👏We are glad to announce that Kinglive’s Bug Bounty campaign has successfully ended and found no major bugs with all functions. It proves…Continue reading on Kingdom Game 4.0 » (https://medium.com/kingdom-game-4-0/-5fa603b6b36b?source=rss------bug_bounty-5)
: ’ …
👏We are glad to announce that Kinglive’s Bug Bounty campaign has successfully ended and found no major bugs with all functions. It proves…Continue reading on Kingdom Game 4.0 »
Read more...
👏We are glad to announce that Kinglive’s Bug Bounty campaign has successfully ended and found no major bugs with all functions. It proves…Continue reading on Kingdom Game 4.0 »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Massive campaign uses YouTube to push password-stealing malware
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Massive campaign uses YouTube to push password-stealing malwarePost Views: 142
Reading Time: 1 Minute
Widespread malware campaigns are creating YouTube videos to distribute password-stealing trojans to unsuspecting viewers.
Password stealing trojans are malware that quietly runs on a computer while stealing passwords, screenshots of active windows, cookies, credit cards stored in browsers, FTP credentials, and arbitrary files decided by the threat actors.
When installed, the malware will communicate with a Command & Control server, where it waits for commands to execute by the attacker, which could entail the running of additional malware. Malicious YouTube videos gone wildThreat actors have long used YouTube videos as a way to distribute malware through embedded links in video descriptions.
However, this week has Cluster25 security researcher Frost told BleepingComputer that there has been a significant uptick in malware campaigns on YouTube pushing various password-stealing Trojans.
Frost told BleepingComputer that it is likely two clusters of malicious activity being conducted simultaneously – one pushing the RedLine malware and the other pushing Racoon Stealer.
See Also: Complete Offensive Security and Ethical Hacking Course
The researcher said that thousands of videos and channels had been made as part of this massive malware campaign, with 100 new videos and 81 channels created in just twenty minutes.
Frost explained that the threat actors use the Google accounts they steal to launch new YouTube channels to spread malware, creating a never-ending and ever-growing cycle.
“The threat actors have thousands of new channels available because they infect new clients every day. As part of these attacks, they steal victim’s Google credentials, which are then used to create new YouTube Videos to distribute the malware,” Frost told BleepingComputer.
The attacks start with the threat actors creating numerous YouTube channels filled with videos about software cracks, licenses, how-to guides, cryptocurrency, mining, game cheats, VPN software, and pretty much any other popular category.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/youtube-profile.jpg
<figcaptionExample of a malicious YouTube channel
See Also: Apple Pay with VISA lets hackers force payments on locked iPhones
These videos contain content that explains how to perform a task using a specific program or utility. Additionally, the YouTube video’s description includes an alleged link to the associated tool used to distribute the malware.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/phasmophobia-.jpg
<figcaptionMalicious YouTube video pushing RedLine stealer
If a video contains a bit.ly link, it will lead to another file-sharing site hosting the RedLine password-stealing malware infection. However, if it includes an unshortened domain, it will redirect to a page on the taplink[.]cc domain to push Racoon Stealer, as shown below.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/racgoon-landing.jpg
<figcaptionLanding page for the Racoon Stealer Once a user becomes infected, the malware will proceed to scan all installed browsers and the computer for cryptocurrency wallets, credit cards, passwords, and other data and upload it back to the attacker.
Google told BleepingComputer that they are aware of the campaign and are taking action to disrupt the activity.
“We are aware o[...]
Massive campaign uses YouTube to push password-stealing malware
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Massive campaign uses YouTube to push password-stealing malwarePost Views: 142
Reading Time: 1 Minute
Widespread malware campaigns are creating YouTube videos to distribute password-stealing trojans to unsuspecting viewers.
Password stealing trojans are malware that quietly runs on a computer while stealing passwords, screenshots of active windows, cookies, credit cards stored in browsers, FTP credentials, and arbitrary files decided by the threat actors.
When installed, the malware will communicate with a Command & Control server, where it waits for commands to execute by the attacker, which could entail the running of additional malware. Malicious YouTube videos gone wildThreat actors have long used YouTube videos as a way to distribute malware through embedded links in video descriptions.
