Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Should I be worried?

I received an email from xianxianxialing [AT] gmail [DOT] com and text reads-

>Are you available for a brief discussion on this email address?

I am pretty sure that I don't know any chinese guy or this email is unknow to me. How I can find more information about owner of this email? I feel it is phishing email and I have blocked the sender as of now. Should I be worried?

submitted by /u/icomplexnumber
[link] [comments]
This post is about an bug that I found on Meta (aka Facebook) which used to find a linked Primary email address of a account using mobile…Continue reading on Medium » (https://lokeshdlk77.medium.com/contact-point-deanonymization-vulnerability-in-meta-90d575c4d8ef?source=rss------bug_bounty-5)
[Question] a bit confused about some windows protocols, any recommendations ?
https://www.reddit.com/r/Pentesting/comments/udx5hf/question_a_bit_confused_about_some_windows/

<!-- SC_OFF -->Hello everyone, i'm confused with windows protocol like LDAP, RPC, SMB, ...
any resources to understand these protocols ? <!-- SC_ON --> submitted by /u/0xA1MN (https://www.reddit.com/user/0xA1MN)
[link] (https://www.reddit.com/r/Pentesting/comments/udx5hf/question_a_bit_confused_about_some_windows/) [comments] (https://www.reddit.com/r/Pentesting/comments/udx5hf/question_a_bit_confused_about_some_windows/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Rip Raw - Small Tool To Analyse The Memory Of Compromised Linux Systems

https://blogger.googleusercontent.com/img/a/AVvXsEipVRxftk4Z5dHq8nl9mPpF5iJxi9PJkCu7ZEgypWcIV1qVCRmCsP2bBBUfVpjnzQMG0LBDMcx69HqZIerZGKnUPXyH1gZ2UMrvOGpFxk2U5SuQUOfsGlSmZOHx6GxmwPVvKZZA-jtDCzuc1dwAziwF0eKJlnf6XpqxjAw3_zeZ5nuzEXxEMduyGspp=w640-h342 Rip Raw is a small tool to analyse the memory of compromised Linux systems. It is similar in purpose to Bulk Extractor, but particularly focused on extracting system Logs from memory dumps from Linux systems. This enables you to analyse systems without needing to generate a profile.

This is not a replacement for tools such as Rekall and Volatility which use a profile to perform a more structured analysis of memory.

Rip Raw works by taking a Raw Binary such as a Memory Dump and carves files and logs using:

*
Text/binary boundaries

*
File headers and file magic

*
Log entries
Then puts them in a zip file for secondary processing by other tools such as Cado Response or a SIEM such as Splunk (examples below). ExampleFor example, after capturing the memory of an Amazon EKS ( Elastic Kubernetes Service) system compromised with a crypto-mining worm we processed it with rip_raw: python3 rip_raw.py -f eks-node-ncat-capture.mem And then the large zip of logs that Rip Raw outputs can be viewed in a tool such as Cado Response (below). Approximately 36500 log events were extracted from this memory image, along with a number of binaries such as images and executables. https://blogger.googleusercontent.com/img/a/AVvXsEipVRxftk4Z5dHq8nl9mPpF5iJxi9PJkCu7ZEgypWcIV1qVCRmCsP2bBBUfVpjnzQMG0LBDMcx69HqZIerZGKnUPXyH1gZ2UMrvOGpFxk2U5SuQUOfsGlSmZOHx6GxmwPVvKZZA-jtDCzuc1dwAziwF0eKJlnf6XpqxjAw3_zeZ5nuzEXxEMduyGspp=w640-h342 Or Splunk: https://blogger.googleusercontent.com/img/a/AVvXsEirHVe4UYf8bTKx6dBpCAgVxnDSP80irlSTVTlBdiLyZ7lBnPu7em_E0ZBjLuZBbiPZ9aKwyhO3mMC-eYwd4OLx4N4tRH3uIFn592c3ZsSv7vpVMhKoNJLn9ufk30JKiG1T1i_E8PTUzJQqbtEZZ2rMdNq9GPJTJFy6ZsdsqOhrmsB7rx_YC_BRFA8q=w640-h340 Learn More*
We'll be giving a webinar on Cloud Incident Response and Ransomware on Tuesday February 1st @ https://www.brighttalk.com/webcast/19071/527346

*
We give an example of Rip Raw for analysing a compromised Amazon Kubernetes system in a talk @ https://offers.cadosecurity.com/cloud-and-kubernetes-memory-forensics

*
You can download a PDF copy of our playbook on how to respond to compromised Kubernetes systems such as Amazon EKS @ https://offers.cadosecurity.com/the-ultimate-guide-to-docker-and-kubernetes-incident-response Download Rip_Raw

___________________________
@hacking_Attack
@Hacking_Video
Gamified Vaults: Play, Find, Get Paid

Hats Finance is introducing gamified vaults to the mix, allowing developers, white hats and security experts to test their solidity…Continue reading on Medium »
Read more...