Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Bug Bounty Hunting — A Beginners Perspective
To anyone reading this, welcome! I’m writing this blog as a way for me to express my experiences in learning to be a bug bounty hunter and…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Bug Bounty Hunting — A Beginners Perspective
To anyone reading this, welcome! I’m writing this blog as a way for me to express my experiences in learning to be a bug bounty hunter and…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Bug Bounty Hunting — A Beginners Perspective
To anyone reading this, welcome! I’m writing this blog as a way for me to express my experiences in learning to be a bug bounty hunter and…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
New malware steals Steam, Epic Games Store, and EA Origin accounts
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png New malware steals Steam, Epic Games Store, and EA Origin accountsPost Views: 146
Reading Time: 1 Minute
A new malware sold on dark web forums is being used by threat actors to steal accounts for multiple gaming platforms, including Steam, Epic Games Store, and EA Origin.
Kaspersky security researchers who spotted the new trojan in March dubbed it BloodyStealer and found that it’s capable of collecting and stealing a wide range of sensitive information, including cookies, passwords, bank cards, as well as sessions from various applications.
This malware explicitly targets gaming platforms, like Steam, Epic Games, EA Origin, GOG Galaxy, and more, as it can harvest accounts for its operators, which later sell them in underground markets.
“While BloodyStealer is not made exclusively for stealing game-related information, the platforms it can target clearly point to the demand for this type of data among cybercriminals,” Kaspersky said.
“Logs, accounts and in-game goods are some of the game-related products sold on the darknet in bulk or individually for an attractive price.”
See Also: Complete Offensive Security and Ethical Hacking Course
The information stealer is sold through private channels to VIP members of underground forums under a subscription model for roughly $10 per month or $40 for a lifetime “license.”
https://www.bleepstatic.com/images/news/u/1109292/2021/BloodyStealer%20dark%20web%20ad.png
Used to attack gamers worldwideSince its discovery, Kaspersky has detected BloodyStealer being used in attacks targeting victims from Europe, Latin America, and the Asia-Pacific region.
“BloodyStealer is a prime example of an advanced tool used by cybercriminals to penetrate the gaming market. With its efficient anti-detection techniques and attractive pricing, it is sure to be seen in combination with other malware families soon,” Kaspersky researchers added.
“Furthermore, with its interesting capabilities, such as extraction of browser passwords, cookies, and environment information as well as grabbing information related to online gaming platforms, BloodyStealer provides value in terms of data that can be stolen from gamers and later sold on the darknet.”
You can find further info on BloodyStealer’s anti-analysis and data exfiltration capabilities in Kaspersky’s report.
See Also: Offensive Security Tool: Discover
While Kaspersky did not share info on the attack vectors used to deliver this malware, gamers are usually targeted by threat actors with malware-laced modding-related and game cheat tools if they are willing to cheat their way to victory or want to further mod their games.
Game cheats are a well-documented source of malware infections and have been used to infect unethical gamers with cryptocurrency [...]
___________________________
@hacking_Attack
@Hacking_Video
New malware steals Steam, Epic Games Store, and EA Origin accounts
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png New malware steals Steam, Epic Games Store, and EA Origin accountsPost Views: 146
Reading Time: 1 Minute
A new malware sold on dark web forums is being used by threat actors to steal accounts for multiple gaming platforms, including Steam, Epic Games Store, and EA Origin.
Kaspersky security researchers who spotted the new trojan in March dubbed it BloodyStealer and found that it’s capable of collecting and stealing a wide range of sensitive information, including cookies, passwords, bank cards, as well as sessions from various applications.
This malware explicitly targets gaming platforms, like Steam, Epic Games, EA Origin, GOG Galaxy, and more, as it can harvest accounts for its operators, which later sell them in underground markets.
“While BloodyStealer is not made exclusively for stealing game-related information, the platforms it can target clearly point to the demand for this type of data among cybercriminals,” Kaspersky said.
“Logs, accounts and in-game goods are some of the game-related products sold on the darknet in bulk or individually for an attractive price.”
See Also: Complete Offensive Security and Ethical Hacking Course
The information stealer is sold through private channels to VIP members of underground forums under a subscription model for roughly $10 per month or $40 for a lifetime “license.”
https://www.bleepstatic.com/images/news/u/1109292/2021/BloodyStealer%20dark%20web%20ad.png
Used to attack gamers worldwideSince its discovery, Kaspersky has detected BloodyStealer being used in attacks targeting victims from Europe, Latin America, and the Asia-Pacific region.
