bwPx7ThlAw.png
Keep yourself safe and don’t install Zoom’s Client. Although Zoom aggressively works to get you to download and install their software for…
Continue reading on Medium »
Avoid Zoom’s Web Client — Alternatives
https://cdn-images-1.medium.com/max/981/1*PVvzvqzQ9mS_bwPx7ThlAw.png
Keep yourself safe and don’t install Zoom’s Client. Although Zoom aggressively works to get you to download and install their software for…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
PoC: The easiest 125 Euro’s I Ever made
https://cdn-images-1.medium.com/max/2600/0*LdmFMvhQfAptefH3
Hello amazing hackers ❤ I hope you are all doing well! Today i’d like to talk to you all about the easiest money i ever made. You will see…
Continue reading on Medium »
PoC: The easiest 125 Euro’s I Ever made
https://cdn-images-1.medium.com/max/2600/0*LdmFMvhQfAptefH3
Hello amazing hackers ❤ I hope you are all doing well! Today i’d like to talk to you all about the easiest money i ever made. You will see…
Continue reading on Medium »
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium » (https://surajdubey915.medium.com/html-injection-via-email-970e4f5c48cb?source=rss------bug_bounty-5)
hacking: security in practice
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through some sort of a cyber attack either on or off the ship?
submitted by /u/nmscientist
[link] [comments]
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through some sort of a cyber attack either on or off the ship?
submitted by /u/nmscientist
[link] [comments]
reddit
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Potential Security Breach At Streaming Website Shudder: What Do I Do, How Do I Report This?
Also posted this in r/Streaming:
Twice I have tried logging into my shudder account on Firefox and was randomly logged into random peoples accounts. This only happened in Firefox. I had a friend do the same thing on his computer (he does not have a shudder account and lives in another state so obviously different internet network). It did not work on Chrome but he was able to simple access content on some random person's account on Shudder having never visited the website today. I do not know where or how to report such a security breach.
Accounts Unintentionally Accessed
submitted by /u/30ChefCurry
[link] [comments]
Potential Security Breach At Streaming Website Shudder: What Do I Do, How Do I Report This?
Also posted this in r/Streaming:
Twice I have tried logging into my shudder account on Firefox and was randomly logged into random peoples accounts. This only happened in Firefox. I had a friend do the same thing on his computer (he does not have a shudder account and lives in another state so obviously different internet network). It did not work on Chrome but he was able to simple access content on some random person's account on Shudder having never visited the website today. I do not know where or how to report such a security breach.
Accounts Unintentionally Accessed
submitted by /u/30ChefCurry
[link] [comments]
hacking: security in practice
Streaming sites blocking screen record?
So the new Justice League movie recently came out on HBO Max but it's not available to buy because it's an "exclusive". I think this is ridiculous so I decided I would just screen capture the whole movie only to find out that it knows when I'm doing this and will turn the screen black. So hypothetically, is there some way to block the site from seeing when I am screen recording?
submitted by /u/chriipping
[link] [comments]
Streaming sites blocking screen record?
So the new Justice League movie recently came out on HBO Max but it's not available to buy because it's an "exclusive". I think this is ridiculous so I decided I would just screen capture the whole movie only to find out that it knows when I'm doing this and will turn the screen black. So hypothetically, is there some way to block the site from seeing when I am screen recording?
submitted by /u/chriipping
[link] [comments]
Reddit
Streaming sites blocking screen record? : r/hacking
2.6M subscribers in the hacking community. A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits…
How to test SSO/SAML Implementation for Web Apps?
https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/
<!-- SC_OFF -->I am currently on an assessment for a large organization. I am tasked to specifically test the authentication mechanism for several web apps which are now starting to use ADFS/SSO and SAML. However, are there actually vulnerabilities associated with this? I assume they are using existing framework to implement it? Basically, lost on how exactly to test it, as it is generating a randomly generated token in Burp as far as I can see. Can't edit anything with SAMLRaider extension. I just want to learn more about how to properly test it as don't have skillset to reverse engineer it. Any good blogs, videos, threads where I can learn to test them properly? Thanks! <!-- SC_ON --> submitted by /u/SlickTA (https://www.reddit.com/user/SlickTA)
[link] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/) [comments] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/)
https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/
<!-- SC_OFF -->I am currently on an assessment for a large organization. I am tasked to specifically test the authentication mechanism for several web apps which are now starting to use ADFS/SSO and SAML. However, are there actually vulnerabilities associated with this? I assume they are using existing framework to implement it? Basically, lost on how exactly to test it, as it is generating a randomly generated token in Burp as far as I can see. Can't edit anything with SAMLRaider extension. I just want to learn more about how to properly test it as don't have skillset to reverse engineer it. Any good blogs, videos, threads where I can learn to test them properly? Thanks! <!-- SC_ON --> submitted by /u/SlickTA (https://www.reddit.com/user/SlickTA)
[link] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/) [comments] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/)
HTML injection via email
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium »
Read more...
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium »
Read more...
Subdomain Enumeration Methodology
https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5
How i enumerate subdomains with custom scriptContinue reading on Medium » (https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5)
https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5
How i enumerate subdomains with custom scriptContinue reading on Medium » (https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5)
Subdomain Enumeration Methodology
How i enumerate subdomains with custom scriptContinue reading on Medium »
Read more...
How i enumerate subdomains with custom scriptContinue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HTML injection via email
https://cdn-images-1.medium.com/max/1024/0*i8pYLNaHoyz4lVbk.png
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…
Continue reading on Medium »
HTML injection via email
https://cdn-images-1.medium.com/max/1024/0*i8pYLNaHoyz4lVbk.png
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
[TryHackMe]- Bounty Hacker
https://cdn-images-1.medium.com/max/1219/1*IxUScBh5Cl5SLQCQsAwzBw.png
Langkah pertama lakukan enumerasi pada 10.10.130.216 dengan cara melakukan scanning pada port (Nmap) dan juga scanning directory…
Continue reading on Medium »
[TryHackMe]- Bounty Hacker
https://cdn-images-1.medium.com/max/1219/1*IxUScBh5Cl5SLQCQsAwzBw.png
Langkah pertama lakukan enumerasi pada 10.10.130.216 dengan cara melakukan scanning pada port (Nmap) dan juga scanning directory…
Continue reading on Medium »