Bug Bounty GitHubContinue reading on Medium » (https://medium.com/@ronakspecscale36/all-about-bug-bounty-githubbug-79d8a664b0ac?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How Can Dedicated Servers Be Safe From Cyber-Attacks?
To begin, businesses should set up policies to protect the security of their dedicated servers. Your dedicated server may be a target for…
Continue reading on Medium »
How Can Dedicated Servers Be Safe From Cyber-Attacks?
To begin, businesses should set up policies to protect the security of their dedicated servers. Your dedicated server may be a target for…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
7 Most Common Cyber Attacks
https://cdn-images-1.medium.com/max/1280/1*xdTxVANpViZ6ZG8EiuIXMg.png
The following are some of the cyber-attacks, which hackers use to target the victims.
Continue reading on Medium »
7 Most Common Cyber Attacks
https://cdn-images-1.medium.com/max/1280/1*xdTxVANpViZ6ZG8EiuIXMg.png
The following are some of the cyber-attacks, which hackers use to target the victims.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Inside the Mind of a Hacker
https://cdn-images-1.medium.com/max/1920/1*bJF_FisPo6UCAeGjAMa8Qg.jpeg
Consciousness feels like its inside a ROM chip in the brain. You can only read from it, but can’t write to it whenever you feel like. The…
Continue reading on Medium »
Inside the Mind of a Hacker
https://cdn-images-1.medium.com/max/1920/1*bJF_FisPo6UCAeGjAMa8Qg.jpeg
Consciousness feels like its inside a ROM chip in the brain. You can only read from it, but can’t write to it whenever you feel like. The…
Continue reading on Medium »
hacking: security in practice
I have problem with firefox add on
I found an add on on the github but the link was deleted.
On the second computer I have an add on on firefox but I don't know how to put it on a new computer because link was deleted.
It's possible somehow transfer into new computer?
Any advices?
submitted by /u/Rezvord
[link] [comments]
I have problem with firefox add on
I found an add on on the github but the link was deleted.
On the second computer I have an add on on firefox but I don't know how to put it on a new computer because link was deleted.
It's possible somehow transfer into new computer?
Any advices?
submitted by /u/Rezvord
[link] [comments]
reddit
I have problem with firefox add on
I found an add on on the github but the link was deleted. On the second computer I have an add on on firefox but I don't know how to put it on a...
hacking: security in practice
Defeway ip cam vulnerability?
Cant seem to find anything.
submitted by /u/ihatereddit47
[link] [comments]
Defeway ip cam vulnerability?
Cant seem to find anything.
submitted by /u/ihatereddit47
[link] [comments]
reddit
Defeway ip cam vulnerability?
Cant seem to find anything.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
AT&T Alien Labs finds new Golang malware (BotenaGo) targeting millions of routers and IoT devices with more than 30 exploits
https://external-preview.redd.it/BmIKMzCDljhMl0ZT8cVAlBcx9X13cSjDbP2_VOHZ0pA.jpg?width=640&crop=smart&auto=webp&s=d807aa63db3771f5b11880ed29662d8a5672616b submitted by /u/cutboxhe
[link] [comments]
AT&T Alien Labs finds new Golang malware (BotenaGo) targeting millions of routers and IoT devices with more than 30 exploits
https://external-preview.redd.it/BmIKMzCDljhMl0ZT8cVAlBcx9X13cSjDbP2_VOHZ0pA.jpg?width=640&crop=smart&auto=webp&s=d807aa63db3771f5b11880ed29662d8a5672616b submitted by /u/cutboxhe
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
“vPub v3” opensource online Party! - 16th November at 8 PM UTC
Dear security-conscious friends, thank you for a wonderful time with us on our past v1 and v2 online parties - especially the last one with Richard Stallman was pretty exciting :D Now we at 3mdeb are organizing a new event - Dasharo OSF vPub Fall 2021 (aka vPub v3) - with so many interesting topics for a pleasant discussion! Open/libre firmware/hardware - for the true cybersecurity (not by obscurity) - and more! Join us on 16th November at 8 PM UTC - using this page: https://vpub.dasharo.com/
Our new vPub is directly after the "Linux Secure Launch" TrenchBoot Summit that we're co-hosting between 4 - 8 PM UTC on 16th Nov too. It's going to be a deep dive into the truly secure opensource firmware booting - an exciting journey for those interested in firmware hardening their systems.
