How do attackers leverage routers ?
https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/
If an attacker compromises your router with lots of devices connected and has ssh access to your router. How can he benefit from this ? submitted by /u/Due-Mycologist1279 (https://www.reddit.com/user/Due-Mycologist1279)
[link] (https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/) [comments] (https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/
If an attacker compromises your router with lots of devices connected and has ssh access to your router. How can he benefit from this ? submitted by /u/Due-Mycologist1279 (https://www.reddit.com/user/Due-Mycologist1279)
[link] (https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/) [comments] (https://www.reddit.com/r/redteamsec/comments/wkxgen/how_do_attackers_leverage_routers/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
How do attackers leverage routers ?
If an attacker compromises your router with lots of devices connected and has ssh access to your router. How can he benefit from this ?
Enhancing Subdomain Enumeration — ENTs and NOERROR
https://medium.com/sse-blog/enhancing-subdomain-enumeration-ents-and-noerror-69a0479b7a3d?source=rss------bug_bounty-5
https://medium.com/sse-blog/enhancing-subdomain-enumeration-ents-and-noerror-69a0479b7a3d?source=rss------bug_bounty-5
Identifying subdomains more reliably by checking DNS status codes and empty nodesContinue reading on SSE Blog » (https://medium.com/sse-blog/enhancing-subdomain-enumeration-ents-and-noerror-69a0479b7a3d?source=rss------bug_bounty-5)
sql injection
https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/
<!-- SC_OFF -->Hello, someone can explain to me how a prepared statement prevent on sql injection i dont really understand well <!-- SC_ON --> submitted by /u/Objective_Fruit_5995 (https://www.reddit.com/user/Objective_Fruit_5995)
[link] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/) [comments] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/)
https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/
<!-- SC_OFF -->Hello, someone can explain to me how a prepared statement prevent on sql injection i dont really understand well <!-- SC_ON --> submitted by /u/Objective_Fruit_5995 (https://www.reddit.com/user/Objective_Fruit_5995)
[link] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/) [comments] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/)
403 Forbidden Bypass Leading to Admin Endpoint Access.
https://medium.com/@engrdrayc/403-forbidden-bypass-leading-to-admin-endpoint-access-b696a36665ed?source=rss------bug_bounty-5
https://medium.com/@engrdrayc/403-forbidden-bypass-leading-to-admin-endpoint-access-b696a36665ed?source=rss------bug_bounty-5
Hi everyone! This is my first write-up, pardon me for any mistakes. I’ll share my tip with everyone how I was able to bypass a 403…Continue reading on Medium » (https://medium.com/@engrdrayc/403-forbidden-bypass-leading-to-admin-endpoint-access-b696a36665ed?source=rss------bug_bounty-5)
403 Forbidden Bypass Leading to Admin Endpoint Access.
Hi everyone! This is my first write-up, pardon me for any mistakes. I’ll share my tip with everyone how I was able to bypass a 403…Continue reading on Medium »
Read more...
Hi everyone! This is my first write-up, pardon me for any mistakes. I’ll share my tip with everyone how I was able to bypass a 403…Continue reading on Medium »
Read more...
Exchange/Azure AD pen testing resources. Any tips or good articles about this?
https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/
submitted by /u/One_Appeal_4080 (https://www.reddit.com/user/One_Appeal_4080)
[link] (https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/) [comments] (https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/
submitted by /u/One_Appeal_4080 (https://www.reddit.com/user/One_Appeal_4080)
[link] (https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/) [comments] (https://www.reddit.com/r/redteamsec/comments/wl656c/exchangeazure_ad_pen_testing_resources_any_tips/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
r/redteamsec on Reddit: Exchange/Azure AD pen testing resources. Any tips or good articles about this?
Posted by u/[Deleted Account] - 14 votes and 5 comments
Email Confirmation bypass at Instagram
This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…Continue reading on Medium »
Read more...
This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…Continue reading on Medium »
Read more...
Email Confirmation bypass at Instagram
https://medium.com/@avinash_/email-confirmation-bypass-at-instagram-cc968f9a126?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@avinash_/email-confirmation-bypass-at-instagram-cc968f9a126?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Email Confirmation bypass at Instagram
This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…
This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…Continue reading on Medium » (https://medium.com/@avinash_/email-confirmation-bypass-at-instagram-cc968f9a126?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Email Confirmation bypass at Instagram
This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…
Pentesting Course recommendation
https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/
Looking for recommendations on formal Pentesting courses, either instructor led in person or online. I am completing my development plan for the next 12 months and looking at the best courses for beginners. I have done the EC-Council Ethical Hacker course which I enjoyed and see they do a Pentesting one also. submitted by /u/cb24nz (https://www.reddit.com/user/cb24nz)
[link] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/) [comments] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/
Looking for recommendations on formal Pentesting courses, either instructor led in person or online. I am completing my development plan for the next 12 months and looking at the best courses for beginners. I have done the EC-Council Ethical Hacker course which I enjoyed and see they do a Pentesting one also. submitted by /u/cb24nz (https://www.reddit.com/user/cb24nz)
[link] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/) [comments] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
reddit.com: over 18?
Reddit gives you the best of the internet in one place. Get a constantly updating feed of breaking news, fun stories, pics, memes, and videos just for you. Passionate about something niche? Reddit has thousands of vibrant communities with people that share…
Defeat the HttpOnly flag to achieve Account Takeover | RXSS
Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…Continue reading on Medium »
Read more...
Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…Continue reading on Medium »
Read more...
Defeat the HttpOnly flag to achieve Account Takeover | RXSS
https://medium.com/@mohamedtarekq/defeat-the-httponly-flag-to-achieve-account-takeover-rxss-c16849d3d192?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@mohamedtarekq/defeat-the-httponly-flag-to-achieve-account-takeover-rxss-c16849d3d192?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Defeat the HttpOnly flag to achieve Account Takeover | RXSS
Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…
Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…Continue reading on Medium » (https://medium.com/@mohamedtarekq/defeat-the-httponly-flag-to-achieve-account-takeover-rxss-c16849d3d192?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Defeat the HttpOnly flag to achieve Account Takeover | RXSS
Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…
How I earned a $6000 bug bounty from Cloudflare
https://deb0con.medium.com/how-i-earned-a-6000-bug-bounty-from-cloudflare-db6949e39cf7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://deb0con.medium.com/how-i-earned-a-6000-bug-bounty-from-cloudflare-db6949e39cf7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I earned a $6000 bug bounty from Cloudflare
Introduction: