Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Just starting out... building a lab recs?
https://www.reddit.com/r/Pentesting/comments/t70r3b/just_starting_out_building_a_lab_recs/

So I am just starting out on becoming a pen tester.. As in, I have zero experience but that's the direction I want to go. I'm currently a cyber engineer that manages all the firewalls and proxy's and VPN's for now though. I just completed and passed the GIAC GPEN course/exam, and am moving on to the OSCP. While waiting for my company to approve that course and give me the funds, I'm taking "The Cyber Mentors" full pen testing academy. Anyways, I'm wanting to setup my own pen test lab and so far, I have two phsyical windows machines running windows 10, each physical machine has two Kali 2022 Linux distributions on them as a VM, and 2 Windows 10 VM's. I also have a private VPN setup so all 10 systems are able to talk to each other. submitted by /u/ThePenTester88 (https://www.reddit.com/user/ThePenTester88)
[link] (https://www.reddit.com/r/Pentesting/comments/t70r3b/just_starting_out_building_a_lab_recs/) [comments] (https://www.reddit.com/r/Pentesting/comments/t70r3b/just_starting_out_building_a_lab_recs/)

___________________________
@hacking_Attack
@Hacking_Video
My First Bug Bounty Reward

A blog about how I find my first blog and Some learning about bug bounty which is very Important for every bug bounty hunter.Continue reading on InfoSec Write-ups »
Read more...
My First Bug Bounty Reward

A blog about how I find my first blog and Some learning about bug bounty which is very Important for every bug bounty hunter.Continue reading on InfoSec Write-ups »
Read more...
hacking: security in practice
What is hacking?

I want to learn how to hack because I'm bored(and kinda want to cyberbully children jkjk) but what does that really mean?

submitted by /u/TheGreen_Champion
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Batch script

I am new to programming and hacking. Does making logic bombs through batch script( by writing my own script and not just copy pasting ) make me a script kiddie?

submitted by /u/i_amstark
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
What to do?

Alright this might sound somewhat like a weird question, but I'm really over the moon with it.

What do you do when you find a major security breach in a website? And by major I mean that the whole institution is comprised and all clients and employees data can be easily compromised. And that data falls under the GDPR

My instinct is too tell the head of security about the beach, but I'm not sure if I can get into legal troubles.

I haven't done any attack on the website

If you change just a string between the / in the URL anyone can get access to said data

Cheers,

submitted by /u/brunommpreto
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Here for a request.

Hello hackers, I just need a request if that’s cool? If any of u can take down an IG instantly terminate and shit please help me. https://www.instagram.com/bonita_louis___/ this acc. And this https://www.instagram.com/_michael.vla_13_/ first acc is scammer, second is my brother a victim of the scam. Can anyone please help get both accs terminated instantly. Please, please, please.

submitted by /u/The_real_robin
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
I accidentally got ssh access to thousand of servers

So my country is about to do a nation wide exam (high school). This is accomplished by the central government providing virtual machine image (running Ubuntu LTS) with all configured application to run web based examination. Then all the school can just one click run to get the server running and begin to conduct exam on its local network.

The thing is, all server must have an access to open internet so it can pull the question and answers from the central government server. Which by the way also with an open ssh port.

The VM image shipped with 3 ssh public keys on standard user and i got the private key on one of them. So unfortunately only non privileged user unless i guess the root password.

This affect all the state owned school (around ~1.5k - 2k servers) and i already tested to 10 of them. Its easily accessed by the domain /u/VanillaWaffle_
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video