hacking: security in practice
What's the point of XSS attack when you can only inject the script from the computer that has opened the target website ?
I'm just a beginner web developer and not a hacker. I watched several videos about XSS. Live attacks etc, but in all of them the hacker was injecting the script from the computer he was visiting the website and "stealing" the password and username he has entered on that same webpage. What's the point then ?
submitted by /u/lotsofhugszerofucks
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What's the point of XSS attack when you can only inject the script from the computer that has opened the target website ?
I'm just a beginner web developer and not a hacker. I watched several videos about XSS. Live attacks etc, but in all of them the hacker was injecting the script from the computer he was visiting the website and "stealing" the password and username he has entered on that same webpage. What's the point then ?
submitted by /u/lotsofhugszerofucks
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What's the point of XSS attack when you can only inject the script...
I'm just a beginner web developer and not a hacker. I watched several videos about XSS. Live attacks etc, but in all of them the hacker was...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Intelbras ATA 200 Cross Site Scripting
https://4.bp.blogspot.com/-dyIqvjR3K84/WWlvfXt5NkI/AAAAAAAAIQA/Fvmwfk3J4TgcxqdY3USv0_rN_ZW9VtW1ACLcBGAs/s1600/h85.png
Intelbras ATA 200 with firmware version 74.19.10.21 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Intelbras ATA 200 Cross Site Scripting
https://4.bp.blogspot.com/-dyIqvjR3K84/WWlvfXt5NkI/AAAAAAAAIQA/Fvmwfk3J4TgcxqdY3USv0_rN_ZW9VtW1ACLcBGAs/s1600/h85.png
Intelbras ATA 200 with firmware version 74.19.10.21 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
e356bd5406aa48762a1618d1a835ba31ee602d213580bd449699352c7cdfb239Download
# Exploit Title: Intelbras ATA 200 Authenticated Stored XSS
# Date: 17/01/2022
# Exploit Author: Leonardo Goncalves
# Vendor Homepage: https://www.intelbras.com/pt-br/adaptador-ip-para-telefones-analogicos-ata-200
# Version: Firmware 74.19.10.21
1) Log in the equipment via your web browser
2) Go to Management > Syslog
3) In the "Field Server Address" inject the payload "-prompt("XSS")-"
4) Click Save
5) Exploit
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Intelbras ATA 200 Cross Site Scripting
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Fiberhome AN5506-02-B Cross Site Scripting
https://3.bp.blogspot.com/-_lYy5AwzHPI/WWlvAVk_lrI/AAAAAAAAIKU/HsTDdKCabVkkHkFsXQw08U72hOmjap5rACLcBGAs/s1600/h121.png
Fiberhome AN5506-02-B with firmware version RP2521 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Fiberhome AN5506-02-B Cross Site Scripting
https://3.bp.blogspot.com/-_lYy5AwzHPI/WWlvAVk_lrI/AAAAAAAAIKU/HsTDdKCabVkkHkFsXQw08U72hOmjap5rACLcBGAs/s1600/h121.png
Fiberhome AN5506-02-B with firmware version RP2521 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
6468873259d857e4b7cda7bf2ece5a2b2508ecd08b9330bef4207248417b9146Download
# Exploit Title: FiberHome - AN5506-02-B - RP2521 - Authenticated Stored XSS
# Date: 10/08/2022
# Exploit Author: Leonardo Goncalves
# Version: Firmware RP2521
1) Log in the equipment via your web browser
2) Go to Network > auth_settings
3) In the "sncfg_loid" inject the payload ""
4) Click Save
5) Exploit!
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Fiberhome AN5506-02-B Cross Site Scripting
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
How I can make my career as Pentester?
https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/
submitted by /u/WayGroundbreaking483 (https://www.reddit.com/user/WayGroundbreaking483)
[link] (https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/) [comments] (https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/
submitted by /u/WayGroundbreaking483 (https://www.reddit.com/user/WayGroundbreaking483)
[link] (https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/) [comments] (https://www.reddit.com/r/Pentesting/comments/wlzuzv/how_i_can_make_my_career_as_pentester/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
How I can make my career as Pentester?
Posted in r/Pentesting by u/WayGroundbreaking483 • 1 point and 0 comments
How to works the use of free browser by hackers?
https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/
Reading this report about Thieflow and Yanluowang Group - https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/yanluowang-ransomware-attacks-continue I came across with two lines: Other tools used include ProxifierPE, which can be used to proxy connections back to attacker-controlled infrastructure, and the free, Chromium-based Cent web browser.Thieflow attacks:Use of free browsers, such as s3browser and Cent browser How that works? The hacker install on machine victim a free browser in hidden mode and use to exfiltration, for what ? submitted by /u/huge_cock_123 (https://www.reddit.com/user/huge_cock_123)
[link] (https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/) [comments] (https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/
Reading this report about Thieflow and Yanluowang Group - https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/yanluowang-ransomware-attacks-continue I came across with two lines: Other tools used include ProxifierPE, which can be used to proxy connections back to attacker-controlled infrastructure, and the free, Chromium-based Cent web browser.Thieflow attacks:Use of free browsers, such as s3browser and Cent browser How that works? The hacker install on machine victim a free browser in hidden mode and use to exfiltration, for what ? submitted by /u/huge_cock_123 (https://www.reddit.com/user/huge_cock_123)
[link] (https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/) [comments] (https://www.reddit.com/r/Pentesting/comments/wm2ec4/how_to_works_the_use_of_free_browser_by_hackers/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
How to works the use of free browser by hackers?
