Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking Articles Tips Tricks Videos Tutorials pinned «KitPloit - PenTest Tools! MeterPwrShell - Automated Tool That Generate The Perfect Powershell Payload»
hacking: security in practice
Is there a way to set up a hacking environment in iOS
As the title says, I am looking for a way to set up a hacking environment in iOS
submitted by /u/Astonishingly_Bored
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Is there a way to set up a hacking environment in iOS
As the title says, I am looking for a way to set up a hacking environment in iOS
submitted by /u/Astonishingly_Bored
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
___________________________ @hacking_Attack @Hacking_Video ___________________________
Kali Linux Tutorials
Kubesploit : A Cross-Platform Post-Exploitation HTTP/2 Command
Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent dedicated for containerized environments written in Golang and built on top of Merlin project by Russel Van Tuyl (@Ne0nd0g). Our Motivation While researching Docker and Kubernetes, we noticed that most of the tools available today are aimed at passive scanning for vulnerabilities in […]
The post Kubesploit : A Cross-Platform Post-Exploitation HTTP/2 Command appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Kubesploit : A Cross-Platform Post-Exploitation HTTP/2 Command
Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent dedicated for containerized environments written in Golang and built on top of Merlin project by Russel Van Tuyl (@Ne0nd0g). Our Motivation While researching Docker and Kubernetes, we noticed that most of the tools available today are aimed at passive scanning for vulnerabilities in […]
The post Kubesploit : A Cross-Platform Post-Exploitation HTTP/2 Command appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
___________________________
$100 My First Bug Bounty for DOS
Hello Amazing Hackers,
Read more...
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hello Amazing Hackers,
Read more...
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
___________________________ @hacking_Attack @Hacking_Video ___________________________
hacking: security in practice
A New Approach to Finding Malware Cross-Correlates Threat Intelligence Feeds to Reduce Detection Time
https://external-preview.redd.it/oHmIvuKWmpKMsuYQBPIR1Z2711GLXZnnZ_1NfBSE8-Q.jpg?width=640&crop=smart&auto=webp&s=47af9bb5fb4c6399cdd9e0199c0c6a45bc457892submitted by /u/animesity0
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
___________________________
A New Approach to Finding Malware Cross-Correlates Threat Intelligence Feeds to Reduce Detection Time
https://external-preview.redd.it/oHmIvuKWmpKMsuYQBPIR1Z2711GLXZnnZ_1NfBSE8-Q.jpg?width=640&crop=smart&auto=webp&s=47af9bb5fb4c6399cdd9e0199c0c6a45bc457892submitted by /u/animesity0
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
README.gif
Kali Linux Tutorials
Vulnerablecode : A Free And Open Vulnerabilities Database
VulnerableCode is a free and open database of FOSS software package vulnerabilities and the tools to create and keep the data current. It is made by the FOSS community to improve and secure the open source software ecosystem. Why? The existing solutions are commercial proprietary vulnerability databases, which in itself does not make sense because […]
The post Vulnerablecode : A Free And Open Vulnerabilities Database appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Vulnerablecode : A Free And Open Vulnerabilities Database
VulnerableCode is a free and open database of FOSS software package vulnerabilities and the tools to create and keep the data current. It is made by the FOSS community to improve and secure the open source software ecosystem. Why? The existing solutions are commercial proprietary vulnerability databases, which in itself does not make sense because […]
The post Vulnerablecode : A Free And Open Vulnerabilities Database appeared first on Kali Linux Tutorials.
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
___________________________ @hacking_Attack @Hacking_Video ___________________________
Hacking on Medium
Creating secure passwords
https://cdn-images-1.medium.com/max/695/1*51xnFWkbvd03AI0o7J8Tvw.png
People will always prefer convenience over security. This has a very negative impact as it very often leads to account takeovers since…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Creating secure passwords
https://cdn-images-1.medium.com/max/695/1*51xnFWkbvd03AI0o7J8Tvw.png
People will always prefer convenience over security. This has a very negative impact as it very often leads to account takeovers since…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
___________________________ @hacking_Attack @Hacking_Video ___________________________
Hacking on Medium
tryhackme: vulnnet: node [writeup]
https://cdn-images-1.medium.com/max/1279/1*gf3jmZpstlCm02vAXuykyQ.png
After the previous breach, VulnNet Entertainment states it won’t happen again. Can you prove they’re wrong?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
___________________________
tryhackme: vulnnet: node [writeup]
https://cdn-images-1.medium.com/max/1279/1*gf3jmZpstlCm02vAXuykyQ.png
After the previous breach, VulnNet Entertainment states it won’t happen again. Can you prove they’re wrong?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
___________________________
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
F5 Big-IP Vulnerable to Security-Bypass Bug
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg F5 Big-IP Vulnerable to Security-Bypass BugPost Views: 98
Reading Time: 1 Minute
The KDC-spoofing flaw tracked as CVE-2021-23008 can be used to bypass Kerberos security and sign into the Big-IP Access Policy Manager or admin console.
F5 Networks’ Big-IP Application Delivery Services appliance contains a Key Distribution Center (KDC) spoofing vulnerability, researchers disclosed – which an attacker could use to get past the security measures that protect sensitive workloads.
Specifically, an attacker could exploit the flaw (tracked as CVE-2021-23008) to bypass Kerberos security and sign into the Big-IP Access Policy Manager, according to researchers at Silverfort. Kerberos is a network authentication protocol that’s designed to provide strong authentication for client/server applications by using secret-key cryptography. In some cases, the bug can be used to bypass authentication to the Big-IP admin console as well, they added.
In either case, a cybercriminal could gain unfettered access to Big-IP applications, without having legitimate credentials.
The potential impact could be significant: F5 provides enterprise networking to some of the largest tech companies in the world, including Facebook, Microsoft and Oracle, as well as to a trove of Fortune 500 companies, including some of the world’s biggest financial institutions and ISPs.
See Also: Google Chrome V8 Bug Allows Remote Code-Execution CVE-2021-23008 SpecificsThe vulnerability specifically exists in one of the core software components of the appliance: The Access Policy Manager (APM). It manages and enforces access policies, i.e., making sure all users are authenticated and authorized to use a given application. Silverfort researchers noted that APM is sometimes used to protect access to the Big-IP admin console too.
APM implements Kerberos as an authentication protocol for authentication required by an APM policy, they explained.
“When a user accesses an application through Big-IP, they may be presented with a captive portal and required to enter a username and password,” researchers said, in a blog posting issued on Thursday. “The username and password are verified against Active Directory with the Kerberos protocol to ensure the user is who they claim they are.”
During this process, the user essentially authenticates to the server, which in turn authenticates to the client. To work properly, KDC must also authenticate to the server. KDC is a network service that supplies session tickets and temporary session keys to users and computers within an Active Directory domain.
“Apparently, KDC authentication to the server is often overlooked,” researchers said. “Perhaps because requiring it complicates configuration requirements. However, if the KDC does not authenticate to the server, the security of the protocol is entirely compromised, allowing an attacker that hijacked network traffic to authenticate to Big-IP with any password, even an invalid one.”
F5’s instructions for configuring Active Directory authentication for an access policy do not include this last step.
“When a user attempts to authenticate to an app sitting behind the proxy, the user is challenged to enter a username and password. When the user enters their password, the product uses Kerberos to authenticate to the domain controller (DC). However, APM does not request a service ticket and grants access based on a successful AS_REP.”
Also, F5 allows users to configure an admin username and password, which if were used to authenticate to the DC, prevents the vulnerability. Alas,[...]
___________________________
@hacking_Attack
@Hacking_Video
F5 Big-IP Vulnerable to Security-Bypass Bug
https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg F5 Big-IP Vulnerable to Security-Bypass BugPost Views: 98
Reading Time: 1 Minute
The KDC-spoofing flaw tracked as CVE-2021-23008 can be used to bypass Kerberos security and sign into the Big-IP Access Policy Manager or admin console.
F5 Networks’ Big-IP Application Delivery Services appliance contains a Key Distribution Center (KDC) spoofing vulnerability, researchers disclosed – which an attacker could use to get past the security measures that protect sensitive workloads.
Specifically, an attacker could exploit the flaw (tracked as CVE-2021-23008) to bypass Kerberos security and sign into the Big-IP Access Policy Manager, according to researchers at Silverfort. Kerberos is a network authentication protocol that’s designed to provide strong authentication for client/server applications by using secret-key cryptography. In some cases, the bug can be used to bypass authentication to the Big-IP admin console as well, they added.
In either case, a cybercriminal could gain unfettered access to Big-IP applications, without having legitimate credentials.
