Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Android malware on the Google Play Store gets 2 million downloads Android malware on the Google Play Store gets 2 million downloadsPost Views: 46 Premium Content https://www.blackhatethicalhacking.com/wp-content/uploads/2022/04/Patreon…
scan to uproot any remnants as well.
See Also: Recon Tool: Domain Analyzer Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com Hydra malware infiltrationResearchers at Cyble have also spotted the Hydra banking trojan on the Google Play Store, recently observed targeting banking customers in Europe.
The malware masqueraded as a PDF document manager with text to PDF and QR code scanning features and amassed 10,000 downloads.
https://www.bleepstatic.com/images/news/u/1220909/Android%20malware/pdf-hydra.webp
<figcaptionHydra hiding in a PDF manager app on the Play Store (Cyble)
Cyble told Bleeping Computer that the malicious app was on the Play Store until June 9, 2022, but Google has since removed it.
However, the same PDF app is still available on third-party stores like APKAIO.com and APKCombo.com, so beware.
See Also: The Difference between Vulnerability Assessment and Pentesting
Source: bleepingcomputer.com Source Linkhttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch-1024x1024.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Linux-90x90.jpg New Linux rootkit, Syslogk uses magic packets to trigger backdoor1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Header-Python-Packages-Blog-Final-Image-90x90.jpg PyPI package ‘keep’ mistakenly included a password stealer2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/venom_superhero_movie_tom11_hardy-wallpaper-1920x1080-980x551-1-90x90.jpg This new Linux malware is ‘almost impossible’ to detect5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/ran-download-33-1-e1639685560151-90x90.jpeg Black Basta Ransomware Teams Up with Malware Stalwart Qbot6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/InstallerFileTakeOver-Zero-Day-Security-Vulnerability-All-Windows-OS-Versions-90x90.jpg New ‘DogWalk’ Windows zero-day bug gets free unofficial patches7 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/ipad_update_1200x675-90x90.jpg Security Fixes Won’t Require Full iOS Update in iOS 16, Will Be Installed Automatically1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Confluence-90x90.jpg Exploit released for Atlassian Confluence RCE bug, update now1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/be60-article-210907-confluence-body-text-90x90.png Critical Atlassian Confluence zero-day actively used in attacks2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Microsoft-releases-solutions-for-a-zero-day-vulnerability-90x90.jpg New Windows Search zero-day added to Microsoft protocol nightmare2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/3266-90x90.jpg Hackers steal WhatsApp accounts using call forwarding trick2 weeks ago
The post Android malware on the Google Play Store gets 2 million downloads first appeared on Black Hat Ethical Hacking.
See Also: Recon Tool: Domain Analyzer Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com Hydra malware infiltrationResearchers at Cyble have also spotted the Hydra banking trojan on the Google Play Store, recently observed targeting banking customers in Europe.
The malware masqueraded as a PDF document manager with text to PDF and QR code scanning features and amassed 10,000 downloads.
https://www.bleepstatic.com/images/news/u/1220909/Android%20malware/pdf-hydra.webp
<figcaptionHydra hiding in a PDF manager app on the Play Store (Cyble)
Cyble told Bleeping Computer that the malicious app was on the Play Store until June 9, 2022, but Google has since removed it.
However, the same PDF app is still available on third-party stores like APKAIO.com and APKCombo.com, so beware.
