Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
What is the most bizzare/entertaining/interresting exploit you have heard about?
Hello!
I'm working on a presentation for our job event about weird exploits, side-channel attacks and vulnerabilities, since I have seen several exploits that are mind-blowing or simply funny and would love to compile it into a light-hearted presentation. Since there is a lot of interesting exploits and it's a topic that is pretty hard to google for effectively, I'm asking for help here to help with crowd-sourcing some of cool vulnerabilities you have seen or read about.
I'm mostly interested in exploits that are somewhat strange, maybe even borderline useless but still pretty cool or really unique, which makes them interesting. Something that makes you stop and think along the lines of "wow, I'd have never though about that, but it makes sense". Or generally anything bizzare or just fun. The point of the presentation is more to entertain than teach any serious or useful knowledge. Even outdated or useless exploits are all right.
As for examples of what I'm talking about, here are some of my favorite cool exploits:
* Voice command injection over radio using headphones as a receiving antenna.
* Keylogger using a gyroscope/accelerometer/microphone of a phone lying next to your keyboard.
* Exfiltrating data from air-gapped networks by generating radio signals using GPU/monitor
* Exfiltrating data from air-gapped networks using PC LEDs and security cameras.
* While a pretty well known, the way Stuxnet subtly destroyed nuclear turbines is cool.
* Side channel attacks - decoding crypto secrets and breaking algs using EM-emission/power consumption is mind blowing.
So, what cool or entertaining exploits have you seen?
Thanks for any reply!
submitted by /u/Mikina
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What is the most bizzare/entertaining/interresting exploit you have heard about?
Hello!
I'm working on a presentation for our job event about weird exploits, side-channel attacks and vulnerabilities, since I have seen several exploits that are mind-blowing or simply funny and would love to compile it into a light-hearted presentation. Since there is a lot of interesting exploits and it's a topic that is pretty hard to google for effectively, I'm asking for help here to help with crowd-sourcing some of cool vulnerabilities you have seen or read about.
I'm mostly interested in exploits that are somewhat strange, maybe even borderline useless but still pretty cool or really unique, which makes them interesting. Something that makes you stop and think along the lines of "wow, I'd have never though about that, but it makes sense". Or generally anything bizzare or just fun. The point of the presentation is more to entertain than teach any serious or useful knowledge. Even outdated or useless exploits are all right.
As for examples of what I'm talking about, here are some of my favorite cool exploits:
* Voice command injection over radio using headphones as a receiving antenna.
* Keylogger using a gyroscope/accelerometer/microphone of a phone lying next to your keyboard.
* Exfiltrating data from air-gapped networks by generating radio signals using GPU/monitor
* Exfiltrating data from air-gapped networks using PC LEDs and security cameras.
* While a pretty well known, the way Stuxnet subtly destroyed nuclear turbines is cool.
* Side channel attacks - decoding crypto secrets and breaking algs using EM-emission/power consumption is mind blowing.
So, what cool or entertaining exploits have you seen?
Thanks for any reply!
submitted by /u/Mikina
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What is the most bizzare/entertaining/interresting exploit you...
Hello! I'm working on a presentation for our job event about weird exploits, side-channel attacks and vulnerabilities, since I have seen several...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Has anyone been able to hack those children's books with first animal sounds for nonsensical animal sounds
https://ibb.co/vhzkc1z
Hi all, I am doing a prank for a best friend's child. I want to essentially replace or re record one of those children's books with the animal sounds with completely random sounds as a prank.
Any advice on how to go about that?
submitted by /u/Zeppelinnizam
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Has anyone been able to hack those children's books with first animal sounds for nonsensical animal sounds
https://ibb.co/vhzkc1z
Hi all, I am doing a prank for a best friend's child. I want to essentially replace or re record one of those children's books with the animal sounds with completely random sounds as a prank.
Any advice on how to go about that?
submitted by /u/Zeppelinnizam
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Has anyone been able to hack those children's books with first...
https://ibb.co/vhzkc1z Hi all, I am doing a prank for a best friend's child. I want to essentially replace or re record one of those children's...
hacking: security in practice
apps getting malicious after installation.
lets say there's an app called "john", john is a clean app that counts from 1 to 100 when screen is clicked and resets when finished, it's -on itself- not malware so it got uploaded into google play.
John needed internet connection to "Help developers better the app", using this connection it downloaded malicious code that will be used to track everything the user does and send it to Johnny the developer.
IS this hypothetical scenario possible? what's your thoughts?
submitted by /u/EmptyTeaCupOnDesk
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
apps getting malicious after installation.
lets say there's an app called "john", john is a clean app that counts from 1 to 100 when screen is clicked and resets when finished, it's -on itself- not malware so it got uploaded into google play.
John needed internet connection to "Help developers better the app", using this connection it downloaded malicious code that will be used to track everything the user does and send it to Johnny the developer.
