Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
How i was able to takeover 3 Subdomains of an Organization via Shopify?

Hey mates, back with a new writeup 🐱💻 !Continue reading on Medium »
Read more...
Firebase Allow Anonymous Read and Write Access

Description:Continue reading on Medium »
Read more...
A short story of IDOR

Hii all, I I hope you are all well.Continue reading on Medium »
Read more...
How to find bugs in website

Whether you are developing a website for your personal use, for a customer or your organization, it is very important that the site is…Continue reading on Medium »
Read more...
hacking: security in practice
Let's talk about OPSEC

For a couple of days, I've been trying to set up some good OPSEC, such as trying to get proxychains to work (this is pretty much all I've tried to do, other than research), and upon doing some research, I found there are a LOT of different opinions on the issue.

From what I understand, OPSEC discussions can get pretty intense, because literally everyone does it differently. So, let's hear (within reason) what others do for their OPSEC.

What are some things you do specifically for OPSEC? What are guidelines to follow? Is it set up specifically for you job or hobby? What are mistakes you've seen others make repeatedly?

Again, everyone has a different opinion on the issue, so it might be nice for me and other people to see how others do it, so they might improve their own OPSEC, because no solution is 100% bulletproof.

TL;DR - how do you manage your OPSEC?

submitted by /u/Metalsaurus_Rex
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
How can someone abuse a DNS server?

Let’s say someone who is running an adblocking server for DNS level adlocking has gone rogue.

Everyone’s internet traffic is first routed through there server. How could this be abused?

submitted by /u/VibingPixel
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Any good podcasts?

Hi guys. I am very interested in cybersecurity and networks and the like, and I was wondering, along side CTF’s on my down time, as i drive a lot, do you know any good podcasts (preferably on Spotify) covering the topics for beginners in the area?

I program in C mostly and I know some bash, I am enrolled in a programming course for about 6 months now, and I will have the possibility to especialize in some time, but until there, i would like to dive deeper in this area and learn as much as possible.

Thanks :)

submitted by /u/Dull_Battle5239
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
Cyberattackers Abuse QuickBooks Cloud Service in 'Double-Spear' Campaign

Malicious invoices coming from the accounting software's legitimate domain are used to harvest phone numbers and carry out fraudulent credit-card transactions.
Dark Reading: Attacks/Breaches
The Rise, Fall, and Rebirth of the Presumption of Compromise

The concept might make us sharp and realistic, but it's not enough on its own.
Dark Reading: Attacks/Breaches
Pair of Brand-New Cybersecurity Bills Become Law

Bipartisan legislation allows cybersecurity experts to work across multiple agencies and provides federal support for local governments.
Would a network cab. situated in an open plan office fail a physical pen test?
https://www.reddit.com/r/Pentesting/comments/vj2taz/would_a_network_cab_situated_in_an_open_plan/

Hi all. Need some advice as I'm getting conflicting information. Would a network cabinet situated in an open plan office fail a physical pen test. Or social engineering test? The network cabinet in question will be of solid design. Lockable front and rear doors. With the key housed in a lockable secure key safe and access regularly audited. I'm being told that this is a absolute no no by certain steakholders who feel this would fail any pen testing. Can I get your thoughts? Regards. submitted by /u/POPUPSGAMING (https://www.reddit.com/user/POPUPSGAMING)
[link] (https://www.reddit.com/r/Pentesting/comments/vj2taz/would_a_network_cab_situated_in_an_open_plan/) [comments] (https://www.reddit.com/r/Pentesting/comments/vj2taz/would_a_network_cab_situated_in_an_open_plan/)

___________________________
@hacking_Attack
@Hacking_Video