Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Evadiendo Windows Defender para obtener una Shell
https://cdn-images-1.medium.com/max/1370/1*VgvQbaIbvfFEe_1Jue7KxQ.png
Después de lograr ejecutar comandos arbitrarios en un servidor vulnerado lo más común es tratar de obtener una Reverse Shell para poder…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Evadiendo Windows Defender para obtener una Shell
https://cdn-images-1.medium.com/max/1370/1*VgvQbaIbvfFEe_1Jue7KxQ.png
Después de lograr ejecutar comandos arbitrarios en un servidor vulnerado lo más común es tratar de obtener una Reverse Shell para poder…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Evadiendo Windows Defender para obtener una Shell
Después de lograr ejecutar comandos arbitrarios en un servidor vulnerado lo más común es tratar de obtener una Reverse Shell para poder…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
№1 Secret Why Israel is a Cybersecurity Monster?
https://cdn-images-1.medium.com/max/1802/1*heCh91WhMn5RIjL6mJgIBg.png
A number of top Israeli cybersecurity companies such as Perimeter 81 and Checkpoint have recently released revolutionary solutions for a…
Continue reading on Israeli High-Tech »
___________________________
@hacking_Attack
@Hacking_Video
№1 Secret Why Israel is a Cybersecurity Monster?
https://cdn-images-1.medium.com/max/1802/1*heCh91WhMn5RIjL6mJgIBg.png
A number of top Israeli cybersecurity companies such as Perimeter 81 and Checkpoint have recently released revolutionary solutions for a…
Continue reading on Israeli High-Tech »
___________________________
@hacking_Attack
@Hacking_Video
Medium
№1 Secret Why Israel is a Cybersecurity Monster?🇮🇱
A number of top Israeli cybersecurity companies such as Perimeter 81 and Checkpoint have recently released revolutionary solutions for a…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
1. What is CTF?
Using your infosec skills to penetrate and solve intentionally compromized challenges related to computer security and capture the flags…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
1. What is CTF?
Using your infosec skills to penetrate and solve intentionally compromized challenges related to computer security and capture the flags…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
1. What is CTF?
Using your infosec skills to penetrate and solve intentionally compromized challenges related to computer security and capture the flags…
hacking: security in practice
SQL injection for beginner
Hi,
Apart of my uni assignment is to Pentest a machine and exploit some vulnerabilities. The machine runs myphpadmin and I know the version is prone to SQL injection. I’ve never done SQL injection, and asking for some advice on where to start to exploit the vulnerability for results
submitted by /u/fgtethancx
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
SQL injection for beginner
Hi,
Apart of my uni assignment is to Pentest a machine and exploit some vulnerabilities. The machine runs myphpadmin and I know the version is prone to SQL injection. I’ve never done SQL injection, and asking for some advice on where to start to exploit the vulnerability for results
submitted by /u/fgtethancx
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
SQL injection for beginner
Hi, Apart of my uni assignment is to Pentest a machine and exploit some vulnerabilities. The machine runs myphpadmin and I know the version is...
hacking: security in practice
What happens when a hacker uses your ip to do illegal things on the internet?
How would you clear your name and prove that even though your IP was involved, it was not actually you doing those illegals thing but a hacker who was using your ip remotely?
submitted by /u/cringey-reddit-name
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What happens when a hacker uses your ip to do illegal things on the internet?
How would you clear your name and prove that even though your IP was involved, it was not actually you doing those illegals thing but a hacker who was using your ip remotely?
submitted by /u/cringey-reddit-name
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What happens when a hacker uses your ip to do illegal things on...
How would you clear your name and prove that even though your IP was involved, it was not actually you doing those illegals thing but a hacker who...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Log4j Flaw: Attackers Are Making Thousands Of Attempts To Exploit This Severe Vulnerability
https://external-preview.redd.it/srShI29G8RmrtAqI_Z3jGRkgTEOnhlwfK9rflK1RLko.jpg?width=640&crop=smart&auto=webp&s=ac48b20fdb28b6e2a690a8c5c09b483d2d7cfa68 submitted by /u/Techasoft16
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Log4j Flaw: Attackers Are Making Thousands Of Attempts To Exploit This Severe Vulnerability
https://external-preview.redd.it/srShI29G8RmrtAqI_Z3jGRkgTEOnhlwfK9rflK1RLko.jpg?width=640&crop=smart&auto=webp&s=ac48b20fdb28b6e2a690a8c5c09b483d2d7cfa68 submitted by /u/Techasoft16
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Log4j Flaw: Attackers Are Making Thousands Of Attempts To Exploit...
