Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Detained in Dubai reports UAE’s Israel-US hacking agent to FBI
https://cdn-images-1.medium.com/max/1920/0*KtP0ynTP3kiCmmfW.jpg
A newly published report by The Daily Beast’s Adam Rawnsley details how Ras Al Khaimah used an Israeli private intelligence company to…
Continue reading on Medium »
Detained in Dubai reports UAE’s Israel-US hacking agent to FBI
https://cdn-images-1.medium.com/max/1920/0*KtP0ynTP3kiCmmfW.jpg
A newly published report by The Daily Beast’s Adam Rawnsley details how Ras Al Khaimah used an Israeli private intelligence company to…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How To Know If Your Facebook Account Is Among The 533 Million Exposed Accounts
https://cdn-images-1.medium.com/max/1600/1*UYKl1g32Ma-gb0uKGrU1HQ.jpeg
I was going through a news website in the evening when I saw this headline — “Stolen Data Of 533 Million Facebook Users Leaked Online.” As…
Continue reading on Medium »
How To Know If Your Facebook Account Is Among The 533 Million Exposed Accounts
https://cdn-images-1.medium.com/max/1600/1*UYKl1g32Ma-gb0uKGrU1HQ.jpeg
I was going through a news website in the evening when I saw this headline — “Stolen Data Of 533 Million Facebook Users Leaked Online.” As…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
His Secret Obsession Phrases 12 Word Text Message Hero Instinct
Having trouble convincing a man to sign up? Would you like the man you dreamed of to feel the same for you?
Continue reading on Medium »
His Secret Obsession Phrases 12 Word Text Message Hero Instinct
Having trouble convincing a man to sign up? Would you like the man you dreamed of to feel the same for you?
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Israeli spies-for-hire reportedly infiltrated Fox News to get info for UAE client
https://cdn-images-1.medium.com/max/1200/0*d0uqd-di1RoFzidF
Operatives linked to an Israeli business intelligence firm masqueraded as journalists in an effort to gather information on a lawsuit…
Continue reading on Medium »
Israeli spies-for-hire reportedly infiltrated Fox News to get info for UAE client
https://cdn-images-1.medium.com/max/1200/0*d0uqd-di1RoFzidF
Operatives linked to an Israeli business intelligence firm masqueraded as journalists in an effort to gather information on a lawsuit…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
GIF
Hacking on Medium
Understanding the Microsoft Exchange Hack: How You Can Prevent a “Bad Day”
https://cdn-images-1.medium.com/max/1200/1*Zl_SS_svKKjJVoSTz1Kb8w.gif
By Michael Zawisza and the Prosperoware Marketing Team
Continue reading on Medium »
Understanding the Microsoft Exchange Hack: How You Can Prevent a “Bad Day”
https://cdn-images-1.medium.com/max/1200/1*Zl_SS_svKKjJVoSTz1Kb8w.gif
By Michael Zawisza and the Prosperoware Marketing Team
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Top 5 Theme Changing Tool For Termux For 2021
https://cdn-images-1.medium.com/max/600/0*nCsF0cCde3zpxgK9.png
Hey guys 🙋♂️, In termux we use a lot of tools to change the look of our termux terminal. and to find the best tool you need to try them…
Continue reading on Medium »
Top 5 Theme Changing Tool For Termux For 2021
https://cdn-images-1.medium.com/max/600/0*nCsF0cCde3zpxgK9.png
Hey guys 🙋♂️, In termux we use a lot of tools to change the look of our termux terminal. and to find the best tool you need to try them…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
NAT Slipstreaming
https://cdn-images-1.medium.com/max/600/0*4M07Hc4m5GfcYCh0
I used to think if a device is not exposed to the public internet it is safe because bad actors cannot access them as it has NAT (Network…
Continue reading on Developer Student Clubs SASTRA »
NAT Slipstreaming
https://cdn-images-1.medium.com/max/600/0*4M07Hc4m5GfcYCh0
I used to think if a device is not exposed to the public internet it is safe because bad actors cannot access them as it has NAT (Network…
Continue reading on Developer Student Clubs SASTRA »
Chaining an Blind SSRF bug to Get an RCE
https://notifybugme.medium.com/chaining-an-blind-ssrf-bug-to-get-an-rce-92c09de3c0ba?source=rss------bug_bounty-5
https://notifybugme.medium.com/chaining-an-blind-ssrf-bug-to-get-an-rce-92c09de3c0ba?source=rss------bug_bounty-5
Hi, everyoneContinue reading on Medium » (https://notifybugme.medium.com/chaining-an-blind-ssrf-bug-to-get-an-rce-92c09de3c0ba?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
ThreatMapper - Identify Vulnerabilities In Running Containers, Images, Hosts And Repositories
https://1.bp.blogspot.com/-fyASA-yB9kc/YGvW-uxGEHI/AAAAAAAAVyA/AF28Zfj0YGMRZOKl3BKILzCDA_nwz8BIACNcBGAsYHQ/w640-h360/DF_Vulnerability3.png The Deepfence Runtime Threat Mapper is a subset of the Deepfence cloud native workload protection platform, released as a community edition. This community edition empowers the users with following features:
1.