“BloodyStealer is a prime example of an advanced tool used by cybercriminals to penetrate the gaming market. With its efficient anti-detection techniques and attractive pricing, it is sure to be seen in combination with other malware families soon,” Kaspersky researchers added.
“Furthermore, with its interesting capabilities, such as extraction of browser passwords, cookies, and environment information as well as grabbing information related to online gaming platforms, BloodyStealer provides value in terms of data that can be stolen from gamers and later sold on the darknet.”
You can find further info on BloodyStealer’s anti-analysis and data exfiltration capabilities in Kaspersky’s report.
See Also: Offensive Security Tool: Discover
While Kaspersky did not share info on the attack vectors used to deliver this malware, gamers are usually targeted by threat actors with malware-laced modding-related and game cheat tools if they are willing to cheat their way to victory or want to further mod their games.
Game cheats are a well-documented source of malware infections and have been used to infect unethical gamers with cryptocurrency [...]
___________________________
@hacking_Attack
@Hacking_Video
Black Hat Ethical Hacking
New malware steals Steam, Epic Games Store, and EA Origin accounts | Black Hat Ethical Hacking
A new malware sold on dark web forums is being used by threat actors to steal accounts for multiple gaming platforms, including Steam, Epic Games Store, and EA Origin.
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking New malware steals Steam, Epic Games Store, and EA Origin accounts https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png New malware steals Steam, Epic Games Store, and EA Origin accountsPost Views:…
miners, remote access trojans, and other malware strains for years.
Source: www.bleepingcomputer.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/VMware-90x90.jpg Hackers exploiting critical VMware vCenter CVE-2021-22005 bug1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/malware-800x449-1-90x90.jpg Malware devs trick Windows validation with malformed certs4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-1-1-90x90.jpg Unpatched Apple Zero-Day in macOS Finder Allows Code Execution5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-1-90x90.jpg New macOS zero-day bug lets attackers run commands remotely6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Windows-attack-90x90.jpg Hacked sites push TeamViewer using fake expired certificate alert1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/hackers-waging-living-off-land-attacks-on-azure-showcase_image-7-a-16158-90x90.jpg Azure Zero-Day Flaws Highlight Lurking Supply-Chain Risk1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Anonymous-90x90.png Anonymous leaks gigabytes of data from alt-right web host Epik2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-90x90.jpg New malware uses Windows Subsystem for Linux for stealthy attacks2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Google-Chrome-Browser-90x90.jpg Pair of Google Chrome Zero-Day Bugs Actively Exploited2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/banner-2021.3-release-90x90.jpg Kali Linux 2021.3 released: Kali NetHunter on a smartwatch, wider OpenSSL compatibility, new tools2 weeks ago
The post New malware steals Steam, Epic Games Store, and EA Origin accounts first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Source: www.bleepingcomputer.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/VMware-90x90.jpg Hackers exploiting critical VMware vCenter CVE-2021-22005 bug1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/malware-800x449-1-90x90.jpg Malware devs trick Windows validation with malformed certs4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-1-1-90x90.jpg Unpatched Apple Zero-Day in macOS Finder Allows Code Execution5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-1-90x90.jpg New macOS zero-day bug lets attackers run commands remotely6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Windows-attack-90x90.jpg Hacked sites push TeamViewer using fake expired certificate alert1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/hackers-waging-living-off-land-attacks-on-azure-showcase_image-7-a-16158-90x90.jpg Azure Zero-Day Flaws Highlight Lurking Supply-Chain Risk1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Anonymous-90x90.png Anonymous leaks gigabytes of data from alt-right web host Epik2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/ezgif.com-gif-maker-90x90.jpg New malware uses Windows Subsystem for Linux for stealthy attacks2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/Google-Chrome-Browser-90x90.jpg Pair of Google Chrome Zero-Day Bugs Actively Exploited2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/banner-2021.3-release-90x90.jpg Kali Linux 2021.3 released: Kali NetHunter on a smartwatch, wider OpenSSL compatibility, new tools2 weeks ago
The post New malware steals Steam, Epic Games Store, and EA Origin accounts first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
2 months into my Bug Bounty learning journey..
And I’m starting this blog as a way to document my learning and to *hopefully* help solidify some fundamentals. So in this particular…Continue reading on Medium »
Read more...
And I’m starting this blog as a way to document my learning and to *hopefully* help solidify some fundamentals. So in this particular…Continue reading on Medium »
Read more...
Bug Bounty Hunting — A Beginners Perspective
To anyone reading this, welcome! I’m writing this blog as a way for me to express my experiences in learning to be a bug bounty hunter and…Continue reading on Medium »
Read more...