Posted in r/hacking by u/Techasoft16 • 1 point and 0 comments
Exploit Collector
WordPress Catch Themes Demo Import Shell Upload
___________________________
@hacking_Attack
@Hacking_Video
WordPress Catch Themes Demo Import Shell Upload
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
WordPress Catch Themes Demo Import Shell Upload
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
DCG 201 @ Super MAGFest — January 6–9th
https://cdn-images-1.medium.com/max/896/1*N889vmv0qKMbIF22SV2j8Q.jpeg
We at DCG 201 are excited to attend our first ever Super MAGFest this weekend from January 6th to January 9th at the Gaylord Hotel in…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
DCG 201 @ Super MAGFest — January 6–9th
https://cdn-images-1.medium.com/max/896/1*N889vmv0qKMbIF22SV2j8Q.jpeg
We at DCG 201 are excited to attend our first ever Super MAGFest this weekend from January 6th to January 9th at the Gaylord Hotel in…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
DCG 201 @ Super MAGFest — January 6–9th
We at DCG 201 are excited to attend our first ever Super MAGFest this weekend from January 6th to January 9th at the Gaylord Hotel in…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to Spy on my partner WhatsApp.
https://cdn-images-1.medium.com/max/600/1*7hbLLRCdr4FkJPXVdHUdlg.jpeg
I will make this as brief as possible.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How to Spy on my partner WhatsApp.
https://cdn-images-1.medium.com/max/600/1*7hbLLRCdr4FkJPXVdHUdlg.jpeg
I will make this as brief as possible.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How to Spy on my partner WhatsApp.
I will make this as brief as possible.
What Is Red Teaming, How Does It Work and Why Is It Important?
https://www.reddit.com/r/redteamsec/comments/rxbq7i/what_is_red_teaming_how_does_it_work_and_why_is/
submitted by /u/stanley9528 (https://www.reddit.com/user/stanley9528)
[link] (https://halborn.com/what-is-red-teaming-how-does-it-work-and-why-is-it-important/) [comments] (https://www.reddit.com/r/redteamsec/comments/rxbq7i/what_is_red_teaming_how_does_it_work_and_why_is/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/rxbq7i/what_is_red_teaming_how_does_it_work_and_why_is/
submitted by /u/stanley9528 (https://www.reddit.com/user/stanley9528)
[link] (https://halborn.com/what-is-red-teaming-how-does-it-work-and-why-is-it-important/) [comments] (https://www.reddit.com/r/redteamsec/comments/rxbq7i/what_is_red_teaming_how_does_it_work_and_why_is/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
What Is Red Teaming, How Does It Work and Why Is It Important?
Posted in r/redteamsec by u/stanley9528 • 62 points and 5 comments
Log4J-Detect - Script To Detect The "Log4j" Java Library Vulnerability (CVE-2021-44228) For A List Of URLs With Multithreading
http://www.kitploit.com/2022/01/log4j-detect-script-to-detect-log4j.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2022/01/log4j-detect-script-to-detect-log4j.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Log4J-Detect - Script To Detect The "Log4j" Java Library Vulnerability (CVE-2021-44228) For A List Of URLs With Multithreading
Simple Python 3 (https://www.kitploit.com/search/label/Python%203) script to detect the "Log4j" Java library vulnerability (https://www.kitploit.com/search/label/Vulnerability) (CVE-2021-44228) for a list of URL with multithreading
The script "log4j-detect.py" developed in Python 3 is responsible for detecting whether a list of URLs are vulnerable (https://www.kitploit.com/search/label/Vulnerable) to CVE-2021-44228. To do so, it sends a GET request using threads (higher performance) to each of the URLs in the specified list. The GET request contains a payload that on success returns a DNS request to Burp Collaborator / interactsh. This payload is sent in a test parameter and in the "User-Agent" / "Referer" / "X-Forwarded-For" / "Authentication" headers. Finally, if a host is vulnerable, an identification number will appear in the subdomain (https://www.kitploit.com/search/label/Subdomain) prefix of the Burp Collaborator / interactsh (https://www.kitploit.com/search/label/Interactsh) payload and in the output of the script, allowing to know which host has responded via DNS. It should be noted that this script only handles DNS detection of the vulnerability and does not test remote command execution. Downloading log4j-detect.py wget https://github.com/takito1812/log4j-detect/raw/main/log4j-detect.py Running log4j-detect.py python3 log4j-detect.py