Visualization: Visualize kubernetes clusters, virtual machines, containers and images, running processes, and network connections in near real time.
2.
Runtime Vulnerability Management: Perform vulnerability scans on running containers & hosts as well as container images.
3.
Container Registry Scanning: Check for vulnerabilities in images stored on AWS ECR, Azure Container Registry, Google Container Registry, Docker Hub, Docker Self-Hosted Private Registry, Quay, Harbor, Gitlab and JFrog registries.
4.
CI/CD Scanning: Scan images as part of existing CI/CD Pipelines like CircleCI, Jenkins & GitLab.
5.
Integrations with SIEM, Notification Channels & Ticketing: Ready to use integrations with Slack, PagerDuty, HTTP endpoint, Jira, Splunk, ELK, Sumo Logic and Amazon S3. Live Demohttps://deepfence.io/community-demo-form/ ArchitectureA pictorial depiction of the Deepfence Architecture is below https://1.bp.blogspot.com/-SdrnhiIcUb0/YGvWBf3xMfI/AAAAAAAAVxk/RxNY1c7cYm0dqrY2c9FK6WBMG5u0AZcgwCNcBGAsYHQ/w640-h360/DF_Architecture.png Feature AvailabilityFeatures Runtime Threat mapper (Community Edition) Workload Protection Platform (Enterprise Edition) Discover & Visualize Running Pods, Containers and Hosts
✔️
(unlimited)
✔️
(unlimited) Runtime Vulnerability Management for hosts/VMs
✔️
(unlimited)
✔️
(unlimited) Runtime Vulnerability Management for containers
✔️
(unlimited)
✔️
(unlimited) Container Registry Scanning
✔️
✔️
CI/CD Integration
✔️
✔️
Multiple Clusters
✔️
✔️
Integrations with SIEMs, Slack and more
✔️
✔️
Compliance Automation
❌
✔️
Deep Packet Inspection of Encrypted & Plain Traffic
❌
✔️
API Inspection
❌
✔️
Runtime Integrity Monitoring
❌
✔️
Network Connection & Resource Access Anomaly Detection
❌
✔️
Workload Firewall for Containers, Pods and Hosts
❌
✔️
Quarantine & Network Protection Policies
❌
✔️
Alert Correlation
❌
✔️
Serverless Protection
❌
✔️
Windows Protection
❌
✔️
Highly Available & Multi-node Deployment
❌
✔️
Multi-tenancy & User Management
❌
✔️
Enterprise Support
❌
✔️ Getting StartedThe Deepfence Management Console is first installed on a separate system. The Deepfence agents are then installed onto bare-metal servers, Virtual Machines, or Kubernetes clusters where the application workloads are deployed, so that the host systems, or the application workloads, can be scanned for vulnerabilities.
A pictorial depiction of the Deepfence security platform is as follows: https://1.bp.blogspot.com/-pfIlgUgOn3M/YGvWW2AzGXI/AAAAAAAAVxs/hasGHDhcsW83HLh96-DGhW6eheNKi9MZgCNcBGAsYHQ/w640-h360/DF_DeploymentDiagram_New.png Deepfence Management ConsolePre-Requisites for Management ConsoleFeature Requirements CPU: No of cores 4 RAM 16 GB Disk space At-least 120 GB Port range to be opened for receiving data from Deepfence agents 8000 - 8010 Port to be opened for web browsers to be able to communicate with the Management console to view the UI 443 Docker binaries At-least version 18.03 Docker-compose binary Version 1.20.1
Following table gives the number of nodes that can be supported with different console machine configurations assuming a single node deployment of console. Memory optimised instances are shown to perform better.