Reading this report about Thieflow and Yanluowang Group -...
Deep Web
Blicks
Any know good marketplace for pistols
submitted by /u/Muted_Pudding_3965
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Blicks
Any know good marketplace for pistols
submitted by /u/Muted_Pudding_3965
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Blicks
Any know good marketplace for pistols
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to be a Mediocre Security Engineer
https://cdn-images-1.medium.com/max/1457/1*BG3st2zct4Ro9BzotFEakQ.png
Recently I had the honor of opening BSidesSF with a talk entitled “We Need More Mediocre Security Engineers”
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How to be a Mediocre Security Engineer
https://cdn-images-1.medium.com/max/1457/1*BG3st2zct4Ro9BzotFEakQ.png
Recently I had the honor of opening BSidesSF with a talk entitled “We Need More Mediocre Security Engineers”
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How to be a Mediocre Security Engineer
Recently I had the honor of opening BSidesSF with a talk entitled “We Need More Mediocre Security Engineers”
MFW boss asks what airport you fly out of so they can plan DEF CON trip, pretty last-minute: 😍
https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/
MFW when radio silence comes after the discussion, and I accept that it's likely just not happening this year: 😕 MFW when boss posts on social media "Let's go!" with selfie at Black Hat: 😶 I'd have loved to. ... submitted by /u/misconfig_exe (https://www.reddit.com/user/misconfig_exe)
[link] (https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/) [comments] (https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/
MFW when radio silence comes after the discussion, and I accept that it's likely just not happening this year: 😕 MFW when boss posts on social media "Let's go!" with selfie at Black Hat: 😶 I'd have loved to. ... submitted by /u/misconfig_exe (https://www.reddit.com/user/misconfig_exe)
[link] (https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/) [comments] (https://www.reddit.com/r/Pentesting/comments/wmat1z/mfw_boss_asks_what_airport_you_fly_out_of_so_they/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
MFW boss asks what airport you fly out of so they can plan DEF CON...
MFW when radio silence comes after the discussion, and I accept that it's likely just not happening this year: 😕 MFW when boss posts on social...
Deep Web
How to properly use Ahmia browser?
Do you guys know any kind of guide for properly using it? tips? keywords or anything.
submitted by /u/snowy_pie
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How to properly use Ahmia browser?
Do you guys know any kind of guide for properly using it? tips? keywords or anything.
submitted by /u/snowy_pie
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How to properly use Ahmia browser?
Do you guys know any kind of guide for properly using it? tips? keywords or anything.
Wifi Traffic Analysis in Wireshark
https://www.reddit.com/r/redteamsec/comments/wmc6gp/wifi_traffic_analysis_in_wireshark/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/wifi-traffic-analysis-in-wireshark/) [comments] (https://www.reddit.com/r/redteamsec/comments/wmc6gp/wifi_traffic_analysis_in_wireshark/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/wmc6gp/wifi_traffic_analysis_in_wireshark/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/wifi-traffic-analysis-in-wireshark/) [comments] (https://www.reddit.com/r/redteamsec/comments/wmc6gp/wifi_traffic_analysis_in_wireshark/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Wifi Traffic Analysis in Wireshark
Posted in r/redteamsec by u/tbhaxor • 1 point and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
The Hidden Danger of QR Codes
https://cdn-images-1.medium.com/max/828/1*pEDrzM9XtX5upFT5bnrrpQ.jpeg
I am very glad that you are reading my article again, dear friends! It would seem, what danger can a QR code pose? It turns out that you…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
The Hidden Danger of QR Codes
https://cdn-images-1.medium.com/max/828/1*pEDrzM9XtX5upFT5bnrrpQ.jpeg
I am very glad that you are reading my article again, dear friends! It would seem, what danger can a QR code pose? It turns out that you…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
The Hidden Danger of QR Codes
I am very glad that you are reading my article again, dear friends! It would seem, what danger can a QR code pose? It turns out that you…
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Starlink Successfully Hacked Using $25 Modchip
https://external-preview.redd.it/8u0TgdgBltkLohVXkh8YPNa28SncCLkpBrvHHFwmBA8.jpg?width=640&crop=smart&auto=webp&s=5537b717830b4a1481fe254461c23bd95905a2b2 submitted by /u/Glad_Living3908
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Starlink Successfully Hacked Using $25 Modchip
https://external-preview.redd.it/8u0TgdgBltkLohVXkh8YPNa28SncCLkpBrvHHFwmBA8.jpg?width=640&crop=smart&auto=webp&s=5537b717830b4a1481fe254461c23bd95905a2b2 submitted by /u/Glad_Living3908
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Reddit
From the hacking community on Reddit: Starlink Successfully Hacked Using $25 Modchip
Explore this post and more from the hacking community