Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
131K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
confluencePot - Simple Honeypot For Atlassian Confluence (CVE-2022-26134)

https://blogger.googleusercontent.com/img/a/AVvXsEhvJYSxBzvhziiqnNQMt1sVNIxlGDPxGaEDU73ligxfwzMzbXBi3yU8ypWCvQXp4yv7swHFon8H2aJCrn8HmJ8P_U1VRKcyPGulS3ckJLMWG9BozW5mcPC4jFdBmj9GCHuwx1YkvX_tI6PP7DHV1cHwoJnI1zhRwdnEHR4gHpUl8wsRJXX2MsN1_rv7=w640-h190
ConfluencePot is a simple honeypot for the Atlassian Confluence unauthenticated and remote OGNL injection vulnerability (CVE-2022-26134).
About the vulnerability

You can find the official advisory by Atlassian to this vulerability here. For details about the inner workings and exploits in the wild you should refer to the reports by Rapid7 and Cloudflare. Affected but not yet patched systems should be deemed compromised until further investigation.

About the tool

ConfluencePot is written in Golang and implements its own HTTPS server to minimize the overall attack surface. To make it appear like a legit Confluence instance it returns a bare-bones version of a Confluence landing page. Log output is written to stdout and a log file on disk. ConfluencePot DOES NOT allow attackers to execute commands/code on your machine, it only logs requests and returns a bogus response.

Building & Running it

You need a recent version of Golang to run/build confluencePot and the appropriate privileges to bind to port 443. We recommend to execute it in a tmux session for easier handling. To run ConfluencePot you either need to create a self-signed TLS certificate with openssl or request one from e.g. Let's Encrypt.

go build confluencePot.go
./confluencePot


Testing and Issues

ConfluencePot was tested using the public exploit by Nwqda, which seems to be the most used variant in the wild at the time of writing. If you find anything wrong with confluencePot please feel free to open an issue or send us a pull request.

Follow us on Twitter --> @SI_FalconTeam <--
Download confluencePot

___________________________
@hacking_Attack
@Hacking_Video
Java Application WEB-INF Content Retrieved

Description:Continue reading on Medium »
Read more...
hacking: security in practice
Experience with pre-installed Network-Keys for Zigbee-Devices?

Hi, i am currently writing my Bachelors Thesis about Security in IoT-Systems. I got me a Sonoff Zigbee Bridge and a Sonoff Wireless Door-sensor to test my ideas in that system. It seems, that the used Network-Keys are pre-installed in a CC2530 F256 Microchip. I have read a lot about how easy IT should be to extract the Network-Key with physical access to the device, but i have absolutely no clue how. Is it possible to extract the Network-Key or does someone have other ideas how i could go on ? Note: The devices are property of my university and i have to pay them, if i break the devices.

Thx in advance

submitted by /u/BMGforever190
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
is tails os a must?

So i have been using tor browser recently ( combining it with proxychains) and came across tails OS. Does it differ that much between using tails to conduct the reconnaissance phase ( passive or active) And using kali with tor+proxychains?

submitted by /u/__hiken__
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video