Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Learning how to hack non-independently

Okay, I’ve seen plenty of resources on hackerone, tryhackme, hackthebox, and I’ve bought a book on web application hacking and I’ve watched “bug bounty hunter’s methodology” and I’ve even found two account takeover vulnerabilities in different websites, one of which was owned by a fairly large company!

I certainly haven’t used all of the listed resources to their full extent, but what I’ve established from the time I’ve spent is that learning to hack, or more specifically bug bounty hunting, is incredibly difficult to do independently. I understand that’s how it is for nearly everyone in this field, but I’m still wondering if there’s somewhere I can go that’s got at least slightly more support than just sitting at my laptop alone?

submitted by /u/The-Lozenger
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Malicious Websites

Hello, I just had someone message me via Facebook Messenger and it looked something like this:

Look who just died, I think you know him? https://************.com?m6

Piqing my suspicion and curiosity, how can I check if a website is malicious or what are some telltale signs? Any website that has that kind of capability?

Any suggestions will help thank you.

submitted by /u/traumatix
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
You know what would be polite? A malware coded in Rust

I mean seriously, the time and effort and passion he put into creating such a beautiful piece of software, it is almost like a cute teddy bear holding a gun to rob you.

submitted by /u/IsoSpandy
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
How does a Ransomware actually work?

Ransomware identifies the drives on an infected system and begins to encrypt the files.Continue reading on Medium »
Read more...
hacking: security in practice
I just recently experienced a psychotic episode for the first time in my life. Some of the delusions had to do with hacking/hackers either tormenting me or trying to recruit me through subliminal messaging on the internet. How possible is it that my delusions were actually real?

So my episode is over, or so I believe. I definitely feel better. But during my episode, I experienced a few delusions:

*
Feelings that I am being secretly tested by the company that I work for or some of the major social media platforms that we all know of.

*
Being psychologically attacked/tormented by foreign governments, ill-intentioned hacking groups, or an entity of artificial intelligence

*
That a hacking group is trying to recruit me via subliminal messaging on online ads and content specifically because of my understanding of the business/industry that I work in.
I realize that all this sounds ridiculous, but at the time it felt very, very real.

To give a little more context, a lot of the torment during my episode came in the form of YouTube video titles, thumbnails, descriptions, tags, and other metadata that correlated with things that I have recently searched before, online, and things that I have spoken about from within my home during conversations with my family members or phone calls with friends within the last week.

This was very similar to how if you speak about certain items around your Amazon device or Apple phone, then targeted ads with that item start to show. Imagine that, but much more sinister and not for the purposes of making a sale.

We live in 2022 so I have to imagine AI is pretty damn advanced. And with all of the cyber warfare, 24/7 mic’d devices we have around us at all times, and devices logging all of our interactions online every single second, a breach here and there could definitely gather a ton of information.

So I’m curious: What are the chances that my delusions were not actually delusions? Would it be possible for a hacker or hacking group to get into my computer and psychologically attack me or deploy some kind of artificial intelligence algorithm or bot that serves to put human beings into a disoriented psychological state?

submitted by /u/vinersking
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
someone is using my youtube acc

I noticed it yesterday that there are videos in the liked column, which i havent pressed the like button, i have my history turned off, so i turned it on to see if it's true that someone is watching from my account, i turned both search history nd watch history on, i now have videos on my watch history that i haven't watched, this is same in both my accounts, there are freaking videos that i haven't pressed like

I checked logged in devices of my accounts, found a device under that name ,redmi note 9(not mine,prolly the hackers),Android (also not mine), samsung m31s(my mobile), my laptop. I removed that android nd redmi note 9, i still see new videos on the liked column that i haven't , I changed password , still see new videos I checked my gmail on pc, bottom right it shows my last activity time nd date, didn't match to my knowledge, so i see the activity, found ip, check where this ip is located, found it's in a different state than mine. So what do I do guys, how do I solve this issue

submitted by /u/rb25_det
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Does ms15–034 still exist today ?

Hi everyone how are you?, I hope you guys are well. I’m RyuuKhagetsu, this is my article in English, sorry if there are any mistakes. I…Continue reading on Medium »
Read more...
The BoB Web Application Security Project (BWASP) is an open-source, analysis tool to support for Web Vulnerability (https://www.kitploit.com/search/label/Vulnerability) Manual Analysis (https://www.kitploit.com/search/label/Analysis) hackers. The BWASP tool basically provides predicted information through vulnerability analysis (https://www.kitploit.com/search/label/Vulnerability%20Analysis) without proceeding with an attack. BWASP supports performing automated (https://www.kitploit.com/search/label/Automated) analysis and manual analysis. The BWASP Project supports: Find Attack vector automatically. (e.g. SQL Injection, Cross-site Scripting) Detect website technology. Log4J vulnerability scan (Partially supports java language) HTTP REST API GuideLine Result Test payload option(attack test)
Getting started pip3 install -r requirements.txt

python3 start.py BWASP Tool Guide guide-ko-documentation (https://github.com/BWASP/BWASP/blob/main/GUIDE_ko.md) guide-en-documentation (https://github.com/BWASP/BWASP/blob/main/GUIDE_en.md) Roadmap Add OSINT feature (find subdomains) Reference Web Infra Environment Analysis: wappalyzer(https://github.com/AliasIO/wappalyzer) Contact bwasptop9@gmail.com (mailto:bwasptop9@gmail.com) Contributor Dohun Koo (@dohunny (https://github.com/dohunny)) Sanghyeon Lee (@isanghyeon (https://github.com/isanghyeon)) Joowon Kim (@arrester (https://github.com/arrester)) Jongmin Kim (@Universe1122 (https://github.com/Universe1122)) Joonyoung Jeong (@jeongjy0317 (https://github.com/jeongjy0317)) Joomyeong Lee (@PecentZero (https://github.com/PecentZero)) PL: Jiheon Choi (@jiheon-dev (https://github.com/jiheon-dev)) Mentor: Gangseok Lee (@codeengn (https://github.com/codeengn)), Sehan Park (@combab0 (https://github.com/combab0)) Acknowledgement This work was supported by Korea Information Technology Research (https://www.kitploit.com/search/label/Research) Institute (KITRI) Best of the Best (BoB) Program 10th vulnerability analysis track. [Project Name: BoB Web Application Security Project]

Download BWASP (https://github.com/BWASP/BWASP)

___________________________
@hacking_Attack
@Hacking_Video