Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Intercepting Rheem Econet Thermostat Traffic

Has anyone ever hacked one of these thermostats to control them without the cloud? Either by tricking the thermostat into thinking it's communicating with the cloud or being able to send it commands as if it was the cloud?

It has a cloud API but no local API. It would be great to actually communicate with it without the cloud.

submitted by /u/Dan11106
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
is there any alternatives to blackeye and zphisher?

so I want to learn more about phishing, and I tried zphisher, the thing is it says "not secure" when you choose the option for cloudflare, and if you choose ngrok it shows a warning before you visit the link ( is there a way to bypass that? ) same with blackeye

I was wondering is there any automated phishing tool that is free ( I don't want to pay for domains, so I didn't go with gophish lol ) so is there anything that I can do to learn about phishing and make it look legit and also free? ( or even not free but preferably free )

submitted by /u/Fuck_Life_421
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Click Fraud botnet wanted to train an AI model

Im working on a click fraud detection using Redis AI in AWS While I do have a clickstream data to train and simulate on, Id love to test it in a real life scenario. While I can spin a Kubernetes cluster and randomly click with random headers and browser fingerprints, im looking for something closer to the real thing. If you have any repos you can recommend that automate clicks as different devices or any suggestions Id highly appreciate it. In my case all clicks will be pointed at an API gateway IP and either get checked against a blacklist or go further into a detection model and lastly into historical storage.

submitted by /u/spca2001
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
How I was able to bypass OTP using Response Manipulation

$whoamiContinue reading on Medium »
Read more...
How I Found My FIRST Vulnerability/Bug Bounty and How You Can Too: Part 2

Simple hacks!Continue reading on InfoSec Write-ups »
Read more...
How I Found My FIRST Vulnerability/Bug Bounty and How You Can Too: Part 1

How to start ethically hacking websitesContinue reading on InfoSec Write-ups »
Read more...
Why do ransomware gangs only infect the business and not they're users?
https://www.reddit.com/r/redteamsec/comments/xh1exl/why_do_ransomware_gangs_only_infect_the_business/

I was wondering if a hacking ring owned a network and was able to deploy ransomware all over it. Have there been any case where they went after the companies users/clients by infecting them to trough a phishing scheme or software update? submitted by /u/Lonelybiscuit07 (https://www.reddit.com/user/Lonelybiscuit07)
[link] (https://www.reddit.com/r/redteamsec/comments/xh1exl/why_do_ransomware_gangs_only_infect_the_business/) [comments] (https://www.reddit.com/r/redteamsec/comments/xh1exl/why_do_ransomware_gangs_only_infect_the_business/)

___________________________
@hacking_Attack
@Hacking_Video