Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Hybrid Test Framework : End To End Testing Of Web, API And Security
Hybrid Test Framework is a framework supports WebUi automation across a variety of browsers like Chrome, Firefox, IE, no only limited to this but extended to test rest api, security and visual testing.
Capabilities
* Cross browser testing support
* Added browserstack support for CrossBrowser testing
* Running tests in docker containers selenium grid
* Running tests in AWS DeviceFarm selenium grid
* Running tests in selenium server in docker containers
* Security testing using OWASP, running in docker container
* Api testing support using RestAssured
* Visual regression testing using percy.io
* Accessibility testing using axe-selenium
* Stubbed api testing using WireMock
* Can send logs to ElasticSearch for kibana dashboard visualization
* Database testing support
* Kafka testing support
* Kubernetes support
Setup & Tools
* Install intellij https://www.jetbrains.com/idea/download/
* Install docker desktop https://www.docker.com/products/docker-desktop
* Java JDK_11
https://adoptopenjdk.net/
* Gradle https://gradle.org/next-steps/?version=6.8.3&format=bin
* Allure https://github.com/allure-framework/allure2/archive/2.17.2.zip
* Set Environment variables
* JAVA_HOME: Pointing to the Java SDK folder\bin
* GRADLE_HOME: Pointing to Gradle directory\bin.
* ALLURE_HOME: Pointing to allure directory\bin.
Getting Started
$ git clone
$ cd
$ import project from intellij as a gradle project
$ gradle clean
$ gradle build
$ gradle task E2E
$ gradle allureReport
$ gradle allureServe
Write your first user journey
Create new class and name as the TC00*_E2E_TEST-***
* Provide jira link in @Link
* Provide all the api components as @Feature
* Provide test severity and description
* Write test
* Use CatchBlock in try/catch section
Spin-up chrome, firefox, selenium hub and OWASP proxy server
$ docker-compose up -d
Complete infrastructure creation for local run
$ $ docker-compose -f docker-compose-infra up -d
Spin-up four additional node-chrome/firefox instances linked to the hub
$ docker-compose scale chrome=5
$ docker-compose scale firefox=5
Spin-up kafka instances
$ docker-compose -f docker-compose-kafka.yml up
$ docker-compose -f docker-compose-kafka.yml down –rmi all
Spin-up selenium hub in kubernetes instance
$ kubectl apply -f selenium-k8s-deploy-svc.yaml
$ kubectl apply -f https://raw.githubusercontent.com/kubernetes/dashboard/v2.0.0/aio/deploy/recommended.yaml
$ kubectl proxy
$ kubectl describe secret -n kube-system | grep deployment -A 12
To delete deployments
$ kubectl delete deployment selenium-node-firefox
$ kubectl delete deployment selenium-node-chrome
$ kubectl delete deployment selenium-hub
navigate to
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgiiOxUgyx23IqYS3FAfnWlpr5LPhHa9vAtaeSMK2-yUM9175cA9nfmRkqtR66uZ982XC8Dpcb9ljC08320Hxbd3abRtJXDrZqgGkhJZUlB8VgBBY2sMam7P0H-5Ws92XutkCTbPT6Lrdy8OpdJca3N7iaRRWozBM7d8aNmJW1Uo1JdkR7hGoHcmY5H/s1876/kubernetes.png
Download
___________________________
@hacking_Attack
@Hacking_Video
Hybrid Test Framework : End To End Testing Of Web, API And Security
Hybrid Test Framework is a framework supports WebUi automation across a variety of browsers like Chrome, Firefox, IE, no only limited to this but extended to test rest api, security and visual testing.
Capabilities
* Cross browser testing support
* Added browserstack support for CrossBrowser testing
* Running tests in docker containers selenium grid
* Running tests in AWS DeviceFarm selenium grid
* Running tests in selenium server in docker containers
* Security testing using OWASP, running in docker container
* Api testing support using RestAssured
* Visual regression testing using percy.io
* Accessibility testing using axe-selenium
* Stubbed api testing using WireMock
* Can send logs to ElasticSearch for kibana dashboard visualization
* Database testing support
* Kafka testing support
* Kubernetes support
Setup & Tools
* Install intellij https://www.jetbrains.com/idea/download/
* Install docker desktop https://www.docker.com/products/docker-desktop
* Java JDK_11
https://adoptopenjdk.net/
* Gradle https://gradle.org/next-steps/?version=6.8.3&format=bin
* Allure https://github.com/allure-framework/allure2/archive/2.17.2.zip
* Set Environment variables
* JAVA_HOME: Pointing to the Java SDK folder\bin
* GRADLE_HOME: Pointing to Gradle directory\bin.
