Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How I hacked an exam portal and got access to 10K+ users data including webcams
https://cdn-images-1.medium.com/max/600/1*1mDkkSe8-bLMeIi5JOtTeg.gif
Hello guys, I am Faique a security researcher and a bug bounty hunter and I welcome you to my write-up on a story of a hack that I did…
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
How I hacked an exam portal and got access to 10K+ users data including webcams
https://cdn-images-1.medium.com/max/600/1*1mDkkSe8-bLMeIi5JOtTeg.gif
Hello guys, I am Faique a security researcher and a bug bounty hunter and I welcome you to my write-up on a story of a hack that I did…
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I hacked an exam portal and got access to 10K+ users data including webcams
Hello guys, I am Faique a security researcher and a bug bounty hunter and I welcome you to my write-up on a story of a hack that I did…
AS-Roasting and Hashcat
https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/
When running AS-Roasting, we get a session key encrypted with the user's password hash (please correct me if i wrong). Now, we question is how hashcat knows what guessed password hash is the right one ? Since it's only a random session key, how hashcat identify a valid output ? Thanks ! submitted by /u/theresilientturtle (https://www.reddit.com/user/theresilientturtle)
[link] (https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/) [comments] (https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/
When running AS-Roasting, we get a session key encrypted with the user's password hash (please correct me if i wrong). Now, we question is how hashcat knows what guessed password hash is the right one ? Since it's only a random session key, how hashcat identify a valid output ? Thanks ! submitted by /u/theresilientturtle (https://www.reddit.com/user/theresilientturtle)
[link] (https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/) [comments] (https://www.reddit.com/r/redteamsec/comments/xkhau9/asroasting_and_hashcat/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
From the redteamsec community on Reddit
Explore this post and more from the redteamsec community
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Mobile phone hackers wield "Violence-as-a-service" for money, revenge
https://external-preview.redd.it/hmxvNy0YBVr_nqUXWQ76n7ka1JKDsj9MMuhsp84ixIo.jpg?width=640&crop=smart&auto=webp&s=3166247acf2d1c3ae8aa18a0bf0ed270155b43c1 submitted by /u/DrinkMoreCodeMore
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Mobile phone hackers wield "Violence-as-a-service" for money, revenge
https://external-preview.redd.it/hmxvNy0YBVr_nqUXWQ76n7ka1JKDsj9MMuhsp84ixIo.jpg?width=640&crop=smart&auto=webp&s=3166247acf2d1c3ae8aa18a0bf0ed270155b43c1 submitted by /u/DrinkMoreCodeMore
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Mobile phone hackers wield "Violence-as-a-service" for money, revenge
Posted in r/hacking by u/DrinkMoreCodeMore • 1 point and 0 comments
hacking: security in practice
Why does mimikatz use :: when it was written in C?
According to the mimikatz author, Benjamin Delpy (gentilkiwi) at https://github.com/gentilkiwi/mimikatz;
mimikatz is a tool I've made to learn C ...
I'm not a programmer and can't stop thinking about it, so I google it and found :: actually used in C++ and not C as discussed at quora
https://www.quora.com/What-does-mean-in-C-programming-2
The :: operator is the C++ scope resolution operator. It has no meaning in C.
C and C++ are different languages.
My question is why does mimikatz use
I was looking for
submitted by /u/w0lfcat
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Why does mimikatz use :: when it was written in C?
According to the mimikatz author, Benjamin Delpy (gentilkiwi) at https://github.com/gentilkiwi/mimikatz;
mimikatz is a tool I've made to learn C ...
I'm not a programmer and can't stop thinking about it, so I google it and found :: actually used in C++ and not C as discussed at quora
https://www.quora.com/What-does-mean-in-C-programming-2
The :: operator is the C++ scope resolution operator. It has no meaning in C.
C and C++ are different languages.
My question is why does mimikatz use
::and not argument or flag just like any other program?I was looking for
::in the github trying to understand how it was written and applied, but couldn't find it, probably I was looking at the wrong place. I would be appreciate if you could point it to the right direction. Thanks.submitted by /u/w0lfcat
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Why does mimikatz use :: when it was written in C?
According to the mimikatz author, Benjamin Delpy (gentilkiwi) at...
Instagram Bug : $45,000 awarded to an Indian Student
An Indian Student found a bug in InstagramContinue reading on Medium »
Read more...
An Indian Student found a bug in InstagramContinue reading on Medium »
Read more...
