Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Social Engineering or Hacking?

So here's a wild story. My girlfriend and I share a tinder account trying to find people for 3somes and stuff like that. She turned on guys and was quickly met with a guy acting like a hard ass. He said "So what happens if I screenshot this convo and post it online for everyone to see?" I immediately called him out on his bluff and told him he was pathetic, etc. We unmatched and reported and moved on with our lives. Maybe a half an hour later he ended up finding me on Facebook and sent me a friend request. I immediately blocked him. For reference, I was the one sending the last few messages, but the account is under my girlfriend's name and pictures with no reference to me at all. Furthermore her Instagram is private (profile pic is of us though), and her Twitter contains no reference to me. My question: How did he find my Facebook, when he had no reference to my name, doesn't really know what I look like, etc? Is this just some no-life with a plethora of time on his hands and was bored enough to sift around the internet until he found me? Or is there something bigger at stake? Perhaps he got my number and found my Facebook that way? I somewhat doubt he has my number because he hasn't texted, called, etc. However it would of course be trouble if he did somehow obtain that. One important note is that he lives in the area and allegedly goes to the same university that I just graduated from. I don't recognize him though and I'm sure he doesn't recognize me (no mutual friends in the request either).

submitted by /u/expodavid
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Dear proffessional hackers <3

oday was a terrible day, I seemed to have sprained my ankle, and my phone got stolen. I went to the address, after tracking down my phone, and confronted them. They, however, claimed they dont have it, despite the tracking location being there. Another thing, "let me go check" (his response after I told him that my phone was here), sus, i know. I left and went back home in tears, called the police and they did not show. Very shitty day and I wanted to have even a little sense of justice due. So my purpose here is to hopefully get him trolled, immensely. I currently have a potentially sprained ankle, emotional damage, and no phone. Let me know if you guys are willing to try and see what you can do. All I know is where they live, what could I do?

submitted by /u/rotten-kimchii
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Facebook account takeover due to unsafe redirects after the OAuth flow

DescriptionContinue reading on Medium »
Read more...
Dark Reading: Attacks/Breaches
In Cyberwar, Attribution Can Be Impossible — and That's OK

Instead of using a substantial proportion of resources to determine attribution, organizations should focus on defenses that will help them remediate an attack.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
REvil ransomware shuts down again after Tor sites were hijacked

https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png REvil ransomware shuts down again after Tor sites were hijackedPost Views: 120
Reading Time: 1 Minute
The REvil ransomware operation has likely shut down once again after an unknown person hijacked their Tor payment portal and data leak blog.
The Tor sites went offline earlier today, with a threat actor affiliated with the REvil operation posting to the XSS hacking forum that someone hijacked the gang’s domains.

The thread was first discovered by Recorded Future’s Dmitry Smilyanets, and states that an unknown person hijacked the Tor hidden services (onion domains) with the same private keys as REvil’s Tor sites and likely has backups of the sites.

“But since we have today at 17.10 from 12:00 Moscow time, someone brought up the hidden-services of a landing and a blog with the same keys as ours, my fears were confirmed. The third party has backups with onion service keys,” a threat actor known as ‘0_neday’ posted to the hacking forum.

The threat actor went on to say that they found no signs of compromise to their servers but will be shutting down the operation.
See Also: Complete Offensive Security and Ethical Hacking Course
The threat actor then told affiliates to contact him for campaign decryption keys via Tox, likely so affiliates could continue extorting their victims and provide a decryptor if a ransom is paid.
https://www.bleepstatic.com/images/news/ransomware/r/revil/tor-servers-hijack/forum-post-1.jpg
REvil likely shut down for goodAfter REvil conducted a massive attack on companies through a zero-day vulnerability in the Kaseya MSP platform, the REvil operation suddenly shut down, and their public-facing representative, Unknown, disappeared.

After Unknown did not return, the rest of the REvil operators launched the operation and websites again in September using backups.

Since then, the ransomware operation has been struggling to recruit users, going as far as to increase affiliate’s commissions to 90% to entice other threat actors to work with them.

With this latest mishap, the operation in its current forum will likely be gone for good.

However, no good thing lasts forever when it comes to ransomware, and we will like[...]

___________________________
@hacking_Attack
@Hacking_Video