IS this hypothetical scenario possible? what's your thoughts?
submitted by /u/EmptyTeaCupOnDesk
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
apps getting malicious after installation.
lets say there's an app called "john", john is a clean app that counts from 1 to 100 when screen is clicked and resets when finished, it's -on...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Zahada | Level-6
https://cdn-images-1.medium.com/max/702/1*OHhCjxwqOyer6HdwWiqWIg.png
But when we do ctrl+A we got this
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Zahada | Level-6
https://cdn-images-1.medium.com/max/702/1*OHhCjxwqOyer6HdwWiqWIg.png
But when we do ctrl+A we got this
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zahada | Level-6
But when we do ctrl+A we got this
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HackerRank C Programming Solutions
Introduction
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HackerRank C Programming Solutions
Introduction
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HackerRank C Programming Solutions
Introduction
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Zahada | Level-8
https://cdn-images-1.medium.com/max/635/1*KCeH0knS8IXGvgYf8lURgg.png
Seeing this I also thought the answer is crocodile but no this is not.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Zahada | Level-8
https://cdn-images-1.medium.com/max/635/1*KCeH0knS8IXGvgYf8lURgg.png
Seeing this I also thought the answer is crocodile but no this is not.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zahada | Level-8
Seeing this I also thought the answer is crocodile but no this is not.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
An Unusual Tale of Email Verification Bypass
https://cdn-images-1.medium.com/max/736/1*RvtCahfBDFpSV0tEHQ0r1w.jpeg
Hey Guys. I’m Sagar Sajeev .
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
An Unusual Tale of Email Verification Bypass
https://cdn-images-1.medium.com/max/736/1*RvtCahfBDFpSV0tEHQ0r1w.jpeg
Hey Guys. I’m Sagar Sajeev .
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
An Unusual Tale of Email Verification Bypass
Hey Guys. I’m Sagar Sajeev .
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Zahada | Level-5
https://cdn-images-1.medium.com/max/713/1*EaYcih31NG3haqQBSni0ZQ.png
Again we can see the title as
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Zahada | Level-5
https://cdn-images-1.medium.com/max/713/1*EaYcih31NG3haqQBSni0ZQ.png
Again we can see the title as
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zahada | Level-5
Again we can see the title as
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Latest Bug Bounty Programs, this Aug, Proud Year 2022
https://cdn-images-1.medium.com/max/800/0*A90WYoyxlCxL164E.png
Have you heard about the daily bug bounty programs that invite programmers to find out issues with the software or app they have developed…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Latest Bug Bounty Programs, this Aug, Proud Year 2022
https://cdn-images-1.medium.com/max/800/0*A90WYoyxlCxL164E.png
Have you heard about the daily bug bounty programs that invite programmers to find out issues with the software or app they have developed…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Latest Bug Bounty Programs, this Aug, Proud Year 2022
Have you heard about the daily bug bounty programs that invite programmers to find out issues with the software or app they have developed…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Zahada | Level-7
https://cdn-images-1.medium.com/max/802/1*rBs9eNwrFGYJScNse4-iOw.png
The page source is like this
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Zahada | Level-7
https://cdn-images-1.medium.com/max/802/1*rBs9eNwrFGYJScNse4-iOw.png
The page source is like this
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Zahada | Level-7
The page source is like this
NimGetSyscallStub - Get Fresh Syscalls From A Fresh Ntdll.Dll Copy
Get fresh Syscalls from a fresh ntdll.dll copy. This code can be used as an alternative to the already published awesome tools NimlineWhispers and NimlineWhispers2 by @ajpc500 or ParallelNimcalls. The advantage of grabbing Syscalls dynamically is, that the signature of the Stubs is not included in the file and you don't have to worry about changing Windows versions. To compile the shellcode execution template run the following: nim c -d:release ShellcodeInject.nim The result should look like this: Download NimGetSyscallStub
Read more...
Get fresh Syscalls from a fresh ntdll.dll copy. This code can be used as an alternative to the already published awesome tools NimlineWhispers and NimlineWhispers2 by @ajpc500 or ParallelNimcalls. The advantage of grabbing Syscalls dynamically is, that the signature of the Stubs is not included in the file and you don't have to worry about changing Windows versions. To compile the shellcode execution template run the following: nim c -d:release ShellcodeInject.nim The result should look like this: Download NimGetSyscallStub
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How do you read webpack minified js files for XSS and stuff
I asked the same question in a JavaScript Reddit and they said webpack generated js isn't meant to be read by humans. While I know hackers who does it.
It is complex but I still want to get better at reviewing it. Any tips?
submitted by /u/invoked_vilgax
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How do you read webpack minified js files for XSS and stuff
I asked the same question in a JavaScript Reddit and they said webpack generated js isn't meant to be read by humans. While I know hackers who does it.
It is complex but I still want to get better at reviewing it. Any tips?
submitted by /u/invoked_vilgax
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How do you read webpack minified js files for XSS and stuff
I asked the same question in a JavaScript Reddit and they said webpack generated js isn't meant to be read by humans. While I know hackers who...