hacking: security in practice
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through some sort of a cyber attack either on or off the ship?
submitted by /u/nmscientist
[link] [comments]
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through some sort of a cyber attack either on or off the ship?
submitted by /u/nmscientist
[link] [comments]
reddit
Could the Ever Given been hacked?
I read that the cargo ship was a bit newer, and had suffered “a blackout”? Does this mean that the controls might have been comprised through...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Potential Security Breach At Streaming Website Shudder: What Do I Do, How Do I Report This?
Also posted this in r/Streaming:
Twice I have tried logging into my shudder account on Firefox and was randomly logged into random peoples accounts. This only happened in Firefox. I had a friend do the same thing on his computer (he does not have a shudder account and lives in another state so obviously different internet network). It did not work on Chrome but he was able to simple access content on some random person's account on Shudder having never visited the website today. I do not know where or how to report such a security breach.
Accounts Unintentionally Accessed
submitted by /u/30ChefCurry
[link] [comments]
Potential Security Breach At Streaming Website Shudder: What Do I Do, How Do I Report This?
Also posted this in r/Streaming:
Twice I have tried logging into my shudder account on Firefox and was randomly logged into random peoples accounts. This only happened in Firefox. I had a friend do the same thing on his computer (he does not have a shudder account and lives in another state so obviously different internet network). It did not work on Chrome but he was able to simple access content on some random person's account on Shudder having never visited the website today. I do not know where or how to report such a security breach.
Accounts Unintentionally Accessed
submitted by /u/30ChefCurry
[link] [comments]
hacking: security in practice
Streaming sites blocking screen record?
So the new Justice League movie recently came out on HBO Max but it's not available to buy because it's an "exclusive". I think this is ridiculous so I decided I would just screen capture the whole movie only to find out that it knows when I'm doing this and will turn the screen black. So hypothetically, is there some way to block the site from seeing when I am screen recording?
submitted by /u/chriipping
[link] [comments]
Streaming sites blocking screen record?
So the new Justice League movie recently came out on HBO Max but it's not available to buy because it's an "exclusive". I think this is ridiculous so I decided I would just screen capture the whole movie only to find out that it knows when I'm doing this and will turn the screen black. So hypothetically, is there some way to block the site from seeing when I am screen recording?
submitted by /u/chriipping
[link] [comments]
Reddit
Streaming sites blocking screen record? : r/hacking
2.6M subscribers in the hacking community. A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits…
How to test SSO/SAML Implementation for Web Apps?
https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/
<!-- SC_OFF -->I am currently on an assessment for a large organization. I am tasked to specifically test the authentication mechanism for several web apps which are now starting to use ADFS/SSO and SAML. However, are there actually vulnerabilities associated with this? I assume they are using existing framework to implement it? Basically, lost on how exactly to test it, as it is generating a randomly generated token in Burp as far as I can see. Can't edit anything with SAMLRaider extension. I just want to learn more about how to properly test it as don't have skillset to reverse engineer it. Any good blogs, videos, threads where I can learn to test them properly? Thanks! <!-- SC_ON --> submitted by /u/SlickTA (https://www.reddit.com/user/SlickTA)
[link] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/) [comments] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/)
https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/
<!-- SC_OFF -->I am currently on an assessment for a large organization. I am tasked to specifically test the authentication mechanism for several web apps which are now starting to use ADFS/SSO and SAML. However, are there actually vulnerabilities associated with this? I assume they are using existing framework to implement it? Basically, lost on how exactly to test it, as it is generating a randomly generated token in Burp as far as I can see. Can't edit anything with SAMLRaider extension. I just want to learn more about how to properly test it as don't have skillset to reverse engineer it. Any good blogs, videos, threads where I can learn to test them properly? Thanks! <!-- SC_ON --> submitted by /u/SlickTA (https://www.reddit.com/user/SlickTA)
[link] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/) [comments] (https://www.reddit.com/r/Pentesting/comments/mcpn4c/how_to_test_ssosaml_implementation_for_web_apps/)
HTML injection via email
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium »
Read more...
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…Continue reading on Medium »
Read more...
Subdomain Enumeration Methodology
https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5
How i enumerate subdomains with custom scriptContinue reading on Medium » (https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5)
https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5
How i enumerate subdomains with custom scriptContinue reading on Medium » (https://thetowsif.medium.com/subdomain-enumeration-methodology-e1a23a78c37a?source=rss------bug_bounty-5)
Subdomain Enumeration Methodology
How i enumerate subdomains with custom scriptContinue reading on Medium »
Read more...
How i enumerate subdomains with custom scriptContinue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HTML injection via email
https://cdn-images-1.medium.com/max/1024/0*i8pYLNaHoyz4lVbk.png
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…
Continue reading on Medium »
HTML injection via email
https://cdn-images-1.medium.com/max/1024/0*i8pYLNaHoyz4lVbk.png
Hi everyone, I am suraj . Hope you are doing well in this carona pandemic. so here i will be demonstrating how i was able to perform html…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
[TryHackMe]- Bounty Hacker
https://cdn-images-1.medium.com/max/1219/1*IxUScBh5Cl5SLQCQsAwzBw.png
Langkah pertama lakukan enumerasi pada 10.10.130.216 dengan cara melakukan scanning pada port (Nmap) dan juga scanning directory…
Continue reading on Medium »
[TryHackMe]- Bounty Hacker
https://cdn-images-1.medium.com/max/1219/1*IxUScBh5Cl5SLQCQsAwzBw.png
Langkah pertama lakukan enumerasi pada 10.10.130.216 dengan cara melakukan scanning pada port (Nmap) dan juga scanning directory…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
История жизни и смерти хакера, взломавшего пентагон и NASA в 15 лет
https://cdn-images-1.medium.com/max/1052/1*mhOy3CmqObQXDzK2X4td6w.png
Как правило, хакеры стараются вести скрытный образ жизни и соблюдать анонимность. Многим это удается, но некоторые из них обретают…
Continue reading on Medium »
История жизни и смерти хакера, взломавшего пентагон и NASA в 15 лет
https://cdn-images-1.medium.com/max/1052/1*mhOy3CmqObQXDzK2X4td6w.png
Как правило, хакеры стараются вести скрытный образ жизни и соблюдать анонимность. Многим это удается, но некоторые из них обретают…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Subdomain Enumeration Methodology
How i enumerate subdomains with custom script
Continue reading on Medium »
Subdomain Enumeration Methodology
How i enumerate subdomains with custom script
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Deep Web
Block DX as a Crypto Currency Provider for TOR Transactions?
first time user. is it good to use a decentralized bitcoin exchange to transact on deep web? does this track my identity? I'm doubtly to use coinbase on transacting because they use KYC.
https://blockdx.com/
submitted by /u/St3gm4
[link] [comments]
Block DX as a Crypto Currency Provider for TOR Transactions?
first time user. is it good to use a decentralized bitcoin exchange to transact on deep web? does this track my identity? I'm doubtly to use coinbase on transacting because they use KYC.
https://blockdx.com/
submitted by /u/St3gm4
[link] [comments]
hacking: security in practice
A missing/runaway child
Hi all,
Someone recently posted about a missing and runaway child. Is it possible to somehow track and find their location through social media, etc.? Also if this is not the right place, could someone direct to me correct subreddit? Thank you.
d
submitted by /u/diamondplatter
[link] [comments]
A missing/runaway child
Hi all,
Someone recently posted about a missing and runaway child. Is it possible to somehow track and find their location through social media, etc.? Also if this is not the right place, could someone direct to me correct subreddit? Thank you.
d
submitted by /u/diamondplatter
[link] [comments]
reddit
A missing/runaway child
Hi all, Someone recently posted about a missing and runaway child. Is it possible to somehow track and find their location through social media,...