hacking: security in practice
What is the best free site for text documentation?
Im new to this, i only knew some basic network theory and some basic linux. I want to learn more about the methods of hacking/pen testing/etc and i prefer to read a documentation rather than watch a video. If you can give me some sites with good content , i am grateful.
submitted by /u/davvboos
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What is the best free site for text documentation?
Im new to this, i only knew some basic network theory and some basic linux. I want to learn more about the methods of hacking/pen testing/etc and i prefer to read a documentation rather than watch a video. If you can give me some sites with good content , i am grateful.
submitted by /u/davvboos
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What is the best free site for text documentation?
Im new to this, i only knew some basic network theory and some basic linux. I want to learn more about the methods of hacking/pen testing/etc and...
hacking: security in practice
Any good tricks for msfvenom payloads?
I’m working on a x64 msfvenom windows payload and in the past I’ve had good luck with avoiding Antivirus software using a Golang shellcode loader, but for this project I want the best possible results so do you lads have any good tricks for msfvenom payloads? I plan to add the delay feature and maybe a few more tricks, any thoughts?
submitted by /u/_Lukisha_
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Any good tricks for msfvenom payloads?
I’m working on a x64 msfvenom windows payload and in the past I’ve had good luck with avoiding Antivirus software using a Golang shellcode loader, but for this project I want the best possible results so do you lads have any good tricks for msfvenom payloads? I plan to add the delay feature and maybe a few more tricks, any thoughts?
submitted by /u/_Lukisha_
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Any good tricks for msfvenom payloads?
I’m working on a x64 msfvenom windows payload and in the past I’ve had good luck with avoiding Antivirus software using a Golang shellcode loader,...
hacking: security in practice
using Hashcat on the cloud
using hashcat would it be practical to crack an 8 digit uppercase letter and digit only, wpa2 password on the cloud. using 4 rtx 6000 cards.
submitted by /u/gregt0799
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
using Hashcat on the cloud
using hashcat would it be practical to crack an 8 digit uppercase letter and digit only, wpa2 password on the cloud. using 4 rtx 6000 cards.
submitted by /u/gregt0799
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
using Hashcat on the cloud
using hashcat would it be practical to crack an 8 digit uppercase letter and digit only, wpa2 password on the cloud. using 4 rtx 6000 cards.
hacking: security in practice
Xcode
Is there a workaround to run xcode and do builds for iOS apps on Linux?
I didn't do ios development for many years. My Mac just sat there. Now it's unsupported on xcode and I don't want to buy a Mac just for builds. There has to be a workaround. Ive been a debian user for the past 2 decades and I'd like to keep it that way.
I need to be able to build swift / react native apps using local machine (no cloud build solutions / expo)
I'd love to hear from you!
submitted by /u/DirectionNo420
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Xcode
Is there a workaround to run xcode and do builds for iOS apps on Linux?
I didn't do ios development for many years. My Mac just sat there. Now it's unsupported on xcode and I don't want to buy a Mac just for builds. There has to be a workaround. Ive been a debian user for the past 2 decades and I'd like to keep it that way.
I need to be able to build swift / react native apps using local machine (no cloud build solutions / expo)
I'd love to hear from you!
submitted by /u/DirectionNo420
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Xcode
Is there a workaround to run xcode and do builds for iOS apps on Linux? I didn't do ios development for many years. My Mac just sat there. Now...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
CONFIGURAÇÃO DO AMBIENTE E INTERCEPTAÇÃO DE TRÁFEGO. 3
https://cdn-images-1.medium.com/max/1920/1*uvfSJ_7D4vj7lCG-Kmom4w.png
Você vai economizar muito tempo e dor de cabeça se procurar Falhas em um local bem configurado, como um laboratório. Neste Texto, vou…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
CONFIGURAÇÃO DO AMBIENTE E INTERCEPTAÇÃO DE TRÁFEGO. 3
https://cdn-images-1.medium.com/max/1920/1*uvfSJ_7D4vj7lCG-Kmom4w.png
Você vai economizar muito tempo e dor de cabeça se procurar Falhas em um local bem configurado, como um laboratório. Neste Texto, vou…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
CONFIGURAÇÃO DO AMBIENTE E INTERCEPTAÇÃO DE TRÁFEGO. 3
Você vai economizar muito tempo e dor de cabeça se procurar Falhas em um local bem configurado, como laboratório. Neste Texto, vou…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Getting Started With Cyber Security & Ethical Hacking
https://cdn-images-1.medium.com/max/1920/0*qIQWwsLSL2-pE5Hd
Why Cybersecurity? In the current scenario, where everything has shifted to internet, so is the crime that has also upgraded…..