The potential impact could be significant: F5 provides enterprise networking to some of the largest tech companies in the world, including Facebook, Microsoft and Oracle, as well as to a trove of Fortune 500 companies, including some of the world’s biggest financial institutions and ISPs.
See Also: Google Chrome V8 Bug Allows Remote Code-Execution CVE-2021-23008 SpecificsThe vulnerability specifically exists in one of the core software components of the appliance: The Access Policy Manager (APM). It manages and enforces access policies, i.e., making sure all users are authenticated and authorized to use a given application. Silverfort researchers noted that APM is sometimes used to protect access to the Big-IP admin console too.
APM implements Kerberos as an authentication protocol for authentication required by an APM policy, they explained.
“When a user accesses an application through Big-IP, they may be presented with a captive portal and required to enter a username and password,” researchers said, in a blog posting issued on Thursday. “The username and password are verified against Active Directory with the Kerberos protocol to ensure the user is who they claim they are.”
During this process, the user essentially authenticates to the server, which in turn authenticates to the client. To work properly, KDC must also authenticate to the server. KDC is a network service that supplies session tickets and temporary session keys to users and computers within an Active Directory domain.
“Apparently, KDC authentication to the server is often overlooked,” researchers said. “Perhaps because requiring it complicates configuration requirements. However, if the KDC does not authenticate to the server, the security of the protocol is entirely compromised, allowing an attacker that hijacked network traffic to authenticate to Big-IP with any password, even an invalid one.”
F5’s instructions for configuring Active Directory authentication for an access policy do not include this last step.
“When a user attempts to authenticate to an app sitting behind the proxy, the user is challenged to enter a username and password. When the user enters their password, the product uses Kerberos to authenticate to the domain controller (DC). However, APM does not request a service ticket and grants access based on a successful AS_REP.”
Also, F5 allows users to configure an admin username and password, which if were used to authenticate to the DC, prevents the vulnerability. Alas,[...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking F5 Big-IP Vulnerable to Security-Bypass Bug https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg F5 Big-IP Vulnerable to Security-Bypass BugPost Views: 98 Reading Time: 1 Minute The…
in F5’s setup, that doesn’t happen.
“However, it is not used for these purposes, but only for the purpose of fetching primary or nested groups, prompting the user for a password change or performing a complexity check or a password reset,” according to Silverfort.
See Also: Offensive Security Tool: ADFSBrute Exploitation ScenariosMaking the attack work requires the attacker to already be within the target’s environment, according to F5’s advisory, issued on Thursday.
“BIG-IP APM AD (Active Directory) authentication can be bypassed using a spoofed AS-REP (Kerberos Authentication Service Response) response sent over a hijacked KDC (Kerberos Key Distribution Center) connection, or from an AD server compromised by an attacker,” the advisory read.
However, initial access may not be that difficult: In March, four critical remote command-execution (RCE) flaws in F5’s BIG-IP and BIG-IQ enterprise networking infrastructure came to light that could allow attackers to take full control over a vulnerable system. A week later, researchers reported mass scanning and exploitation of the bugs.
In any event, Silverfort laid out the steps an attacker can take to spoof a DC to bypass this kind of authentication, assuming the ability to hijack the network communication between Big-IP and the DC:
“We simulated an attack by redirecting the traffic between Big-IP and the KDC (in this case a domain controller) on port 88 (the Kerberos port) to our own Windows Server,” they explained. “We set up a fake domain on the windows server and made sure there is a user with the same [user ID] as the Big-IP administrator in the real domain. We configured that user’s password to be ‘1’ in the fake domain.”
Then, when logging in with the traffic diverted to the fake DC, logging in with the password “1” will work. See Also: Hacking Stories: Xbox UndergroundHow to Prevent F5 Big-IP AttacksF5 has issued an update, which should be applied.
In addition, admins should enable multifactor authentication, Silverfort recommended, and continuously monitor the Kerberos authentication.
“Look for resources that request only AS_REQ,” they said. “If there are no TGS_REQs, it’s a red flag.”
F5 pointed out that the potential for an exploit depends on configuration choices.
“For an APM access policy configured with AD authentication and SSO (single sign-on) agent, if a spoofed credential related to this vulnerability is used, depending how the back-end system validates the authentication token it receives, access will most likely fail,” according to the advisory. “An APM access policy can also be configured for BIG-IP system authentication. A spoofed credential related to this vulnerability for an administrative user through the APM access policy results in local administrative access.”
