Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Crypto Fraud New Trick: the Victim’s MetaMask Wallet Was Emptied
https://external-preview.redd.it/k0sLZ4WvzQx8927zR8ugPBEqZ0fnVEm0SgnRP_WfjCQ.jpg?width=640&crop=smart&auto=webp&s=dfe6172d1833805cf04ddc0c1bfb9922e55a77c8 submitted by /u/cantowok
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Crypto Fraud New Trick: the Victim’s MetaMask Wallet Was Emptied
https://external-preview.redd.it/k0sLZ4WvzQx8927zR8ugPBEqZ0fnVEm0SgnRP_WfjCQ.jpg?width=640&crop=smart&auto=webp&s=dfe6172d1833805cf04ddc0c1bfb9922e55a77c8 submitted by /u/cantowok
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Crypto Fraud New Trick: the Victim’s MetaMask Wallet Was Emptied
Posted in r/hacking by u/cantowok • 1 point and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
A Brilliant Analysis on An Advanced Ransomware Intrusion (Quantum Ransomware )
https://external-preview.redd.it/z5xGYzpQPudc_8c86TSLjGwkCti7kcl7Q_GKpa1bdnM.jpg?width=640&crop=smart&auto=webp&s=5038bd4def3a44baeb21b017bde317397e8bf6b2 submitted by /u/theycallmemonlight
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
A Brilliant Analysis on An Advanced Ransomware Intrusion (Quantum Ransomware )
https://external-preview.redd.it/z5xGYzpQPudc_8c86TSLjGwkCti7kcl7Q_GKpa1bdnM.jpg?width=640&crop=smart&auto=webp&s=5038bd4def3a44baeb21b017bde317397e8bf6b2 submitted by /u/theycallmemonlight
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
A Brilliant Analysis on An Advanced Ransomware Intrusion (Quantum...
Posted in r/hacking by u/theycallmemonlight • 1 point and 0 comments
hacking: security in practice
SMS Sender ID with punctuation?
I've done SMS spoofing for a long time but today I saw something that confused me. I received a confirmation code from the government and the sender ID contained a dot (.)
Well.... alphanumeric sender ids aren't supposed to contain punctuation, i'm baffle to how they managed to do so? Could it be RCS Verified Identities?
submitted by /u/SMSSpoofer
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
SMS Sender ID with punctuation?
I've done SMS spoofing for a long time but today I saw something that confused me. I received a confirmation code from the government and the sender ID contained a dot (.)
Well.... alphanumeric sender ids aren't supposed to contain punctuation, i'm baffle to how they managed to do so? Could it be RCS Verified Identities?
submitted by /u/SMSSpoofer
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
SMS Sender ID with punctuation?
I've done SMS spoofing for a long time but today I saw something that confused me. I received a confirmation code from the government and the...
fuzzing and credentials leakage..nice bug hunting writeup
https://medium.com/@abdalrahman.alshammas/fuzzing-and-credentials-leakage-nice-bug-hunting-writeup-38b2e774b300?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@abdalrahman.alshammas/fuzzing-and-credentials-leakage-nice-bug-hunting-writeup-38b2e774b300?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Fuzzing and credentials leakage..awesome bug hunting writeup
Here you find a beautiful write-up with useful tips :)
Here you find a beautiful write-up with useful tips :)Continue reading on Medium » (https://medium.com/@abdalrahman.alshammas/fuzzing-and-credentials-leakage-nice-bug-hunting-writeup-38b2e774b300?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Fuzzing and credentials leakage..awesome bug hunting writeup
Here you find a beautiful write-up with useful tips :)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HackTheBox Timing Write-Up
https://cdn-images-1.medium.com/max/1400/1*L76oKyshUeL5Z9aD8vgCkg.png
The Timing machine on HackTheBox has just retired! This is my write-up about the Timing machine on HackTheBox. Here I detail the…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HackTheBox Timing Write-Up
https://cdn-images-1.medium.com/max/1400/1*L76oKyshUeL5Z9aD8vgCkg.png
The Timing machine on HackTheBox has just retired! This is my write-up about the Timing machine on HackTheBox. Here I detail the…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HackTheBox Timing Write-Up
The Timing machine on HackTheBox has just retired! This is my write-up about the Timing machine on HackTheBox. Here I detail the…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Will banning the shame game on hacking victims improve cybersecurity?
