Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Lack of URL redirect validation for 3rd-party app

Hi again! So here is one more writeup on a simple yet tricky open redirect bug I found on a private application.Continue reading on Medium »
Read more...
Hi again! So here is one more writeup on a simple yet tricky open redirect bug I found on a private application.Continue reading on Medium » (https://johnfiel0x3a.medium.com/lack-of-url-redirect-validation-for-3rd-party-app-e2eea6e977d8?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Where To Take Advantage Of Optimized Gaming Performance

Last year, we ran an article about ‘How to Improve Gaming Performance on Your PC’. It shared tips on everything for optimising bandwidth, to choosing the right graphics card, to upgrading your computer RAM. To many with more casual interest in the topic, these may seem like fairly involved, technical adjustments to consider. To a growing […]

The post Where To Take Advantage Of Optimized Gaming Performance appeared first on Kali Linux Tutorials.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Gain real followers or likes on Instagram using the Followers Gallery app

We love to share posts on Instagram merely because we get likes, comment and shares from our friends and family members. The post with the maximum number of likes, shares and comment is considered to be with the highest engagement rate. People often want to increase the number of followers and attain 1 million followers […]

The post Gain real followers or likes on Instagram using the Followers Gallery app appeared first on Kali Linux Tutorials.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
10 Security Mistakes You Might Be Making On Or Offline

https://cdn-images-1.medium.com/max/2600/1*Q8zVsm-Vthg306IseaCtFA.jpeg
Keeping yourself, your data, and even your home safe doesn’t need to be overly complicated or convoluted. Here’s what you need to know.

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
INSTRUCTIONS TO HACK A COMPUTER

https://cdn-images-1.medium.com/max/1200/1*gUl32qHYhfEI5MTU90Vyzw.jpeg
Prior to talking about the techniques for hacking a PC, we should understand what Hacking is a lot it a decent way to deal with hack a…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hacking Website with Sqlmap in Kali Linux

https://cdn-images-1.medium.com/max/600/0*peFQMMqOzTtTANfK
Disclaimer — TLDR; some stuff here can be used to carry out illegal activity, our intention is, however, to educate

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Fake Netflix App on Google Play Spreads Malware Via WhatsApp

https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Fake Netflix App on Google Play Spreads Malware Via WhatsAppPost Views: 53
style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="8337846400"
data-ad-format="auto"
data-full-width-responsive="true">
Reading Time: 1 Minute
Malware disguised as a Netflix app, lurking on the Google Play store, spread through WhatsApp messages, researchers have discovered.
According to a Check Point Research analysis released on Wednesday, the malware masqueraded as an app called “FlixOnline,” which advertised via WhatsApp messages promising “2 Months of Netflix Premium Free Anywhere in the World for 60 days.” But once installed, the malware sets about stealing data and credentials.

The malware was designed to listen for incoming WhatsApp messages and automatically respond to any that the victims receive, with the content of the response crafted by the adversaries. The responses attempted to lure others with the offer of a free Netflix service, and contained links to a fake Netflix site that phished for credentials and credit card information, researchers said.

“The app turned out to be a fake service that claims to allow users to view Netflix content from around the world on their mobiles,” according to the analysis. “However, instead of allowing the mobile user to view Netflix content, the application is actually designed to monitor a user’s WhatsApp notifications, sending automatic replies to a user’s incoming messages using content that it receives from a remote server.”
See Also: Critical Cloud Bug in VMWare Carbon Black Allows Takeover
The malware was also able to self-propagate, sending messages to users’ WhatsApp contacts and groups with links to the fake app. To that end, the automated messages read, “2 Months of Netflix Premium Free at no cost For REASON OF QUARANTINE (CORONA VIRUS)* Get 2 Months of Netflix Premium Free anywhere in the world for 60 days. Get it now HERE [Bitly link].”

Over the course of two months that the app was live on Google Play, the malware racked up 500 victims, according to Check Point. The firm alerted Google to the malware, which took the app down. However, “the malware family is likely here to stay and may return hidden in a different app,” researchers warned.

“The malware’s technique is fairly new and innovative,” Aviran Hazum, manager of Mobile Intelligence at Check Point, said in the analysis. “The technique here is to hijack the connection to WhatsApp by capturing notifications, along with the ability to take predefined actions, like ‘dismiss’ or ‘reply’ via the Notification Manager. The fact that the malware was able to be disguised so easily and ultimately bypass Play Store’s protections raises some serious red flags.”
https://media.threatpost.com/wp-content/uploads/sites/103/2021/04/07113212/FlixOnline-300x248.png

The fake app in Google Play, featuring the Netflix logo. Source: Check Point.
See Also: Offensive Security Tool: DirDar FlixOnline Intercepts WhatsApp NotificationsOnce the application is downloaded from the Play Store and installed, it requests three specific permissions, according to the Check Point analysis: Overlay, Battery Optimization Ignore and Notification Listener.

Overlay allows a malicious application to create new windows on top of other applications, noted the researchers.

