Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
TIWAP : Totally Insecure Web Application Project
TIWAP is a web security testing lab made using Flask for budding security enthusiasts to learn about various web vulnerabilities. Inspired by DVWA, the contributors have tried their best to regenerate various web vulnerabilities
The application is solely made for educational purpose and to learn web hacking in a legal environment.
Setup and Installation
To keep the installation and setup easy, we have configured everything for you. All you need is Docker on your system.
Once you are done with docker installation, run the following commands.
git clone https://github.com/tombstoneghost/TIWAP
cd TIWAP
docker-compose up
Note: It works only on Linux as of now and windows compatibility is work under progress
Once the lab is started, you can log in using the default credentials.
Username:
Password:
Tech Stack
Front-End: HTML, CSS and JavaScript
Back-End: Python – Flask
Databases: SQLite3 and MongoDB
Vulnerabilities
Currently, we have 20 vulnerabilities in the lab. All listed below:
* SQL Injection
* Blind SQL Injection
* NoSQL Injection
* Command Injection
* Business Logic Flaw
* Sensitive Data Exposure
* XML External Entities
* Security Misconfiguration
* Reflected XSS
* Stored XSS
* DOM Based XSS
* HTML Injection
* Improper Certificate Validation
* Hardcoded Credentials
* Insecure File Upload
* Brute Force
* Directory Traversal
* Cross-Site Request Forgery (CSRF)
* Server-Side Request Forgery (SSRF)
* Server-Side Template Injection (SSTI)
Each vulnerability is having 3 difficulty levels, namely Low, Medium and Hard. These levels can be set from the settings page.
Download
TIWAP : Totally Insecure Web Application Project
TIWAP is a web security testing lab made using Flask for budding security enthusiasts to learn about various web vulnerabilities. Inspired by DVWA, the contributors have tried their best to regenerate various web vulnerabilities
The application is solely made for educational purpose and to learn web hacking in a legal environment.
Setup and Installation
To keep the installation and setup easy, we have configured everything for you. All you need is Docker on your system.
Once you are done with docker installation, run the following commands.
git clone https://github.com/tombstoneghost/TIWAP
cd TIWAP
docker-compose up
Note: It works only on Linux as of now and windows compatibility is work under progress
Once the lab is started, you can log in using the default credentials.
Username:
adminPassword:
adminTech Stack
Front-End: HTML, CSS and JavaScript
Back-End: Python – Flask
Databases: SQLite3 and MongoDB
Vulnerabilities
Currently, we have 20 vulnerabilities in the lab. All listed below:
* SQL Injection
* Blind SQL Injection
* NoSQL Injection
* Command Injection
* Business Logic Flaw
* Sensitive Data Exposure
* XML External Entities
* Security Misconfiguration
* Reflected XSS
* Stored XSS
* DOM Based XSS
* HTML Injection
* Improper Certificate Validation
* Hardcoded Credentials
* Insecure File Upload
* Brute Force
* Directory Traversal
* Cross-Site Request Forgery (CSRF)
* Server-Side Request Forgery (SSRF)
* Server-Side Template Injection (SSTI)
Each vulnerability is having 3 difficulty levels, namely Low, Medium and Hard. These levels can be set from the settings page.
Download
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
LDAPmonitor : Monitor Creation, Deletion And Changes To LDAP Objects Live During Your Pentest Or System Administration!
LDAPmonitor is a Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!
With this tool you can quickly see if your attack worked and if it changed LDAP attributes of the target object.
https://blogger.googleusercontent.com/img/a/AVvXsEgX2dkXzWuz7UoCzJIkBR7qrw5pgVoqi-mjjX_L9D_3hrRiDpyNqyl3Qsa9iQhAHs62QaSWC4H5z_dtq2fIpPv03ndMLG-jdeFFZMwGRlKbDd6ZuUbHNe1Wmp84ll_swuKK9J9GieFgwWMV6QwUpxv7ZwcLOF2ly3NglEmNcK1v3ofHwiuK5mACcZmA=s1554
Features
FeaturePython (.py)CSharp (.exe)Powershell (.ps1)LDAPS supporthttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Random delay in seconds between querieshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Custom delay in seconds between querieshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Save output to logfilehttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Colored or not colored output with
Here is a few use cases where this tool can be useful:
* Detect account lockout in real time
https://blogger.googleusercontent.com/img/a/AVvXsEgyRrK65PsF8ETZv4OjaaYzowcN7LCzvc5GwxmcWSic3a4Yu5VCqrEbGd1lE-fcx2LlbnMy1hzP-9sK8rdrALZmKJnO7Z-jobM65AVnwXwsonzFUy33XdIifycE48JUVgnDnLizKm0Otd9O7AKmOvn9kFD24Y31Rv4Zr432d9SL1RWCW0AQwpvElmy7=s1857
* Check if your privilege escalation worked (with ntlmrelay’s
https://blogger.googleusercontent.com/img/a/AVvXsEj_LDk_5v07owY5OEA3HXhyYqFjJ2NFF8ACUw2MPwaovhZKuqg4WogPDmmEV6rXKBdz-eTX7qL6tSa6MH-IITHHSZhQZYwTxbtu816Miem6WU32aHromKdBkUPBQ2ej7kl_an2yr6oHgddZO2qPGCUZRP5hGc8NZxrGEJHHXFWHAtmjuVQduajBmWt2=s1156
Cross platform In Python (.py)
https://blogger.googleusercontent.com/img/a/AVvXsEgq7Ny8GcngvVKoYMVxF0cav862mrKkfCMfjM9w68OlyCAtEpaMnjooLoXrhC4zIjbFp7OpwSRdi4RGkAKPPSZYVLUX4zV2-pSmOsTJh7CdfcTGO4WNiCAJj6CZKFD4zyROtPojBObnrmBPTZxcihrr[...]
LDAPmonitor : Monitor Creation, Deletion And Changes To LDAP Objects Live During Your Pentest Or System Administration!
LDAPmonitor is a Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!
With this tool you can quickly see if your attack worked and if it changed LDAP attributes of the target object.
https://blogger.googleusercontent.com/img/a/AVvXsEgX2dkXzWuz7UoCzJIkBR7qrw5pgVoqi-mjjX_L9D_3hrRiDpyNqyl3Qsa9iQhAHs62QaSWC4H5z_dtq2fIpPv03ndMLG-jdeFFZMwGRlKbDd6ZuUbHNe1Wmp84ll_swuKK9J9GieFgwWMV6QwUpxv7ZwcLOF2ly3NglEmNcK1v3ofHwiuK5mACcZmA=s1554
Features
FeaturePython (.py)CSharp (.exe)Powershell (.ps1)LDAPS supporthttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Random delay in seconds between querieshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Custom delay in seconds between querieshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Save output to logfilehttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Colored or not colored output with
--no-colorshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png Custom page size for paged querieshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Authenticate with user and passwordhttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Authenticate as current shell userhttps://s.w.org/images/core/emoji/13.1.0/72x72/274c.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Authenticate with LM:NT hasheshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png Authenticate with kerberos ticketshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png https://s.w.org/images/core/emoji/13.1.0/72x72/274c.png Option to ignore user logon eventshttps://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png https://s.w.org/images/core/emoji/13.1.0/72x72/2714.png Typical use casesHere is a few use cases where this tool can be useful:
* Detect account lockout in real time
https://blogger.googleusercontent.com/img/a/AVvXsEgyRrK65PsF8ETZv4OjaaYzowcN7LCzvc5GwxmcWSic3a4Yu5VCqrEbGd1lE-fcx2LlbnMy1hzP-9sK8rdrALZmKJnO7Z-jobM65AVnwXwsonzFUy33XdIifycE48JUVgnDnLizKm0Otd9O7AKmOvn9kFD24Y31Rv4Zr432d9SL1RWCW0AQwpvElmy7=s1857
* Check if your privilege escalation worked (with ntlmrelay’s
--escalate-useroption) * Detect when users are login in to know when to start a network poisoning.https://blogger.googleusercontent.com/img/a/AVvXsEj_LDk_5v07owY5OEA3HXhyYqFjJ2NFF8ACUw2MPwaovhZKuqg4WogPDmmEV6rXKBdz-eTX7qL6tSa6MH-IITHHSZhQZYwTxbtu816Miem6WU32aHromKdBkUPBQ2ej7kl_an2yr6oHgddZO2qPGCUZRP5hGc8NZxrGEJHHXFWHAtmjuVQduajBmWt2=s1156
Cross platform In Python (.py)
https://blogger.googleusercontent.com/img/a/AVvXsEgq7Ny8GcngvVKoYMVxF0cav862mrKkfCMfjM9w68OlyCAtEpaMnjooLoXrhC4zIjbFp7OpwSRdi4RGkAKPPSZYVLUX4zV2-pSmOsTJh7CdfcTGO4WNiCAJj6CZKFD4zyROtPojBObnrmBPTZxcihrr[...]