https://cdn-images-1.medium.com/max/2600/1*USMXzh-fdAsvQb_bv_LPsA.jpeg
In cybersecurity, you’re never bulletproof. But you don’t have to be defenseless against hackers either — unless you don’t care.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Will banning the shame game on hacking victims improve cybersecurity?
https://cdn-images-1.medium.com/max/2600/1*USMXzh-fdAsvQb_bv_LPsA.jpeg
In cybersecurity, you’re never bulletproof. But you don’t have to be defenseless against hackers either — unless you don’t care.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Will banning the shame game on hacking victims improve cyber information sharing?
In cybersecurity, you’re never bulletproof. But you don’t have to be defenseless against hackers either — unless you don’t care.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Beyaz şapkalı hacker kiralama gerçekleştirmek
Beyaz şapkalı veya siyah şapkalı olmak üzere temelde ikiye ayrılan hacker platformları sizlere seçenekler sunmaktadır.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Beyaz şapkalı hacker kiralama gerçekleştirmek
Beyaz şapkalı veya siyah şapkalı olmak üzere temelde ikiye ayrılan hacker platformları sizlere seçenekler sunmaktadır.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Beyaz şapkalı hacker kiralama gerçekleştirmek
Beyaz şapkalı veya siyah şapkalı olmak üzere temelde ikiye ayrılan hacker platformları sizlere seçenekler sunmaktadır. Beyaz şapkalı hacker…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
El FBI advierte sobre el ransomware BlackCat que afectó a más de 60 organizaciones en todo el mundo
https://cdn-images-1.medium.com/max/1493/0*I249zpN1xmhT311I
PUBLICADO EN 25 ABRIL, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
El FBI advierte sobre el ransomware BlackCat que afectó a más de 60 organizaciones en todo el mundo
https://cdn-images-1.medium.com/max/1493/0*I249zpN1xmhT311I
PUBLICADO EN 25 ABRIL, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
El FBI advierte sobre el ransomware BlackCat que afectó a más de 60 organizaciones en todo el mundo
PUBLICADO EN 25 ABRIL, 2022POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Lapsus$: Who, What, Where, Why, How
https://cdn-images-1.medium.com/max/2600/0*pv4i7bUHaBnXFK3K
Lapsus$ (often stylized LAPSUS$, aka DEV-0537) is an extortionist threat group that has made headlines in 2022 due to its large-scale…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Lapsus$: Who, What, Where, Why, How
https://cdn-images-1.medium.com/max/2600/0*pv4i7bUHaBnXFK3K
Lapsus$ (often stylized LAPSUS$, aka DEV-0537) is an extortionist threat group that has made headlines in 2022 due to its large-scale…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Lapsus$: Who, What, Where, Why, How
Lapsus$ (often stylized LAPSUS$, aka DEV-0537) is an extortionist threat group that has made headlines in 2022 due to its large-scale…
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
DDexec - A Technique To Run Binaries Filelessly And Stealthily On Linux Using Dd To Replace The Shell With Another Process
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjUkLeCPT7H8zthlXjObbjV5_bDbLbPwe0kvbp-n9TC8INKb4nl3g5qcZy-CQoTGNsgTwVgTqC-LIbsw3Dozoe-bo6yKtOwhCE72d0X3k17WoyIz0wmqX_UqiUuBUBvm54VyYdKLPD-dY6Y_b7qzalFd4A887Ny7fPr2lpwV5xqDKrCKqPsOZKJs-_x/w640-h420/h99.png In Linux in order to run a program it must exist as a file, it must be accessible in some way through the file system hierarchy (this is just how
But this technique is here to change all of this. If you can not start the process you want... then you hijack one already existing. UsagePipe into the
Here, try this:
Tested Linux distributions are Debian, Alpine and Arch. Supported shells are bash, zsh and ash over x86_64 and aarch64 (arm64) architectures. DependenciesThis script depends on the following tools to work.
