Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Edited webpage elements and now unsure whether I worked around an unintentional coding error or exploited bad code. Which is it? Read below for details

First off, I know next to nothing about HTML or javascript yet.

I was trying to deactivate/delete an account that I have on a website. Towards the end of the process of deleting my account, I could not find where to finalize my request to delete the account.

After some googling I found that there’s supposed to be a button that you click to submit your request. It did not show up on my screen. I inspected the web page and searched for the button that was supposed to be there, changed some values from disabled to enabled, changed some “false” to “true”, changed “btn continue disabled” to “btn continue enabled”, and then I was able to click the button. I was able to click it and go to the next page where I finalized and sent my request.

The reason I’m unsure of if it was a coding error and if the button was supposed to be there is because that account is banned, and I thought maybe they block the button from banned users.

submitted by /u/AverageCyberDude
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Is my laptop compromised?

My AWS account was recently hacked and a web crawler installed at my expense. For the past year I've also been getting blocked at captcha checkpoints when using google as they are detecting unusual traffic coming from my system. My system isnt slow, and I don't have popups that arent dealt with by malwarebytes. Is it likely my computer is hacked?

submitted by /u/Akemedis_jones
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Boofuzz - Network Protocol Fuzzing for Humans

Boofuzz is a fork of and the successor to the venerable Sulley fuzzing framework. Besides numerous bug fixes, boofuzz aims for extensibility. The goal: fuzz everything.Why?Sulley has been the preeminent open source fuzzer for some time, but has fallen out of maintenance.FeaturesLike Sulley, boofuzz incorporates all the critical elements of a fuzzer:Easy and quick data generation.Instrumentation – AKA failure detection.Target reset after failure.Recording of test data.Unlike Sulley, boofuzz also features:Online documentation.Support for arbitrary communications mediums.Built-in support for serial fuzzing, ethernet- and IP-layer, UDP broadcast.Better recording of test data -- consistent, thorough, clear.Test result CSV export.Extensible instrumentation/failure detection.Much easier install experience!Far fewer bugs.Sulley is affectionately named after the giant teal and purple creature from Monsters Inc. due to his fuzziness. Boofuzz is likewise named after the only creature known to have scared Sulley himself: Boo!Boo from Monsters IncInstallationpip install boofuzzBoofuzz installs as a Python library used to build fuzzer scripts. See INSTALL.rst for advanced and detailed instructions.DocumentationDocumentation is available at https://boofuzz.readthedocs.io/, including nifty quickstart guides.ContributionsPull requests are welcome, as boofuzz is actively maintained (at the time of this writing ;)). See CONTRIBUTING.rst.CommunityFor questions that take the form of “How do I… with boofuzz?” or “I got this error with boofuzz, why?”, consider posting your question on Stack Overflow. Make sure to use the fuzzing tag.If you’ve found a bug, or have an idea/suggestion/request, file an issue here on GitHub.For other questions, check out boofuzz on gitter or Google Groups.For updates, follow @b00fuzz on Twitter.Download Boofuzz
Read more...

___________________________
@hacking_Attack
@Hacking_Video
All about Bug Bounty GitHubBug

Bug Bounty GitHubContinue reading on Medium »
Read more...
How I got $200 in 30 Seconds.

Hello Guys. I am Yash working as a security researcher,Continue reading on Medium »
Read more...
From URL dumps digging to IDOR , BAC, Massive Phishing in Udemy

Hey All,Continue reading on Medium »
Read more...
4 Risky bugs to report to bounty programs

Bugs that you should avoid or reconsider before reporting to programs.Continue reading on Medium »
Read more...
Earn $AMPT while Discovering Decentralised Governance

Guaranteed to WIN! $70K+ In Total Rewards!!Continue reading on Amplify Protocol »
Read more...