You are welcome to join any or both of these events, and we will be waiting for you! ;-) Let's try to stress test our servers' capabilities and beat the previous record of 50 attendees
submitted by /u/Mike-Banon1
[link] [comments]
“vPub v3” opensource online Party! - 16th November at 8 PM UTC
Dear security-conscious friends, thank you for a wonderful time with us on our past v1 and v2 online parties - especially the last one with Richard Stallman was pretty exciting :D Now we at 3mdeb are organizing a new event - Dasharo OSF vPub Fall 2021 (aka vPub v3) - with so many interesting topics for a pleasant discussion! Open/libre firmware/hardware - for the true cybersecurity (not by obscurity) - and more! Join us on 16th November at 8 PM UTC - using this page: https://vpub.dasharo.com/
Our new vPub is directly after the "Linux Secure Launch" TrenchBoot Summit that we're co-hosting between 4 - 8 PM UTC on 16th Nov too. It's going to be a deep dive into the truly secure opensource firmware booting - an exciting journey for those interested in firmware hardening their systems.
You are welcome to join any or both of these events, and we will be waiting for you! ;-) Let's try to stress test our servers' capabilities and beat the previous record of 50 attendees
submitted by /u/Mike-Banon1
[link] [comments]
hacking: security in practice
Trying to find out who's phone it is.
For a year, in my school's found things box there has been lying a phone. Recently I've won it in a poker game with my school janitor. Now, with my best friend we are trying to find out who is the phone's previous owner. The thing is, we know nothing about hacking. I tried connecting it to my laptop via USB, but it has some kind of programme named HiSuite that won't let me see any of the files. We identified it as an Honor 10. Any ideas for how we can get inside?
submitted by /u/Grrroooo
[link] [comments]
Trying to find out who's phone it is.
For a year, in my school's found things box there has been lying a phone. Recently I've won it in a poker game with my school janitor. Now, with my best friend we are trying to find out who is the phone's previous owner. The thing is, we know nothing about hacking. I tried connecting it to my laptop via USB, but it has some kind of programme named HiSuite that won't let me see any of the files. We identified it as an Honor 10. Any ideas for how we can get inside?
submitted by /u/Grrroooo
[link] [comments]
reddit
Trying to find out who's phone it is.
For a year, in my school's found things box there has been lying a phone. Recently I've won it in a poker game with my school janitor. Now, with...
“vPub v3” opensource cyber Party! - 16th November at 8 PM UTC
https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/
<!-- SC_OFF -->Dear security-conscious friends, thank you for a wonderful time with us on our past v1 and v2 online parties - especially the last one with Richard Stallman was pretty exciting :D Now we at 3mdeb (https://3mdeb.com/) are organizing a new event - Dasharo OSF vPub Fall 2021 (aka vPub v3) - with so many interesting topics for a pleasant discussion! Open/libre firmware/hardware for the true cybersecurity (not by obscurity), and more! Join us on 16th November at 8 PM UTC - using this page: https://vpub.dasharo.com/ Our new vPub is directly after the "Linux Secure Launch" TrenchBoot Summit that we're co-hosting between 4 - 8 PM UTC on 16th Nov too. It's going to be a deep dive into the truly secure opensource firmware booting - an exciting journey for those interested in firmware hardening their systems. You are welcome to join any or both of these events, and we will be waiting for you! ;-) Let's try to stress test our servers' capabilities and beat the previous record of 50 attendees <!-- SC_ON --> submitted by /u/Mike-Banon1 (https://www.reddit.com/user/Mike-Banon1)
[link] (https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/) [comments] (https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/)
https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/