The file
Now, we have four basic problems to face:
* In general, only root and the program owner of the file may modify it.
* ASLR.
* If we try to read or write to an address not mapped in the address space of the program we will get an I/O error.
This problems have solutions that, although they are not perfect, are good:
* Most shell interpreters allow the creation of file descriptors that will then be inherited by child processes. We can create a fd pointing to the
* ASLR isn't even a problem, we can check the shell's
* So we need to
* Parse the binary we want to run and the loader to find out what mappings they need. Then craft a "shell"code that will perform, broadly speaking, the same steps that the kernel does up[...]
___________________________
@hacking_Attack
@Hacking_Video
DDexec - A Technique To Run Binaries Filelessly And Stealthily On Linux Using Dd To Replace The Shell With Another Process
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjUkLeCPT7H8zthlXjObbjV5_bDbLbPwe0kvbp-n9TC8INKb4nl3g5qcZy-CQoTGNsgTwVgTqC-LIbsw3Dozoe-bo6yKtOwhCE72d0X3k17WoyIz0wmqX_UqiUuBUBvm54VyYdKLPD-dY6Y_b7qzalFd4A887Ny7fPr2lpwV5xqDKrCKqPsOZKJs-_x/w640-h420/h99.png In Linux in order to run a program it must exist as a file, it must be accessible in some way through the file system hierarchy (this is just how
execve()works). This file may reside on disk or in ram (tmpfs, memfd) but you need a filepath. This has made very easy to control what is run on a Linux system, it makes easy to detect threats and attacker's tools or to prevent them from trying to execute anything of theirs at all (e. g. not allowing unprivileged users to place executable files anywhere).But this technique is here to change all of this. If you can not start the process you want... then you hijack one already existing. UsagePipe into the
ddexec.shscript the base64 of the binary you want to run (without newlines). The arguments for the script are the arguments for the program (starting with argv[0]).Here, try this:
base64 -w0 /bin/ls | bash ddexec.sh /bin/ls -lA There is also the ddsc.shscript that allows you to run binary code directly. The following is a "Hello world" shellcode. bash ddsc.sh -x <<or bash ddsc.sh < <(xxd<<And yes. It works with meterpreter.Tested Linux distributions are Debian, Alpine and Arch. Supported shells are bash, zsh and ash over x86_64 and aarch64 (arm64) architectures. DependenciesThis script depends on the following tools to work.
dd bash | zsh | ash (busybox) head tail cut grep od readlink wc tr base64 The techniqueIf you are able to modify arbitrarily the memory of a process then you can take over it. This can be used to hijack an already existing process and replace it with another program. We can achieve this either by using the ptrace()syscall (which requires you to have the ability to execute syscalls or to have gdb available on the system) or, more interestingly, writing to /proc/$pid/mem.The file
/proc/$pid/memis a one-to-one mapping of the entire address space of a process (e. g. from 0x0000000000000000to 0x7ffffffffffff000in x86-64). This means that reading from or writing to this file at an offset xis the same as reading from or modifying the contents at the virtual address x.Now, we have four basic problems to face:
* In general, only root and the program owner of the file may modify it.
* ASLR.
* If we try to read or write to an address not mapped in the address space of the program we will get an I/O error.
This problems have solutions that, although they are not perfect, are good:
* Most shell interpreters allow the creation of file descriptors that will then be inherited by child processes. We can create a fd pointing to the
memfile of the sell with write permissions... so child processes that use that fd will be able to modify the shell's memory.* ASLR isn't even a problem, we can check the shell's
mapsfile or any other from the procfs in order to gain information about the address space of the process.* So we need to
lseek()over the file. From the shell this cannot be done unless using the infamous dd. In more detailThe steps are relatively easy and do not require any kind of expertise to understand them:* Parse the binary we want to run and the loader to find out what mappings they need. Then craft a "shell"code that will perform, broadly speaking, the same steps that the kernel does up[...]
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
DDexec - A Technique To Run Binaries Filelessly And Stealthily On Linux Using Dd To Replace The Shell With Another Process