Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
A rule-based tunnel in Go.
Features
Local HTTP/HTTPS/SOCKS server with authentication (https://www.kitploit.com/search/label/Authentication) supportVMess, Shadowsocks, Trojan, Snell protocol support for remote connectionsBuilt-in DNS server that aims to minimize DNS pollution attack impact, supports DoH/DoT upstream and fake IP.Rules based off domains, GEOIP, IPCIDR or Process to forward packets (https://www.kitploit.com/search/label/Packets) to different nodesRemote groups allow users to implement powerful rules. Supports automatic fallback, load balancing (https://www.kitploit.com/search/label/Load%20Balancing) or auto select node based off latencyRemote providers, allowing users to get node lists remotely instead of hardcoding in configNetfilter TCP redirecting. Deploy Clash on your Internet gateway (https://www.kitploit.com/search/label/Gateway) with iptables.Comprehensive HTTP RESTful API controller
Premium Features
TUN mode on macOS, Linux and Windows. Doc (https://github.com/Dreamacro/clash/wiki/premium-core-features#tun-device)Match your tunnel by Script (https://github.com/Dreamacro/clash/wiki/premium-core-features#script)Rule Provider (https://github.com/Dreamacro/clash/wiki/premium-core-features#rule-providers)
Getting Started
Documentations are now moved to GitHub Wiki (https://github.com/Dreamacro/clash/wiki).
Premium Release
Release (https://github.com/Dreamacro/clash/releases/tag/premium)
Development
If you want to build an application that uses clash as a library, check out the the GitHub Wiki (https://github.com/Dreamacro/clash/wiki/use-clash-as-a-library)
Credits
riobard/go-shadowsocks2 (https://github.com/riobard/go-shadowsocks2)v2ray/v2ray-core (https://github.com/v2ray/v2ray-core)WireGuard/wireguard-go (https://github.com/WireGuard/wireguard-go)
License
This software is released under the GPL-3.0 license.

Download Clash (https://github.com/Dreamacro/clash)

___________________________
@hacking_Attack
@Hacking_Video
Programa de cacería de errores

Previo a nuestro lanzamiento a producción, hemos decidido anunciar un programa de cacería de errores “Bug Bounty” dentro de nuestra…Continue reading on Medium »
Read more...
Clash - A Rule-Based Tunnel In Go

A rule-based tunnel in Go.FeaturesLocal HTTP/HTTPS/SOCKS server with authentication supportVMess, Shadowsocks, Trojan, Snell protocol support for remote connectionsBuilt-in DNS server that aims to minimize DNS pollution attack impact, supports DoH/DoT upstream and fake IP.Rules based off domains, GEOIP, IPCIDR or Process to forward packets to different nodesRemote groups allow users to implement powerful rules. Supports automatic fallback, load balancing or auto select node based off latencyRemote providers, allowing users to get node lists remotely instead of hardcoding in configNetfilter TCP redirecting. Deploy Clash on your Internet gateway with iptables.Comprehensive HTTP RESTful API controllerPremium FeaturesTUN mode on macOS, Linux and Windows. DocMatch your tunnel by ScriptRule ProviderGetting StartedDocumentations are now moved to GitHub Wiki.Premium ReleaseReleaseDevelopmentIf you want to build an application that uses clash as a library, check out the the GitHub WikiCreditsriobard/go-shadowsocks2v2ray/v2ray-coreWireGuard/wireguard-goLicenseThis software is released under the GPL-3.0 license.Download Clash
Read more...

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Clash - A Rule-Based Tunnel In Go

https://blogger.googleusercontent.com/img/a/AVvXsEjrc9pWmwyXU03cXJkN33j6uF-bZ_PVzNJS-RmTjNLCzqQ4OjLt7jx9LFW5qfegQGKWmeoxKEh4MFAu8_kxqsc0qrKDzjbgoonWcuSxCdRGydWVhfAggp3w-jSOHqIuD5o04coCEb1NxSt51sdYZ-Tpq_9gmkexJzyoOPZo1ISYwHI_ly3o1aUOffq05w=s320
A rule-based tunnel in Go.

Features

* Local HTTP/HTTPS/SOCKS server with authentication support
* VMess, Shadowsocks, Trojan, Snell protocol support for remote connections
* Built-in DNS server that aims to minimize DNS pollution attack impact, supports DoH/DoT upstream and fake IP.
* Rules based off domains, GEOIP, IPCIDR or Process to forward packets to different nodes
* Remote groups allow users to implement powerful rules. Supports automatic fallback, load balancing or auto select node based off latency
* Remote providers, allowing users to get node lists remotely instead of hardcoding in config
* Netfilter TCP redirecting. Deploy Clash on your Internet gateway with iptables.
* Comprehensive HTTP RESTful API controller
Premium Features

* TUN mode on macOS, Linux and Windows. Doc
* Match your tunnel by Script
* Rule Provider

Getting Started

Documentations are now moved to GitHub Wiki.

Premium Release

Release

Development

If you want to build an application that uses clash as a library, check out the the GitHub Wiki

Credits

* riobard/go-shadowsocks2
* v2ray/v2ray-core
* WireGuard/wireguard-go

License

This software is released under the GPL-3.0 license.
Download Clash

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Pentester Lab: S2–052 VM Walktrough

https://cdn-images-1.medium.com/max/1004/0*zMULv-3zz579X4if.png
Bu makinede bizlere Apache Struts 2 framework kullanan web sunucusunda uzakta komut çalıştırabildiğini(RCE) göstermektedir.

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Karkinos — PenTest para Iniciantes

https://cdn-images-1.medium.com/max/628/0*g7BKEbY-Fm25tfkB.png
O Karkinos é uma ferramenta que esta em evolução e que ate o momento disponibiliza recursos que podem auxiliá-lo durante um PenTest ou em…

Continue reading on 100security »
hacking: security in practice
Government Bug Bounty

Governments should provide Bug Bounty programs otherwise the hacker if they find a vulnerability has an incentive to sell the vulnerability to criminals.



A few months ago I did a post regarding the oil industry in america that was very successful in this section of reddit. Obviously it was a small vulnerability but I sent more than one email to cisa.gov and the problem was fixed only after months and no one from the US government thanked me.



Now I find myself to have found a very serious vulnerability that would allow a "solarwinds" multiplied by 10.



But in spite of my effort to do incessant research and study I am not rewarded.



Give me a computer and 15 hours of time and I find a serious vulnerability in some company. One small mistake, one capable person and solarwinds 2 will show up again.



Now imagine that someone walks into one of the 5 Big IT security companies that provide security software to government agencies and critical companies.



Selling a vulnerability in one of these companies to a hostile intelligence agency can make more than 10 million but can cause billions in damage.

Governments around the world think about it!

submitted by /u/LargeTrader
[link] [comments]