However, this week has Cluster25 security researcher Frost told BleepingComputer that there has been a significant uptick in malware campaigns on YouTube pushing various password-stealing Trojans.
Frost told BleepingComputer that it is likely two clusters of malicious activity being conducted simultaneously – one pushing the RedLine malware and the other pushing Racoon Stealer.
See Also: Complete Offensive Security and Ethical Hacking Course
The researcher said that thousands of videos and channels had been made as part of this massive malware campaign, with 100 new videos and 81 channels created in just twenty minutes.
Frost explained that the threat actors use the Google accounts they steal to launch new YouTube channels to spread malware, creating a never-ending and ever-growing cycle.
“The threat actors have thousands of new channels available because they infect new clients every day. As part of these attacks, they steal victim’s Google credentials, which are then used to create new YouTube Videos to distribute the malware,” Frost told BleepingComputer.
The attacks start with the threat actors creating numerous YouTube channels filled with videos about software cracks, licenses, how-to guides, cryptocurrency, mining, game cheats, VPN software, and pretty much any other popular category.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/youtube-profile.jpg
<figcaptionExample of a malicious YouTube channel
See Also: Apple Pay with VISA lets hackers force payments on locked iPhones
These videos contain content that explains how to perform a task using a specific program or utility. Additionally, the YouTube video’s description includes an alleged link to the associated tool used to distribute the malware.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/phasmophobia-.jpg
<figcaptionMalicious YouTube video pushing RedLine stealer
If a video contains a bit.ly link, it will lead to another file-sharing site hosting the RedLine password-stealing malware infection. However, if it includes an unshortened domain, it will redirect to a page on the taplink[.]cc domain to push Racoon Stealer, as shown below.
https://www.bleepstatic.com/images/news/malware/p/youtube-password-stealing-trojans/racgoon-landing.jpg
<figcaptionLanding page for the Racoon Stealer Once a user becomes infected, the malware will proceed to scan all installed browsers and the computer for cryptocurrency wallets, credit cards, passwords, and other data and upload it back to the attacker.
Google told BleepingComputer that they are aware of the campaign and are taking action to disrupt the activity.
“We are aware o[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Massive campaign uses YouTube to push password-stealing malware https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png Massive campaign uses YouTube to push password-stealing malwarePost Views:…
f this campaign and are currently taking action to block activity by this threat actor and flagging all links to Safe Browsing. As always, we are continuously improving our detection methods and investing in new tools and features that automatically identify and stop threats like this one. It is also important that users remain aware of these types of threats and take appropriate action to further protect themselves.” – Google.
Google also disclosed this week a phishing campaign that distributed password-stealing trojans used to steal the accounts of YouTube Creators. These accounts were then sold on dark web markets or used to perform cryptocurrency scams.
See Also: Offensive Security Tool: Dalfox These campaigns illustrate how important it is not to download programs from the Internet haphazardly, as sites like YouTube can not vet every link added by video publishers.
Therefore, a user should research a site before downloading and installing anything from it to determine if they have a good reputation and can be trusted. Even then, it is always suggested that you first upload the program to a site like VirusTotal to confirm if it’s safe to run.
If you have accidentally fallen for this attack and installed a program from a similar link, it is strongly suggested that you scan your computer with an antivirus program.
After you have removed any malware detected in a virus scan, you should immediately change any passwords saved in your browsers.
See Also: Hacking stories – Operation Aurora: When China hacked Google Source: www.bleepingcomputer.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif.com-gif-maker-3-90x90.jpg Google: YouTubers’ accounts hijacked with cookie-stealing malware1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif.com-gif-maker-2-90x90.jpg Acer hacked twice in a week by the same threat actor2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif-6-e5d8ed29a830-90x90.jpg Credit card PINs can be guessed even when covering the ATM pad3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/REVIL-headpic-90x90.jpg REvil ransomware shuts down again after Tor sites were hijacked4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/google-chrome-adblocker-uai-1440x900-1-90x90.jpg Malicious Chrome ad blocker injects ads behind the scenes1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/maxresdefault-90x90.jpg Brizy WordPress Plugin Exploit Chains Allow Full Site Takeovers1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/abstract_mysterysnail-90x90.jpg Microsoft Kills Bug Being Exploited in MysterySnail Espionage Campaign1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/apple-iphone-hacking-90x90.jpg Emergency Apple iOS 15.0.2 update fixes zero-day used in attacks1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/Linux-1280x720-1-90x90.jpg FontOnLake malware infects Linux systems2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/excel-header-90x90.jpg Microsoft is disabling Excel 4.0 macros by default to protect users2 weeks ago
The post Massive campaign uses YouTube to push password-stealing malware first appeared on Black Hat Ethical Hacking.
Google also disclosed this week a phishing campaign that distributed password-stealing trojans used to steal the accounts of YouTube Creators. These accounts were then sold on dark web markets or used to perform cryptocurrency scams.
See Also: Offensive Security Tool: Dalfox These campaigns illustrate how important it is not to download programs from the Internet haphazardly, as sites like YouTube can not vet every link added by video publishers.
Therefore, a user should research a site before downloading and installing anything from it to determine if they have a good reputation and can be trusted. Even then, it is always suggested that you first upload the program to a site like VirusTotal to confirm if it’s safe to run.
If you have accidentally fallen for this attack and installed a program from a similar link, it is strongly suggested that you scan your computer with an antivirus program.
After you have removed any malware detected in a virus scan, you should immediately change any passwords saved in your browsers.
See Also: Hacking stories – Operation Aurora: When China hacked Google Source: www.bleepingcomputer.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif.com-gif-maker-3-90x90.jpg Google: YouTubers’ accounts hijacked with cookie-stealing malware1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif.com-gif-maker-2-90x90.jpg Acer hacked twice in a week by the same threat actor2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/ezgif-6-e5d8ed29a830-90x90.jpg Credit card PINs can be guessed even when covering the ATM pad3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/REVIL-headpic-90x90.jpg REvil ransomware shuts down again after Tor sites were hijacked4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/google-chrome-adblocker-uai-1440x900-1-90x90.jpg Malicious Chrome ad blocker injects ads behind the scenes1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/maxresdefault-90x90.jpg Brizy WordPress Plugin Exploit Chains Allow Full Site Takeovers1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/abstract_mysterysnail-90x90.jpg Microsoft Kills Bug Being Exploited in MysterySnail Espionage Campaign1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/apple-iphone-hacking-90x90.jpg Emergency Apple iOS 15.0.2 update fixes zero-day used in attacks1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/Linux-1280x720-1-90x90.jpg FontOnLake malware infects Linux systems2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/excel-header-90x90.jpg Microsoft is disabling Excel 4.0 macros by default to protect users2 weeks ago
The post Massive campaign uses YouTube to push password-stealing malware first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Is it possible to change the IMSI of an R-SIM-13 simcard from an Andorid phone?
Hello everyone, I want to tell you about a recent problem, I bought an iphone xs max (AT&T) cell phone in the US, however, I brought it to my native country. As expected, AT&T service denied me unlocking the cell phone network.
Due to this, I was forced to buy an R-SIM-13, however, when I arrived I realized that this version of R-SIM does not work with the 14.8 or 15 version of ios, due to security changes of the device cannot change ICCID.
After so much trying I was able to change the ICCID from an andorid, however the R-SIM page also recommends changing the IMSI of the R-SIM-13 to the number 311580112345678.
So there my question arises, is it possible to change the IMSI from an andorid phone?
I appreciate any help. (sorry my bad English)
submitted by /u/TakenCOL
[link] [comments]
Is it possible to change the IMSI of an R-SIM-13 simcard from an Andorid phone?
Hello everyone, I want to tell you about a recent problem, I bought an iphone xs max (AT&T) cell phone in the US, however, I brought it to my native country. As expected, AT&T service denied me unlocking the cell phone network.
Due to this, I was forced to buy an R-SIM-13, however, when I arrived I realized that this version of R-SIM does not work with the 14.8 or 15 version of ios, due to security changes of the device cannot change ICCID.
After so much trying I was able to change the ICCID from an andorid, however the R-SIM page also recommends changing the IMSI of the R-SIM-13 to the number 311580112345678.
So there my question arises, is it possible to change the IMSI from an andorid phone?
I appreciate any help. (sorry my bad English)
submitted by /u/TakenCOL
[link] [comments]
reddit
Is it possible to change the IMSI of an R-SIM-13 simcard from an...
Hello everyone, I want to tell you about a recent problem, I bought an iphone xs max (AT&T) cell phone in the US, however, I brought it to my...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Anything All Countries Best VPN For Free Access All A VPN gives you online privacy and anonymity by…
https://cdn-images-1.medium.com/max/1640/1*lOjqkLoD9GUOciRokEcXZg.png
Internet not allowed to access Use This VPN For Access anything And Easy.
Continue reading on Medium »
Anything All Countries Best VPN For Free Access All A VPN gives you online privacy and anonymity by…
https://cdn-images-1.medium.com/max/1640/1*lOjqkLoD9GUOciRokEcXZg.png
Internet not allowed to access Use This VPN For Access anything And Easy.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
IDE - TryHackMe Writeup
https://cdn-images-1.medium.com/max/600/0*GXeh7cvJ4SjRUS9y.png
Hi all, today we will take on the IDE room in TryHackMe. It is rated Easy and the room description says: “An easy box to polish your…
Continue reading on InfoSec Write-ups »
IDE - TryHackMe Writeup
https://cdn-images-1.medium.com/max/600/0*GXeh7cvJ4SjRUS9y.png
Hi all, today we will take on the IDE room in TryHackMe. It is rated Easy and the room description says: “An easy box to polish your…
Continue reading on InfoSec Write-ups »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Randsomeware with AWS S3 ?
TLDR; publishing packages and managing application repositories is not something to take lightly. AWS S3 buckets are free to create…
Continue reading on Medium »
Randsomeware with AWS S3 ?
TLDR; publishing packages and managing application repositories is not something to take lightly. AWS S3 buckets are free to create…
Continue reading on Medium »
PortBender - TCP Port Redirection Utility
PortBender is a TCP port redirection utility that allows a red team operator to redirect inbound traffic destined for one TCP port (e.g., 445/TCP) to another TCP port (e.g., 8445/TCP). PortBender includes an aggressor script that operators can leverage to integrate the tool with Cobalt Strike. However, because the tool is implemented as a reflective DLL, it can integrate with any C2 framework supporting loading modules through a "ReflectiveLoader" interface 1. The tool also allows operators to simulate a backdoor/persistence mechanism leveraged within the "PortServ.sys" capability used by the Duqu 2.0 threat actor.DesignPortBender leverages the WinDivert library to intercept network traffic using the Windows Filtering Platform (WFP). The design of PortBender is heavily influenced by the DivertTCPConn utility which also leverages the WinDivert library 1.UsagePortBender has two modes of operation. The first is "redirector mode," and the second is "backdoor mode." In "redirector mode," any connection to a targeted destination port (e.g., 445/TCP) is redirected to an alternative port (e.g., 8445/TCP). In "backdoor mode," we only redirect traffic if an attacker sends a specially formatted TCP packet to a target port (e.g., 443/TCP). PortBender then adds that client IP address to a list of backdoor clients and redirects all traffic to that target port to an alternative port (e.g., 3389/TCP). An operator can leverage this mechanism to emulate the persistence technique used by the Duqu 2.0 threat actor when compromising Kaspersky.To execute PortBender we must first import the "PortBender.cna" script into Cobalt Strike and upload the WinDivert32.sys or WinDivert64.sys binary included in "PortBender.zip" to the target host depending on the operating system architecture. The help menu for PortBender with the example usage is shown below:beacon> help PortBenderRedirect Usage: PortBender redirect FakeDstPort RedirectedPortBackdoor Usage: PortBender backdoor FakeDstPort RedirectedPort PasswordExamples: PortBender redirect 445 8445 PortBender backdoor 443 3389 praetorian.antihackerExample UsageFor example, we may wish to execute PortBender in redirector mode to perform an SMB relay attack from a compromised Windows system. To facilitate this, we can instruct PortBender to redirect all traffic to 445/TCP to an alternative port 8445/TCP running an attacker SMB service. In this example, we run the command "PortBender redirect 445 8445" to accomplish this. The expected output is below:In this example, we want to deploy the covert persistence mechanism on a compromised Internet-facing IIS webserver. Here we run the "PortBender backdoor 443 3389 praetorian.antihacker" to instruct the backdoor service to redirect any connections to 443/TCP to 3389/TCP on the compromised host from any IP address that provides the specified "praetorian.antihacker" keyword. The expected output is shown below: AcknowledgementsArno0x0x for his work on DivertTCPConn 1Stephen Fewer for his work on Reflective DLL Injection 2Basil00 for his work on WinDivert 3Francisco Dominguez for his research into performing SMB relaying on Windows 4References1 https://github.com/Arno0x/DivertTCPconn 2 https://github.com/stephenfewer/ReflectiveDLLInjection 3 https://github.com/basil00/Divert 4 https://diablohorn.com/2018/08/25/remote-ntlm-relaying-through-meterpreter-on-windows-port-445Download PortBender
Read more...
PortBender is a TCP port redirection utility that allows a red team operator to redirect inbound traffic destined for one TCP port (e.g., 445/TCP) to another TCP port (e.g., 8445/TCP). PortBender includes an aggressor script that operators can leverage to integrate the tool with Cobalt Strike. However, because the tool is implemented as a reflective DLL, it can integrate with any C2 framework supporting loading modules through a "ReflectiveLoader" interface 1. The tool also allows operators to simulate a backdoor/persistence mechanism leveraged within the "PortServ.sys" capability used by the Duqu 2.0 threat actor.DesignPortBender leverages the WinDivert library to intercept network traffic using the Windows Filtering Platform (WFP). The design of PortBender is heavily influenced by the DivertTCPConn utility which also leverages the WinDivert library 1.UsagePortBender has two modes of operation. The first is "redirector mode," and the second is "backdoor mode." In "redirector mode," any connection to a targeted destination port (e.g., 445/TCP) is redirected to an alternative port (e.g., 8445/TCP). In "backdoor mode," we only redirect traffic if an attacker sends a specially formatted TCP packet to a target port (e.g., 443/TCP). PortBender then adds that client IP address to a list of backdoor clients and redirects all traffic to that target port to an alternative port (e.g., 3389/TCP). An operator can leverage this mechanism to emulate the persistence technique used by the Duqu 2.0 threat actor when compromising Kaspersky.To execute PortBender we must first import the "PortBender.cna" script into Cobalt Strike and upload the WinDivert32.sys or WinDivert64.sys binary included in "PortBender.zip" to the target host depending on the operating system architecture. The help menu for PortBender with the example usage is shown below:beacon> help PortBenderRedirect Usage: PortBender redirect FakeDstPort RedirectedPortBackdoor Usage: PortBender backdoor FakeDstPort RedirectedPort PasswordExamples: PortBender redirect 445 8445 PortBender backdoor 443 3389 praetorian.antihackerExample UsageFor example, we may wish to execute PortBender in redirector mode to perform an SMB relay attack from a compromised Windows system. To facilitate this, we can instruct PortBender to redirect all traffic to 445/TCP to an alternative port 8445/TCP running an attacker SMB service. In this example, we run the command "PortBender redirect 445 8445" to accomplish this. The expected output is below:In this example, we want to deploy the covert persistence mechanism on a compromised Internet-facing IIS webserver. Here we run the "PortBender backdoor 443 3389 praetorian.antihacker" to instruct the backdoor service to redirect any connections to 443/TCP to 3389/TCP on the compromised host from any IP address that provides the specified "praetorian.antihacker" keyword. The expected output is shown below: AcknowledgementsArno0x0x for his work on DivertTCPConn 1Stephen Fewer for his work on Reflective DLL Injection 2Basil00 for his work on WinDivert 3Francisco Dominguez for his research into performing SMB relaying on Windows 4References1 https://github.com/Arno0x/DivertTCPconn 2 https://github.com/stephenfewer/ReflectiveDLLInjection 3 https://github.com/basil00/Divert 4 https://diablohorn.com/2018/08/25/remote-ntlm-relaying-through-meterpreter-on-windows-port-445Download PortBender
Read more...
GitHub
GitHub - Arno0x/DivertTCPconn: A TCP packet diverter for Windows platform
A TCP packet diverter for Windows platform. Contribute to Arno0x/DivertTCPconn development by creating an account on GitHub.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
OSINT Tool: Osintgram
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png OSINT Tool: OsintgramPost Views: 271 https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/BECOME-A-PATRON-AND-UNLOCK-EXCLUSIVE-VIDEOS-1.png Reading Time: 3 Minutes
OSINT Tool: Osintgram GitHub Link OsintgramOsintgram by datalux, is an OSINT tool on Instagram to collect, analyze, and run reconnaissance. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname.
Disclaimer: FOR EDUCATIONAL PURPOSE ONLY!
*Warning: It is advisable to not use your own/primary account when using this tool. Tools and CommandsFrom Viewing Pictures to searching bio these are list of some tools which can really help you while doing open source intelligence gathering on Instagram:
* addrs | Get all registered addressed by target photos
* captions | Get user’s photos captions
* comments | Get total comments of target’s posts
* followers | Get target followers
* followings | Get users followed by target
* fwersemail | Get email of target followers
* fwingsemail | Get email of users followed by target
* fwersnumber | Get phone number of target followers
* fwingsnumber | Get phone number of users followed by target
* hashtags | Get hashtags used by target
* info | Get target info
* likes | Get total likes of target’s posts
* mediatype | Get user’s posts type (photo or video)
* photodes | Get description of target’s photos
* photos | Download user’s photos in output folder
* propic | Download user’s profile picture
* stories | Download user’s stories
* tagged | Get list of users tagged by target
* wcommented | Get a list of user who commented target’s photos
* wtagged | Get a list of user who tagged target
You can find detailed commands usage here. Latest version | Commands | CHANGELOG
See Also: Massive campaign uses YouTube to push password-stealing malware FAQ⦿ Can I access the contents of a private profile? No, you cannot get information on private profiles. You can only get information from a public profile or a profile you follow. The tools that claim to be successful are scams!
⦿ What is and how I can bypass the challenge_required error? The challenge_required error means that Instagram notice a suspicious behavior on your profile, so needs to check if you are a real person or a bot. To avoid this you should follow the suggested link and complete the required operation (insert a code, confirm email, etc) Installation1. Fork/Clone/Download this repo
git clone https://github.com/Datalux/Osintgram.git
2. Navigate to the directory
cd Osintgram
3. Create a virtual environment for this project
python3 -m venv venv
4. Load the virtual environment
⦿ On Windows Powershell: .\venv\Scripts\activate.ps1
⦿ On Linux and Git Bash: source venv/bin/activate
5. Run pip install -r requirements.txt
6. Open the credentials.ini file in the config folder and write your Instagram account username and password in the corresponding fields
Alternatively, you can run the make setup command to populate this file for you.
7. Run the main.py script in one of two ways
⦿ As an interactive prompt python3 main.py <target
⦿ Or execute your command straight away python3 main.py <target–command
See Also: Complete Offensive Security and Ethical Hacking Course Docker Quick StartThis section will explain how you can quickly use this image with Docker or Docker-compose. PrerequisitesBefore you can use either Docker or Docker-compose, please ensure you do have the following prerequisites met.
1. Docker installed – link
2. Docker-composed installed (if using Docker-compose) – link
3. Credentials configured – This can be done manually or[...]
OSINT Tool: Osintgram
https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png OSINT Tool: OsintgramPost Views: 271 https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/BECOME-A-PATRON-AND-UNLOCK-EXCLUSIVE-VIDEOS-1.png Reading Time: 3 Minutes
OSINT Tool: Osintgram GitHub Link OsintgramOsintgram by datalux, is an OSINT tool on Instagram to collect, analyze, and run reconnaissance. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname.
Disclaimer: FOR EDUCATIONAL PURPOSE ONLY!
*Warning: It is advisable to not use your own/primary account when using this tool. Tools and CommandsFrom Viewing Pictures to searching bio these are list of some tools which can really help you while doing open source intelligence gathering on Instagram:
* addrs | Get all registered addressed by target photos
* captions | Get user’s photos captions
* comments | Get total comments of target’s posts
* followers | Get target followers
* followings | Get users followed by target
* fwersemail | Get email of target followers
* fwingsemail | Get email of users followed by target
* fwersnumber | Get phone number of target followers
* fwingsnumber | Get phone number of users followed by target
* hashtags | Get hashtags used by target
* info | Get target info
* likes | Get total likes of target’s posts
* mediatype | Get user’s posts type (photo or video)
* photodes | Get description of target’s photos
* photos | Download user’s photos in output folder
* propic | Download user’s profile picture
* stories | Download user’s stories
* tagged | Get list of users tagged by target
* wcommented | Get a list of user who commented target’s photos
* wtagged | Get a list of user who tagged target
You can find detailed commands usage here. Latest version | Commands | CHANGELOG
See Also: Massive campaign uses YouTube to push password-stealing malware FAQ⦿ Can I access the contents of a private profile? No, you cannot get information on private profiles. You can only get information from a public profile or a profile you follow. The tools that claim to be successful are scams!
⦿ What is and how I can bypass the challenge_required error? The challenge_required error means that Instagram notice a suspicious behavior on your profile, so needs to check if you are a real person or a bot. To avoid this you should follow the suggested link and complete the required operation (insert a code, confirm email, etc) Installation1. Fork/Clone/Download this repo
git clone https://github.com/Datalux/Osintgram.git
2. Navigate to the directory
cd Osintgram
3. Create a virtual environment for this project
python3 -m venv venv
4. Load the virtual environment
⦿ On Windows Powershell: .\venv\Scripts\activate.ps1
⦿ On Linux and Git Bash: source venv/bin/activate
5. Run pip install -r requirements.txt
6. Open the credentials.ini file in the config folder and write your Instagram account username and password in the corresponding fields
Alternatively, you can run the make setup command to populate this file for you.
7. Run the main.py script in one of two ways
⦿ As an interactive prompt python3 main.py <target
⦿ Or execute your command straight away python3 main.py <target–command
See Also: Complete Offensive Security and Ethical Hacking Course Docker Quick StartThis section will explain how you can quickly use this image with Docker or Docker-compose. PrerequisitesBefore you can use either Docker or Docker-compose, please ensure you do have the following prerequisites met.
1. Docker installed – link
2. Docker-composed installed (if using Docker-compose) – link
3. Credentials configured – This can be done manually or[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking OSINT Tool: Osintgram https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/Untitled-design-2-1.png OSINT Tool: OsintgramPost Views: 271 https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/BECOME-A-PATRON…
by running the make setup command from the root of this repo
Important: Your container will fail if you do not do step #3 and configure your credentials DockerIf docker is installed you can build an image and run this as a container.
Build:
docker build -t osintgram .
Run:
docker run –rm -it -v “$PWD/output:/home/osintgram/output” osintgram <target
* The <targetis the Instagram account you wish to use as your target for recon.
* The required -i flag enables an interactive terminal to use commands within the container. docs
* The required -v flag mounts a volume between your local filesystem and the container to save to the ./output/ folder. docs
* The optional –rm flag removes the container filesystem on completion to prevent cruft build-up. docs
* The optional -t flag allocates a pseudo-TTY which allows colored output. docs Using docker-composeYou can use the docker-compose.yml file this single command:
docker-compose run osintgram <target
Where target is the Instagram target for recon.
Alternatively you may run docker-compose with the Makefile:
make run – Builds and Runs with compose. Prompts for a target before running. Makefile (easy mode)For ease of use with Docker-compose, a Makefile has been provided.
Here is a sample work flow to spin up a container and run osintgram with just two commands!
1. make setup – Sets up your Instagram credentials
2. make run – Builds and Runs a osintgram container and prompts for a target
Sample workflow for development:
1. make setup – Sets up your Instagram credentials
2. make build-run-testing – Builds an Runs a container without invoking the main.py script. Useful for an it Docker session for development
3. make cleanup-testing – Cleans up the testing container created from build-run-testing Development versionTo use the development version with the latest feature and fixes just switch to development branch using Git:
git checkout development
and update to last version using:
git pull origin development UpdatingTo update Osintgram with the stable release just pull the latest commit using Git.
1. Make sure you are in the master branch running: git checkout master
2. Download the latest version: git pull origin master
See Also: Offensive Security Tool: Dalfox Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/dalfox-90x90.png Offensive Security Tool: Dalfox1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/unknown-90x90.png Offensive Security Tool: Whispers2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/Screenshot_20211001_133045-90x90.png Offensive Security Tool: URL Hunter3 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/unknown-90x90.png Offensive Security Tool: Discover4 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/116777794-e9447880-aaa0-11eb-9697-af5f5617b279-90x90.png Offensive Security Tool: SniperPhish1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/jenkins-90x90.png Offensive Security Tool: Jenkins Attack Framework1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/pegasus-90x90.png Offensive Security Tool: Pegasus Spyware – Decompiled2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/FIbbZME-90x90.png Offensive Security Tool: Starkiller2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/0URVvVK54SOsx1MEq-90x90.png Offensive Security Tool: FFUF2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/687474703a2f2f633666632e696f2f77617263616e6e6f6e2d636c692e706e67-90x90.png Offensive Security Tool: Warcannon2 months ago
The post OSINT Tool: Osintgram first appeared on Black Hat Ethical Hacking.
Important: Your container will fail if you do not do step #3 and configure your credentials DockerIf docker is installed you can build an image and run this as a container.
Build:
docker build -t osintgram .
Run:
docker run –rm -it -v “$PWD/output:/home/osintgram/output” osintgram <target
* The <targetis the Instagram account you wish to use as your target for recon.
* The required -i flag enables an interactive terminal to use commands within the container. docs
* The required -v flag mounts a volume between your local filesystem and the container to save to the ./output/ folder. docs
* The optional –rm flag removes the container filesystem on completion to prevent cruft build-up. docs
* The optional -t flag allocates a pseudo-TTY which allows colored output. docs Using docker-composeYou can use the docker-compose.yml file this single command:
docker-compose run osintgram <target
Where target is the Instagram target for recon.
Alternatively you may run docker-compose with the Makefile:
make run – Builds and Runs with compose. Prompts for a target before running. Makefile (easy mode)For ease of use with Docker-compose, a Makefile has been provided.
Here is a sample work flow to spin up a container and run osintgram with just two commands!
1. make setup – Sets up your Instagram credentials
2. make run – Builds and Runs a osintgram container and prompts for a target
Sample workflow for development:
1. make setup – Sets up your Instagram credentials
2. make build-run-testing – Builds an Runs a container without invoking the main.py script. Useful for an it Docker session for development
3. make cleanup-testing – Cleans up the testing container created from build-run-testing Development versionTo use the development version with the latest feature and fixes just switch to development branch using Git:
git checkout development
and update to last version using:
git pull origin development UpdatingTo update Osintgram with the stable release just pull the latest commit using Git.
1. Make sure you are in the master branch running: git checkout master
2. Download the latest version: git pull origin master
See Also: Offensive Security Tool: Dalfox Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/dalfox-90x90.png Offensive Security Tool: Dalfox1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/unknown-90x90.png Offensive Security Tool: Whispers2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/10/Screenshot_20211001_133045-90x90.png Offensive Security Tool: URL Hunter3 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/unknown-90x90.png Offensive Security Tool: Discover4 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/116777794-e9447880-aaa0-11eb-9697-af5f5617b279-90x90.png Offensive Security Tool: SniperPhish1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/jenkins-90x90.png Offensive Security Tool: Jenkins Attack Framework1 month ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/09/pegasus-90x90.png Offensive Security Tool: Pegasus Spyware – Decompiled2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/FIbbZME-90x90.png Offensive Security Tool: Starkiller2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/0URVvVK54SOsx1MEq-90x90.png Offensive Security Tool: FFUF2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/08/687474703a2f2f633666632e696f2f77617263616e6e6f6e2d636c692e706e67-90x90.png Offensive Security Tool: Warcannon2 months ago
The post OSINT Tool: Osintgram first appeared on Black Hat Ethical Hacking.
PortBender - TCP Port Redirection Utility
http://www.kitploit.com/2021/10/portbender-tcp-port-redirection-utility.html
http://www.kitploit.com/2021/10/portbender-tcp-port-redirection-utility.html