To anyone reading this, welcome! I’m writing this blog as a way for me to express my experiences in learning to be a bug bounty hunter and…Continue reading on Medium »
Read more...
KitPloit - PenTest Tools!
SharpSpray - Active Directory Password Spraying Tool. Auto Fetches User List And Avoids Potential Lockouts
___________________________
@hacking_Attack
@Hacking_Video
SharpSpray - Active Directory Password Spraying Tool. Auto Fetches User List And Avoids Potential Lockouts
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
SharpSpray - Active Directory Password Spraying Tool. Auto Fetches User List And Avoids Potential Lockouts
Last Minute Revision for Cyber Security Interview !!!
https://parshwa-fabaf.medium.com/last-minute-revision-for-cyber-security-interview-4d3c835cddf7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://parshwa-fabaf.medium.com/last-minute-revision-for-cyber-security-interview-4d3c835cddf7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Last Minute Revision for Cyber Security Interview !!!
Hello Magnificent Readers ,
Hello Magnificent Readers ,Continue reading on Medium » (https://parshwa-fabaf.medium.com/last-minute-revision-for-cyber-security-interview-4d3c835cddf7?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Last Minute Revision for Cyber Security Interview !!!
Hello Magnificent Readers ,
My biggest dream — Ethical Hacking
https://medium.com/@legendarybroly127/my-biggest-dream-ethical-hacking-ff6ed8c65149?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@legendarybroly127/my-biggest-dream-ethical-hacking-ff6ed8c65149?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
My biggest dream — Ethical Hacking
When technologies started to come in our house I was a kid. These technologies include mobile, laptop and computer. The main focus was to…
When technologies started to come in our house I was a kid. These technologies include mobile, laptop and computer. The main focus was to…Continue reading on Medium » (https://medium.com/@legendarybroly127/my-biggest-dream-ethical-hacking-ff6ed8c65149?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
My biggest dream — Ethical Hacking
When technologies started to come in our house I was a kid. These technologies include mobile, laptop and computer. The main focus was to…
Why You Should Never Test Exploits on Mainnet or Public Testnets
https://medium.com/immunefi/why-you-should-never-test-exploits-on-mainnet-or-public-testnets-7e904a2cbf05?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/immunefi/why-you-should-never-test-exploits-on-mainnet-or-public-testnets-7e904a2cbf05?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Why You Should Never Test Exploits on Mainnet or Public Testnets
Not everyone who moves from the Web2 security world into the Web3 space is aware of the most important, fundamental rule about blockchain…
Not everyone who moves from the Web2 security world into the Web3 space is aware of the most important, fundamental rule about blockchain…Continue reading on Immunefi » (https://medium.com/immunefi/why-you-should-never-test-exploits-on-mainnet-or-public-testnets-7e904a2cbf05?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Why You Should Never Test Exploits on Mainnet or Public Testnets
Not everyone who moves from the Web2 security world into the Web3 space is aware of the most important, fundamental rule about blockchain…
SharpSpray - Active Directory Password Spraying Tool. Auto Fetches User List And Avoids Potential Lockouts
http://www.kitploit.com/2021/09/sharpspray-active-directory-password.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2021/09/sharpspray-active-directory-password.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
SharpSpray - Active Directory Password Spraying Tool. Auto Fetches User List And Avoids Potential Lockouts
SharpSpray is a Windows domain password spraying tool written in .NET C#.
Introduction
SharpSpray is a C# port of DomainPasswordSpray (https://github.com/dafthack/DomainPasswordSpray) with enhanced and extra capabilities. This tool uses LDAP Protocol to communicate with the Domain active directory services.
Features
Can operate from inside and outside a domain context. Exclude domain disabled accounts from the spraying. Auto gathers domain users from the Active directory. Avoid potential lockouts by excluding accounts within one attempt of locking out. Avoid potential lockouts by auto-gathering domain lockout observation window settings. Compatible with Domain Fine-Grained Password policies. Custom LDAP filter for users, e.g. (description=admin) Delay in seconds between each authentication (https://www.kitploit.com/search/label/Authentication) attempt. Jitter between each authentication attempt. Support a single password or a list of passwords. Single file Console (https://www.kitploit.com/search/label/Console) Application.