* ALLURE_HOME: Pointing to allure directory\bin.
Getting Started
$ git clone
$ cd
$ import project from intellij as a gradle project
$ gradle clean
$ gradle build
$ gradle task E2E
$ gradle allureReport
$ gradle allureServe
Write your first user journey
Create new class and name as the TC00*_E2E_TEST-***
* Provide jira link in @Link
* Provide all the api components as @Feature
* Provide test severity and description
* Write test
* Use CatchBlock in try/catch section
Spin-up chrome, firefox, selenium hub and OWASP proxy server
$ docker-compose up -d
Complete infrastructure creation for local run
$ $ docker-compose -f docker-compose-infra up -d
Spin-up four additional node-chrome/firefox instances linked to the hub
$ docker-compose scale chrome=5
$ docker-compose scale firefox=5
Spin-up kafka instances
$ docker-compose -f docker-compose-kafka.yml up
$ docker-compose -f docker-compose-kafka.yml down –rmi all
Spin-up selenium hub in kubernetes instance
$ kubectl apply -f selenium-k8s-deploy-svc.yaml
$ kubectl apply -f https://raw.githubusercontent.com/kubernetes/dashboard/v2.0.0/aio/deploy/recommended.yaml
$ kubectl proxy
$ kubectl describe secret -n kube-system | grep deployment -A 12
To delete deployments
$ kubectl delete deployment selenium-node-firefox
$ kubectl delete deployment selenium-node-chrome
$ kubectl delete deployment selenium-hub
navigate to
http://localhost:8001/api/v1/namespaces/kubernetes-dashboard/services/https:kubernetes-dashboard:/proxy/https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgiiOxUgyx23IqYS3FAfnWlpr5LPhHa9vAtaeSMK2-yUM9175cA9nfmRkqtR66uZ982XC8Dpcb9ljC08320Hxbd3abRtJXDrZqgGkhJZUlB8VgBBY2sMam7P0H-5Ws92XutkCTbPT6Lrdy8OpdJca3N7iaRRWozBM7d8aNmJW1Uo1JdkR7hGoHcmY5H/s1876/kubernetes.png
Download
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
Hybrid Test Framework : End To End Testing Of Web, API And Security
Hybrid Test Framework is a framework supports WebUi automation across a variety of browsers like Chrome, Firefox, IE.
Hacking on Medium
One-liner Bug Bounty Tips
A collection of awesome one-liner scripts especially for bug bounty.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
One-liner Bug Bounty Tips
A collection of awesome one-liner scripts especially for bug bounty.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
One-liner Bug Bounty Tips
A collection of awesome one-liner scripts especially for bug bounty.
Hacking on Medium
Shipping Label Printing for the Masses
https://cdn-images-1.medium.com/max/640/1*HsTToPTNvMsYM3ZUIyqzCg.png
TLDR: I’ve been shipping using thermal label printers for years, and I go with the “Honda Civic” of label printers, the venerable Zebra…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Shipping Label Printing for the Masses
https://cdn-images-1.medium.com/max/640/1*HsTToPTNvMsYM3ZUIyqzCg.png
TLDR: I’ve been shipping using thermal label printers for years, and I go with the “Honda Civic” of label printers, the venerable Zebra…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Shipping Label Printing for the Masses
TLDR: I’ve been shipping using thermal label printers for years, and I go with the “Honda Civic” of label printers, the venerable Zebra…
https://a.thumbs.redditmedia.com/GNtC2lMJbrtoUv-xq5ZSLhHxLj16_NM4ILZ3ZK1bkx8.jpg I'm having trouble with Airemon-ng:
https://preview.redd.it/tiuuitjuw2q81.png?width=1920&format=png&auto=webp&s=38f2815bebd54316291e881c73ffaf6871b4dcbb
any suggestions?
