Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
TryHackMe — Bounty Hacker

https://cdn-images-1.medium.com/max/1200/0*iL_p0l82sSIbuzTN.jpeg
Having fun with TryHackMe again. So, here is the write up and guideline to pass this Bounty Hacker challenge.

Continue reading on Medium »
In order to improve the security of our recently created Smart Contracts, we’re conducting a bug bounty to find unexpected vulnerabilities…Continue reading on Medium » (https://yeld.medium.com/yeld-cdl-loans-bug-bounty-e0e7752e630c?source=rss------bug_bounty-5)
Remote Code Execution due to unrestricted file upload

Remote Code ExecutionContinue reading on Medium »
Read more...
hacking: security in practice
Free internet

Hello, My government has made every isp give out free internet for a specific app for contact tracing for COVID-19. I was wondering if it was possible for me to spoof my data to appear that I am using the app for free internet. What part of the packets would I be spoofing if so?

submitted by /u/hba97
[link] [comments]
ThreatMapper - Identify Vulnerabilities In Running Containers, Images, Hosts And Repositories
http://www.kitploit.com/2021/04/threatmapper-identify-vulnerabilities.html
The Deepfence Runtime Threat Mapper is a subset of the Deepfence cloud native workload protection platform, released as a community edition. This community edition empowers the users with following features: Visualization: Visualize kubernetes clusters, virtual machines, containers and images, running processes, and network connections in near real time. Runtime Vulnerability (https://www.kitploit.com/search/label/Vulnerability) Management: Perform vulnerability scans on running containers & hosts as well as container images. Container Registry Scanning: Check for vulnerabilities (https://www.kitploit.com/search/label/vulnerabilities) in images stored on AWS ECR, Azure Container Registry, Google Container Registry, Docker Hub, Docker Self-Hosted Private Registry, Quay, Harbor, Gitlab and JFrog registries. CI/CD Scanning: Scan images as part of existing CI/CD Pipelines (https://github.com/deepfence/ThreatMapper/blob/master/ci-cd-integrations) like CircleCI, Jenkins & GitLab. Integrations with SIEM, Notification Channels & Ticketing: Ready to use integrations with Slack, PagerDuty, HTTP endpoint, Jira, Splunk, ELK, Sumo Logic and Amazon S3.
Live Demo
https://deepfence.io/community-demo-form/
Architecture
A pictorial depiction of the Deepfence Architecture is below
Feature Availability
Features Runtime Threat mapper (Community Edition) Workload Protection Platform (Enterprise Edition) Discover & Visualize Running Pods, Containers and Hosts ✔️ (unlimited) ✔️ (unlimited) Runtime Vulnerability Management (https://www.kitploit.com/search/label/Vulnerability%20Management) for hosts/VMs ✔️ (unlimited) ✔️ (unlimited) Runtime Vulnerability Management for containers ✔️ (unlimited) ✔️ (unlimited) Container Registry Scanning ✔️ ✔️ CI/CD Integration ✔️ ✔️ Multiple Clusters ✔️ ✔️ Integrations with SIEMs, Slack and more ✔️ ✔️ Compliance Automation ✔️ Deep Packet Inspection of Encrypted & Plain Traffic ✔️ API Inspection ✔️ Runtime Integrity Monitoring ✔️ Network Connection & Resource Access Anomaly Detection ✔️ Workload Firewall for Containers, Pods and Hosts ✔️ Quarantine & Network Protection Policies ✔️ Alert Correlation ✔️ Serverless Protection ✔️ Windows Protection ✔️ Highly Available & Multi-node Deployment ✔️ Multi-tenancy & User Management ✔️ Enterprise Support ✔️
Getting Started
The Deepfence Management Console is first installed on a separate system. The Deepfence agents are then installed onto bare-metal servers, Virtual Machines, or Kubernetes clusters where the application workloads are deployed, so that the host systems, or the application workloads, can be scanned for vulnerabilities. A pictorial depiction of the Deepfence security platform is as follows: