Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
66K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Looking my dad's HTTP server

So as the title suggests I am trying to test the security of my dad's home http server, he's an IT guy and just kind of into that sort of thing. He has a whole bunch of movie files stored on the server and he is offering to pay me if I can gain access to it, apparently he's been recycling the configuration in practice. My problem is I can't find the server's version from the banner it sends me. Is there another way I can find the server's version from the outside?

submitted by /u/jesus-da-wizard
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Tools to find out more about someone?

Apologies if this is not allowed. Help a newbie out here, i have a 16 yo sister, and there's a chap that's 24 that works with her, there have been numerous red flags from what I've been told about him, and am genuinely concerned that his intentions are less than honourable, currently all I have to go off is a Facebook profile with next to nothing on it and I know where he works. That is literally it, does anyone have any tools or ideas I can use to find out more about the guy? I've seen folks like thegreatLondini (no idea if he's legit) etc. On tik tok pull off stuff like this, I know my way around a PC, but have only just started learning more about this.

Cheers Reddit A concerned Big Brother.

submitted by /u/Lifes_punchline
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
I need your advice

hello and sorry for my bad English

I am a novice assembler (NASM) and a freelancer by trade and a very good contract was sent my way.they want me to de-assemble a Visual C++/MFC 2012 application and rewrite it in C#/.NET

the thing is as I'm a very good software and website full-stack developer but said I'm a novice in this area but yet I don't want to ignore this challenge and not to mention the money is good. so I fired up Ghidra and realized something: I've only worked with CLI Code when it came to assembly I don't know how to differentiate the GUI written in MFC from the program's own logic.

the client sent me a sample code. they said if i de-assemble it and manage to write it in high-level language the contract's mine.

so that's it for now. I want to know how to start de-assembling a gui program and figure out how to differentiate/separate the gui code from the core logic of the app.

I need advice. materials to read that can help.

PS: right now I'm reading up on Intel's Assembly Volumes to refresh my memory

submitted by /u/kage_heroin
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
How do I bypass router password?

Ok, so here is my problem I have parents who like to take control of everything. They recently got a Netgear Nighthawk 3500 and got this annoying ass program called Circle by Disney. (you may have heard of it) (its circle 1 not 2) and no matter what I have tried I cant seem to bypass it. I have ran a nmap scan and I have the token but that's as far as I could get. Does anyone have any ideas?

submitted by /u/JunkBoi76
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
What stops someone from hacking a software they developed themselves?

What stops something from hacking a software they developed themselves. Let’s say an app for your bank or accounts in general. Bear with me because I know next to nothing about software let alone coding, but from my point of view it would seem quite easy to bypass something you made yourself. What stops a developer on an app like this from not being able to log into my account and suck out all my money. Obviously two factor authentication exists, but let’s say it wasn’t a part of this hypothetical system.

submitted by /u/BibbidiBobbidiBu
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
How to use Metasploit to save tons of time

Metasploit is a powerful tool that is used by ethical hackers to find vulnerabilities on networks and servers. It helps to find the weak…Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Does NP in GetNPUsers stand for Non-Preauth?

I believe SPN in GetUserSPNs stands for "Service Principal Names" as this tool is used to find Service Principal Names that are associated with normal user account.

https://github.com/SecureAuthCorp/impacket/blob/master/examples/GetUserSPNs.py

Then, I've also looking at impacket GetNPUsers and wondering what is the meaning of NP in it's name?

https://github.com/SecureAuthCorp/impacket/blob/master/examples/GetNPUsers.py

Does NP stand for Non-Preauth as the technique attempt to harvest the non-preauth AS_REP responses?

submitted by /u/w0lfcat
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
zune 30gb

are there anything i can do with a 30gb zune other then turning the zune in to a portable hdd ?

submitted by /u/ilovewomancum
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
How does a TPM actually protect you?

Sorry if this counts as off topic, but i guess hackers knows the most about how to also protect yourself from hackers.

To me it sounds like a TPM serves no purpose unless your computer gets physically stolen, but i'm pretty sure that's wrong, so i have to ask. I know the TPM 2.0 can be used for DRM purposes with win11. And i know its used in some way with the BitLocker and secure boot, making so you cant usb- / remote boot, like for adding admin accounts and stuff. But i don't know much else.

submitted by /u/tekett
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Metasploit....

So I'm a bit new to metasploit , I used to use metasploit across networks using ngrok for port forwarding as my isp doesnt support it. recently , ngrok got banned by most isps in my country , I was wondering if there were any other alternatives to ngrok . and if not help me out with a solution

submitted by /u/Shark_613
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video