Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles
Windows Privilege Escalation: Boot Logon Autostart Execution (Startup Folder)

Windows Startup folder may be targeted by an attacker to escalate privileges or persistence attacks. Adding an application to a startup folder or referencing it using a Registry run key are two ways to do this. When a user signs in, the application linked will be executed if an item

The post Windows Privilege Escalation: Boot Logon Autostart Execution (Startup Folder) appeared first on Hacking Articles.

___________________________
@hacking_Attack
@Hacking_Video
Quick Links
Apps: Web (https://app.keeweb.info/), Desktop (https://github.com/keeweb/keeweb/releases/latest)
Timeline: Release Notes (https://github.com/keeweb/keeweb/blob/master/release-notes.md), TODO (https://github.com/keeweb/keeweb/wiki/TODO)
On one page: Features (https://keeweb.info/#features), FAQ (https://github.com/keeweb/keeweb/wiki/FAQ)
Website: keeweb.info (https://keeweb.info/)
Twitter: kee_web (https://twitter.com/kee_web)
Donate: OpenCollective (https://opencollective.com/keeweb#support), GitHub (https://github.com/sponsors/antelle)
Status
The app is quite stable now. Basic stuff, as well as more advanced operations, should be rather reliable.
Self-hosting
Everything you need to host this app on your server is any static file server. The app is a single HTML file + a service worker (optionally; for offline access). You can download the latest distribution files from gh-pages (https://github.com/keeweb/keeweb/archive/gh-pages.zip) branch. If you are using Docker: put your dh.pem, cert.pem, key.pem to /etc/nginx/external/ run this script: docker run --name keeweb -d -p 443:443 -p 80:80 -v $EXT_DIR:/etc/nginx/external/ antelle/keeweb To make Dropbox (https://www.kitploit.com/search/label/Dropbox) work in your self-hosted app, go to this Wiki page (https://github.com/keeweb/keeweb/wiki/Dropbox-and-GDrive).
Building
The easiest way to clone all KeeWeb repos is: curl https://raw.githubusercontent.com/keeweb/keeweb/develop/dev-env.sh | bash - The app can be built with grunt: grunt (html files will be in dist/).
Desktop apps are built with grunt desktop. This requires some magic and currently works only on CI, you can find more details in the GitHub Actions workflow (https://github.com/keeweb/keeweb/blob/master/.github/workflows/build.yaml). To run the desktop (electron) app without building an installer, build the app with grunt and start it this way: npm run dev
npm run electron For debug build: run npm run dev open http://localhost:8085 To build desktop apps, use these goals, the result can be found in tmp: npm run dev-desktop-macos
npm run dev-desktop-windows
npm run dev-desktop-linux

Contributing
Please read contribution guidelines for pull requests (https://github.com/keeweb/keeweb/blob/master/.github/PULL_REQUEST_TEMPLATE.md).
Here's a list of issues (https://github.com/keeweb/keeweb/labels/help%20wanted) where your help would be very welcome. Also you can help by translating KeeWeb (https://keeweb.oneskyapp.com/) to your language. Other ways of contribution can be found on this page (https://github.com/keeweb/keeweb/blob/master/CONTRIBUTING.md).
Important notes for pull requests
please branch from develop, not master don't edit translation files except base.json, they will be replaced
Donations
KeeWeb is not free to develop. It takes time, requires paid code signing certificates (https://www.kitploit.com/search/label/Certificates) and domains.
You can help the project or say "thank you" with this button:
You can also sponsor the developer directly on GitHub (https://github.com/sponsors/antelle). Please note: donation does not imply any type of service contract.
Thank you
Notable contributions to KeeWeb: Florian Reuschel (@Loilo (https://github.com/Loilo)): German translation (https://keeweb.oneskyapp.com/collaboration/translate/project/project/173183/language/550) Dennis Ploeger (@dploeger (https://github.com/dploeger)): auto-type improvements (https://github.com/keeweb/keeweb/pulls?q=is%3Apr+is%3Aclosed+author%3Adploeger) Hackmanit (hackmanit.de (https://www.hackmanit.de/)): penetration test (https://www.hackmanit.de/en/blog-en/104-pro-bono-penetration-test-keeweb) Peter Bittner (@bittner (https://github.com/bittner)): Wikipedia article (https://en.wikipedia.org/wiki/KeeWeb)

___________________________
@hacking_Attack
@Hacking_Video
Race Condition — Resulted in using the feature which was supposed to be obtained after subscription.

