Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
66K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Should Red Teamers read "Practical Malware Analysis" by Sikorski & Honigr?

Despite its high regard, I am hesitant to buy it, since malware analysis is typically a blue team activity. I imagine it includes lots of in depth analysis of popular exploits and an exploit developer could learn a lot from this.

My main concern is picking up new software that I may never use again once I finish it. I totally understand that of course doing malware analysis in general can be beneficial to red teamers, but committing to a 700 pager with strict didactics is a little different.

submitted by /u/noirKook
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
End Users Remain Organizations' Biggest Security Risk

Yet they're showing signs of improvement across several important areas, a Dark Reading survey reveals.
Dark Reading: Attacks/Breaches
Researchers Explore Hacking VirusTotal to Find Stolen Credentials

VirusTotal can be used to collect large amounts of credentials without infecting an organization or buying them online, researchers found.
Dark Reading: Attacks/Breaches
Microsoft Details Recent Damaging Malware Attacks on Ukrainian Organizations

"WhisperGate" malware was used to overwrite Master Boot Record and other files to render systems inoperable at several organizations in Ukraine, Microsoft says.
Dark Reading: Attacks/Breaches
Cloud Identity Startup Permiso Launches With $10M Seed

Permiso's co-founders say the No. 1 problem in the cloud is identity, and their platform is designed to tackle the notoriously difficult challenge of monitoring the activity of those identities.
Searching for vulnerable applications or services to install on Windows 10
https://www.reddit.com/r/Pentesting/comments/s7bnkg/searching_for_vulnerable_applications_or_services/

I have a class that has completely changed from how it was previously offered. Previously the professor was using the Penetration Testing book from Georgia Weidman and was having the students work through those labs for the course. Obviously dated but the VMs used and services/applications could be easily downloaded and configured to test out in a VM lab environment. Now, he has changed the course to make the students setup Windows 10, and Ubuntu 20.04. None of the services or exploits in the book can be used. I’m just needing a few applications/services and version numbers that I can install onto this Windows 10 VM to run a metasploit exploit against in order to get a meterpreter shell. I’ve had several successful exploits but unable to establish the meterpreter shell. I don’t need walkthroughs on how to perform the exploit in metasploit. I have that part figured out but I just can’t seem to find any applications or services that are vulnerable that I can download onto the VM to test on. submitted by /u/tackettz (https://www.reddit.com/user/tackettz)
[link] (https://www.reddit.com/r/Pentesting/comments/s7bnkg/searching_for_vulnerable_applications_or_services/) [comments] (https://www.reddit.com/r/Pentesting/comments/s7bnkg/searching_for_vulnerable_applications_or_services/)

___________________________
@hacking_Attack
@Hacking_Video