Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How To Install Kali Linux In Virtual Box - pcbegin.com
https://external-preview.redd.it/6hSeGnMC9a8kPl-dDMnNuIvpmqc--YJSUQrnCWP94zo.jpg?width=640&crop=smart&auto=webp&s=c9105c60631482f99b737e67ce6395d2b9203982 submitted by /u/Cinemablind
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How To Install Kali Linux In Virtual Box - pcbegin.com
https://external-preview.redd.it/6hSeGnMC9a8kPl-dDMnNuIvpmqc--YJSUQrnCWP94zo.jpg?width=640&crop=smart&auto=webp&s=c9105c60631482f99b737e67ce6395d2b9203982 submitted by /u/Cinemablind
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How To Install Kali Linux In Virtual Box - pcbegin.com
Posted in r/hacking by u/Cinemablind • 1 point and 0 comments
hacking: security in practice
Leveraging JavaScript Injection
Hey all, I would love some insight or ideas on how to leverage a JS injection vulnerability I found on an IoT device. I would first like to preface that I am in a lab environment under an internship, testing the security of a handful of IoT smart devices, on which one is vulnerable to JS injection. How the vulnerability works is that I have a web server running on my local machine and it has JS code running on it. I point the device to my web server and it runs any JS code I feed it. I have been able to get some interesting information out of it, but what I'm really after is an interactive shell. The device is running in a sand boxed browser that does not allow downloading. My goal is to download a malicious .apk file or have it run malicious code to reveal more information on it's file system (I currently have access to a basic user file system but it doesn't seem to contain much of anything super interesting). I would love any new ideas or attack vectors related to running client side code through a browser environment, and whats possible with that.
submitted by /u/dxrk-kali
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Leveraging JavaScript Injection
Hey all, I would love some insight or ideas on how to leverage a JS injection vulnerability I found on an IoT device. I would first like to preface that I am in a lab environment under an internship, testing the security of a handful of IoT smart devices, on which one is vulnerable to JS injection. How the vulnerability works is that I have a web server running on my local machine and it has JS code running on it. I point the device to my web server and it runs any JS code I feed it. I have been able to get some interesting information out of it, but what I'm really after is an interactive shell. The device is running in a sand boxed browser that does not allow downloading. My goal is to download a malicious .apk file or have it run malicious code to reveal more information on it's file system (I currently have access to a basic user file system but it doesn't seem to contain much of anything super interesting). I would love any new ideas or attack vectors related to running client side code through a browser environment, and whats possible with that.
submitted by /u/dxrk-kali
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Leveraging JavaScript Injection
Hey all, I would love some insight or ideas on how to leverage a JS injection vulnerability I found on an IoT device. I would first like to...
hacking: security in practice
Nothing about 4Chans recent exploits?
For whom who cannot be named, if named such conversations are removed???
submitted by /u/biztelligence
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Nothing about 4Chans recent exploits?
For whom who cannot be named, if named such conversations are removed???
submitted by /u/biztelligence
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Nothing about 4Chans recent exploits?
For whom who cannot be named, if named such conversations are removed???
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Unsure where to post exactly but assistance with xampp for some SQL Injection practice
Hey everyone,
First and foremost: I'm not sure if this is the right place to ask for this, if not kindly point me to the right sub.
I have xampp and it's setup, I'm running MySQL and Apache just fine. My issue is i'm following this blog and have downloaded his zip files but I'm not sure where to go from there. Where do I import these so that I can navigate to his site and start practising per his blog?
https://www.hackingarticles.in/beginner-guide-sql-injection-part-1/
I just want a site where I can practice SQL injections...i have DVWA setup but the SQL injection and Blind SQL injection examples they have there aren't a 1-1 like in this guys blog. I'm looking for something where I can replicate his examples since I need to present on this and it's much easier to practice it this way.
Thanks in advance!
submitted by /u/WATTHEBALL
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Unsure where to post exactly but assistance with xampp for some SQL Injection practice
Hey everyone,
First and foremost: I'm not sure if this is the right place to ask for this, if not kindly point me to the right sub.
I have xampp and it's setup, I'm running MySQL and Apache just fine. My issue is i'm following this blog and have downloaded his zip files but I'm not sure where to go from there. Where do I import these so that I can navigate to his site and start practising per his blog?
https://www.hackingarticles.in/beginner-guide-sql-injection-part-1/
I just want a site where I can practice SQL injections...i have DVWA setup but the SQL injection and Blind SQL injection examples they have there aren't a 1-1 like in this guys blog. I'm looking for something where I can replicate his examples since I need to present on this and it's much easier to practice it this way.
Thanks in advance!
submitted by /u/WATTHEBALL
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Unsure where to post exactly but assistance with xampp for some...
Hey everyone, First and foremost: I'm not sure if this is the right place to ask for this, if not kindly point me to the right sub. I have xampp...
hacking: security in practice
Hacking using mobile number
Insights required please
So my close friend (Girl) I were part of a whats app group for masters degree fall 22 in the US. There is this guy who always kinda Flirts with her and occasional direct message talks. she didn’t share any personal information with anyone in the group except me. But somehow this guy got access to the following information Her temporary address, her permanent address. Very private mobile number which even I don’t know. Which bank credit card she uses and other bank cards she have. Which bank card that her dad uses. Her friends friends address and Instagram ID.
When she asked how did he got this info he replied his laptop is coded by the company he works and he can access those details which should like BS. Now she is really scared what else he knows.
Is this possible ? Can companies allows this ? Or did he hacked his way for this info.
submitted by /u/The_last_PP_bender
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hacking using mobile number
Insights required please
So my close friend (Girl) I were part of a whats app group for masters degree fall 22 in the US. There is this guy who always kinda Flirts with her and occasional direct message talks. she didn’t share any personal information with anyone in the group except me. But somehow this guy got access to the following information Her temporary address, her permanent address. Very private mobile number which even I don’t know. Which bank credit card she uses and other bank cards she have. Which bank card that her dad uses. Her friends friends address and Instagram ID.
When she asked how did he got this info he replied his laptop is coded by the company he works and he can access those details which should like BS. Now she is really scared what else he knows.
Is this possible ? Can companies allows this ? Or did he hacked his way for this info.
submitted by /u/The_last_PP_bender
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hacking using mobile number
Insights required please So my close friend (Girl) I were part of a whats app group for masters degree fall 22 in the US. There is this guy who...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Article of the Day: Exploring the Social Engineering Kill Chain
https://cdn-images-1.medium.com/max/1004/1*eXN71KPI10GWp8K5-2jFag.jpeg
Social Engineering Kill–Chain: Predicting, Minimizing & Disrupting Attack Verticals — Christina Lekati, Ahead Threat Intelligence Blog on…
Continue reading on Hybrid Analyst »
___________________________
@hacking_Attack
@Hacking_Video
Article of the Day: Exploring the Social Engineering Kill Chain
https://cdn-images-1.medium.com/max/1004/1*eXN71KPI10GWp8K5-2jFag.jpeg
Social Engineering Kill–Chain: Predicting, Minimizing & Disrupting Attack Verticals — Christina Lekati, Ahead Threat Intelligence Blog on…
Continue reading on Hybrid Analyst »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Article of the Day: Exploring the Social Engineering Kill Chain
Social Engineering Kill–Chain: Predicting, Minimizing & Disrupting Attack Verticals — Christina Lekati, Ahead Threat Intelligence Blog on…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
DNS Zone Transfer Tutorial (Subdomain Discovery)
https://cdn-images-1.medium.com/max/1397/1*_0fU_PAejv2FG3rURssdCg.png
Welcome! This article is going to focus on DNS Zone Transfers. I’m going use to the retired Hack The Box (HTB) machine, Cronos, for this…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
DNS Zone Transfer Tutorial (Subdomain Discovery)
https://cdn-images-1.medium.com/max/1397/1*_0fU_PAejv2FG3rURssdCg.png
Welcome! This article is going to focus on DNS Zone Transfers. I’m going use to the retired Hack The Box (HTB) machine, Cronos, for this…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
DNS Zone Transfer Tutorial (Subdomain Discovery)
Welcome! This article is going to focus on DNS Zone Transfers. I’m going use to the retired Hack The Box (HTB) machine, Cronos, for this…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Microsoft: Windows Autopatch ya está disponible de forma general
https://cdn-images-1.medium.com/max/1758/0*5n56sR2H9yOK3iIx
PUBLICADO EN 11 JULIO, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Microsoft: Windows Autopatch ya está disponible de forma general
https://cdn-images-1.medium.com/max/1758/0*5n56sR2H9yOK3iIx
PUBLICADO EN 11 JULIO, 2022POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Microsoft: Windows Autopatch ya está disponible de forma general
PUBLICADO EN 11 JULIO, 2022POR EHACKING
hacking: security in practice
Hydra Redirect?
Hey I am having trouble with a hydra command. I do not know how to handle url redirects:
hydra -l Jones -P ~/wordlists/rockyou.txt 137.74.187.100 https-post-form "/missions/realistic/2/update.php:username=Jones&password=^PASS^&log+in=Submit:Invalid username/password." -vV
If the password/username is incorrect then it will redirect to /missions/realistic/2/update2.php instead of update.php
I cant find any information about hydra redirects. -Thanks
submitted by /u/AmeowzingP
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hydra Redirect?
Hey I am having trouble with a hydra command. I do not know how to handle url redirects:
hydra -l Jones -P ~/wordlists/rockyou.txt 137.74.187.100 https-post-form "/missions/realistic/2/update.php:username=Jones&password=^PASS^&log+in=Submit:Invalid username/password." -vV
If the password/username is incorrect then it will redirect to /missions/realistic/2/update2.php instead of update.php
I cant find any information about hydra redirects. -Thanks
submitted by /u/AmeowzingP
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hydra Redirect?
Hey I am having trouble with a hydra command. I do not know how to handle url redirects: hydra -l Jones -P \~/wordlists/rockyou.txt...
hacking: security in practice
Brute forcing a webpage fast
What is a fast way to brute force a webpage when I know the password is 6 random uppercase alphanumeric characters? There will be 36^6 possible combinations which is over 2 billion. Dictionary attacks won't work. I've already tried Hydra which will take eternity to try all possible combinations.
submitted by /u/Danny1905
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Brute forcing a webpage fast
What is a fast way to brute force a webpage when I know the password is 6 random uppercase alphanumeric characters? There will be 36^6 possible combinations which is over 2 billion. Dictionary attacks won't work. I've already tried Hydra which will take eternity to try all possible combinations.
submitted by /u/Danny1905
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Brute forcing a webpage fast
What is a fast way to brute force a webpage when I know the password is 6 random uppercase alphanumeric characters? There will be 36\^6 possible...
Qué es Bug Bounty y por qué es ahora utilizado también por el cibercrimen
por Víctor Ruiz, fundador de SILIKN e instructor certificado en ciberseguridad — CSCT™.Continue reading on Medium »
Read more...
por Víctor Ruiz, fundador de SILIKN e instructor certificado en ciberseguridad — CSCT™.Continue reading on Medium »
Read more...
Qué es Bug Bounty y por qué es ahora utilizado también por el cibercrimen
https://victor-ruiz.medium.com/qu%C3%A9-es-bug-bounty-y-por-qu%C3%A9-es-ahora-utilizado-tambi%C3%A9n-por-el-cibercrimen-d349e37ee1bc?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://victor-ruiz.medium.com/qu%C3%A9-es-bug-bounty-y-por-qu%C3%A9-es-ahora-utilizado-tambi%C3%A9n-por-el-cibercrimen-d349e37ee1bc?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Qué es Bug Bounty y por qué es ahora utilizado también por el cibercrimen
por Víctor Ruiz, fundador de SILIKN e instructor certificado en ciberseguridad — CSCT™.