submitted by /u/a-good-name-stuff
[link] [comments]
sudo aireplay-ng -0 0 -a [Access Point] -c [Target] wlo1it is successfully able to inject the packets. However the all of the packets are lost [see screenshot]https://preview.redd.it/tiuuitjuw2q81.png?width=1920&format=png&auto=webp&s=38f2815bebd54316291e881c73ffaf6871b4dcbb
any suggestions?
submitted by /u/a-good-name-stuff
[link] [comments]
hacking: security in practice
Is it possible to modify data of a JSON file that's hosted on a server?
Basically, there is a specific website with a JSON file that hosts some data which I would want to change.
I've heard of JSON injections but I didn't quite understand how they work and how you can perform them. Just looking for someone who can point me in the right direction.
Is there a simple way to do it, and if not, can someone briefly explain how to perform a JSON injection?
submitted by /u/DumbMoment
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Is it possible to modify data of a JSON file that's hosted on a server?
Basically, there is a specific website with a JSON file that hosts some data which I would want to change.
I've heard of JSON injections but I didn't quite understand how they work and how you can perform them. Just looking for someone who can point me in the right direction.
Is there a simple way to do it, and if not, can someone briefly explain how to perform a JSON injection?
submitted by /u/DumbMoment
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is it possible to modify data of a JSON file that's hosted on a...
Basically, there is a specific website with a JSON file that hosts some data which I would want to change. I've heard of JSON injections but I...
Gitcolombo - Extract And Analyze Contributors Info From Git Repos
http://www.kitploit.com/2022/03/gitcolombo-extract-and-analyze.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2022/03/gitcolombo-extract-and-analyze.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Gitcolombo - Extract And Analyze Contributors Info From Git Repos
OSINT tool to extract info about persons from git repositories: common names, emails, matches between different (as it may seems) accounts. Using Install git Run: repos by nickname ./gitcolombo.py --nickname LubyRuffy"> # from any git url
./gitcolombo.py -u https://github.com/Kalanchyovskaia16/newlps
# from directory, recursively
./gitcolombo.py -d ./newlps -r
# from all GitHub personal/org repos by nickname
./gitcolombo.py --nickname LubyRuffy
For batch (https://www.kitploit.com/search/label/Batch) cloning (https://www.kitploit.com/search/label/Cloning) from Gitlab and Bitbucket group repos you can use ghorg (https://github.com/gabrie30/ghorg).
Output: verbose persons info name email number of appearences as author/committer other persons that person can be emails used for the same name different names for the same person general statistics Details [RUS] https://telegra.ph/Gitcolombo---OSINT-v-GitHub-03-02 What's the difference between git author and committer? TL;DR author wrote the code (make the patch) commiter commit it to the repo (rewrite history, make pull/merge requests...) Nice explanation: https://stackoverflow.com/questions/18750808/difference-between-author-and-committer-in-git Very often developers make inaccurate commits with the one name/email (e.g. work account), then change to the right (e.g. personal account) and make git commit --amend, but forget to change the author of the commit. This way we can use it for OSINT (https://www.kitploit.com/search/label/OSINT) as match of names/emails from git history. TODO Total statistics for repos in a directory Check different names for every email GitHub support: clone all repos from account/group GitHub support: api pagination GitHub support: extract links to accounts from commit info Exclude "system" accounts (e.g. noreply@github.com (mailto:noreply@github.com)) Probabilistic graph (https://www.kitploit.com/search/label/Graph) links based on same names/emails and Levenshtein distance Other popular git platforms: Gitlab, Bitbucket and also
Download Gitcolombo (https://github.com/soxoj/gitcolombo)
___________________________
@hacking_Attack
@Hacking_Video
./gitcolombo.py -u https://github.com/Kalanchyovskaia16/newlps
# from directory, recursively
./gitcolombo.py -d ./newlps -r
# from all GitHub personal/org repos by nickname
./gitcolombo.py --nickname LubyRuffy
For batch (https://www.kitploit.com/search/label/Batch) cloning (https://www.kitploit.com/search/label/Cloning) from Gitlab and Bitbucket group repos you can use ghorg (https://github.com/gabrie30/ghorg).