<!-- SC_OFF -->Dear security-conscious friends, thank you for a wonderful time with us on our past v1 and v2 online parties - especially the last one with Richard Stallman was pretty exciting :D Now we at 3mdeb (https://3mdeb.com/) are organizing a new event - Dasharo OSF vPub Fall 2021 (aka vPub v3) - with so many interesting topics for a pleasant discussion! Open/libre firmware/hardware for the true cybersecurity (not by obscurity), and more! Join us on 16th November at 8 PM UTC - using this page: https://vpub.dasharo.com/ Our new vPub is directly after the "Linux Secure Launch" TrenchBoot Summit that we're co-hosting between 4 - 8 PM UTC on 16th Nov too. It's going to be a deep dive into the truly secure opensource firmware booting - an exciting journey for those interested in firmware hardening their systems. You are welcome to join any or both of these events, and we will be waiting for you! ;-) Let's try to stress test our servers' capabilities and beat the previous record of 50 attendees <!-- SC_ON --> submitted by /u/Mike-Banon1 (https://www.reddit.com/user/Mike-Banon1)
[link] (https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/) [comments] (https://www.reddit.com/r/redteamsec/comments/qrm3rl/vpub_v3_opensource_cyber_party_16th_november_at_8/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Covert-Control - Google Drive, OneDrive And Youtube As Covert-Channels - Control Systems Remotely By Uploading Files To Google Drive, OneDrive, Youtube Or Telegram
https://blogger.googleusercontent.com/img/a/AVvXsEhNNj9sLoHsQzeNXPg9G_wuz6tFFACZnQ5qGqK1LIj-vlqDBim9fO-3iCFDcjp5QX800dYWWEKLEGmAgUixYXCriGVhNVsDUUqmv2x0If0tDj-m0ZMxGcUyeMY5sM5TGdXeYW9G-1z0_BBJ4Moj4rpASC7R2ZzAKbMIgIugT6IN3tbKJtU2hiX-rPl5CA=w640-h208 Control systems remotely by uploading files to Google Drive, OneDrive, Youtube or Telegram using Python to create the files and the listeners. It allows to create text files, images, audio or videos, with the commands in cleartext or encrypted using AES.
*
covert-googledrive.py - Control systems uploading files to a public folder in Google Drive.
*
covert-onedrive.py - Control systems uploading files to a public folder in OneDrive.
*
covert-youtube.py - Control systems uploading videos to Youtube (updated from covert-tube).
*
covert-telegram.py - Control systems with a Telegram bot. Create files to uploadYou can find example files in the folder test_files or create new ones with generate_file.py:
-t (--type) [Required]: Types of file: "text", "image", "audio" or "video".
*
-o (--outputfile) [Optional]: Output file.
*
-c (--command) [Optional]: Command to execute.
*
-e (--encrypted) [Optional]: Add this flag to encrypt the command with AES.
Examples:
*
data_type (Optional. Default: "text"):
data_typeFile typeEncryptedValid forExtensiontextText fileNoGoogle Drive, OneDrive.txttext_encryptedText fileYesGoogle Drive, OneDrive.txtimageImageNoGoogle Drive, OneDrive.pngimage_encryptedImageYesGoogle Drive, OneDrive.pngaudioAudioNoGoogle Drive, OneDrive.wavaudio_encryptedAudioYesGoogle Drive, OneDrive.wavvideoVideoNoGoogle Drive, OneDrive, Youtube.avivideo_encryptedVideoYesGoogle Drive, OneDrive, Youtube.avi
*
delay_seconds (Optional. Default: 300): Seconds between checks of new files uploaded to the Google Drive or OneDrive folder or new videos in the Youtube channel.
*
aes_key (Optional. Default: "covert-control21"): Key for AES encryption.
*
debug (Optional. Default: True): Print messages and timestamps in the listener or not.
Specific configuration values:
*
googledrive_folder: Url of public Google Drive folder to monitor (for covert-googledrive.py).
*
onedrive_folder: Url of public OneDrive folder to monitor (for covert-onedrive.py).
*
youtube_channel_id: Youtube channel ID of the channel to monitor. You can get it from here (for covert-youtube.py).
*
youtube_api_key: Get an API key creating an application and generating the key in here (for covert-youtube.py).
*
telegram_token: Bot token, create it using BotFather. Write "/newbot", then send a name for the bot (for example, "botname") and a username for the bot ending in "-bot" (for example, "somethingrandombot") (for covert-telegram.py).
*
telegram_username: Specify a Telegram username so it only executes commands received from this user (without "@"). Google DriveIt allows to execute commands uploading text files, images, audio and videos, unencrypted or encrypted with AES. The op[...]
