Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Truecrypt container passwod

Hello everyone,

I have forgotten my password for Truecrypt container, Anyone know how to hack/crack /open the container, any suggestions would be greatly appreciated..

Thanks

submitted by /u/ptsdonsteroids
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Why is it easier to pivot from *nix PCs/servers?

One of the rooms about pivoting on TryHackMe said that you should, “try to use a Linux/Unix target if possible since they’re easier to pivot from. An outward facing Linux Web-server is absolutely ideal.”

THM didn’t elaborate as to why this is the case, and I didn’t see any references to this online. I assumed that with all else being equal, a Windows machine/server would generally be more vulnerable than a *nix machine/server. Does anyone have any more info about this?

Thanks for your time

submitted by /u/Agent-BTZ
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
SQL Injection with curl

I've been in security for several years but just now getting into pentesting and hacking. First exercise is trying my hand at some SQL injection. I know SQL well and have done some backend and frontend website work before, so i'm no stranger the technologies used here.



What I'm running into is that I'm blind and often it's far easier to work in a text-based shell as opposed to using a lot of GUI-based tools. I've noticed that I'm running into some trouble getting curl to properly post my strings for form encoded data to the target page.



IE:

curl -x POST -F 'username=admin\'#' https://example.com/



doesn't seem to work. It treats the "#" as another field name, trying to \escape this doesn't seem to work either. I've tried double-quoting the form data, even going so far as to manually url-encode the form data and append it to the end of the https URL of the page I'm trying. It's against a lab where I know the string that's supposed to work if done in the browser, and i can confirm it does indeed work in a browser.



Any suggestions or insights on how to get CURL to properly do this? I'm solid with Python as well so my next step is to use the requests module to see if it runs into the same problem (I was doing some user-agent testing earlier today and it seemed to not have an issue). But, I'd really like to just be able to throw a quick test together in the terminal before breaking out a full Python script/shell to do any of this.



Any help is immensely appreciated.

submitted by /u/BeforeSides
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
breaking into an inherited ipad pro

Hey guys, this is a dumb question, but I want to reset my dad's old iPad pro back to factory settings. Unfortunately, my dad was a bloody tight lipped fucker, and I can't get in with the pass code.

Unfortunately, whatever knowledge of that code is sprayed across my garage, so that is out.

He also didn't write anything down, nor did he provide anyone with the code.

So. I don't care about what's on the iPad, I just need the iPad. Is there any tool that I can use to get in? Or am I SOL

submitted by /u/Gemini_fishfucker
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
'Human Behavior' Security Startup Nets $7M in Seed

Nudge Security plans a general launch of its cloud-based service later this year.
Dark Reading: Attacks/Breaches
Developers Increasingly Prioritize Secure Coding

But "old habits are hard to break," with 48% of developers still shipping code with vulnerabilities.
Dark Reading: Attacks/Breaches
Microsoft Details New Security Features for Windows 11

Security features to come include a TPM-like security processor for protecting artifacts that a computer uses during the secure boot-up process, as well as a control for blocking unsigned and untrusted apps.
Watch out the links : Account takeover

This is my second writeup here :), Hope you find enjoy it too!Continue reading on Medium »
Read more...
Very interested in landing a Pentester job to move on
https://www.reddit.com/r/redteamsec/comments/txbxfr/very_interested_in_landing_a_pentester_job_to/

I do hold a active good standing CISSP, will no doubt have OSCP on the 29th. 15 years experience as System Engineer and IDR. Kinda dumb question but I do have lock picking skills which is strictly a hobby and not resume worthy. If I did get some lockpicking certification is that any kind of additional edge over the competition to land a redteam job in the future? submitted by /u/newworldsamurai3030 (https://www.reddit.com/user/newworldsamurai3030)
[link] (https://www.reddit.com/r/redteamsec/comments/txbxfr/very_interested_in_landing_a_pentester_job_to/) [comments] (https://www.reddit.com/r/redteamsec/comments/txbxfr/very_interested_in_landing_a_pentester_job_to/)

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
ADB exploit

I am curious, how i can exploit android which is on same network with me plus i have access to router page. I am researching about it for like weeks but can't find anything. Is it even possible ?

submitted by /u/YesDepresseddd
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Cyber Guardian Shirt for 3 min breach Survey
https://www.reddit.com/r/Pentesting/comments/txgkel/cyber_guardian_shirt_for_3_min_breach_survey/

👋🏼 Hi everyone! I've read the FAQs so apologies if I may have misunderstood something! I'm conducting a 3 min confidential survey on breach preparedness for cyber security professionals and as a thanks, you get a free Cyber Guardian shirt! It's right here (https://www.surveymonkey.com/r/Social_Organic). Thank you for your time and have a great day :) Aviva submitted by /u/trojanrockinghorse (https://www.reddit.com/user/trojanrockinghorse)
[link] (https://www.reddit.com/r/Pentesting/comments/txgkel/cyber_guardian_shirt_for_3_min_breach_survey/) [comments] (https://www.reddit.com/r/Pentesting/comments/txgkel/cyber_guardian_shirt_for_3_min_breach_survey/)

___________________________
@hacking_Attack
@Hacking_Video
Where is the safest place to store your data?
https://www.reddit.com/r/redteamsec/comments/txgjid/where_is_the_safest_place_to_store_your_data/

As for me all of my information can be divided by importance, like: system backups (1/10 importance); current working files (3); personal archives: photos, videos (6); copies of paper documents (8); secrets: keys, passwords, wallets (10/10). Losing files is always unpleasant. What can you do to protect them? submitted by /u/Derrick_Wallarm (https://www.reddit.com/user/Derrick_Wallarm)
[link] (https://www.reddit.com/r/redteamsec/comments/txgjid/where_is_the_safest_place_to_store_your_data/) [comments] (https://www.reddit.com/r/redteamsec/comments/txgjid/where_is_the_safest_place_to_store_your_data/)

___________________________
@hacking_Attack
@Hacking_Video