Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Kode with Klossy and TechTogether Alumni, From Scholar to Hacker
https://cdn-images-1.medium.com/max/2240/1*LXwRDm-zLbSiu7OZv3H64Q.png
Learn more about the participants of Kode with Klossy and TechTogether programs.
Continue reading on TechTogether »
Kode with Klossy and TechTogether Alumni, From Scholar to Hacker
https://cdn-images-1.medium.com/max/2240/1*LXwRDm-zLbSiu7OZv3H64Q.png
Learn more about the participants of Kode with Klossy and TechTogether programs.
Continue reading on TechTogether »
Preventing Dependency Confusion Attacks in Python
https://medium.com/ochrona/preventing-dependency-confusion-attacks-in-python-fa6058ac972f?source=rss------bug_bounty-5
https://medium.com/ochrona/preventing-dependency-confusion-attacks-in-python-fa6058ac972f?source=rss------bug_bounty-5
Before we get into how to protect python applications from dependency confusion attacks, we’ll define this new attack vector, give a bit…Continue reading on Ochrona Security » (https://medium.com/ochrona/preventing-dependency-confusion-attacks-in-python-fa6058ac972f?source=rss------bug_bounty-5)
A question and a request to specialists about Architecture, or any suggestions for a beginner :)
https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/
<!-- SC_OFF -->Question and request to specialists I would like to go deeper into AD security. Currently setting up the AD environment on the home lab, is there anyone who did something like that at home in the laboratory and would like to share the architecture they have implemented at home? I miss a bit of an idea, and I must honestly admit that I was inspired by a series of courses from "Red Team Labs: Enterprise Windows Environments", but this is too high a level for me, I like to throw myself into the deep water no less, this is where I learn the best :) <!-- SC_ON --> submitted by /u/r3g3x_abc (https://www.reddit.com/user/r3g3x_abc)
[link] (https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/) [comments] (https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/)
https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/
<!-- SC_OFF -->Question and request to specialists I would like to go deeper into AD security. Currently setting up the AD environment on the home lab, is there anyone who did something like that at home in the laboratory and would like to share the architecture they have implemented at home? I miss a bit of an idea, and I must honestly admit that I was inspired by a series of courses from "Red Team Labs: Enterprise Windows Environments", but this is too high a level for me, I like to throw myself into the deep water no less, this is where I learn the best :) <!-- SC_ON --> submitted by /u/r3g3x_abc (https://www.reddit.com/user/r3g3x_abc)
[link] (https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/) [comments] (https://www.reddit.com/r/redteamsec/comments/mlon9x/a_question_and_a_request_to_specialists_about/)
Hacking Articles Tips Tricks Videos Tutorials
GIF
KitPloit - PenTest Tools!
Burpsuite-Copy-As-XMLHttpRequest - Copy As XMLHttpRequest BurpSuite Extension
https://1.bp.blogspot.com/-ccNn5Dq6l8k/YGvUCLu3YUI/AAAAAAAAVxE/wZDZyHjRG9MURhBU0Ci6J67L5q0OqgI5gCNcBGAsYHQ/w640-h386/Burpsuite-Copy-As-XMLHttpRequest.gif
The extension adds a context menu to BurpSuite that allows you to copy multiple requests as Javascript's XmlHttpRequest, which simplifies PoC development when exploiting XSS.
Installation
* download the latest JAR from releases or build manually
* add JAR to burpsuite using tabs: "Extender" -> "Extensions" -> "Add"
Usage
* select one request from any tab or a few requests in "Proxy" -> "HTTP history" tab
* invoke context menu and select "Copy as XMLHttpRequest"
Download Burpsuite-Copy-As-Xmlhttprequest
Burpsuite-Copy-As-XMLHttpRequest - Copy As XMLHttpRequest BurpSuite Extension
https://1.bp.blogspot.com/-ccNn5Dq6l8k/YGvUCLu3YUI/AAAAAAAAVxE/wZDZyHjRG9MURhBU0Ci6J67L5q0OqgI5gCNcBGAsYHQ/w640-h386/Burpsuite-Copy-As-XMLHttpRequest.gif
The extension adds a context menu to BurpSuite that allows you to copy multiple requests as Javascript's XmlHttpRequest, which simplifies PoC development when exploiting XSS.
Installation
* download the latest JAR from releases or build manually
* add JAR to burpsuite using tabs: "Extender" -> "Extensions" -> "Add"
Usage
* select one request from any tab or a few requests in "Proxy" -> "HTTP history" tab
* invoke context menu and select "Copy as XMLHttpRequest"
Download Burpsuite-Copy-As-Xmlhttprequest
Deep Web
Not sure where to start
So I want to browse the deep web but I'm not sure where to start. I have a few questions for some of the more knowledgeable people on here.
Should I use a burner laptop? I'm not sure if I want to risk my $3000 machine
Is tails necessary? My goal is to just browse the web anonymously. I don't plan on buying anything. I'm not sure if tails does anything to make you more anonymous online or hide your ip?
Should I use a vpn? I see some people saying VPN doesn't help at all and others saying it does help so I'm really confused as to which one is right.
submitted by /u/jimtendo_wii
[link] [comments]
Not sure where to start
So I want to browse the deep web but I'm not sure where to start. I have a few questions for some of the more knowledgeable people on here.
