Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Dark Reading: Attacks/Breaches
Cybercrime Group TA4563 Targets DeFi Market With Evolving Evilnum Backdoor

The cyber campaign, aimed at siphoning funds, uses an improved version of the malware, which can adjust infection paths based on recognized antivirus software.
hacking: security in practice
lateral movement in non corporate network

Say the location is a flat, anywhere from 3 to 8 computers connected to consumer router. All hard wired.

By gaining access to one machine, how would someone laterally move and infect other machines.

There is no domain controller or other infrastructure which would be in a corporate network which were trained on looking for. If it's just out of the box laptops on wifi, what's your next move ?

submitted by /u/ScambaitSniper
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Is there any way to block Microsoft Remote Desktop directly from my router?

Probably this subreddit isn't the most appropriate for asking this, but as the title says, I'm just looking a way to block this connection (maybe a firewall it in my router?) if possible. Could anyone help me?

submitted by /u/danielsuperxxx
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Ultimate Tips And Tricks To Find More Cross-Site Scripting Vulnerabilities

@bxmbnContinue reading on Medium »
Read more...
Advice on how to start with my internship.
https://www.reddit.com/r/Pentesting/comments/w4q8en/advice_on_how_to_start_with_my_internship/

Hi guys. I hope everybody is doing well. I am a student in cyber security (not really focused on the red team side) and in my last year, I have to complete a graduate internship. So I got an internship offer from a company. The company doesn't have a detailed description of the internship. And expect that I take some initiative in this regard. The central question of the internship is: "How do you test the resilience of a company X to a ransomware attack?”. They asked me to come up with a first draw on how I am planning to do this. This is of course a nice opportunity to learn. But, I find to have a hard time starting on this, part is due to my limited knowledge in pen testing (that's why I want to take this offer to become better at it) I would like to have some input/tips from your guys. Thanks in advance, I really appreciate it. I also posted this to a different subreddit. submitted by /u/H908pdj410 (https://www.reddit.com/user/H908pdj410)
[link] (https://www.reddit.com/r/Pentesting/comments/w4q8en/advice_on_how_to_start_with_my_internship/) [comments] (https://www.reddit.com/r/Pentesting/comments/w4q8en/advice_on_how_to_start_with_my_internship/)

___________________________
@hacking_Attack
@Hacking_Video
need help with CRTP , The Jenkins module
https://www.reddit.com/r/Pentesting/comments/w4r3gm/need_help_with_crtp_the_jenkins_module/

So for the lab objective i am supposed to log in to jenkins with creds builduser:builduser but they don't actually work in the lab, i tried a bunch of other default creds but i can't get it, am i supposed to grab a list of usernames and passwords and bruteforce ? how do i do that if burp suite is not installed on the windows machine ? am i supposed to transfer burp suite over or what ? submitted by /u/watermelonSoundsNice (https://www.reddit.com/user/watermelonSoundsNice)
[link] (https://www.reddit.com/r/Pentesting/comments/w4r3gm/need_help_with_crtp_the_jenkins_module/) [comments] (https://www.reddit.com/r/Pentesting/comments/w4r3gm/need_help_with_crtp_the_jenkins_module/)

___________________________
@hacking_Attack
@Hacking_Video