Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
All about: IDORs

IDORs happen when users can **access resources that do not belong to them** by directly reference the object ID, object number, or…Continue reading on Medium »
Read more...
hacking: security in practice
Self Hosted Proxy Service

We have created a proxy software that can be deployed to any server and will convert it into a proxy server. So here's how it works.

Let's say you have a server with IP 192.xxx.xxx.023.

We will deploy our software to your server on port let's say:8899

Now Your proxy server is up and running on 192.xxx.xxx.023:8899

To use the proxy simply pass the website in the URL like: -

http://192.xxx.xxx.023:8899/url=https://www.example.com



It will work seamlessly like any other proxy service e.g. ScrapingAPI, etc



Features:

1. Both residential/data center IPs to choose from.

2. Low pricing

3. Geolocation according to your requirement.

4. Decentralized nodes.



For more info please contact me.

submitted by /u/Pradeepkr34
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
My Apartment building is switching encryption protocol

Hello,

I live in student accommodation. Me and some engineers clone RFID cards to create replicas for anyone who wants one. This is so people can leave one in their door and take one with them or if you lose one you still have a spare etc...

Protocol was MIFARE CLASSIC 48 bit, easy to crack with Cipher. They are switching to MIFARE PLUS 128 bit, not so easy. The company that provides this is ONITY. We understand we may have been the ones to cause this change.

Any suggestions to cut corners on cracking the encryption or are we stuffed?

submitted by /u/Ladzilla
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
can the sova virus spread through PDFs or only through apks

Sova virus is a banking virus which enters the phone through smishing and mimics an app . The app can't be installed . It monitors screen shots , frequently tapped keys and installed apps and sends it to a command centre .

submitted by /u/TangerineThin4780
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
20 digit numerical Wordlist

My router has a default wifi password of 20 numerical digits. After attempts to build a wordlist containing at least some of the permutations i failed really hard (what is exactly the intention behind such a huge password).

What I've done so far:

1. start at 000... add one, save (simplyfied)
2. when starting the script again, check for the last number and continue from there



A few problems i aknowledged:

1. it takes for ever (I know thats supposed to be) and I can't imagine a way of shortening the list eg start at 01111.. but then cases like 0XXX...0...XXX are excluded (and checking for three same digits in a row would only slow it down even more)
2. the txt file i wrote everything into is getting EXRTREMELY HUGE: at 5*10^9 its 110GB (expected but can't find a way to fix this)

Im not asking for tech support, just wanting to collect some ideas.

Thank you in advance!

submitted by /u/theWizzard23
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Dark Reading: Attacks/Breaches
Most Attackers Need Less Than 10 Hours to Find Weaknesses

Vulnerable configurations, software flaws, and exposed Web services allow hackers to find exploitable weaknesses in companies' perimeters in just hours, not days.
Scan4All - Vuls Scan: 15000+PoCs; 21 Kinds Of Application Password Crack; 7000+Web Fingerprints; 146 Protocols And 90000+ Rules Port Scanning; Fuzz, HW, Awesome BugBounty...
http://www.kitploit.com/2022/09/scan4all-vuls-scan-15000pocs-21-kinds.html

___________________________
@hacking_Attack
@Hacking_Video