Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
How to brute-force on a "two-page login" website using Burp Suite?

I just finished an Introduction to Digital Security class in college, and I have been playing with Kali Linux for a couple of days on my own. I worked a bit with brute-forcing today on Burp Suite and understand some of it. However, I tried it on a website with a "two-page login", meaning that you first have to enter your username, click continue, and then enter your password on a new webpage (sorry for explaining bad).

How do I make that work in Burp Suite?



(Everything was tested on websites that my professor has made specifically for this class. This is only for educational purposes.)

submitted by /u/KINGSDE4D
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Student body president poll fraud

I know this isn’t technically hacking but you people seem to know some things. my school has a google forums poll to pick a student body president, is there a way to add fake votes? the problem I have is that the poll is private and only people with school emails can vote. Any ideas?

submitted by /u/henrybduncan
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Noob question!
https://www.reddit.com/r/Pentesting/comments/um20uw/noob_question/

Hi everyone I am a new user here in progress of learning though basic free methods like THM/youtube/reddit and forums I have 2 questions which of course I tried to google 1st but haven't gotten a definitive answer so here goes!
1. can you scan networks you aren't currently connected to with nmap? ie using target ip/ipv4 ?
2. kind of a follow up to the 1st question possible to remotely connect to target pc through metasploit / meterpeter or any other apps also i am assuming most of these techniques will all have to have target download some kind of .exe file or .pdf/docx file also is it possible to connect via some kind of exploit without having target download a file ? almost all examples I have seen were connected on same network I haven't seen of any connected remotely not being on same internet network , any input is greatly appreciated or a link/video/lessons relating to subject also appreciated thanks for taking time to read this! submitted by /u/GoatUpstairs7870 (https://www.reddit.com/user/GoatUpstairs7870)
[link] (https://www.reddit.com/r/Pentesting/comments/um20uw/noob_question/) [comments] (https://www.reddit.com/r/Pentesting/comments/um20uw/noob_question/)

___________________________
@hacking_Attack
@Hacking_Video
Why you should never trust any website

Hello Everyone. Today I have an interesting story about a target that I have done some pentesting on. The result will shock youContinue reading on Medium »
Read more...
Dark Reading: Attacks/Breaches
Costa Rica Declares State of Emergency Under Sustained Conti Cyberattacks

Conti's ransomware attack cripples Costa Rica's Treasury, sparking the US to offer a $15M bounty on the group.