Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
how may I get infinite cash?: Bloons TD 6

I've been looking everywhere for a way to get unlimited cash in btd6 but so far I got nothing, is there some way for me to hack it so I can get infinite cash? I'm on mobile by the way

submitted by /u/gay_yaoi_role_play
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
among us hacks

Im tryna look for some amongus hacks any good ones u guys know???

submitted by /u/MossyCrow
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Scarce-Apache2 - A Framework For Bug Hunting Or Pentesting Targeting Websites That Have CVE-2021-41773 Vulnerability In Public

https://blogger.googleusercontent.com/img/a/AVvXsEhRWcdl04xGOBLlM_g9DzCMsFGGCPy3N36bwNXfArCm8SpaUroy9Mz1Hbu3C1TRfKxBxybgzs-SqbGIEGrRNmRVNsBKR6Q-xz_FidYUIKelwx0WxxGHbUKwuaAxqxbEllP6n3ltZ9GEJ5YooEJjV_t9qXahy8rxhXsfZdsm13xnvEsqubv2pKrmpz_ZTQ=w640-h330 This tool can scan websites with CVE-2021-41773 Vulnerability that are affecting Apache2 Webserver, ScaRCE can run too for executing Remote Command Injections at the webservers that found from the scanning method (Only if the MOD_CGI is Enabled at the targeted webserver). This tool works with the provided Single target or Mass Target from a file list. Only use this tool for Bug Hunting/ Pentesting Purposes. https://blogger.googleusercontent.com/img/a/AVvXsEhcRO_Dx6ScPy-zCqhbv9ZsB2Y5EC8Fo6FWrpWx7sC6H81feJvY1pb5uzirFi7KR2oxTamEqKPWFhxXCSe1KxDJRM7o_OPtZ0E_opEOIPdRH5-K7CLTLOPqYl8AVpIYyPIVzHN2y0b-oX3qT8PJHymUb-zEDweKomCW-IrxvpHMUWYDhxdLHAhrbYyhRg=w640-h316 https://blogger.googleusercontent.com/img/a/AVvXsEibLpxQqYUk-e42cAQqZ79qpvIPld94BKnn9nRm5UKHJHHzCrxMmSyMaEe6e5oqhtxC1eNWqnS_fVBYSzclUT22R3QBDK-dVg6xZmz_UNeVjr8xPea5WH1k8ewTWW1cOFovZuFQKAI3eMTGsaEzRgRzc5Y-Zps4nILNgDM7M8lXAq_dR8u-VQ14vRnw4w=w640-h316 https://blogger.googleusercontent.com/img/a/AVvXsEgITNTPLGq-_s81ClmEAdJnpep5lS-i7ge88cEABBssuGeWiMh_sGZKgZdfBjaSBtF28FxHMTgOgdYMX41-cRlbCm9fsupSbxh9IpupmTp8sfqoEJrktxbd5YYiIb9wjULUrKMQ24wVyYOMXEdo5voYEA9DjZ10AtWjOsnZGvMJj5h9sgKsomPSldh1xw=w640-h330 Installation- git clone https://github.com/HightechSec/scarce-apache2
- cd scarce-apache2
- bash scarce.sh
or you can install in your system like this - git clone https://github.com/HightechSec/scarce-apache2
- cd scarce-apache2
- sudo cp scarce.sh /usr/bin/scarce && sudo chmod +x /usr/bin/scarce
- $ scarce
Usage* Menu's
* Menu 1is for scanning LFI Vulnerability from a provided file that contains the list of the target urlor a provided single target url.
* Menu 2is for scanning RCE Vulnerability from a provided file that contains the list of the target urlor a provided single target url.
* Menu 3is for Executing RCE from a provided single target url. This will work for the Maybe VulnResults or sometimes with a 500 Error Response.

* URL Format
* Use http://like http://example.comor https://like https://example.comfor the url formatting at Single Target usages
* For Url or IP that has been provided from a List, Don't Use the URL Formatting like eg:
* https://target.com
* http://hackerone.com
* https://bugcrowd.com Requirements* curl
* bash
* git CreditsThanks to:

* CVE-2021-41773 Reproduced by @ptswarm
* Executing RCE in CVE-2021-41773 by @hackerfantastic
* Removing 5xx Error when Running RCE by @lukejahnke Download Scarce-Apache2

___________________________
@hacking_Attack
@Hacking_Video
This tool can scan (https://www.kitploit.com/search/label/Scan) websites with CVE-2021-41773 Vulnerability (https://www.kitploit.com/search/label/Vulnerability) that are affecting Apache2 Webserver, ScaRCE can run too for executing Remote (https://www.kitploit.com/search/label/Remote) Command Injections at the webservers that found from the scanning (https://www.kitploit.com/search/label/Scanning) method (Only if the MOD_CGI is Enabled at the targeted webserver). This tool works with the provided Single target or Mass Target from a file list. Only use this tool for Bug Hunting/ Pentesting Purposes.

___________________________
@hacking_Attack
@Hacking_Video
Installation
- git clone https://github.com/HightechSec/scarce-apache2
- cd scarce-apache2
- bash scarce.sh
or you can install in your system like this- git clone https://github.com/HightechSec/scarce-apache2
- cd scarce-apache2
- sudo cp scarce.sh /usr/bin/scarce && sudo chmod +x /usr/bin/scarce
- $ scarce

Usage
Menu's Menu 1 is for scanning LFI Vulnerability (https://www.kitploit.com/search/label/LFI%20Vulnerability) from a provided file that contains the list of the target url or a provided single target url.Menu 2 is for scanning RCE Vulnerability from a provided file that contains the list of the target url or a provided single target url.Menu 3 is for Executing RCE from a provided single target url. This will work for the Maybe Vuln Results or sometimes with a 500 Error Response.URL Format Use http:// like http://example.com or https:// like https://example.com for the url formatting at Single Target usagesFor Url or IP that has been provided from a List, Don't Use the URL Formatting like eg: https://target.com (https://target.com/)http://hackerone.com (http://hackerone.com/)https://bugcrowd.com (https://bugcrowd.com/)
Requirements
curlbashgit
Credits
Thanks to:CVE-2021-41773 Reproduced (https://twitter.com/ptswarm/status/1445376079548624899) by @ptswarm (https://twitter.com/ptswarm)Executing RCE in CVE-2021-41773 (https://twitter.com/hackerfantastic/status/1445531829985968137) by @hackerfantastic (https://twitter.com/hackerfantastic)Removing 5xx Error when Running RCE (https://twitter.com/lukejahnke/status/1445560511270064138) by @lukejahnke (https://twitter.com/lukejahnke)

Download Scarce-Apache2 (https://github.com/HightechSec/scarce-apache2)

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
APTs, Teleworking, and Advanced VPN Exploits: The Perfect Storm

A Mandiant researcher shares the details of an investigation into the misuse of Pulse Secure VPN devices by suspected state-sponsored threat actors.