Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
(Reverse) SSH tunnel from work over HTTP(s) proxy to a home computer behind NAT?

Hello guys,

when working from home, I am supposed to access my work computers in the office with Remotedesktop/VNC. But this VNC is very very very slow, so work is no fun.

There is also no direct SSH access: Home -> Work.

However, I would like to have SSH access from home to my computer in the office.

I have two work computers in the office: one with Ubuntu 18.4 and root access and a PC with Windows 10 with Putty but without root access, so theoretically I could make an (reverse?) SSH tunnel from my work computer with Linux to my PC at home, which also has Ubuntu.

The two computers at the office are behind NAT and an HTTP(s) proxy.

The machine at home is behind NAT, but my router at home is reachable from the internet via a public IP (both IPv4 and IPv6), so I can set up port forwarding: 443 on the router -> 22 (or another) on the PC.

I would also like to use an SSH key for this.
I got:
[Linux@work], [Windows@work] ---> [Proxy@work] ---> Internet <---[Router@home] <---[Linux@home]


I want:
[Linux@home] --ssh-tunnel--> [Linux@work]

Is this possible at all?

And if so, how?

submitted by /u/letmyseeyoustripped
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Advice on how to get into pen test job with current experience
https://www.reddit.com/r/Pentesting/comments/w3zzc5/advice_on_how_to_get_into_pen_test_job_with/

Hi. I was wanting opinions of what I should obtain/work on now. I am looking to work in the offensive security field. I have the OSCP (new version) and PenTest+ (new version). I don't have any other certifications besides those. I got the oscp first then did pentest+. I mostly did pentest+ because of the dod 8570/8140. I am worried about applying to jobs as I only have a high school education and no security experience (just IT experience and not much experience on paper). I feel like these certs are not enough so I wanted to know opinions of what other certifications I should do now ? I was hoping to stack my certifications high with maybe 4-5 to stand out idk though. I would take the GPEN but it's crazy high expensive and the other offsec certifications are a bit expensive too considering I don't work in the field yet. I would rather get employed somewhere and have them pay for it. Am I on the right path trying to get more certifications ? I eventually soon would like a pen test job or something similar. Or would I be better off trying to do bug bounties to show on the resume? Like what could I do to make my potential resume stand out more from others ? I would like to avoid getting a help desk job, no offense. I have been preparing for offensive security for quite awhile and hope to get that type of role. I don't know the market right now and if there is a saturation of people or understaffed places for offensive security roles. In my 20s. Please let me know thoughts. I also posted this to a different sub reddit. submitted by /u/wakwakwalk (https://www.reddit.com/user/wakwakwalk)
[link] (https://www.reddit.com/r/Pentesting/comments/w3zzc5/advice_on_how_to_get_into_pen_test_job_with/) [comments] (https://www.reddit.com/r/Pentesting/comments/w3zzc5/advice_on_how_to_get_into_pen_test_job_with/)

___________________________
@hacking_Attack
@Hacking_Video
Enjoy!

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Destruction of data based in X condition.

Following my previous post, where we discussed the problems with various encryption methods:

I have decided to develop an open source circuit capable of irreversibly destroying all data contained on NAND storage if certain conditions aren't met.

For example, a specific signal via internal USB headers not received within X minutes of power up.

It is capable of destroying the drive without power delivered from the host machine.

Lemme know if anyone is interested.

Edit: This is largely only suitable for desktops. The energy storage required to fry everything is fairly large.

submitted by /u/JasonY95
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Windows power shell lagged my game right when I was about to win used 100% of my disk am I hacked?

I cut out a lot of shitty people that stole from me abused me and hurt me ect and they hacked my Netflix and shit and used to blue screen my computer, idk what’s happening or how to prevent it I got a new hard drive but decided to trust one of those people enough to get in game with them and the problems started again. What should I do and do you think the powershell thing is sus? I’m pretty sure someone has remote access to my computer how can I tell.

submitted by /u/nocappachino
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video