hacking: security in practice
How to monitor a process and see exactly what they use and do?
For example I have a program in jar that I know loads files somewhere on my computer and then uses them. My goal is to see what exactly is loaded into my computer. Any suggestions on how to gain access to those files? Already tried windows sysinternals among many file change recorder such as folderchangesview. Should I give other file change monitors a try or is there a better way to go about this?
submitted by /u/friendlycatfan420
[link] [comments]
How to monitor a process and see exactly what they use and do?
For example I have a program in jar that I know loads files somewhere on my computer and then uses them. My goal is to see what exactly is loaded into my computer. Any suggestions on how to gain access to those files? Already tried windows sysinternals among many file change recorder such as folderchangesview. Should I give other file change monitors a try or is there a better way to go about this?
submitted by /u/friendlycatfan420
[link] [comments]
reddit
How to monitor a process and see exactly what they use and do?
For example I have a program in jar that I know loads files somewhere on my computer and then uses them. My goal is to see what exactly is loaded...
https://external-preview.redd.it/zq4BIW6IpscOOJvqP66eC_GpUNuwXoRhrbbTKOxMCxg.jpg?width=640&crop=smart&auto=webp&s=e0acde83d4e9c4cdc63b21630e1f2e7e71ae0839 https://snif.host
https://github.com/vesvault/snif
Maintain a trusted TLS certificate on any device without static IP and DNS.
Accept publicly trusted TLS connections to an anonymous hostname though an end-to-end TLS relay
https://preview.redd.it/xr1nco7m92y71.png?width=662&format=png&auto=webp&s=682d8f41d26091f9c48d730d8272cad312a11f39
https://preview.redd.it/5n3gnimn92y71.png?width=662&format=png&auto=webp&s=ed5c8ee7c6670351fab0b51abadf4a64cf12492c
submitted by /u/vesvault
[link] [comments]
https://github.com/vesvault/snif
Maintain a trusted TLS certificate on any device without static IP and DNS.
Accept publicly trusted TLS connections to an anonymous hostname though an end-to-end TLS relay
https://preview.redd.it/xr1nco7m92y71.png?width=662&format=png&auto=webp&s=682d8f41d26091f9c48d730d8272cad312a11f39
https://preview.redd.it/5n3gnimn92y71.png?width=662&format=png&auto=webp&s=ed5c8ee7c6670351fab0b51abadf4a64cf12492c
submitted by /u/vesvault
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
I found this interesting. Hiding a pineapple inside a USB charging brick
https://external-preview.redd.it/gT50evh699LGslokQKAtLHeeBk4IOMKoXt7WsbxcORI.jpg?width=320&crop=smart&auto=webp&s=46d484e9a144dea7e93c9a898d463a3e6100a5ba submitted by /u/radio_breathe
[link] [comments]
I found this interesting. Hiding a pineapple inside a USB charging brick
https://external-preview.redd.it/gT50evh699LGslokQKAtLHeeBk4IOMKoXt7WsbxcORI.jpg?width=320&crop=smart&auto=webp&s=46d484e9a144dea7e93c9a898d463a3e6100a5ba submitted by /u/radio_breathe
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Dumping non active user passwords with mimikatz
The following setup is tested on my own virtual machine based on this tutorial:
http://woshub.com/how-to-get-plain-text-passwords-of-windows-users/
I've created a few users
When I logged in as userA, I managed to get userA password via the following mimikatz command, but not userB.
1. Is it possible to get userB password if I did not log in to it? How?
2. Are there any other better tools for this purpose?
submitted by /u/w0lfcat
[link] [comments]
Dumping non active user passwords with mimikatz
The following setup is tested on my own virtual machine based on this tutorial:
http://woshub.com/how-to-get-plain-text-passwords-of-windows-users/
I've created a few users
userA userB When I logged in as userA, I managed to get userA password via the following mimikatz command, but not userB.
privilege::debug sekurlsa::logonPasswords full 1. Is it possible to get userB password if I did not log in to it? How?
2. Are there any other better tools for this purpose?
submitted by /u/w0lfcat
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
RECONHECIMENTO WEB HACKING. 4
https://cdn-images-1.medium.com/max/719/1*_zmcIiEW-bm2r_yIHxBHoQ.jpeg
O primeiro passo para atacar qualquer alvo é realizar o reconhecimento, ou simplesmente, reunir informações sobre o alvo. O reconhecimento…
Continue reading on Medium »
RECONHECIMENTO WEB HACKING. 4
https://cdn-images-1.medium.com/max/719/1*_zmcIiEW-bm2r_yIHxBHoQ.jpeg
O primeiro passo para atacar qualquer alvo é realizar o reconhecimento, ou simplesmente, reunir informações sobre o alvo. O reconhecimento…
Continue reading on Medium »
How I find My first Critical Bug Worth $2500–5000
https://medium.com/@sarafsaransh321/how-i-find-my-first-critical-bug-worth-2500-5000-7eb2c1c5d6d7?source=rss------bug_bounty-5
https://medium.com/@sarafsaransh321/how-i-find-my-first-critical-bug-worth-2500-5000-7eb2c1c5d6d7?source=rss------bug_bounty-5
You’ve also seen IDOR leads to account takeover and think that it’s just luck that man/women found that bug right? But let me tell you…Continue reading on Medium » (https://medium.com/@sarafsaransh321/how-i-find-my-first-critical-bug-worth-2500-5000-7eb2c1c5d6d7?source=rss------bug_bounty-5)
How I find My first Critical Bug Worth $2500–5000
You’ve also seen IDOR leads to account takeover and think that it’s just luck that man/women found that bug right? But let me tell you…Continue reading on Medium »
Read more...
You’ve also seen IDOR leads to account takeover and think that it’s just luck that man/women found that bug right? But let me tell you…Continue reading on Medium »
Read more...
WriteupContinue reading on Medium » (https://mukibas37.medium.com/bolt-tryhackme-f049c07e2a50?source=rss------bug_bounty-5)