Output: verbose persons info name email number of appearences as author/committer other persons that person can be emails used for the same name different names for the same person general statistics Details [RUS] https://telegra.ph/Gitcolombo---OSINT-v-GitHub-03-02 What's the difference between git author and committer? TL;DR author wrote the code (make the patch) commiter commit it to the repo (rewrite history, make pull/merge requests...) Nice explanation: https://stackoverflow.com/questions/18750808/difference-between-author-and-committer-in-git Very often developers make inaccurate commits with the one name/email (e.g. work account), then change to the right (e.g. personal account) and make git commit --amend, but forget to change the author of the commit. This way we can use it for OSINT (https://www.kitploit.com/search/label/OSINT) as match of names/emails from git history. TODO Total statistics for repos in a directory Check different names for every email GitHub support: clone all repos from account/group GitHub support: api pagination GitHub support: extract links to accounts from commit info Exclude "system" accounts (e.g. noreply@github.com (mailto:noreply@github.com)) Probabilistic graph (https://www.kitploit.com/search/label/Graph) links based on same names/emails and Levenshtein distance Other popular git platforms: Gitlab, Bitbucket and also
Download Gitcolombo (https://github.com/soxoj/gitcolombo)
___________________________
@hacking_Attack
@Hacking_Video
Use of Default Credentials to Unauthorised Remote Access of Internal Panel of Network Video…
👨🏼💻Discovered by Dnyanesh A. GawandeContinue reading on Medium »
Read more...
👨🏼💻Discovered by Dnyanesh A. GawandeContinue reading on Medium »
Read more...
Use of Default Credentials to Unauthorised Remote Access of Internal Panel of Network Video…
https://medium.com/@dnyanesh766/use-of-default-credentials-to-unauthorised-remote-access-of-internal-panel-of-network-video-5490d107fa0?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@dnyanesh766/use-of-default-credentials-to-unauthorised-remote-access-of-internal-panel-of-network-video-5490d107fa0?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Use of Default Credentials to Unauthorised Remote Access of Internal Panel of Network Video…
👨🏼💻Discovered by Dnyanesh A. Gawande
👨🏼💻Discovered by Dnyanesh A. GawandeContinue reading on Medium » (https://medium.com/@dnyanesh766/use-of-default-credentials-to-unauthorised-remote-access-of-internal-panel-of-network-video-5490d107fa0?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Use of Default Credentials to Unauthorised Remote Access of Internal Panel of Network Video…
👨🏼💻Discovered by Dnyanesh A. Gawande
Zenlink заключил партнерство с Immunefi и запустил программу по поиску ошибок
https://medium.com/@black322/zenlink-%D0%B7%D0%B0%D0%BA%D0%BB%D1%8E%D1%87%D0%B8%D0%BB-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D1%81-immunefi-%D0%B8-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%BB-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D0%BC%D1%83-%D0%BF%D0%BE-%D0%BF%D0%BE%D0%B8%D1%81%D0%BA%D1%83-%D0%BE%D1%88%D0%B8%D0%B1%D0%BE%D0%BA-872674b0d84c?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@black322/zenlink-%D0%B7%D0%B0%D0%BA%D0%BB%D1%8E%D1%87%D0%B8%D0%BB-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D1%81-immunefi-%D0%B8-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%BB-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D0%BC%D1%83-%D0%BF%D0%BE-%D0%BF%D0%BE%D0%B8%D1%81%D0%BA%D1%83-%D0%BE%D1%88%D0%B8%D0%B1%D0%BE%D0%BA-872674b0d84c?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zenlink заключил партнерство с Immunefi и запустил программу по поиску ошибок
Сегодня 23 марта 2022 года , и мы рады сообщить, что компания Zenlink заключила партнерство с Immunefi и запустила программу по поиску…
Сегодня 23 марта 2022 года , и мы рады сообщить, что компания Zenlink заключила партнерство с Immunefi и запустила программу по поиску…Continue reading on Medium » (https://medium.com/@black322/zenlink-%D0%B7%D0%B0%D0%BA%D0%BB%D1%8E%D1%87%D0%B8%D0%BB-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D1%81-immunefi-%D0%B8-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%BB-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D0%BC%D1%83-%D0%BF%D0%BE-%D0%BF%D0%BE%D0%B8%D1%81%D0%BA%D1%83-%D0%BE%D1%88%D0%B8%D0%B1%D0%BE%D0%BA-872674b0d84c?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zenlink заключил партнерство с Immunefi и запустил программу по поиску ошибок
Сегодня 23 марта 2022 года , и мы рады сообщить, что компания Zenlink заключила партнерство с Immunefi и запустила программу по поиску…
Zenlink уклав партнерство з Immunefi і запустив програму пошуку помилок
https://medium.com/@black322/zenlink-%D1%83%D0%BA%D0%BB%D0%B0%D0%B2-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D0%B7-immunefi-%D1%96-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%B2-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D1%83-%D0%BF%D0%BE%D1%88%D1%83%D0%BA%D1%83-%D0%BF%D0%BE%D0%BC%D0%B8%D0%BB%D0%BE%D0%BA-8ac6c4af1416?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@black322/zenlink-%D1%83%D0%BA%D0%BB%D0%B0%D0%B2-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D0%B7-immunefi-%D1%96-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%B2-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D1%83-%D0%BF%D0%BE%D1%88%D1%83%D0%BA%D1%83-%D0%BF%D0%BE%D0%BC%D0%B8%D0%BB%D0%BE%D0%BA-8ac6c4af1416?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zenlink уклав партнерство з Immunefi і запустив програму пошуку помилок
Сьогодні 23 березня 2022 року, і ми раді повідомити, що компанія Zenlink уклала партнерство з Immunefi і запустила програму пошуку помилок.
Сьогодні 23 березня 2022 року, і ми раді повідомити, що компанія Zenlink уклала партнерство з Immunefi і запустила програму пошуку помилок.Continue reading on Medium » (https://medium.com/@black322/zenlink-%D1%83%D0%BA%D0%BB%D0%B0%D0%B2-%D0%BF%D0%B0%D1%80%D1%82%D0%BD%D0%B5%D1%80%D1%81%D1%82%D0%B2%D0%BE-%D0%B7-immunefi-%D1%96-%D0%B7%D0%B0%D0%BF%D1%83%D1%81%D1%82%D0%B8%D0%B2-%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D1%83-%D0%BF%D0%BE%D1%88%D1%83%D0%BA%D1%83-%D0%BF%D0%BE%D0%BC%D0%B8%D0%BB%D0%BE%D0%BA-8ac6c4af1416?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zenlink уклав партнерство з Immunefi і запустив програму пошуку помилок
Сьогодні 23 березня 2022 року, і ми раді повідомити, що компанія Zenlink уклала партнерство з Immunefi і запустила програму пошуку помилок.
Hacking on Medium
https://balochistanjob1.blogspot.com/2022/03/north-korean-hackers-stole-google.html
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
https://balochistanjob1.blogspot.com/2022/03/north-korean-hackers-stole-google.html
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
https://balochistanjob1.blogspot.com/2022/03/north-korean-hackers-stole-google.html
https://balochistanjob1.blogspot.com/2022/03/north-korean-hackers-stole-google.html
Hacking on Medium
End of the Road for the Teenagers at LAPSUS$
https://cdn-images-1.medium.com/max/714/1*OzwC0RvHXyCbTJ-Vn6hVFg.png
The teenagers, LAPSUS$, responsible for high-profile hacks at Samsung, NVidia and Microsoft have been arrested.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
End of the Road for the Teenagers at LAPSUS$
https://cdn-images-1.medium.com/max/714/1*OzwC0RvHXyCbTJ-Vn6hVFg.png
The teenagers, LAPSUS$, responsible for high-profile hacks at Samsung, NVidia and Microsoft have been arrested.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Dangerous Teenagers At Hack
The teenagers, LAPSUS$, responsible for high-profile hacks at Samsung, NVidia and Microsoft have been arrested.