Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Legacy QNAP NAS Devices Vulnerable to Zero-Day Attack https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Legacy QNAP NAS Devices Vulnerable to Zero-Day AttackPost Views: 63 sty…
., triggers some behavior in other processes),” researchers wrote.
See Also: Information Security Tool: Chameleon A fix for the vulnerability, suggested by researchers, is “adding input sanitizations to some core processes and library APIs, but it has not been fixed as of this writing.” Breaking Down QNAP Bug TwoThe second bug, tracked as CVE-2021-36195, is an unauthenticated RCE and arbitrary file-write flaw. It impacts QNAP TS-231’s latest firmware (version 4.3.6.1446), released in September.

The flaw allows two types of attacks. One allows a remote attacker – with access to the web server (default port 8080) – to execute arbitrary shell commands, without prior knowledge of the web credentials.

The second attack “allows a remote attacker with access to the DLNA server (default port 8200) to create arbitrary file data on any (non-existing) location, without any prior knowledge or credentials. It can also be elevated to execute arbitrary commands on the remote NAS as well,” according to researchers at SAM Seamless Network.

To exploit the bug, researchers created a proof-of-concept attack. “[We used] a python script that we wrote in order to hack into the device. We achieve full takeover of the device by using a simple reverse shell technique. After that, we access a file that’s stored on the QNAP storage. Any file stored can be accessed similarly.”

QNAP said a fix for supported hardware can be downloaded from the QNAP App Center and is identified as Multimedia Console 1.3.4. See Also: Hacking Stories: When two young hackers played war games with PentagonQNAP Patch Timeline“Currently, we have released the fix in the latest firmware and related app,” QNAP representatives told Threatpost. “Since the severity level is high, we would like to release the security update for legacy versions. It is expected to be available in a week. In addition, we hope there will be another week for users’ updates.”
Source: https://threatpost.com (Click Link)style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="8337846400"
data-ad-format="auto"
data-full-width-responsive="true"> Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/iphone-privacy-90x90.jpg Apple, Google Both Track Mobile Telemetry Data, Despite Users Opting Out1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Monero-Mining-90x90.png Malicious Docker Cryptomining Images Rack Up 20M Downloads2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/phph-90x90.jpg PHP Infiltrated with Backdoor Malware3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/ransomware_global_small-90x90.jpg Insurance Giant CNA Hit with Novel Ransomware Attack4 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Microsoft-Teams-90x90.jpg Microsoft Offers Up To $30K For Teams Bugs1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/thrive-themes-1030x391-1-90x90.png Active Exploits Hit WordPress Sites Vulnerable to Thrive Themes Flaws1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/HL-color-90x90.jpg Hobby Lobby Exposes Customer Data in Cloud Misconfiguration1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/adobe_coldfusion-700x412-e1542041238507-90x90.jpg Adobe Fixes Critical ColdFusion Flaw in Emergency Update1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Clubhouse-e1614022265127-90x90.jpg Bogus Android Clubhouse App Drops Credential-Swiping Malware2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/apple-security-90x90.jpg Trojanized Xcode Project Slips MacOS Malware to Apple Developers2 weeks ago
The post Legacy QNAP NAS Devices Vulnerable to Zero-Day Attack first[...]
hacking: security in practice
Is it possible to hack a gym membership chip, to extend the membership indefinitely?

excluding physical problems such as the gym workers noticing my membership ended but I still come in, is it possible to hack a gym chip so that the machine always opens the door for it?

submitted by /u/wizon88
[link] [comments]
Welcome back my hacker homies! I hope you all are doing great, like me! So many things to leahrn daily and new resources keep coming. Keep…Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/bragging-rights-lets-head-back-to-bug-bucket-88c94730b6fa?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Bragging Rights: Let’s head back to bug bucket

https://cdn-images-1.medium.com/max/1000/1*PCMitQ3uwHNZgI3B9Z8kAA.jpeg
Welcome back my hacker homies! I hope you all are doing great, like me! So many things to leahrn daily and new resources keep coming. Keep…

Continue reading on InfoSec Write-ups »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
You Can Hire a Hacker to Change Your Grades

https://cdn-images-1.medium.com/max/600/0*tQ9P_H6370-6PJhH.jpeg
Where can I hire a hacker to hack into a school system and change your grades? The above question was asked by someone online, on one of…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
I NEED A HACKER TO CHANGE MY UNIVERSITY GRADES AND TRANSCRIPT

I NEED HACKER TO CHANGE MY UNIVERSITY GRADES
Hackers are breaking boundaries and connecting the world within a short distance. Exploiting…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Offensive Security Tool: DirDar

https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Offensive Security Tool: DirDarPost Views: 354 https://www.blackhatethicalhacking.com/wp-content/uploads/2020/11/BECOME-A-PATRON-AND-UNLOCK-EXCLUSIVE-VIDEOS-8-1-300x120.png Reading Time: 2 Minutes

Offensive Security Tool: DirDar GitHub Link
DirDar by M4DM0e, is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it.
DirDar v1.0

bypass forbidden directories – find and identify dir listing – you can use it as directory brute-forcer as well. CompatibilityThis tool is compatible with all kind of operating systems as long as you have GO compiler installed
Install

You can use this command if you have Go installed and configured. go get -u github.com/m4dm0e/dirdar Or you can download a release. To make it easier to execute you can put the directory to the binary in your environment variable %PATH%.
Tool screen:
⦿ Linux

https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firstScreen-1024x576.png
⦿ Windows

https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/windows-1024x553.jpeg
Help & Flags -threads int
Number of threads (Defaulf 40)
-err
If you want to show errors!(Includes 404 errors) [True-False]
-only-ok
Print out only OK (Bypassed and dir listing)
-single string
Only scan single target e.g (-single https://example.com/)
-t int
Set the timeout of the requests (default 10000)
-wl string
Forbidden directories WordList
⦿ Screenshot

https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/help-1024x576.png
Bugs found by DirDar: (Will share the write up ASAP)
⦿ BackUp files at MTN Group (Triaged)
⦿ OLD php scripts to SQLi at MTN Group (Triaged)
⦿ OLD Files to information disclosure at BOSCH (Triaged)
Review Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/intro-90x90.png Information Security Tool: Chameleon1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/skipfish_screenshot-90x90.png Offensive Security Tool: Skipfish3 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/sparta2-90x90.png Offensive Security Tool: Sparta4 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/02/ScareCrow2-90x90.png Offensive Security Tool: ScareCrow2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/john_the_ripper_bg-90x90.jpg Offensive Security Tool: JTR – John the Ripper2 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/01/shad0w_msf_shad0w-2-90x90.png Offensive Security Tool: Shad0w3 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/12/hack-like-pro-snort-ids-for-aspiring-hacker-part-2-setting-up-basic-configuration-90x90.png Offensive Security Tools: FireEye Red Team Tool Countermeasures4 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/12/image-90x90.png Offensive Security Tool: CrackMapExec4 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/11/3-90x90.png Offensive Security Tool: PRET – Printer Exploitation Toolkit5 months ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2020/10/xsstrike-90x90.png Offensive Security Tool: XSStrike5 months ago
The post Offensive Security Tool: DirDar first appeared on Black Hat Ethical Hacking.