CPU RAM Nodes supported 4 cores 16 GB RAM 250 nodes 8 co[...]
ThreatMapper - Identify Vulnerabilities In Running Containers, Images, Hosts And Repositories
https://1.bp.blogspot.com/-fyASA-yB9kc/YGvW-uxGEHI/AAAAAAAAVyA/AF28Zfj0YGMRZOKl3BKILzCDA_nwz8BIACNcBGAsYHQ/w640-h360/DF_Vulnerability3.png The Deepfence Runtime Threat Mapper is a subset of the Deepfence cloud native workload protection platform, released as a community edition. This community edition empowers the users with following features:
1.
Visualization: Visualize kubernetes clusters, virtual machines, containers and images, running processes, and network connections in near real time.
2.
Runtime Vulnerability Management: Perform vulnerability scans on running containers & hosts as well as container images.
3.
Container Registry Scanning: Check for vulnerabilities in images stored on AWS ECR, Azure Container Registry, Google Container Registry, Docker Hub, Docker Self-Hosted Private Registry, Quay, Harbor, Gitlab and JFrog registries.
4.
CI/CD Scanning: Scan images as part of existing CI/CD Pipelines like CircleCI, Jenkins & GitLab.
5.
Integrations with SIEM, Notification Channels & Ticketing: Ready to use integrations with Slack, PagerDuty, HTTP endpoint, Jira, Splunk, ELK, Sumo Logic and Amazon S3. Live Demohttps://deepfence.io/community-demo-form/ ArchitectureA pictorial depiction of the Deepfence Architecture is below https://1.bp.blogspot.com/-SdrnhiIcUb0/YGvWBf3xMfI/AAAAAAAAVxk/RxNY1c7cYm0dqrY2c9FK6WBMG5u0AZcgwCNcBGAsYHQ/w640-h360/DF_Architecture.png Feature AvailabilityFeatures Runtime Threat mapper (Community Edition) Workload Protection Platform (Enterprise Edition) Discover & Visualize Running Pods, Containers and Hosts
✔️
(unlimited)
✔️
(unlimited) Runtime Vulnerability Management for hosts/VMs
✔️
(unlimited)
✔️
(unlimited) Runtime Vulnerability Management for containers
✔️
(unlimited)
✔️
(unlimited) Container Registry Scanning
✔️
✔️
CI/CD Integration
✔️
✔️
Multiple Clusters
✔️
✔️
Integrations with SIEMs, Slack and more
✔️
✔️
Compliance Automation
❌
✔️
Deep Packet Inspection of Encrypted & Plain Traffic
❌
✔️
API Inspection
❌
✔️
Runtime Integrity Monitoring
❌
✔️
Network Connection & Resource Access Anomaly Detection
❌
✔️
Workload Firewall for Containers, Pods and Hosts
❌
✔️
Quarantine & Network Protection Policies
❌
✔️
Alert Correlation
❌
✔️
Serverless Protection
❌
✔️
Windows Protection
❌
✔️
Highly Available & Multi-node Deployment
❌
✔️
Multi-tenancy & User Management
❌
✔️
Enterprise Support
❌
✔️ Getting StartedThe Deepfence Management Console is first installed on a separate system. The Deepfence agents are then installed onto bare-metal servers, Virtual Machines, or Kubernetes clusters where the application workloads are deployed, so that the host systems, or the application workloads, can be scanned for vulnerabilities.
A pictorial depiction of the Deepfence security platform is as follows: https://1.bp.blogspot.com/-pfIlgUgOn3M/YGvWW2AzGXI/AAAAAAAAVxs/hasGHDhcsW83HLh96-DGhW6eheNKi9MZgCNcBGAsYHQ/w640-h360/DF_DeploymentDiagram_New.png Deepfence Management ConsolePre-Requisites for Management ConsoleFeature Requirements CPU: No of cores 4 RAM 16 GB Disk space At-least 120 GB Port range to be opened for receiving data from Deepfence agents 8000 - 8010 Port to be opened for web browsers to be able to communicate with the Management console to view the UI 443 Docker binaries At-least version 18.03 Docker-compose binary Version 1.20.1
Following table gives the number of nodes that can be supported with different console machine configurations assuming a single node deployment of console. Memory optimised instances are shown to perform better.
CPU RAM Nodes supported 4 cores 16 GB RAM 250 nodes 8 co[...]