Hacking Articles Tips Tricks Videos Tutorials
Kali Linux Tutorials LDAPmonitor : Monitor Creation, Deletion And Changes To LDAP Objects Live During Your Pentest Or System Administration! LDAPmonitor is a Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!…
ri2fUwmlgJyLRnqZhE1T6CN_4A4CTd_BiWce=s1554
In CSharp (.exe)
https://blogger.googleusercontent.com/img/a/AVvXsEiKCcR0j_Q4bw6WBARoQq-GZUGnhU7TZ_mFNXT9_UAIHLx5k202p3qW8tAakPcoQR2DkWtbriqGXFDwh1oXLRLhltxwFYEidHfccJUt77bBLy_y-SSuj8XbmqjKc-7zlJB3x4MwN0ar1JircBlIUuy7aZ2XtbqROsmVxmCVuhsPryTZSRcYIpJUwqrE=s1928
In Powershell (.ps1)
https://blogger.googleusercontent.com/img/a/AVvXsEh12EfIFtx2IPaJ0jlRxPCEx0xXIAl252EcBh5tDlZ6hAiG6zvc5Q5IPVuBqXX2mnmZFMqrD8XaqyPhbVOT9mPItKZVKZAhjQAjaV3VGpjN5c8CnSUPNPlLBJW8sr1eewdg8V0dLhNOTkAuzttTZxOGkshzeRUemRHLuPdZMPAvvsa-DzVhtN6DicKS=s1539 Download
In CSharp (.exe)
https://blogger.googleusercontent.com/img/a/AVvXsEiKCcR0j_Q4bw6WBARoQq-GZUGnhU7TZ_mFNXT9_UAIHLx5k202p3qW8tAakPcoQR2DkWtbriqGXFDwh1oXLRLhltxwFYEidHfccJUt77bBLy_y-SSuj8XbmqjKc-7zlJB3x4MwN0ar1JircBlIUuy7aZ2XtbqROsmVxmCVuhsPryTZSRcYIpJUwqrE=s1928
In Powershell (.ps1)
https://blogger.googleusercontent.com/img/a/AVvXsEh12EfIFtx2IPaJ0jlRxPCEx0xXIAl252EcBh5tDlZ6hAiG6zvc5Q5IPVuBqXX2mnmZFMqrD8XaqyPhbVOT9mPItKZVKZAhjQAjaV3VGpjN5c8CnSUPNPlLBJW8sr1eewdg8V0dLhNOTkAuzttTZxOGkshzeRUemRHLuPdZMPAvvsa-DzVhtN6DicKS=s1539 Download
Introduction To Bash For System Administration and Bug Bounty Hunting
Suggested Entry-Point/Pre-Requisite For My Series: Designing, Developing, and Automating a Distributed System That Will Be Geared For Bug…Continue reading on Medium »
Read more...
Suggested Entry-Point/Pre-Requisite For My Series: Designing, Developing, and Automating a Distributed System That Will Be Geared For Bug…Continue reading on Medium »
Read more...
Directory Bruteforce
This attack is mostly used to find hidden directories on a web serverContinue reading on Medium »
Read more...
This attack is mostly used to find hidden directories on a web serverContinue reading on Medium »
Read more...
Misconfigured Social Login Leads to Permanent account access
Hello Hunters, This article is about one of my finding in which an user can access the account which is not belong to him via social login…Continue reading on Medium »
Read more...
Hello Hunters, This article is about one of my finding in which an user can access the account which is not belong to him via social login…Continue reading on Medium »
Read more...
Introduction To Bash For System Administration and Bug Bounty Hunting
https://medium.com/@daniel.j.hunt/introduction-to-bash-for-system-administration-and-bug-bounty-hunting-6003e16dc87a?source=rss------bug_bounty-5
https://medium.com/@daniel.j.hunt/introduction-to-bash-for-system-administration-and-bug-bounty-hunting-6003e16dc87a?source=rss------bug_bounty-5
Suggested Entry-Point/Pre-Requisite For My Series: Designing, Developing, and Automating a Distributed System That Will Be Geared For Bug…Continue reading on Medium » (https://medium.com/@daniel.j.hunt/introduction-to-bash-for-system-administration-and-bug-bounty-hunting-6003e16dc87a?source=rss------bug_bounty-5)
This attack is mostly used to find hidden directories on a web serverContinue reading on Medium » (https://medium.com/@badhrinathan/directory-bruteforce-cd559f7b8bd1?source=rss------bug_bounty-5)
Misconfigured Social Login Leads to Permanent account access
https://medium.com/@thehemdeep/misconfigured-social-login-leads-to-permanent-account-access-41a907d6bef5?source=rss------bug_bounty-5
https://medium.com/@thehemdeep/misconfigured-social-login-leads-to-permanent-account-access-41a907d6bef5?source=rss------bug_bounty-5
Hello Hunters, This article is about one of my finding in which an user can access the account which is not belong to him via social login…Continue reading on Medium » (https://medium.com/@thehemdeep/misconfigured-social-login-leads-to-permanent-account-access-41a907d6bef5?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
La protezione dietro al Green Pass
Di recente un lettore mi ha fatto alcune domande tecniche sul mio progetto di ricerca sul Green Pass, vista la complessità dell’argomento…
Continue reading on Medium »
La protezione dietro al Green Pass
Di recente un lettore mi ha fatto alcune domande tecniche sul mio progetto di ricerca sul Green Pass, vista la complessità dell’argomento…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Los errores de escucha en los chips de MediaTek afectan al 37% de todos los teléfonos inteligentes…
https://cdn-images-1.medium.com/max/1449/0*Sltv7sRWxeLe5_lD
PUBLICADO EN 24 NOVIEMBRE, 2021POR EHACKING
Continue reading on Medium »
Los errores de escucha en los chips de MediaTek afectan al 37% de todos los teléfonos inteligentes…
https://cdn-images-1.medium.com/max/1449/0*Sltv7sRWxeLe5_lD
PUBLICADO EN 24 NOVIEMBRE, 2021POR EHACKING
Continue reading on Medium »