See Also: The Difference between Vulnerability Assessment and Pentesting
Source: bleepingcomputer.com Source Linkhttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch-1024x1024.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Linux-90x90.jpg New Linux rootkit, Syslogk uses magic packets to trigger backdoor1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Header-Python-Packages-Blog-Final-Image-90x90.jpg PyPI package ‘keep’ mistakenly included a password stealer2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/venom_superhero_movie_tom11_hardy-wallpaper-1920x1080-980x551-1-90x90.jpg This new Linux malware is ‘almost impossible’ to detect5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/ran-download-33-1-e1639685560151-90x90.jpeg Black Basta Ransomware Teams Up with Malware Stalwart Qbot6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/InstallerFileTakeOver-Zero-Day-Security-Vulnerability-All-Windows-OS-Versions-90x90.jpg New ‘DogWalk’ Windows zero-day bug gets free unofficial patches7 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/ipad_update_1200x675-90x90.jpg Security Fixes Won’t Require Full iOS Update in iOS 16, Will Be Installed Automatically1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Confluence-90x90.jpg Exploit released for Atlassian Confluence RCE bug, update now1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/be60-article-210907-confluence-body-text-90x90.png Critical Atlassian Confluence zero-day actively used in attacks2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/Microsoft-releases-solutions-for-a-zero-day-vulnerability-90x90.jpg New Windows Search zero-day added to Microsoft protocol nightmare2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/3266-90x90.jpg Hackers steal WhatsApp accounts using call forwarding trick2 weeks ago
The post Android malware on the Google Play Store gets 2 million downloads first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Callow
Is there anyway to use "Callow" to brute force a website with no username. The website im trying it on is for an internet mystery and the page only needs a password no username but the program requires one (to the best of my knowledge. GitHub for Callow (edit: grammar)
submitted by /u/_TheOneTrueBean_
[link] [comments]
Callow
Is there anyway to use "Callow" to brute force a website with no username. The website im trying it on is for an internet mystery and the page only needs a password no username but the program requires one (to the best of my knowledge. GitHub for Callow (edit: grammar)
submitted by /u/_TheOneTrueBean_
[link] [comments]
hacking: security in practice
How do I turn off tamper protection through powershell?
I'm trying to do a reverse shell attack on my windows computer from my linux vm, and the to run the powershell script on the client side, i need to disable real time protection manually, but i figured out a way to disable it by a powershell script, but to run the script and disable real time protection, first i need to disable tamper protection...So is there a way to disable tamper protection through a powershell command?
submitted by /u/Aryangsuktekar
[link] [comments]
How do I turn off tamper protection through powershell?
I'm trying to do a reverse shell attack on my windows computer from my linux vm, and the to run the powershell script on the client side, i need to disable real time protection manually, but i figured out a way to disable it by a powershell script, but to run the script and disable real time protection, first i need to disable tamper protection...So is there a way to disable tamper protection through a powershell command?
submitted by /u/Aryangsuktekar
[link] [comments]
Reddit
From the hacking community on Reddit
Explore this post and more from the hacking community
hacking: security in practice
DrayTek Bruteforce
Hi, few days ago i got my hands on a DrayTek Vigor2760 router to use as a modem for my home network, however once i reset the router, it did not go back to the default credentials, i got in touch with DrayTek, and they advised it is likely for it to be a custom firmware, and they are unable to help, They advised its best to get in touch with the supplier of the router for the default credentials. not knowing who the supplier is, i attempted to bruteforce the webapp using OWASP zap. after having a look at the post request that is sent to the router, i could see that the fields that are sent out are more than username and password.
breaking this down i could see that there are these fields: aa: this seems to be the username is BASE64 encoding ab: password in BASE64 sslgroup: looking at the name i can see its probably has to do with the HTTPS or smth but please let me know if im wrong. and lastly, sFormAuthStr.
looking at these fields, what is the best way to attack this webapp, any ideas or approaches i need to try? any links that i can have a look at that guides me to the right direcion?
it is worth mentioning that there is nothing illegal going on and i own the router, it was given to me by a friend who had this collecting dust in his attic.
