Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Los ataques a APIs están dejando expuestas vulnerabilidades en la seguridad de empresas
https://cdn-images-1.medium.com/max/1500/0*SCcIfOyp3ti84k5T
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Los ataques a APIs están dejando expuestas vulnerabilidades en la seguridad de empresas
https://cdn-images-1.medium.com/max/1500/0*SCcIfOyp3ti84k5T
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Los ataques a APIs están dejando expuestas vulnerabilidades en la seguridad de empresas
PUBLICADO EN 29 OCTUBRE, 2021POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
One misconfiguration to rule them all
https://cdn-images-1.medium.com/max/2600/0*rL9QNfnE1QOazLVN
How a small misconfiguration led to exposed secrets, access to production data, and employee PII.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
One misconfiguration to rule them all
https://cdn-images-1.medium.com/max/2600/0*rL9QNfnE1QOazLVN
How a small misconfiguration led to exposed secrets, access to production data, and employee PII.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
One misconfiguration to rule them all
How a small misconfiguration led to exposed secrets, access to production data, and employee PII.
hacking: security in practice
Text now number
Is it possible to find out who is behind a fake app number like a text now number.
submitted by /u/KiwiSea2189
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Text now number
Is it possible to find out who is behind a fake app number like a text now number.
submitted by /u/KiwiSea2189
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Text now number
Is it possible to find out who is behind a fake app number like a text now number.
hacking: security in practice
how long have you been “hacking “ for
just asking pretty curious could you tell me what you’ve learnt and what’s possible?
submitted by /u/Its_squidward
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
how long have you been “hacking “ for
just asking pretty curious could you tell me what you’ve learnt and what’s possible?
submitted by /u/Its_squidward
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
how long have you been “hacking “ for
just asking pretty curious could you tell me what you’ve learnt and what’s possible?
hacking: security in practice
How to decrypt this pdf file?
downloaded pdf but I'm unable to open it...this pdf I can use Only after login in site but can't able to download pdf... however I have managed to download but still unable to open..
{"response":true,"url":"https://vcdn.spayee.in/spees/w/o/5e05e061e4b07876042d20c2/v/611e29ee0cf2272a293b1a96/u/616ed9af0cf216a8e6359508/p/assets/pdfs/2021/08/19/611e29ee0cf2272a293b1a96/file.pdf. ","p":"9f34072186edfc9a5f0e32dfa753e75eatAsU3Rh90PI81AcACIkcwfL5RjjeagmiXW1OzlbPvoY8f9JKMh08T+1nkuLyZcofdc6be512d1aa17feec4627eb2477db5","allowDownload":false,"allowWatermark":true}
This is what I got...I don't know how to decrypt.
submitted by /u/ASHWATTHMA
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How to decrypt this pdf file?
downloaded pdf but I'm unable to open it...this pdf I can use Only after login in site but can't able to download pdf... however I have managed to download but still unable to open..
{"response":true,"url":"https://vcdn.spayee.in/spees/w/o/5e05e061e4b07876042d20c2/v/611e29ee0cf2272a293b1a96/u/616ed9af0cf216a8e6359508/p/assets/pdfs/2021/08/19/611e29ee0cf2272a293b1a96/file.pdf. ","p":"9f34072186edfc9a5f0e32dfa753e75eatAsU3Rh90PI81AcACIkcwfL5RjjeagmiXW1OzlbPvoY8f9JKMh08T+1nkuLyZcofdc6be512d1aa17feec4627eb2477db5","allowDownload":false,"allowWatermark":true}
This is what I got...I don't know how to decrypt.
submitted by /u/ASHWATTHMA
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How to decrypt this pdf file?
downloaded pdf but I'm unable to open it...this pdf I can use Only after login in site but can't able to download pdf... however I have managed to...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Hack The Box - Holiday - Source Code Analysis
https://external-preview.redd.it/ppVzM8rByVbqirOQNpu3WEmRFDEgY5KlHNr9A9hSCuA.jpg?width=640&crop=smart&auto=webp&s=650109dd548b4da0f773659421af0b90d17bd6b1 submitted by /u/pythonpsycho1337
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hack The Box - Holiday - Source Code Analysis
https://external-preview.redd.it/ppVzM8rByVbqirOQNpu3WEmRFDEgY5KlHNr9A9hSCuA.jpg?width=640&crop=smart&auto=webp&s=650109dd548b4da0f773659421af0b90d17bd6b1 submitted by /u/pythonpsycho1337
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hack The Box - Holiday - Source Code Analysis
Posted in r/hacking by u/pythonpsycho1337 • 2 points and 0 comments
hacking: security in practice
Can I trace out dev's running bad code?
Hi,
So there are some dev's in my environment and they are running API request and everything.
What should I be looking out for as the sysadmin? Can I grab any of the data being run on their code in Wireshark or anything like that?
What's the risk of someone running an API request?
submitted by /u/onequestion1168
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Can I trace out dev's running bad code?
Hi,
So there are some dev's in my environment and they are running API request and everything.
What should I be looking out for as the sysadmin? Can I grab any of the data being run on their code in Wireshark or anything like that?
What's the risk of someone running an API request?
submitted by /u/onequestion1168
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Can I trace out dev's running bad code?
Hi, So there are some dev's in my environment and they are running API request and everything. What should I be looking out...
Deep Web
Is there something similar to wikihow, instructables, wikepedia on the dark web?
Newbie here. Just looking to do some research on questionable topics so im wondering what are my good options for websites. DM please if you have suggestions so it doesn't get removed :/
submitted by /u/Miserable_Molasses_5
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Is there something similar to wikihow, instructables, wikepedia on the dark web?
Newbie here. Just looking to do some research on questionable topics so im wondering what are my good options for websites. DM please if you have suggestions so it doesn't get removed :/
submitted by /u/Miserable_Molasses_5
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is there something similar to wikihow, instructables, wikepedia on...
Newbie here. Just looking to do some research on questionable topics so im wondering what are my good options for websites. DM please if you have...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Faster Neovim Plugin Development with plenary.nvim
https://cdn-images-1.medium.com/max/700/0*sy2dy4VWqZbFA2bd.png
Use plenary.nvim to help you develop plugins faster.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Faster Neovim Plugin Development with plenary.nvim
https://cdn-images-1.medium.com/max/700/0*sy2dy4VWqZbFA2bd.png
Use plenary.nvim to help you develop plugins faster.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Faster Neovim Plugin Development with plenary.nvim
Use plenary.nvim to help you develop plugins faster.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
eJPT-eLearnSecurity Junior Penetration Testing Exam Guide.
https://cdn-images-1.medium.com/max/2200/1*1_8nKAHsSWK0Nm4OW5rZTg.png
Follow this article if you wanna take eJPT exam.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
eJPT-eLearnSecurity Junior Penetration Testing Exam Guide.
https://cdn-images-1.medium.com/max/2200/1*1_8nKAHsSWK0Nm4OW5rZTg.png
Follow this article if you wanna take eJPT exam.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
eJPT-eLearnSecurity Junior Penetration Testing Exam Guide.
Follow this article if you wanna take eJPT exam.
Blizzard’s Bug Bounty Program on Immunefi
https://medium.com/@blizzardavalanche/blizzards-bug-bounty-program-on-immunefi-eb9c2e01e4f8?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@blizzardavalanche/blizzards-bug-bounty-program-on-immunefi-eb9c2e01e4f8?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Blizzard’s Bug Bounty Program on Immunefi
Pleased to announce Blizzard is doing a bug bounty program on Immunefi.com, DeFi’s leading bug bounty platform! Ethical hackers can review…
Pleased to announce Blizzard is doing a bug bounty program on Immunefi.com, DeFi’s leading bug bounty platform! Ethical hackers can review…Continue reading on Medium » (https://medium.com/@blizzardavalanche/blizzards-bug-bounty-program-on-immunefi-eb9c2e01e4f8?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Blizzard’s Bug Bounty Program on Immunefi
Pleased to announce Blizzard is doing a bug bounty program on Immunefi.com, DeFi’s leading bug bounty platform! Ethical hackers can review…
Blizzard’s Bug Bounty Program on Immunefi
Pleased to announce Blizzard is doing a bug bounty program on Immunefi.com, DeFi’s leading bug bounty platform! Ethical hackers can review…Continue reading on Medium »
Read more...
Pleased to announce Blizzard is doing a bug bounty program on Immunefi.com, DeFi’s leading bug bounty platform! Ethical hackers can review…Continue reading on Medium »
Read more...
GC2 - A Command And Control Application That Allows An Attacker To Execute Commands On The Target Machine Using Google Sheet And Exfiltrate Data Using Google Drive
http://www.kitploit.com/2021/10/gc2-command-and-control-application.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2021/10/gc2-command-and-control-application.html
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.
GC2 (Google Command and Control) is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet and exfiltrates data using Google Drive.
Why
This program has been developed in order to provide a command and control that does not require any particular set up (like: a custom domain, VPS, CDN, ...) during Red Teaming (https://www.kitploit.com/search/label/Red%20Teaming) activities.Furthermore, the program will interact only with Google's domains (*.google.com) to make detection more difficult.PS: Please don't upload the compiled binary (https://www.kitploit.com/search/label/Binary) on VirusTotal (https://www.kitploit.com/search/label/VirusTotal) :)
Set up
Build executablegit clone https://github.com/looCiprian/GC2-sheet
cd GC2-sheet
go build gc2-sheet.goCreate a new google "service account"Create a new google "service account" using https://console.cloud.google.com/, create a .json key file for the service accountEnable Google Sheet API and Google Drive APIEnable Google Drive API https://developers.google.com/drive/api/v3/enable-drive-api and Google Sheet API https://developers.google.com/sheets/api/quickstart/go
Set up Google Sheet and Google DriveCreate a new Google Sheet and add the service account to the editor (https://www.kitploit.com/search/label/Editor) group of the spreadsheet (to add the service account use its email)
___________________________
@hacking_Attack
@Hacking_Video
Why
This program has been developed in order to provide a command and control that does not require any particular set up (like: a custom domain, VPS, CDN, ...) during Red Teaming (https://www.kitploit.com/search/label/Red%20Teaming) activities.Furthermore, the program will interact only with Google's domains (*.google.com) to make detection more difficult.PS: Please don't upload the compiled binary (https://www.kitploit.com/search/label/Binary) on VirusTotal (https://www.kitploit.com/search/label/VirusTotal) :)
Set up
Build executablegit clone https://github.com/looCiprian/GC2-sheet
cd GC2-sheet
go build gc2-sheet.goCreate a new google "service account"Create a new google "service account" using https://console.cloud.google.com/, create a .json key file for the service accountEnable Google Sheet API and Google Drive APIEnable Google Drive API https://developers.google.com/drive/api/v3/enable-drive-api and Google Sheet API https://developers.google.com/sheets/api/quickstart/go
Set up Google Sheet and Google DriveCreate a new Google Sheet and add the service account to the editor (https://www.kitploit.com/search/label/Editor) group of the spreadsheet (to add the service account use its email)
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.