Livepeer (Non Smart Contract) Security Disclosure Program
https://medium.com/livepeer-blog/livepeer-non-smart-contract-security-disclosure-program-2c946ae7c45e?source=rss------bug_bounty-5
Program OverviewContinue reading on Livepeer Blog » (https://medium.com/livepeer-blog/livepeer-non-smart-contract-security-disclosure-program-2c946ae7c45e?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/livepeer-blog/livepeer-non-smart-contract-security-disclosure-program-2c946ae7c45e?source=rss------bug_bounty-5
Program OverviewContinue reading on Livepeer Blog » (https://medium.com/livepeer-blog/livepeer-non-smart-contract-security-disclosure-program-2c946ae7c45e?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
Livepeer (Non Smart Contract) Security Disclosure Program
Program Overview
HTML and Hyperlink Injection via Share Option In Microsoft Onenote Application
https://infosecwriteups.com/html-and-hyperlink-injection-via-share-option-in-microsoft-onenote-application-47e94d0e6478?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/html-and-hyperlink-injection-via-share-option-in-microsoft-onenote-application-47e94d0e6478?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
HTML and Hyperlink Injection via Share Option In Microsoft Onenote Application
Hyperlink Injection it’s when attacker injecting a malicious link when sending an email invitation. HTML injection attack is injecting HTML…
Hyperlink Injection it’s when attacker injecting a malicious link when sending an email invitation.Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/html-and-hyperlink-injection-via-share-option-in-microsoft-onenote-application-47e94d0e6478?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
HTML and Hyperlink Injection via Share Option In Microsoft Onenote Application
Hyperlink Injection it’s when attacker injecting a malicious link when sending an email invitation. HTML injection attack is injecting HTML…
HTML and Hyperlink Injection via Share Option In Microsoft Onenote Application
Hyperlink Injection it’s when attacker injecting a malicious link when sending an email invitation.Continue reading on InfoSec Write-ups »
Read more...
Hyperlink Injection it’s when attacker injecting a malicious link when sending an email invitation.Continue reading on InfoSec Write-ups »
Read more...
hacking: security in practice
How profitable is cryptojacking?
Been reading up and doing research lately on blockchain and came across cryptojacking. I am brand new to hacking so I don’t know how this works. Let’s say a black hat were able to get into 800 computers, would he be able to make 800 or more a day through this? Or is this an unrealistic scenario and is way less profitable and I don’t know what I’m talking about. If it isn’t this profitable how much would he be able to get a day to day basis through 800 computers and is 800 even realistic feat to get to? If so how long would it take to get to this feat?
submitted by /u/Based-andredpilled
[link] [comments]
How profitable is cryptojacking?
Been reading up and doing research lately on blockchain and came across cryptojacking. I am brand new to hacking so I don’t know how this works. Let’s say a black hat were able to get into 800 computers, would he be able to make 800 or more a day through this? Or is this an unrealistic scenario and is way less profitable and I don’t know what I’m talking about. If it isn’t this profitable how much would he be able to get a day to day basis through 800 computers and is 800 even realistic feat to get to? If so how long would it take to get to this feat?
submitted by /u/Based-andredpilled
[link] [comments]
Reddit
From the hacking community on Reddit
Explore this post and more from the hacking community
hacking: security in practice
corrupt an executable
Is there any way to make an executable over which I do not have permission to write, to change the name... ? not necessarily by corrupting it, I just want to make it unable to do anything
submitted by /u/JGN1722
[link] [comments]
corrupt an executable
Is there any way to make an executable over which I do not have permission to write, to change the name... ? not necessarily by corrupting it, I just want to make it unable to do anything
submitted by /u/JGN1722
[link] [comments]
reddit
corrupt an executable
Is there any way to make an executable over which I do not have permission to write, to change the name... ? not necessarily by corrupting it, I...
hacking: security in practice
Excel Macros works like a Trojan?
Hello everyone,
Tomorrow I have an exam at the university that requires the use of the computer because we need an Excel sheet to do it. However, the teacher in the previous call (as he will do tomorrow) provides us with that Excel sheet with a series of activated Macros. These "Macros" (I didn't know they existed) monitor your computer: they are capable of detecting what you have open on your computer. In fact, some student was caught opening Whatsapp during the exam.
My question is, how have they achieved that with Excel? How is it possible? Is there any way to get around it? Maybe a virtual machine?
I already have that Excel sheet if someone want to see it.
Thank you for the info!!
submitted by /u/melontales
[link] [comments]
Excel Macros works like a Trojan?
Hello everyone,
Tomorrow I have an exam at the university that requires the use of the computer because we need an Excel sheet to do it. However, the teacher in the previous call (as he will do tomorrow) provides us with that Excel sheet with a series of activated Macros. These "Macros" (I didn't know they existed) monitor your computer: they are capable of detecting what you have open on your computer. In fact, some student was caught opening Whatsapp during the exam.
My question is, how have they achieved that with Excel? How is it possible? Is there any way to get around it? Maybe a virtual machine?
I already have that Excel sheet if someone want to see it.
Thank you for the info!!
submitted by /u/melontales
[link] [comments]
reddit
Excel Macros works like a Trojan?
Hello everyone, Tomorrow I have an exam at the university that requires the use of the computer because we need an Excel sheet to do it. However,...
hacking: security in practice
How should computer forensics experts catch hackers who use VPN/ TOR to mask their Identities/location?
I am throwing this question open for debate. But I would provide my technical opinion.
There are a few ways I have used in defensive scenarios in the past:
Firstly we see repeated code fragments in different attacks that would be difficult to forge without the original source code,that’s a regular certainty with some failed attacking scenarios.
Secondly I believe seeing the same technical techniques used repeatedly to be a dead giveaway in most cases I come across . For example, there are many way to automatically start a program on Windows right? The particular method chosen by a given attacker group is often unique to them. More like their brand.
We then often see IP addresses and domains reused across attacks this is synonymous to rookies . Sometimes the domains and IPs are different but something about the way they are registered or served tips us off that they're related. Sometimes the attacker forgets to turn on the vpn or in a particular case where an attacker had bad connection and the attacking VPN had no kill switch. It’s rare but extremely valuable.
Often the victim has only a few capable known enemies. Russia, China and Israel have no reason to hack Sony. An attack against an Iranian nuclear facility has just a couple obvious likely attackers. Nobody but China would care to hack Chinese dissidents.
You should be able to track these things over time so that you can link together information across many different attacks to form a clue chain.
Attribution isn't an exact science. Sometimes you can't figure much out details . Sometimes attackers impersonate each other, and probably we sometimes fall for it.
But other times you can clearly tell which group you are looking at.
submitted by /u/Communitybot1
[link] [comments]
How should computer forensics experts catch hackers who use VPN/ TOR to mask their Identities/location?
I am throwing this question open for debate. But I would provide my technical opinion.
There are a few ways I have used in defensive scenarios in the past:
Firstly we see repeated code fragments in different attacks that would be difficult to forge without the original source code,that’s a regular certainty with some failed attacking scenarios.
Secondly I believe seeing the same technical techniques used repeatedly to be a dead giveaway in most cases I come across . For example, there are many way to automatically start a program on Windows right? The particular method chosen by a given attacker group is often unique to them. More like their brand.
We then often see IP addresses and domains reused across attacks this is synonymous to rookies . Sometimes the domains and IPs are different but something about the way they are registered or served tips us off that they're related. Sometimes the attacker forgets to turn on the vpn or in a particular case where an attacker had bad connection and the attacking VPN had no kill switch. It’s rare but extremely valuable.
Often the victim has only a few capable known enemies. Russia, China and Israel have no reason to hack Sony. An attack against an Iranian nuclear facility has just a couple obvious likely attackers. Nobody but China would care to hack Chinese dissidents.
You should be able to track these things over time so that you can link together information across many different attacks to form a clue chain.
Attribution isn't an exact science. Sometimes you can't figure much out details . Sometimes attackers impersonate each other, and probably we sometimes fall for it.
But other times you can clearly tell which group you are looking at.
submitted by /u/Communitybot1
[link] [comments]
reddit
How should computer forensics experts catch hackers who use VPN/...
I am throwing this question open for debate. But I would provide my technical opinion. There are a few ways I have used in defensive scenarios...
hacking: security in practice
I have some new hotspot in my home and I am unable to localize it
I live in eastern Europe and I did notice lately that I see a new WiFi hotspot called "dupa" (ass) in my house. The thing is that I can barely reach my only neighbours Wi-Fi (0-1) but I get this dupa one pretty well (3-5) so I am assuming that it comes somewhere from inside my home (it is 2 floor and over 800square meters). Is there any free tool that I could use to check where does this signal comes from?
submitted by /u/MapedMod
[link] [comments]
I have some new hotspot in my home and I am unable to localize it
I live in eastern Europe and I did notice lately that I see a new WiFi hotspot called "dupa" (ass) in my house. The thing is that I can barely reach my only neighbours Wi-Fi (0-1) but I get this dupa one pretty well (3-5) so I am assuming that it comes somewhere from inside my home (it is 2 floor and over 800square meters). Is there any free tool that I could use to check where does this signal comes from?
submitted by /u/MapedMod
[link] [comments]
reddit
I have some new hotspot in my home and I am unable to localize it
I live in eastern Europe and I did notice lately that I see a new WiFi hotspot called "dupa" (ass) in my house. The thing is that I can barely...
Dark Reading: Attacks/Breaches
Google Analytics Continues to Lose SEO Visibility as Bans Continue
Google Analytics has been found to be in violation of GDPR privacy laws by Italy — the third country to ban it.
___________________________
@hacking_Attack
@Hacking_Video
Google Analytics Continues to Lose SEO Visibility as Bans Continue
Google Analytics has been found to be in violation of GDPR privacy laws by Italy — the third country to ban it.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Google Analytics Continues to Lose SEO Visibility as Bans Continue
Google Analytics has been found to be in violation of GDPR privacy laws by Italy — the third country to ban it.
Massive Trove of Gun Owners’ Private Information Leaked by California Attorney General
https://www.reddit.com/r/redteamsec/comments/vmyaxg/massive_trove_of_gun_owners_private_information/
submitted by /u/Hotdogpizzathehut (https://www.reddit.com/user/Hotdogpizzathehut)
[link] (https://thereload.com/new-california-ag-website-leaks-massive-trove-of-gun-owner-private-information/) [comments] (https://www.reddit.com/r/redteamsec/comments/vmyaxg/massive_trove_of_gun_owners_private_information/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/vmyaxg/massive_trove_of_gun_owners_private_information/
submitted by /u/Hotdogpizzathehut (https://www.reddit.com/user/Hotdogpizzathehut)
[link] (https://thereload.com/new-california-ag-website-leaks-massive-trove-of-gun-owner-private-information/) [comments] (https://www.reddit.com/r/redteamsec/comments/vmyaxg/massive_trove_of_gun_owners_private_information/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Massive Trove of Gun Owners’ Private Information Leaked by...
Posted in r/redteamsec by u/Hotdogpizzathehut • 1 point and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
5 Tips to Ensure User Data Security and Limit Information Breach on a Website
https://cdn-images-1.medium.com/max/600/1*CqmYuIu99QIy6ECMZgCwhQ.jpeg
In today’s digital ecosystem, hacks are a great concern for web developers and website owners alike. Hacking accounts for 61.9 % of data…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
5 Tips to Ensure User Data Security and Limit Information Breach on a Website
https://cdn-images-1.medium.com/max/600/1*CqmYuIu99QIy6ECMZgCwhQ.jpeg
In today’s digital ecosystem, hacks are a great concern for web developers and website owners alike. Hacking accounts for 61.9 % of data…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
5 Tips to Ensure User Data Security and Limit Information Breach on a Website
In today’s digital ecosystem, hacks are a great concern for web developers and website owners alike. Hacking accounts for 61.9 % of data…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Phases of Hacking
https://cdn-images-1.medium.com/max/900/1*dk0avv7_MWVYlR3WxtUO_Q.jpeg
Hacking is broken in five phases Reconnainssance, Scanning, Gaining Access, Maintaining Access and eventually Covering Tracks.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Phases of Hacking
https://cdn-images-1.medium.com/max/900/1*dk0avv7_MWVYlR3WxtUO_Q.jpeg
Hacking is broken in five phases Reconnainssance, Scanning, Gaining Access, Maintaining Access and eventually Covering Tracks.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Phases of Hacking
Hacking is broken in five phases Reconnainssance, Scanning, Gaining Access, Maintaining Access and eventually Covering Tracks. The more you…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HacktheBox[Paper]
https://cdn-images-1.medium.com/max/698/1*gLnw3juJFVT5yE-cNSbyAw.png
Paper was a fun easy box that emulates the hit tv show “The Office”.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HacktheBox[Paper]
https://cdn-images-1.medium.com/max/698/1*gLnw3juJFVT5yE-cNSbyAw.png
Paper was a fun easy box that emulates the hit tv show “The Office”.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HacktheBox[Paper]
Paper was a fun easy box that emulates the hit tv show “The Office”. Web reconnaissance reveals the webserver is running a insecure version…