Thank you :)
submitted by /u/h0ly_k0w
[link] [comments]
DrayTek Bruteforce
Hi, few days ago i got my hands on a DrayTek Vigor2760 router to use as a modem for my home network, however once i reset the router, it did not go back to the default credentials, i got in touch with DrayTek, and they advised it is likely for it to be a custom firmware, and they are unable to help, They advised its best to get in touch with the supplier of the router for the default credentials. not knowing who the supplier is, i attempted to bruteforce the webapp using OWASP zap. after having a look at the post request that is sent to the router, i could see that the fields that are sent out are more than username and password.
aa=dGVzdA%3D%3D&ab=AA%3D%3D&sslgroup=-1&sFormAuthStr=R8riZC8XxeWxi5t breaking this down i could see that there are these fields: aa: this seems to be the username is BASE64 encoding ab: password in BASE64 sslgroup: looking at the name i can see its probably has to do with the HTTPS or smth but please let me know if im wrong. and lastly, sFormAuthStr.
looking at these fields, what is the best way to attack this webapp, any ideas or approaches i need to try? any links that i can have a look at that guides me to the right direcion?
it is worth mentioning that there is nothing illegal going on and i own the router, it was given to me by a friend who had this collecting dust in his attic.
Thank you :)
submitted by /u/h0ly_k0w
[link] [comments]
reddit
DrayTek Bruteforce
Hi, few days ago i got my hands on a DrayTek Vigor2760 router to use as a modem for my home network, however once i reset the router, it did not...
How to configure polkit utility in centos 7 cve-2019-4034? please help.
https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/
submitted by /u/l_l__R4v4N__l__l (https://www.reddit.com/user/l_l__R4v4N__l__l)
[link] (https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/) [comments] (https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/)
https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/
submitted by /u/l_l__R4v4N__l__l (https://www.reddit.com/user/l_l__R4v4N__l__l)
[link] (https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/) [comments] (https://www.reddit.com/r/Pentesting/comments/vcr3c3/how_to_configure_polkit_utility_in_centos_7/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Five Places To Learn How To Hack Web Applications
https://cdn-images-1.medium.com/max/960/0*wqwbDPYtqeSikV5I.jpg
Learn how to hack and secure web applications online
Continue reading on Geek Culture »
Five Places To Learn How To Hack Web Applications
https://cdn-images-1.medium.com/max/960/0*wqwbDPYtqeSikV5I.jpg
Learn how to hack and secure web applications online
Continue reading on Geek Culture »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Analysis of Ranion Ransomware
https://cdn-images-1.medium.com/max/640/0*peh0hSo6ZZHsYJbq.jpg
Analysis of Ranion ransomware that has been running for four years
Continue reading on Medium »
Analysis of Ranion Ransomware
https://cdn-images-1.medium.com/max/640/0*peh0hSo6ZZHsYJbq.jpg
Analysis of Ranion ransomware that has been running for four years
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
SpaceX Looks At Starlink’s Expansion In India
https://cdn-images-1.medium.com/max/640/0*PrPndizjsSf3gGiU.png
SpaceX Looks At Starlink’s Expansion In India
Continue reading on Medium »
SpaceX Looks At Starlink’s Expansion In India
https://cdn-images-1.medium.com/max/640/0*PrPndizjsSf3gGiU.png
SpaceX Looks At Starlink’s Expansion In India
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
6 Signs You May Be Hacked When Smartphone Acting Weird
https://cdn-images-1.medium.com/max/600/0*Q5J9yf5hNS37qKS4.jpg
If your smartphone is appearing bizarre, some thing is up.
Continue reading on Medium »
6 Signs You May Be Hacked When Smartphone Acting Weird
https://cdn-images-1.medium.com/max/600/0*Q5J9yf5hNS37qKS4.jpg
If your smartphone is appearing bizarre, some thing is up.
Continue reading on Medium »
Getting Started with AllianceBlock DEX on Mainnet
https://allianceblock.medium.com/abdex-getting-started-with-abdex-on-mainnet-c83591511fa0?source=rss------bug_bounty-5
https://allianceblock.medium.com/abdex-getting-started-with-abdex-on-mainnet-c83591511fa0?source=rss------bug_bounty-5
We walk you through how to use the AllianceBlock DEX, as well as some updates on our progress on the development since we launched.Continue reading on Medium » (https://allianceblock.medium.com/abdex-getting-started-with-abdex-on-mainnet-c83591511fa0?source=rss------bug_bounty-5)