“This is usually requested by malware to create a fake log-in screen for other apps, with the aim of stealing victim’s credentials,” they explained.

The Ignore Battery Optimizations permission meanwhile stops the[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Fake Netflix App on Google Play Spreads Malware Via WhatsApp https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Fake Netflix App on Google Play Spreads Malware Via WhatsAppPost Views:…
malware from being shut down when the phone goes into idle mode, as Android apps usually do in order to save battery power. This allowed the “FlixOnline” app to continuously operate, listening and sending fake messages in the background even if the phone is dormant.

Most importantly, the Notification Listener permission allows the malware to access all notifications related to messages sent to the device, with “the ability to automatically perform designated actions such as ‘dismiss’ and ‘reply’ to messages received on the device,” according to Check Point.

After the permissions are granted, the malware displays a landing page it receives from the command-and-control server (C2), and it deletes its icon off the home screen. From there, it periodically pings the C2 for configuration updates.

“The service can achieve these goals by using multiple methods,” according to the analysis. “For instance, the service can be triggered by the installation of the application and by an alarm registered as the BOOT_COMPLETED action, which is called after the device has completed the boot process.”

When it comes to parsing the WhatsApp messages, the malware uses a function called OnNotificationPosted to check for the package name of the application creating a given notification. If that application is WhatsApp, the malware will  then “process” the notification, according to Check Point. That consists of canceling the notification (to hide it from the user), and then reading the title and content of the notification received.

“Next, it searches for the component that is responsible for inline replies, which is used to send out the reply using the payload received from the C2 server,” researchers explained. See Also: Hacking Stories: When two young hackers played war games with PentagonMalware-Laced Apps on Google PlayThe official Android app store is unfortunately no stranger to malicious and trojanized apps. In March for instance, nine malicious apps were found on Google Play, harboring a malware dropper that paves the way for attackers to remotely steal financial data from Android phones. And in January, Google booted 164 apps, collectively downloaded a total of 10 million times, because they were delivering disruptive ads.

Meanwhile last year, the Joker malware continued to plague Google Play apps. Joker, which has been around since 2017, is a mobile trojan specializing in a type of billing fraud known as “fleeceware.” The Joker apps advertise themselves as legitimate apps (like games, wallpapers, messengers, translators and photo editors, mainly). Once installed, they simulate clicks and intercept SMS messages to subscribe victims to unwanted, paid premium services. The apps also steal SMS messages, contact lists and device information. How Can Android Users Protect Themselves?To protect against this type of malware, users should be wary of download links or attachments received via WhatsApp or other messaging apps, even when they appear to come from trusted contacts or messaging groups, Check Point noted.

If users find themselves with a fake app, they should immediately remove the suspect application from the device, and proceed to change all passwords.
Source: threatpost.com (Click Link)style="display:block"
data-ad-client="ca-pub-6620833063853657"
data-ad-slot="8337846400"
data-ad-format="auto"
data-full-width-responsive="true"> Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/vmware-patch-90x90.jpg Critical Cloud Bug in VMWare Carbon Black Allows Takeover1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/eggs-chickens-e1617650984482-90x90.jpg LinkedIn Spear-Phishing Campaign Targets Job Hunters2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/pf9bzNs3hHRgAcgDQTPPa3-1200-80-90x90.jpg Facebook data on 533 million users posted online3 days [...]
Hacking Articles Tips Tricks Videos Tutorials
malware from being shut down when the phone goes into idle mode, as Android apps usually do in order to save battery power. This allowed the “FlixOnline” app to continuously operate, listening and sending fake messages in the background even if the phone is…
ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/NAS-Bug-90x90.jpg Legacy QNAP NAS Devices Vulnerable to Zero-Day Attack6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/iphone-privacy-90x90.jpg Apple, Google Both Track Mobile Telemetry Data, Despite Users Opting Out7 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Monero-Mining-90x90.png Malicious Docker Cryptomining Images Rack Up 20M Downloads1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/phph-90x90.jpg PHP Infiltrated with Backdoor Malware1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/ransomware_global_small-90x90.jpg Insurance Giant CNA Hit with Novel Ransomware Attack1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/Microsoft-Teams-90x90.jpg Microsoft Offers Up To $30K For Teams Bugs2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/03/thrive-themes-1030x391-1-90x90.png Active Exploits Hit WordPress Sites Vulnerable to Thrive Themes Flaws2 weeks ago
The post Fake Netflix App on Google Play Spreads Malware Via WhatsApp first appeared on Black Hat Ethical Hacking.
Deep Web
Trezor company wants M+o+n+😄 e+r+o crypto coin worth to drop for short-selling it.

Trezor company wants to short-position M+o+n+😄 e+r+o . In shorting people sell something at high value by borrowing it from somewhere and buy at cheap price to repay the lender. Trezor is expecting a value drop in M+o+n+😄 e+r+o coin and wants to short-sell it.

submitted by /u/Pedalparka263
[link] [comments]