Should I use a burner laptop? I'm not sure if I want to risk my $3000 machine
Is tails necessary? My goal is to just browse the web anonymously. I don't plan on buying anything. I'm not sure if tails does anything to make you more anonymous online or hide your ip?
Should I use a vpn? I see some people saying VPN doesn't help at all and others saying it does help so I'm really confused as to which one is right.
submitted by /u/jimtendo_wii
[link] [comments]
reddit
Not sure where to start
So I want to browse the deep web but I'm not sure where to start. I have a few questions for some of the more knowledgeable people on here. ...
hacking: security in practice
Is it possible to know?
So is it possible to somehow KNOW when is a certain youtuber in the process of uploading a video but haven't published it yet?
I have no coding knowledge and I am wondering if such thing is even possible?
Thnaks in advance
submitted by /u/IvanBanana
[link] [comments]
Is it possible to know?
So is it possible to somehow KNOW when is a certain youtuber in the process of uploading a video but haven't published it yet?
I have no coding knowledge and I am wondering if such thing is even possible?
Thnaks in advance
submitted by /u/IvanBanana
[link] [comments]
reddit
Is it possible to know?
A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits, industry standards, grey and white hat...
hacking: security in practice
Where should I report leaks?
Was watching a video about how there were some leaks of user info on facebook, decided to go use a website to see if some of my info got leaked, it did. So, I decided to just google an old password of mine (very unique) and I found a few documents containing thousands of accounts/emails with their passwords revealed. I went through a handful of accounts to see if the passwords were valid, and doesn't seem to be the case. But still, there's gotta be a good chunk of them that might still be valid where the users haven't used the email in a while. One of them is anonymously posted as far as I'm aware. I would share where they are at, but it's not just my info.
Any help/resources would be appreciated!
EDIT: I realize this may be the wrong sub for asking such a thing, but I just wasn't sure where else to post :/
submitted by /u/Stealthybeef
[link] [comments]
Where should I report leaks?
Was watching a video about how there were some leaks of user info on facebook, decided to go use a website to see if some of my info got leaked, it did. So, I decided to just google an old password of mine (very unique) and I found a few documents containing thousands of accounts/emails with their passwords revealed. I went through a handful of accounts to see if the passwords were valid, and doesn't seem to be the case. But still, there's gotta be a good chunk of them that might still be valid where the users haven't used the email in a while. One of them is anonymously posted as far as I'm aware. I would share where they are at, but it's not just my info.
Any help/resources would be appreciated!
EDIT: I realize this may be the wrong sub for asking such a thing, but I just wasn't sure where else to post :/
submitted by /u/Stealthybeef
[link] [comments]
reddit
Where should I report leaks?
A subreddit dedicated to hacking and hackers. Constructive collaboration and learning about exploits, industry standards, grey and white hat...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Crime Service Gives Firms Another Reason to Purge Macros
Recent Trickbot campaigns and at least three common banking Trojans all attempt to infect systems using malicious macros in Microsoft Office documents created using EtterSilent.
Crime Service Gives Firms Another Reason to Purge Macros
Recent Trickbot campaigns and at least three common banking Trojans all attempt to infect systems using malicious macros in Microsoft Office documents created using EtterSilent.
Preventing Dependency Confusion Attacks in Python
Before we get into how to protect python applications from dependency confusion attacks, we’ll define this new attack vector, give a bit…Continue reading on Ochrona Security »
Read more...
Before we get into how to protect python applications from dependency confusion attacks, we’ll define this new attack vector, give a bit…Continue reading on Ochrona Security »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Changing the ‘face’ of the Consultancy industry: Solving new-age problems through remote services…
https://cdn-images-1.medium.com/max/600/1*haoxQA7vLyX6h8DfFBeqqA.png
I have always been interested in the way old business models have changed due to technology. COVID-19 has given me the opportunity to…
Continue reading on Medium »
Changing the ‘face’ of the Consultancy industry: Solving new-age problems through remote services…
https://cdn-images-1.medium.com/max/600/1*haoxQA7vLyX6h8DfFBeqqA.png
I have always been interested in the way old business models have changed due to technology. COVID-19 has given me the opportunity to…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
how to hack website admin password QULIOUSHACKER@GMAIL.COM
Where can I hire a hacker to hack into a school system and change your grades? The above question was asked by someone online, on one of…
Continue reading on Medium »
how to hack website admin password QULIOUSHACKER@GMAIL.COM
Where can I hire a hacker to hack into a school system and change your grades? The above question was asked by someone online, on one of…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HOW TO HACK A UNIVERSITY SERVER TO CHANGE GRADES QULIOUSHACKER@GMAIL.COM
https://cdn-images-1.medium.com/max/1200/0*JfEJDUf9giw9G-JY.jpg
contact us on any issues relating to hacking services QULIOUSHACKER@GMAIL.COM
Continue reading on Medium »
HOW TO HACK A UNIVERSITY SERVER TO CHANGE GRADES QULIOUSHACKER@GMAIL.COM
https://cdn-images-1.medium.com/max/1200/0*JfEJDUf9giw9G-JY.jpg
contact us on any issues relating to hacking services QULIOUSHACKER@GMAIL.COM
Continue reading on Medium »