Instagram Bug : $45,000 awarded to an Indian Student
https://medium.com/@ommaniya01/instagram-bug-45-000-awarded-to-an-indian-student-4e78eca9024e?source=rss------bug_bounty-5
https://medium.com/@ommaniya01/instagram-bug-45-000-awarded-to-an-indian-student-4e78eca9024e?source=rss------bug_bounty-5
An Indian Student found a bug in InstagramContinue reading on Medium » (https://medium.com/@ommaniya01/instagram-bug-45-000-awarded-to-an-indian-student-4e78eca9024e?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Jornada e Dicas exame OSWE
https://cdn-images-1.medium.com/max/600/1*_lVsB0aQR4DK5dsDu4TCcg.png
Em 2016 tive o primeiro contato com um sistema pentest (Kali Linux) e uma ferramenta (SQLmap) apenas por diversão e sem quaisquer…
Continue reading on Medium »
Jornada e Dicas exame OSWE
https://cdn-images-1.medium.com/max/600/1*_lVsB0aQR4DK5dsDu4TCcg.png
Em 2016 tive o primeiro contato com um sistema pentest (Kali Linux) e uma ferramenta (SQLmap) apenas por diversão e sem quaisquer…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Record de ataque DDoS con 25,3 mil millones de solicitudes HTTP/2 Multiplexing
https://cdn-images-1.medium.com/max/1687/0*qHOFARSECvuWTk0P
La empresa de ciberseguridad Imperva ha revelado que mitigó un ataque de denegación de servicio distribuido (DDoS) con un total de más de…
Continue reading on Medium »
Record de ataque DDoS con 25,3 mil millones de solicitudes HTTP/2 Multiplexing
https://cdn-images-1.medium.com/max/1687/0*qHOFARSECvuWTk0P
La empresa de ciberseguridad Imperva ha revelado que mitigó un ataque de denegación de servicio distribuido (DDoS) con un total de más de…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Instagram Bug : $45,000 awarded to an Indian Student
https://cdn-images-1.medium.com/max/2600/1*YoJOwxKMIQiG6jYdn43BEw.jpeg
An Indian Student found a bug in Instagram
Continue reading on Medium »
Instagram Bug : $45,000 awarded to an Indian Student
https://cdn-images-1.medium.com/max/2600/1*YoJOwxKMIQiG6jYdn43BEw.jpeg
An Indian Student found a bug in Instagram
Continue reading on Medium »
hacking: security in practice
Am I allowed to participate in the programs in bugcrowd?
As long as I stay within scope can I participate in all the searchable programs on bugcrowd? Do some require an invite? I'm a bit lost.
I can see that they have people that have recently joined some programs but cannot see a join button or on some it is greyed out could someone please let me know if I can pentest these companies? Thanks
submitted by /u/Sysxinu
[link] [comments]
Am I allowed to participate in the programs in bugcrowd?
As long as I stay within scope can I participate in all the searchable programs on bugcrowd? Do some require an invite? I'm a bit lost.
I can see that they have people that have recently joined some programs but cannot see a join button or on some it is greyed out could someone please let me know if I can pentest these companies? Thanks
submitted by /u/Sysxinu
[link] [comments]
reddit
Am I allowed to participate in the programs in bugcrowd?
As long as I stay within scope can I participate in all the searchable programs on bugcrowd? Do some require an invite? I'm a bit lost. I can...
hacking: security in practice
Dr Linton Salmon - The DARPA SSITH Program at DEFCON - DEF CON 27 Voting Village
https://youtu.be/tGRPYVRZ7pU
Worth the watch
submitted by /u/Phantasius224
[link] [comments]
Dr Linton Salmon - The DARPA SSITH Program at DEFCON - DEF CON 27 Voting Village
https://youtu.be/tGRPYVRZ7pU
Worth the watch
submitted by /u/Phantasius224
[link] [comments]
reddit
Dr Linton Salmon - The DARPA SSITH Program at DEFCON - DEF CON 27...
https://youtu.be/tGRPYVRZ7pU Worth the watch
hacking: security in practice
Obfuscation ever too deep?
Could it be reasoned that the ease of hacking of an obfuscation compares equally with the obfuscation's use? Such as Pig Latin is easy to use, but just as easy to hack. Could an obfuscation that's painful to decrypt at user level be as painful to hack, or would it just not even be desirable to use on either end at all? I have an obfuscation which has been gnarly to produce and will undoubtedly be painful to use at root and user level, although that's essentially the idea behind it.
Thank You
a.△
submitted by /u/Snoo_82970
[link] [comments]
Obfuscation ever too deep?
Could it be reasoned that the ease of hacking of an obfuscation compares equally with the obfuscation's use? Such as Pig Latin is easy to use, but just as easy to hack. Could an obfuscation that's painful to decrypt at user level be as painful to hack, or would it just not even be desirable to use on either end at all? I have an obfuscation which has been gnarly to produce and will undoubtedly be painful to use at root and user level, although that's essentially the idea behind it.
Thank You
a.△
submitted by /u/Snoo_82970
[link] [comments]
reddit
Obfuscation ever too deep?
Could it be reasoned that the ease of hacking of an obfuscation compares equally with the obfuscation's use? Such as Pig Latin is easy to use, but...