Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Bypassing linux server authentication by exploiting osvdb-3092?

So I was given a .ova file containing a linux webserver running apache. We were supposed to retrieve a key from the server but no password was given except to use guest as user. I ran a nikto search to find vulnerabilities in the server and came across OSVDB-3092. A quick google search showed me that CVE-2006-3092 can be exploited to "bypass authentication and modify data via direct requests with modified parameters to 1) /tva/ajouter_tva.php, (2) /remises/ajouter_remise.php, (3) /pays/ajouter_pays.php, (4) /pays/modifier_pays.php, (5) /produits/ajouter_cat.php, (6) /produits/ajouter_produit.php, (7) /clients/ajouter_client.php, (8) /clients/modifier_client.php."

I'm stuck on the last part and wasn't able to find anything on google. Still pretty new to hacking so less technical replies are appreciated. Also what is a good way to document my findings?

submitted by /u/Razeratorr
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Azur3Alph4 - A PowerShell Module That Automates Red-Team Tasks For Ops On Objective

Azur3Alph4 is a PowerShell module that automates red-team tasks for ops on objective. This module situates in a post-breach (RCE achieved) position. Token extraction and many other tools will not execute successfully without starting in this position. This module should be used for further enumeration and movement in a compromised app that is part of a managed identity. Azur3Alph4 is currently in development. Modules are being worked on and updated. Most of this is still untested. Scripts are in repo for individual use and easy identification, but the .psm1 file is what will be consistently updated.Installation & Usage Import-Module Azur3Alph4 Point the $envendpoint to cmd execution passing "env" to the Azure backend. Updates - 8/10/2021 Added Get-ResourceActions.ps1 and updated Azur3Alph4.psm1 Updates - 8/5/2021 Made Azur3Alph4 modular Added Get-SubscriptionId function Why This Was Built I built this because I wanted to learn more about both PowerShell and Azure, two things I'd definitely like to get better at. To help automate and eliminate a lot of repetitive PS commands. To build off my current knowledge of Azure red teaming Function List Get-Endpoint Enumerates an Azure endpoint to verify whether or not it belongs to a managed identity Get-ManagedIdentityToken Grabs the Managed Identity Token from the endpoint using the extracted secret. Stores the value in a given variable Connect-AzAccount Takes a username and password variable and automates SecureString conversion and connects to an Azure account Get-SubscriptionId Gets the subscription ID using the REST API for Azure Get-ManagedIdentityResources Uses the subscription ID to enumerate all resources that are accessible Get-ResourceActions.ps1 Enumerates all resources available using Azure token and lists permissions of each resource directly below it Credits Big shout out to @nikhil_mitt for the CARTP course that got me started in Azure Download Azur3Alph4
Read more...

___________________________
@hacking_Attack
@Hacking_Video
Azur3Alph4 is a PowerShell (https://www.kitploit.com/search/label/PowerShell) module that automates red-team (https://www.kitploit.com/search/label/Red-Team) tasks for ops on objective. This module situates in a post-breach (RCE achieved) position. Token extraction and many other tools will not execute successfully without starting in this position. This module should be used for further enumeration (https://www.kitploit.com/search/label/Enumeration) and movement in a compromised app that is part of a managed identity.
Azur3Alph4 is currently in development. Modules are being worked on and updated. Most of this is still untested. Scripts are in repo for individual use and easy identification, but the .psm1 file is what will be consistently updated.
Installation & Usage
Import-Module Azur3Alph4 Point the $envendpoint to cmd execution passing "env" to the Azure backend.
Updates - 8/10/2021
Added Get-ResourceActions.ps1 and updated Azur3Alph4.psm1
Updates - 8/5/2021
Made Azur3Alph4 modular Added Get-SubscriptionId function
Why This Was Built
I built this because I wanted to learn more about both PowerShell and Azure, two things I'd definitely like to get better at. To help automate and eliminate a lot of repetitive PS commands. To build off my current knowledge of Azure red teaming
Function List

Get-Endpoint
Enumerates an Azure endpoint to verify whether or not it belongs to a managed identity
Get-ManagedIdentityToken
Grabs the Managed Identity Token from the endpoint using the extracted secret. Stores the value in a given variable
Connect-AzAccount
Takes a username (https://www.kitploit.com/search/label/Username) and password variable and automates SecureString conversion and connects to an Azure account
Get-SubscriptionId
Gets the subscription ID using the REST API (https://www.kitploit.com/search/label/REST%20API) for Azure
Get-ManagedIdentityResources
Uses the subscription ID to enumerate all resources that are accessible
Get-ResourceActions.ps1
Enumerates all resources available using Azure token and lists permissions of each resource directly below it
Credits
Big shout out to @nikhil_mitt for the CARTP course that got me started in Azure

Download Azur3Alph4 (https://github.com/hyd3sec/Azur3Alph4)

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Azur3Alph4 - A PowerShell Module That Automates Red-Team Tasks For Ops On Objective

http://1.bp.blogspot.com/-KaBlz1S53R0/YV0MNS8s4iI/AAAAAAAAvrg/84gd6Oy14x8aySddb3xL8NmBqaqS_WNDACK4BGAYYCw/w640-h162/Azur3Alph4_1_azur3alph4-716871.png

Azur3Alph4 is a PowerShell module that automates red-team tasks for ops on objective. This module situates in a post-breach (RCE achieved) position. Token extraction and many other tools will not execute successfully without starting in this position. This module should be used for further enumeration and movement in a compromised app that is part of a managed identity.
Azur3Alph4 is currently in development. Modules are being worked on and updated. Most of this is still untested.

Scripts are in repo for individual use and easy identification, but the .psm1 file is what will be consistently updated.
Installation & Usage

Import-Module Azur3Alph4

Point the $envendpoint to cmd execution passing "env" to the Azure backend.

Updates - 8/10/2021

* Added Get-ResourceActions.ps1 and updated Azur3Alph4.psm1

Updates - 8/5/2021

* Made Azur3Alph4 modular
* Added Get-SubscriptionId function

Why This Was Built

* I built this because I wanted to learn more about both PowerShell and Azure, two things I'd definitely like to get better at.
* To help automate and eliminate a lot of repetitive PS commands.
* To build off my current knowledge of Azure red teaming

Function List

Get-Endpoint

Enumerates an Azure endpoint to verify whether or not it belongs to a managed identity

Get-ManagedIdentityToken

Grabs the Managed Identity Token from the endpoint using the extracted secret. Stores the value in a given variable

Connect-AzAccount

Takes a username and password variable and automates SecureString conversion and connects to an Azure account

Get-SubscriptionId

Gets the subscription ID using the REST API for Azure

Get-ManagedIdentityResources

Uses the subscription ID to enumerate all resources that are accessible

Get-ResourceActions.ps1

Enumerates all resources available using Azure token and lists permissions of each resource directly below it

Credits

* Big shout out to @nikhil_mitt for the CARTP course that got me started in Azure
Download Azur3Alph4

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
Handling Threat Intelligence Across Billions of Data Points

Graph databases can play a role in threat intelligence and unraveling sprawling data.
Dark Reading: Attacks/Breaches
7 Smart Ways a Security Team Can Win Stakeholder Trust

By demonstrating the following behaviors, security teams can more effectively move their initiatives forward.
Dark Reading: Attacks/Breaches
Wiz Reaches $6B Valuation

Startup created by former leaders of Microsoft Cloud Security Group experiencing rapid growth.

___________________________
@hacking_Attack
@Hacking_Video