What Is a Race Condition Vulnerability?Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Keeweb - Free Cross-Platform Password Manager Compatible With KeePass

https://blogger.googleusercontent.com/img/a/AVvXsEjLlgLl1tSX5NAsPdzQxEJ2ljmWoLqt6613OGPbOiWYSPx4USRmt62aA4gMu73JEJapJO0ohRTXHjYb_iebK3f-RTOGfxISJ7Mgaa9hxxR42A0wLjanqVRAGn68pH-MT9QFytG913Ay2AFgnA2DzXJDKbxmAtpm17ATb-GGJoqhQg7a6x06W6MChU0rfQ=w640-h414 This webapp is a browser and desktop password manager compatible with KeePass databases. It doesn't require any server or additional resources. The app can run either in browser, or as a desktop app. Quick LinksApps: Web, Desktop
Timeline: Release Notes, TODO
On one page: Features, FAQ
Website: keeweb.info
Twitter: kee_web
Donate: OpenCollective, GitHub StatusThe app is quite stable now. Basic stuff, as well as more advanced operations, should be rather reliable. Self-hostingEverything you need to host this app on your server is any static file server. The app is a single HTML file + a service worker (optionally; for offline access). You can download the latest distribution files from gh-pages branch.

If you are using Docker:

1. put your dh.pem, cert.pem, key.pem to /etc/nginx/external/
2. run this script: docker run --name keeweb -d -p 443:443 -p 80:80 -v $EXT_DIR:/etc/nginx/external/ antelle/keewebTo make Dropbox work in your self-hosted app, go to this Wiki page. BuildingThe easiest way to clone all KeeWeb repos is: curl https://raw.githubusercontent.com/keeweb/keeweb/develop/dev-env.sh | bash -The app can be built with grunt: grunt(html files will be in dist/).
Desktop apps are built with grunt desktop. This requires some magic and currently works only on CI, you can find more details in the GitHub Actions workflow.

To run the desktop (electron) app without building an installer, build the app with gruntand start it this way: npm run dev
npm run electron
For debug build:

1. run npm run dev2. open http://localhost:8085To build desktop apps, use these goals, the result can be found in tmp: npm run dev-desktop-macos
npm run dev-desktop-windows
npm run dev-desktop-linux
ContributingPlease read contribution guidelines for pull requests.
Here's a list of issues where your help would be very welcome. Also you can help by translating KeeWeb to your language.

Other ways of contribution can be found on this page. Important notes for pull requests* please branch from develop, not master* don't edit translation files except base.json, they will be replaced DonationsKeeWeb is not free to develop. It takes time, requires paid code signing certificates and domains.
You can help the project or say "thank you" with this button:
You can also sponsor the developer directly on GitHub.

Please note: donation does not imply any type of service contract. Thank youNotable contributions to KeeWeb:

* Florian Reuschel (@Loilo): German translation
* Dennis Ploeger (@dploeger): auto-type improvements
* Hackmanit (hackmanit.de): penetration test
* Peter Bittner (@bittner): Wikipedia article Download Keeweb

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
Cybersecurity Talent Gap Narrows as Workforce Grows

Job satisfaction and salaries have both increased for cybersecurity professionals, as younger workers seek specific training to prepare for a cybersecurity career.
Dark Reading: Attacks/Breaches
Gas Stations in Iran Downed by Cyberattack

Unknown attackers hijacked gasoline pump machines and defaced them with a message that reportedly included a phone number for Supreme Leader Ayatollah Ali Khamenei's office.

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Setting up proxies/ onion service relais in Python

How can I setup proxy or onion service relais in a Python script which e.g. uses smpt. Is that even possible? And where can I find (free?) proxy servers I can connect with.

submitted by /u/orcvs
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video