Download Log4J-Detect (https://github.com/takito1812/log4j-detect)
___________________________
@hacking_Attack
@Hacking_Video
The script "log4j-detect.py" developed in Python 3 is responsible for detecting whether a list of URLs are vulnerable (https://www.kitploit.com/search/label/Vulnerable) to CVE-2021-44228. To do so, it sends a GET request using threads (higher performance) to each of the URLs in the specified list. The GET request contains a payload that on success returns a DNS request to Burp Collaborator / interactsh. This payload is sent in a test parameter and in the "User-Agent" / "Referer" / "X-Forwarded-For" / "Authentication" headers. Finally, if a host is vulnerable, an identification number will appear in the subdomain (https://www.kitploit.com/search/label/Subdomain) prefix of the Burp Collaborator / interactsh (https://www.kitploit.com/search/label/Interactsh) payload and in the output of the script, allowing to know which host has responded via DNS. It should be noted that this script only handles DNS detection of the vulnerability and does not test remote command execution. Downloading log4j-detect.py wget https://github.com/takito1812/log4j-detect/raw/main/log4j-detect.py Running log4j-detect.py python3 log4j-detect.py
Download Log4J-Detect (https://github.com/takito1812/log4j-detect)
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.
Log4J-Detect - Script To Detect The "Log4j" Java Library Vulnerability (CVE-2021-44228) For A List Of URLs With Multithreading
Simple Python 3 script to detect the "Log4j" Java library vulnerability (CVE-2021-44228) for a list of URL with multithreadingThe script "log4j-detect.py" developed in Python 3 is responsible for detecting whether a list of URLs are vulnerable to CVE-2021-44228. To do so, it sends a GET request using threads (higher performance) to each of the URLs in the specified list. The GET request contains a payload that on success returns a DNS request to Burp Collaborator / interactsh. This payload is sent in a test parameter and in the "User-Agent" / "Referer" / "X-Forwarded-For" / "Authentication" headers. Finally, if a host is vulnerable, an identification number will appear in the subdomain prefix of the Burp Collaborator / interactsh payload and in the output of the script, allowing to know which host has responded via DNS. It should be noted that this script only handles DNS detection of the vulnerability and does not test remote command execution. Downloading log4j-detect.py wget https://github.com/takito1812/log4j-detect/raw/main/log4j-detect.py Running log4j-detect.py python3 log4j-detect.py Download Log4J-Detect
Read more...
___________________________
@hacking_Attack
@Hacking_Video
Simple Python 3 script to detect the "Log4j" Java library vulnerability (CVE-2021-44228) for a list of URL with multithreadingThe script "log4j-detect.py" developed in Python 3 is responsible for detecting whether a list of URLs are vulnerable to CVE-2021-44228. To do so, it sends a GET request using threads (higher performance) to each of the URLs in the specified list. The GET request contains a payload that on success returns a DNS request to Burp Collaborator / interactsh. This payload is sent in a test parameter and in the "User-Agent" / "Referer" / "X-Forwarded-For" / "Authentication" headers. Finally, if a host is vulnerable, an identification number will appear in the subdomain prefix of the Burp Collaborator / interactsh payload and in the output of the script, allowing to know which host has responded via DNS. It should be noted that this script only handles DNS detection of the vulnerability and does not test remote command execution. Downloading log4j-detect.py wget https://github.com/takito1812/log4j-detect/raw/main/log4j-detect.py Running log4j-detect.py python3 log4j-detect.py Download Log4J-Detect
Read more...
___________________________
@hacking_Attack
@Hacking_Video
Authorization bypass — Gmail
https://infosecwriteups.com/authorization-bypass-gmail-2949af041fb?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/authorization-bypass-gmail-2949af041fb?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Authorization bypass — Gmail
About the vulnerability