Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to Avoid Common Online Scams and Protect Your Money

https://cdn-images-1.medium.com/max/2600/1*iZMxTvANnDjxVRu0k5F6WA.jpeg
If you’re like most people, you probably think that you’re pretty savvy when it comes to avoiding online scams. But the truth is, even the…

Continue reading on Medium »
hacking: security in practice
does art imitate life? how accurate are the movies?

Im sorry if this is a dumb question as I'm completely illiterate when it comes to hacking heck even most computer stuff but I am morbidly curious...Do the movies and common depictions of hacking reflect somewhat what hacking actually is?

Like is it theoretically possible to remotely access anything, from smartphones, laptops, emails, all from the convenience of a coffee shop or your neighbors wifi?

I'm asking if after years of training and dedication could you have this superpower of getting a front row seat to everyone personal data and private lives. Like being able to know people without even having to meet them. That sounds insane.

submitted by /u/ChristIsKing3
[link] [comments]
— — — — —-— — — — — Happy Engineer`s Day — — — — — — — — — —Continue reading on Medium » (https://akash-venky091.medium.com/network-segmentation-pentesting-97238d63b001?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Windows IKE RCE : Researcher releases PoC code for Windows IKE RCE (CVE-2022-34721)

Windows IKE RCE is a critical Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution vulnerability impacting numerous Windows versions, according to a security researcher from the Cyber Security Research Company, 78researchlab. Internet Key Exchange is the mechanism used to create a security association (SA) in the IPsec protocol family, according to Wikipedia. The Oakley protocol and ISAKMP are built upon by IKE. IKE establishes a shared session secret from which cryptographic keys are produced using X.509 certificates for authentication, either pre-shared or distributed using DNS (ideally with DNSSEC).

Microsoft urged users to promptly install fixes since it has issued a warning that a threat actor might use the vulnerability (CVSSv3 base score of 9.8) to execute arbitrary code on the machine. Yuki Chen, who discovered the flaw in Cyber KunLun, was thanked by the company.
This vulnerability allows an attacker to run arbitrary code on the system by delivering a specially crafted IP packet to a Windows node with IPSec enabled. IKEv1 alone is affected by CVE-2022-34721. However, because they accept both V1 and V2 packets, all Windows Servers are impacted. Microsoft patched the flaw on September’s Patch Tuesday.

Today, 78ResearchLab made the proof-of-concept code for this vulnerability available on GitHub, and it will soon publish the analysis report. Users of vulnerable Windows versions are advised to prioritise installing the fixes in order to stop ongoing exploitation efforts in light of the PoC’s release.
Download

___________________________
@hacking_Attack
@Hacking_Video