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Getting Started With Cyber Security & Ethical Hacking
https://cdn-images-1.medium.com/max/1920/0*qIQWwsLSL2-pE5Hd
Why Cybersecurity? In the current scenario, where everything has shifted to internet, so is the crime that has also upgraded…..
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Getting Started With Cyber Security & Ethical Hacking
Why Cybersecurity? In the current scenario, where everything has shifted to internet, so is the crime that has also upgraded…..
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Footprinting and Reconnaissance
https://cdn-images-1.medium.com/max/1920/0*7T_YjdSnACBdSu-9
Footprinting is the first step a hacker does before hacking. In this step the hacker tries to gain information regarding the victim or…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Footprinting and Reconnaissance
https://cdn-images-1.medium.com/max/1920/0*7T_YjdSnACBdSu-9
Footprinting is the first step a hacker does before hacking. In this step the hacker tries to gain information regarding the victim or…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Footprinting and Reconnaissance
Footprinting is the first step a hacker does before hacking. In this step the hacker tries to gain information regarding the victim or…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How I was able to access a properly Configured S3 Bucket
https://cdn-images-1.medium.com/max/600/1*6bWo-VdVMac1FtUOkMCI-w.png
Hello All
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How I was able to access a properly Configured S3 Bucket
https://cdn-images-1.medium.com/max/600/1*6bWo-VdVMac1FtUOkMCI-w.png
Hello All
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I was able to access a properly Configured S3 Bucket
Hello All
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Footprinting and Reconnaissance using Windows OS
https://cdn-images-1.medium.com/max/1920/0*4yXf6NHSJJQVbiwT
This blog is in continuation previous blog on footprinting and reconnaissance. Previously you understood how to do footprinting with the…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Footprinting and Reconnaissance using Windows OS
https://cdn-images-1.medium.com/max/1920/0*4yXf6NHSJJQVbiwT
This blog is in continuation previous blog on footprinting and reconnaissance. Previously you understood how to do footprinting with the…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Footprinting and Reconnaissance using Windows OS
This blog is in continuation previous blog on footprinting and reconnaissance. Previously you understood how to do footprinting with the…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Este nuevo malware de Android puede obtener acceso de root a sus teléfonos inteligentes
https://cdn-images-1.medium.com/max/1449/0*XeU63rTCr2bmzTk-
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Este nuevo malware de Android puede obtener acceso de root a sus teléfonos inteligentes
https://cdn-images-1.medium.com/max/1449/0*XeU63rTCr2bmzTk-
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Este nuevo malware de Android puede obtener acceso de root a sus teléfonos inteligentes
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack This Site: Extended Basic — Mission 2
https://cdn-images-1.medium.com/max/2048/1*DMynhh_14Bj3h-4jzFy6-w.png
Hello friend and welcome to HaXeZ where we will be covering Hack This Site Extended Basic Mission 2. This challenge is fairly simple…
Continue reading on Geek Culture »
___________________________
@hacking_Attack
@Hacking_Video
Hack This Site: Extended Basic — Mission 2
https://cdn-images-1.medium.com/max/2048/1*DMynhh_14Bj3h-4jzFy6-w.png
Hello friend and welcome to HaXeZ where we will be covering Hack This Site Extended Basic Mission 2. This challenge is fairly simple…
Continue reading on Geek Culture »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hack This Site: Extended Basic — Mission 2
Hello friend and welcome to HaXeZ where we will be covering Hack This Site Extended Basic Mission 2. This challenge is fairly simple…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Mini-XML 3.2 Heap Overflow
https://2.bp.blogspot.com/-v3K-Hxbn0Es/WWlvhvX1clI/AAAAAAAAIQY/UsJ0X_N1RWgdGsUiiIhYa-pG6QWPEsSmwCLcBGAs/s1600/h91.png
Mini-XML version 3.2 suffers from a heap overflow vulnerability.
MD5 |
Download
# Exploit Title: Mini-XML 3.2 - Heap Overflow
# Google Dork: mxml Mini-xml Mini-XML
# Date: 2020.10.19
# Exploit Author: LIWEI
# Vendor Homepage: https://www.msweet.org/mxml/
# Software Link: https://github.com/michaelrsweet/mxml
# Version: v3.2
# Tested on: ubuntu 18.04.2
# 1.- compile the Mini-XML code to a library use compile line"clang -g -O0 -fno-omit-frame-pointer -gline-tables-only -fsanitize=address -fsanitize-address-use-after-scope -fsanitize=fuzzer-no-link".
