Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
___________________________

@hacking_Attack

@Hacking_Video
___________________________
___________________________

@hacking_Attack

@Hacking_Video
___________________________
___________________________

@hacking_Attack

@Hacking_Video
___________________________
AWS internal metadata accessed through SSRF by Chaining an Open Redirect bug

Hi, everyoneContinue reading on Medium »
Read more...

___________________________

@hacking_Attack

@Hacking_Video
___________________________
The peculiar case of HTML Injection

This is a Writeup for an unusual HTML Injection bug I found on a private bug bounty program.
Read more...

___________________________

@hacking_Attack

@Hacking_Video
___________________________
Deep Web
Chat with strangers

Just looking to chat with strangers on the deep web ! Send me the onions please 🥺

submitted by /u/plur_bby
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
Deep Web
Deepweb usefulness? 🤔🧐

Is there anyone that can tell me or anyone else interested what the more interesting/useful resources the deepweb has to offer that the surface web doesn’t? Nothing illegal, but things that could help the average person where the surface web can’t. Paid or free services, information, general resources, etc.

I think this could be a really cool topic granted it gets enough attention. Share your knowledge!

Peace and love folks, thanks!

submitted by /u/HaroNorthland
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
hacking: security in practice
How to find someones ip address

So i want to find someone who scammed me i still chat with him.
I looked up some ways to catch his ip address by ip grabber but i saw you get redirected and have to click on agree etc and see grabify on top of it, instead of taking you directly to a site.
Is there any other way to get someones ip ?

submitted by /u/AstorThemaster
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
___________________________

@hacking_Attack

@Hacking_Video
___________________________
hacking: security in practice
Does anybody know how to install correctly Hackinstosh? I don't even know where to find it.

I'm looking for a video, written guide or any source of information that could lead me to make it function. I don't even know where to find it.

submitted by /u/Nother_Count
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
hacking: security in practice
FLOODCRM - HQ EMAIL BOMBER: Flood any email with up to 70000 subscription emails!

[removed]

submitted by /u/bestreddo
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
hacking: security in practice
Some fool is trying to hack me and its pathetic...

Its been a few days I have been getting countless non-stop verification codes for my google account and I know it may sound like some glitch but its not been stopping so I know its some ameture anonymous pfp 12 y.o script kiddie I doubt that he/she is even a script kiddie lmao I just find it hilarious

submitted by /u/Drawing_Afraid
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
hacking: security in practice
Could my neighbor being hacking me?

I am in a university town, and we are nearing the end of the semester. Last night around 11:30pm the neighbour that I have only seen once all year asked for the WiFi password. He said all of his roommates moved out for the summer (this is true) and they took their router with them (unsure if this is true).

We gave him the wrong answer the first time accidentally so he had to come back to ask again. The first time we asked to just type it on his phone for him and he said he didn't bring it. Second time he came, we asked once again to type it on the phone for him but he suggested we write it on a piece of paper. He didn't seem very sus but it was very late at night.

Today I got a notification on my laptop while writing a final exam that my connection was no longer private. The pop-up also had something about financial information can be collected when your network is in this state. Would you like to stay on the network? I clicked no, and finished my exam via hotspot from my phone. I have seen some internet popups asking if you'd like to share the network to other devices, however this one I received was like nothing I have seen before.

My question is given these circumstances and that we won't see this man again as he is moved out, could he have been hacking us? Any help is appreciated.

submitted by /u/korprr
[link] [comments]

___________________________

@hacking_Attack

@Hacking_Video
___________________________
OverRide - Binary Exploitation And Reverse-Engineering (From Assembly Into C)

Explore disassembly, binary exploitation & reverse-engineering through 10 little challenges. In the folder for each level you will find: flag - password for next level README.md - how to find password source.c - the reverse engineered binary dissasembly_notes.md - notes on asm See the subject for more details. For more gdb & exploitation fun check out the previous project RainFall.Final Score 125/100Getting Started First download from 42 OverRide.iso. Virtual Machine setup On Mac OSX, install VirtualBox. In VirtualBox create a new VM (click new). Name and operating system - Type: Linux, Version: (Oracle 64-bit) Continue through all the next steps with the default settings: Memory size: 4MB Hard disk: Create a disk now Hard disk file type: VDI(VirtualBox Disk Image) Storage on physical hard disk: Dynamically allocated File size: 12,00GB Next click Settings > Network > Adapter 1 > Attached to: Bridged Adapter. Still in settings click Storage > Right of "Controller: IDE", there is a CD icon with a + sign (add optical drive). Click Add Disk Image, and select OverRide.iso. Click Start to start the VM, once runnning it should show the VM IP address and prompt user to login. SSH connect Log in from a separate shell as user level00 with password level00. ssh level00@{VM_IP} -p 4242 Level Up As user level00 the goal is to read the password for user level01, found at /home/users/level01/.pass. However, user level00 does not have permissions to read this file. In the home folder for user level00 is a binary level00 with SUID set and owner level01. This means when we execute the binary level00, we do so with the permissions of user level01. We must find a vulnerability in the binary level00 with gdb. Then exploit the vulnerability to run system("/bin/sh"), opening a shell as user level01 where we have permissions to read the password. cat /home/users/level01/.pass Then log in as user level01. su level01 Repeat for each level. Reverse-engineered binary For each level, we reverse engineered the original source.c by examining the gdb disassembly of the binary. Levels Overview 0 - Hardcoded password 1 - Ret2Libc attack 2 - printf() format string attack 3 - Brute force password 4 - gets() stack overflow + Return-to-libc attack 5 - Shellcode in env variable + printf() format string attack 6 - Hash value discoverable with gdb 7 - Ret2Libc Attack on unprotected data table 8 - Binary backs up password via symlink 9 - Off-by-one error Team I wrote this project in a team with the awesome @dfinnis. Download OverRide
Read more...

___________________________

@hacking_Attack

@Hacking_Video
___________________________
___________________________

@hacking_Attack

@Hacking_Video
___________________________
___________________________

@hacking_Attack

@Hacking_Video
___________________________