Covert-Control - Google Drive, OneDrive And Youtube As Covert-Channels - Control Systems Remotely By Uploading Files To Google Drive, OneDrive, Youtube Or Telegram
https://blogger.googleusercontent.com/img/a/AVvXsEhNNj9sLoHsQzeNXPg9G_wuz6tFFACZnQ5qGqK1LIj-vlqDBim9fO-3iCFDcjp5QX800dYWWEKLEGmAgUixYXCriGVhNVsDUUqmv2x0If0tDj-m0ZMxGcUyeMY5sM5TGdXeYW9G-1z0_BBJ4Moj4rpASC7R2ZzAKbMIgIugT6IN3tbKJtU2hiX-rPl5CA=w640-h208 Control systems remotely by uploading files to Google Drive, OneDrive, Youtube or Telegram using Python to create the files and the listeners. It allows to create text files, images, audio or videos, with the commands in cleartext or encrypted using AES.
*
covert-googledrive.py - Control systems uploading files to a public folder in Google Drive.
*
covert-onedrive.py - Control systems uploading files to a public folder in OneDrive.
*
covert-youtube.py - Control systems uploading videos to Youtube (updated from covert-tube).
*
covert-telegram.py - Control systems with a Telegram bot. Create files to uploadYou can find example files in the folder test_files or create new ones with generate_file.py:
python3 generate_file.py -t TYPE [-o OUTPUTFILE] [-c COMMAND] [-e] * -t (--type) [Required]: Types of file: "text", "image", "audio" or "video".
*
-o (--outputfile) [Optional]: Output file.
*
-c (--command) [Optional]: Command to execute.
*
-e (--encrypted) [Optional]: Add this flag to encrypt the command with AES.
Examples:
python3 generate_file.py -t text -c "whoami" -o text.txt
python3 generate_file.py -t text -c "whoami" -o text_encrypted.txt -e
python3 generate_file.py -t audio -c "whoami" -o audio.wav
python3 generate_file.py -t audio -c "whoami" -o audio_encrypted.wav -e
python3 generate_file.py -t image -c "whoami" -o image.png
python3 generate_file.py -t image -c "whoami" -o image_encrypted.png -e
python3 generate_file.py -t video -c "whoami" -o video.avi
python3 generate_file.py -t video -c "whoami" -o video_encrypted.avi -e ConfigurationCommon configuration values:*
data_type (Optional. Default: "text"):
data_typeFile typeEncryptedValid forExtensiontextText fileNoGoogle Drive, OneDrive.txttext_encryptedText fileYesGoogle Drive, OneDrive.txtimageImageNoGoogle Drive, OneDrive.pngimage_encryptedImageYesGoogle Drive, OneDrive.pngaudioAudioNoGoogle Drive, OneDrive.wavaudio_encryptedAudioYesGoogle Drive, OneDrive.wavvideoVideoNoGoogle Drive, OneDrive, Youtube.avivideo_encryptedVideoYesGoogle Drive, OneDrive, Youtube.avi
*
delay_seconds (Optional. Default: 300): Seconds between checks of new files uploaded to the Google Drive or OneDrive folder or new videos in the Youtube channel.
*
aes_key (Optional. Default: "covert-control21"): Key for AES encryption.
*
debug (Optional. Default: True): Print messages and timestamps in the listener or not.
Specific configuration values:
*
googledrive_folder: Url of public Google Drive folder to monitor (for covert-googledrive.py).
*
onedrive_folder: Url of public OneDrive folder to monitor (for covert-onedrive.py).
*
youtube_channel_id: Youtube channel ID of the channel to monitor. You can get it from here (for covert-youtube.py).
*
youtube_api_key: Get an API key creating an application and generating the key in here (for covert-youtube.py).
*
telegram_token: Bot token, create it using BotFather. Write "/newbot", then send a name for the bot (for example, "botname") and a username for the bot ending in "-bot" (for example, "somethingrandombot") (for covert-telegram.py).
*
telegram_username: Specify a Telegram username so it only executes commands received from this user (without "@"). Google DriveIt allows to execute commands uploading text files, images, audio and videos, unencrypted or encrypted with AES. The op[...]