Admins should also validate that the implementation of Kerberos requires a password or keytab, according to Silverfort: “To validate the DC, you need to use some kind of shared secret. If your solution does not enable configuring a keytab file, or a service account password, the application is surely susceptible to KDC spoofing.”
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/nvidia-90x90.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns4 days ago
* https://www.blackhatethicalhacking.com/wp-content[...]
___________________________
@hacking_Attack
@Hacking_Video
“However, it is not used for these purposes, but only for the purpose of fetching primary or nested groups, prompting the user for a password change or performing a complexity check or a password reset,” according to Silverfort.
See Also: Offensive Security Tool: ADFSBrute Exploitation ScenariosMaking the attack work requires the attacker to already be within the target’s environment, according to F5’s advisory, issued on Thursday.
“BIG-IP APM AD (Active Directory) authentication can be bypassed using a spoofed AS-REP (Kerberos Authentication Service Response) response sent over a hijacked KDC (Kerberos Key Distribution Center) connection, or from an AD server compromised by an attacker,” the advisory read.
However, initial access may not be that difficult: In March, four critical remote command-execution (RCE) flaws in F5’s BIG-IP and BIG-IQ enterprise networking infrastructure came to light that could allow attackers to take full control over a vulnerable system. A week later, researchers reported mass scanning and exploitation of the bugs.
In any event, Silverfort laid out the steps an attacker can take to spoof a DC to bypass this kind of authentication, assuming the ability to hijack the network communication between Big-IP and the DC:
“We simulated an attack by redirecting the traffic between Big-IP and the KDC (in this case a domain controller) on port 88 (the Kerberos port) to our own Windows Server,” they explained. “We set up a fake domain on the windows server and made sure there is a user with the same [user ID] as the Big-IP administrator in the real domain. We configured that user’s password to be ‘1’ in the fake domain.”
Then, when logging in with the traffic diverted to the fake DC, logging in with the password “1” will work. See Also: Hacking Stories: Xbox UndergroundHow to Prevent F5 Big-IP AttacksF5 has issued an update, which should be applied.
In addition, admins should enable multifactor authentication, Silverfort recommended, and continuously monitor the Kerberos authentication.
“Look for resources that request only AS_REQ,” they said. “If there are no TGS_REQs, it’s a red flag.”
F5 pointed out that the potential for an exploit depends on configuration choices.
“For an APM access policy configured with AD authentication and SSO (single sign-on) agent, if a spoofed credential related to this vulnerability is used, depending how the back-end system validates the authentication token it receives, access will most likely fail,” according to the advisory. “An APM access policy can also be configured for BIG-IP system authentication. A spoofed credential related to this vulnerability for an administrative user through the APM access policy results in local administrative access.”
Admins should also validate that the implementation of Kerberos requires a password or keytab, according to Silverfort: “To validate the DC, you need to use some kind of shared secret. If your solution does not enable configuring a keytab file, or a service account password, the application is surely susceptible to KDC spoofing.”
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/nvidia-90x90.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software3 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns4 days ago
* https://www.blackhatethicalhacking.com/wp-content[...]
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
in F5’s setup, that doesn’t happen. “However, it is not used for these purposes, but only for the purpose of fetching primary or nested groups, prompting the user for a password change or performing a complexity check or a password reset,” according to Silverfort.…
/uploads/2021/04/Untitled-design-1-4-90x90.png Mount Locker Ransomware Aggressively Changes Up Tactics1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Discord-Nitro-e1618858537976-90x90.png NitroRansomware Asks for Discord Gift Codes, Steals Access Tokens1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-10-90x90.png WordPress could treat Google FloC as a security issue2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Crypto_Mining_Bitcoin-90x90.jpg Attackers Target ProxyLogon Exploit to Install Cryptojacker2 weeks ago
The post F5 Big-IP Vulnerable to Security-Bypass Bug first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Discord-Nitro-e1618858537976-90x90.png NitroRansomware Asks for Discord Gift Codes, Steals Access Tokens1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-10-90x90.png WordPress could treat Google FloC as a security issue2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Crypto_Mining_Bitcoin-90x90.jpg Attackers Target ProxyLogon Exploit to Install Cryptojacker2 weeks ago
The post F5 Big-IP Vulnerable to Security-Bypass Bug first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video