Usage
Command Line Args
SharpSpray.exe --help -v, --Verbose Show verbose messages. -u (Optional) Username list file path. This will be automatically fetched from the active directory if not specified. -p A single password that will be used to perform the password spray. -k, --pl (Optional) Password List file path. -d (Optional) Specify a domain name. -m Use this option if spraying from a host located outside the Domain context. -q, --dc-ip Required when the option 'm' OutsideDomain is checked -x Attempts to exclude disabled accounts from the user list (Not supported with the option -m) -z Exclude accounts within 1 attempt of locking out (Not supported with the option -m) -f Custom LDAP filter for users, e.g. "(description=*admin*)" -o A file to output the results to. -w Do not relay on domain lockout observation window settings and use this specific value. (Default 32 minute) -s (Optional) Delay in seconds between each authentication attempt. -j (Optional) Jitter in seconds. --Force Force start without asking for confirmation. --get-users-list Get the domain users list from the active directory. --show-examples Get domain users list from the active directory. --show-args Show command line (https://www.kitploit.com/search/label/Command%20Line) args --help Display this help screen. ">> SharpSpray.exe --help
-v, --Verbose Show verbose messages.
-u (Optional) Username list file path. This will be
automatically fetched from the active directory if not specified.
-p A single password that will be used to perform the password spray.
-k, --pl (Optional) Password List file path.
-d (Optional) Specify a domain name.
-m Use this option if spraying from a host located outside the Domain context.
-q, --dc-ip Required when the option 'm' OutsideDomain is checked
-x Attempts to exclude disabled accounts
from the user list (Not supported with the option -m)
-z Exclude accounts within 1 attempt of
locking out (Not supported with the option -m)
-f Custom LDAP filter for users, e .g. "(description=*admin*)"
-o A file to output the results to.
-w Do not relay on domain lockout observation window settings and use this specific value. (Default 32 minute)
-s (Optional) Delay in seconds between each authentication attempt.
___________________________
@hacking_Attack
@Hacking_Video
Introduction
SharpSpray is a C# port of DomainPasswordSpray (https://github.com/dafthack/DomainPasswordSpray) with enhanced and extra capabilities. This tool uses LDAP Protocol to communicate with the Domain active directory services.
Features
Can operate from inside and outside a domain context. Exclude domain disabled accounts from the spraying. Auto gathers domain users from the Active directory. Avoid potential lockouts by excluding accounts within one attempt of locking out. Avoid potential lockouts by auto-gathering domain lockout observation window settings. Compatible with Domain Fine-Grained Password policies. Custom LDAP filter for users, e.g. (description=admin) Delay in seconds between each authentication (https://www.kitploit.com/search/label/Authentication) attempt. Jitter between each authentication attempt. Support a single password or a list of passwords. Single file Console (https://www.kitploit.com/search/label/Console) Application.
Usage
Command Line Args
SharpSpray.exe --help -v, --Verbose Show verbose messages. -u (Optional) Username list file path. This will be automatically fetched from the active directory if not specified. -p A single password that will be used to perform the password spray. -k, --pl (Optional) Password List file path. -d (Optional) Specify a domain name. -m Use this option if spraying from a host located outside the Domain context. -q, --dc-ip Required when the option 'm' OutsideDomain is checked -x Attempts to exclude disabled accounts from the user list (Not supported with the option -m) -z Exclude accounts within 1 attempt of locking out (Not supported with the option -m) -f Custom LDAP filter for users, e.g. "(description=*admin*)" -o A file to output the results to. -w Do not relay on domain lockout observation window settings and use this specific value. (Default 32 minute) -s (Optional) Delay in seconds between each authentication attempt. -j (Optional) Jitter in seconds. --Force Force start without asking for confirmation. --get-users-list Get the domain users list from the active directory. --show-examples Get domain users list from the active directory. --show-args Show command line (https://www.kitploit.com/search/label/Command%20Line) args --help Display this help screen. ">> SharpSpray.exe --help
-v, --Verbose Show verbose messages.
-u (Optional) Username list file path. This will be
automatically fetched from the active directory if not specified.
-p A single password that will be used to perform the password spray.
-k, --pl (Optional) Password List file path.
-d (Optional) Specify a domain name.
-m Use this option if spraying from a host located outside the Domain context.
-q, --dc-ip Required when the option 'm' OutsideDomain is checked
-x Attempts to exclude disabled accounts
from the user list (Not supported with the option -m)
-z Exclude accounts within 1 attempt of
locking out (Not supported with the option -m)
-f Custom LDAP filter for users, e .g. "(description=*admin*)"
-o A file to output the results to.
-w Do not relay on domain lockout observation window settings and use this specific value. (Default 32 minute)
-s (Optional) Delay in seconds between each authentication attempt.
___________________________
@hacking_Attack
@Hacking_Video
GitHub
GitHub - dafthack/DomainPasswordSpray: DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against…
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR...