Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.7K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Unsure where to post exactly but assistance with xampp for some SQL Injection practice

Hey everyone,

First and foremost: I'm not sure if this is the right place to ask for this, if not kindly point me to the right sub.

I have xampp and it's setup, I'm running MySQL and Apache just fine. My issue is i'm following this blog and have downloaded his zip files but I'm not sure where to go from there. Where do I import these so that I can navigate to his site and start practising per his blog?

https://www.hackingarticles.in/beginner-guide-sql-injection-part-1/



I just want a site where I can practice SQL injections...i have DVWA setup but the SQL injection and Blind SQL injection examples they have there aren't a 1-1 like in this guys blog. I'm looking for something where I can replicate his examples since I need to present on this and it's much easier to practice it this way.



Thanks in advance!

submitted by /u/WATTHEBALL
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Hacking using mobile number

Insights required please

So my close friend (Girl) I were part of a whats app group for masters degree fall 22 in the US. There is this guy who always kinda Flirts with her and occasional direct message talks. she didn’t share any personal information with anyone in the group except me. But somehow this guy got access to the following information Her temporary address, her permanent address. Very private mobile number which even I don’t know. Which bank credit card she uses and other bank cards she have. Which bank card that her dad uses. Her friends friends address and Instagram ID.

When she asked how did he got this info he replied his laptop is coded by the company he works and he can access those details which should like BS. Now she is really scared what else he knows.

Is this possible ? Can companies allows this ? Or did he hacked his way for this info.

submitted by /u/The_last_PP_bender
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
'Luna Moth' Group Ransoms Data Without the Ransomware

Unsophisticated campaigns use off-the-shelf RATs and other tools to exfiltrate data and demand a ransom to keep it private.
Dark Reading: Attacks/Breaches
Fake Google Software Updates Spread New Ransomware

"HavanaCrypt" is also using a command-and-control server that is hosted on a Microsoft Hosting Service IP address, researchers say.
Dark Reading: Attacks/Breaches
Paladin Cloud Launches New Cloud Security and Governance Platform

The new open source security-as-code platform will help developers and security teams automatically detect security policy violations across the organization's cloud infrastructure.
hacking: security in practice
Hydra Redirect?

Hey I am having trouble with a hydra command. I do not know how to handle url redirects:

hydra -l Jones -P ~/wordlists/rockyou.txt 137.74.187.100 https-post-form "/missions/realistic/2/update.php:username=Jones&password=^PASS^&log+in=Submit:Invalid username/password." -vV

If the password/username is incorrect then it will redirect to /missions/realistic/2/update2.php instead of update.php

I cant find any information about hydra redirects. -Thanks

submitted by /u/AmeowzingP
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Brute forcing a webpage fast

What is a fast way to brute force a webpage when I know the password is 6 random uppercase alphanumeric characters? There will be 36^6 possible combinations which is over 2 billion. Dictionary attacks won't work. I've already tried Hydra which will take eternity to try all possible combinations.

submitted by /u/Danny1905
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Qué es Bug Bounty y por qué es ahora utilizado también por el cibercrimen

por Víctor Ruiz, fundador de SILIKN e instructor certificado en ciberseguridad — CSCT.Continue reading on Medium »
Read more...