Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.7K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Recently started with pen-testing
https://www.reddit.com/r/Pentesting/comments/tk1xfx/recently_started_with_pentesting/

<!-- SC_OFF -->Hi, so I went to a website from BugCrowd and Wappalyzer showed me that the website is using "gatsby@2.24.62 (mailto:gatsby@2.24.62)" JavaScript Framework which is vulnerable to several attacks as shown here - https://snyk.io/test/npm/gatsby/2.24.62 so is that website really vulnerable to RCE and DDOS as shown in this link and am I just supposed to tell them to upgrade or actually attack them with them, I am just confused as to how I should move forward. ​ Thanks! <!-- SC_ON --> submitted by /u/blank1993 (https://www.reddit.com/user/blank1993)
[link] (https://www.reddit.com/r/Pentesting/comments/tk1xfx/recently_started_with_pentesting/) [comments] (https://www.reddit.com/r/Pentesting/comments/tk1xfx/recently_started_with_pentesting/)
hacking: security in practice
Remember Skism?

I'm trying to learn more about them because they're the guys who turned malware production into a form of art (well, in my eyes at least.) I know they're from the entirety of the 90's, they wrote the suicide virus for MSDOS, they're behind 40Hex, and they created the Phalcon-Skism mass produced code generator. That's all I really know about them and wikipedia won't help. Anyone know anything about them?

submitted by /u/justtheskates
[link] [comments]
Dark Reading: Attacks/Breaches
The Secret to Zero Trust You Need to Know

If every application, device, and bot need access and authentication at some point, the need for managing and controlling the confidential data that allows those functions gets staggeringly large.