# 2.- compile my testcase and link them to a binary use compile line "clang -g -O0 -fno-omit-frame-pointer -gline-tables-only -fsanitize=address -fsanitize-address-use-after-scope -fsanitize=fuzzer". In my testcase, I use the API "mxmlLoadString" to parse a string.
# 3.- run the binary for a short time.crash. because the "mxml_string_getc" didn't versify the string's length and cause buffer-overflow.
# 4.- Here are the crash backtrace.
=================================================================
==6265==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x612000000a73 at pc 0x000000558e2d bp 0x7ffe13e2caa0 sp 0x7ffe13e2ca98
READ of size 1 at 0x612000000a73 thread T0
#0 in mxml_string_getc /opt/mnt/software/mxml32/mxml-file.c:2422:13
#1 in mxml_load_data /opt/mnt/software/mxml32/mxml-file.c:1558:20
#2 in mxmlLoadString /opt/mnt/software/mxml32/mxml-file.c:180:11
#3 in LLVMFuzzerTestOneInput /opt/mnt/software/mxml32/mxml_fuzzer.cpp:12:8
#4 in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) (/opt/mnt/software/mxml32/a.out+0x42f357)
#5 in fuzzer::RunOneTest(fuzzer::Fuzzer*, char const*, unsigned long) (/opt/mnt/software/mxml32/a.out+0x41f7ea)
#6 in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) (/opt/mnt/software/mxml32/a.out+0x42a7b0)
#7 in main (/opt/mnt/software/mxml32/a.out+0x41d4b2)
#8 in __libc_start_main /build/glibc-S9d2JN/glibc-2.27/csu/../csu/libc-start.c:310
#9 in _start (/opt/mnt/software/mxml32/a.out+0x41d529)
# 6.- Here are my testcase.
#include
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Mini-XML 3.2 Heap Overflow
https://2.bp.blogspot.com/-v3K-Hxbn0Es/WWlvhvX1clI/AAAAAAAAIQY/UsJ0X_N1RWgdGsUiiIhYa-pG6QWPEsSmwCLcBGAs/s1600/h91.png
Mini-XML version 3.2 suffers from a heap overflow vulnerability.
MD5 |
e0337ff754d4ab2bcf03b81e9a3f4a1eDownload
# Exploit Title: Mini-XML 3.2 - Heap Overflow
# Google Dork: mxml Mini-xml Mini-XML
# Date: 2020.10.19
# Exploit Author: LIWEI
# Vendor Homepage: https://www.msweet.org/mxml/
# Software Link: https://github.com/michaelrsweet/mxml
# Version: v3.2
# Tested on: ubuntu 18.04.2
# 1.- compile the Mini-XML code to a library use compile line"clang -g -O0 -fno-omit-frame-pointer -gline-tables-only -fsanitize=address -fsanitize-address-use-after-scope -fsanitize=fuzzer-no-link".
# 2.- compile my testcase and link them to a binary use compile line "clang -g -O0 -fno-omit-frame-pointer -gline-tables-only -fsanitize=address -fsanitize-address-use-after-scope -fsanitize=fuzzer". In my testcase, I use the API "mxmlLoadString" to parse a string.
# 3.- run the binary for a short time.crash. because the "mxml_string_getc" didn't versify the string's length and cause buffer-overflow.
# 4.- Here are the crash backtrace.
=================================================================
==6265==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x612000000a73 at pc 0x000000558e2d bp 0x7ffe13e2caa0 sp 0x7ffe13e2ca98
READ of size 1 at 0x612000000a73 thread T0
#0 in mxml_string_getc /opt/mnt/software/mxml32/mxml-file.c:2422:13
#1 in mxml_load_data /opt/mnt/software/mxml32/mxml-file.c:1558:20
#2 in mxmlLoadString /opt/mnt/software/mxml32/mxml-file.c:180:11
#3 in LLVMFuzzerTestOneInput /opt/mnt/software/mxml32/mxml_fuzzer.cpp:12:8
#4 in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) (/opt/mnt/software/mxml32/a.out+0x42f357)
#5 in fuzzer::RunOneTest(fuzzer::Fuzzer*, char const*, unsigned long) (/opt/mnt/software/mxml32/a.out+0x41f7ea)
#6 in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) (/opt/mnt/software/mxml32/a.out+0x42a7b0)
#7 in main (/opt/mnt/software/mxml32/a.out+0x41d4b2)
#8 in __libc_start_main /build/glibc-S9d2JN/glibc-2.27/csu/../csu/libc-start.c:310
#9 in _start (/opt/mnt/software/mxml32/a.out+0x41d529)
# 6.- Here are my testcase.
#include
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Mini-XML 3.2 Heap Overflow
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.