Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
131K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Am I compromised ?

I was playing counter strike 1.6 and half life online (not through the official version) and I think I joined what might be russian servers which had custom mods and maps. And now I'm scared that what if installing them got me a spyware or something like that. (I hate how I didn't think of this before or Maybe did).

Am i comprised ?

submitted by /u/afraidanddepressed
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to Keep a Website Secure?

It is always better to be proactive and prevent website security disasters rather than fighting after the disaster itself. It is also cheaper to activate security measurement than pay for the recovery of an infected website. We can do the following things to keep our website secure.

* Installing SSL Certificate and Using HTTPS Protocol
* Keep Software and Plugins Up-To-Date
* Choose Web Hosting Wisely
* Having Strong Login Credentials or Password
* Keep Your Personal Devices Secure
* Add Tools for Scan and Monitor Website
* Sucuri SiteCheck
* Quttera
* Siteguarding etc

* Check User Access and Permissions
* Website Backup
* Do not keep default CMS Settings Configuration
* Precautions for File Uploads
* Keep Website Clean - Delete unused files
* Web Server Security - Limit access to root files
* Use Website Firewall
* Best Practices Personal Security











submitted by /u/shuvonaz
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hats Protocol Economics — Part I

Long-term sustainability and token utilityContinue reading on Medium »
Read more...
Dark Reading: Attacks/Breaches
Nation-State Hackers Ramp Up Ukraine War-Themed Attacks

Among them is the operator of the Ghostwriter misinformation campaign, with a new browser-in-browser phishing technique, according to Google's research team.
Dark Reading: Attacks/Breaches
Protecting Your Organization Against a New Class of Cyber Threats: HEAT

Take a preventative threat approach and apply security measures near end users, applications, and data to increase protection.
80+ million Digilocker user’s phone numbers exposed [Fixed]

This is a story about my last finding at digilocker. In bug bounty we call these type issue as ‘low hanging fruits’. I already contribute…Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
DRAKVUF Sandbox : Automated Hypervisor-Level Malware Analysis System

DRAKVUF Sandbox is an automated black-box malware analysis system with DRAKVUF engine under the hood, which does not require an agent on guest OS.

This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get an insight on whether the file is truly malicious or not.

Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs. Supported hardware & softwareIn order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements:

* Processor: Intel processor with VT-x and EPT features (how to check).
* Host system: Debian 10 Buster/Ubuntu 18.04 Bionic/Ubuntu 20.04 Focal with at least 2 core CPU and 5 GB RAM, running GRUB as bootloader.
* Guest system: Windows 7 (x64), Windows 10 (x64; experimental support)

Nested virtualization:

* KVM does work, however it is considered experimental. If you experience any bugs, please report them to us for further investigation.
* Due to lack of exposed CPU features, hosting DRAKVUF Sandbox in the cloud is not supported (although it might change in the future).
* Hyper-V does not work.
* Xen does work out of the box.
* VMware Workstation Player does work, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required. Basic installationThis instruction assumes that you want to create a single-node installation with the default components, which is recommended for beginners.

* Download latest release packages.
* Install DRAKVUF:

# apt update
# apt install ./drakvuf-bundle*.deb
# reboot

* Install DRAKVUF Sandbox stack:

apt install redis-server
apt install ./drakcore.deb apt install ./drakrun.deb

* Check if your Xen installation is compliant. This command should print “All tests passed”:

draksetup test

Execute:

draksetup install /opt/path_to_windows.iso

Read the command’s output carefully. This command will run a virtual machine with Windows system installation process.

Customize vCPUs/memory: You can pass additional options in order to customize number of vCPUs (--vcpus ) and amount of memory (--memory ) per single VM. For instance: --vcpus 1 --memory 2048.

Recommended minimal values that are known to work properly with DRAKVUF Sandbox:
System versionMinimal vCPUsMinimal RAMWindows 711536Windows 1023072
Unattended installation: If you have autounattend.xmlmatching your Windows ISO, you can request unattended installation by adding --unattended-xml /path/to/autounattend.xml. Unattended install configuration can be generated with Windows Answer File Generator.

Use VNC to connect to the installation process:

vncviewer localhost:5900

* Perform Windows installation until you are booted to the desktop.
* Optional: At this point you might optionally install additional software. You can execute:
draksetup mount /path/to/some-cd.iso
* which would mount a virtual CD disk containing additional software into your VM.
* Optional: Generate .NET Framework native image cache by executing the following commands in the administrative prompt of your VM.
cd C:\Windows\Microsoft.NET\Framework\v4.0.30319
ngen.exe executeQueuedItems cd C:\Windows\Microsoft.NET\Framework64\v4.0.30319
ngen.exe executeQueuedItems
In order to finalize the VM setup process, exe[...]

___________________________
@hacking_Attack
@Hacking_Video