Hacking on Medium
#100DaysOfHacking Day 89
Guess what TryHackMe gave me
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
#100DaysOfHacking Day 89
Guess what TryHackMe gave me
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
#100DaysOfHacking Day 89
Guess what TryHackMe gave me
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
A Hacker Thinks Far From Programmers
https://cdn-images-1.medium.com/max/602/0*c0z9N8vpQmD9y1Ke
Hey, Jim, the power cord is too short!
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
A Hacker Thinks Far From Programmers
https://cdn-images-1.medium.com/max/602/0*c0z9N8vpQmD9y1Ke
Hey, Jim, the power cord is too short!
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
A Hacker Thinks Far From Programmers
Hey, Jim, the power cord is too short!
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How To Attack Admin Panels Successfully
https://cdn-images-1.medium.com/max/2600/0*IicDJ5FsOki0m8Mr
Attacking Web Apps Admin Panels The Right Way
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
How To Attack Admin Panels Successfully
https://cdn-images-1.medium.com/max/2600/0*IicDJ5FsOki0m8Mr
Attacking Web Apps Admin Panels The Right Way
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Attack Admin Panels Successfully
Attacking Web Apps Admin Panels The Right Way
Kali Linux Tutorials
SCodeScanner : Stands For Source Code Scanner Where The User Can Scans The Source Code For Finding The Critical Vulnerabilities
SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities. The main objective for this scanner is to find the vulnerabilities inside the source code before code gets published in Prod.
Features
* Supported PHP Language
* Supported YAML Language
* Pass results to bug tracking services like Jira also Slack (Sending files to group to multiple people at once).
* Gives results in JSON format, which can easily be used to any other program.
* Works with Rules. We only need to create some rules which the target rule is not present in php/yaml directory.
* Rules that can scan advance patterns
Achievements
SCodeScanner received 5 CVEs for finding vulnerabilities in multiple CMS plugins.
* CVE-2022-1465
* CVE-2022-1474
* CVE-2022-1527
* CVE-2022-1532
* CVE-2022-1604
How to run?
* Download the repository –
* Run
* And run
Download
___________________________
@hacking_Attack
@Hacking_Video
SCodeScanner : Stands For Source Code Scanner Where The User Can Scans The Source Code For Finding The Critical Vulnerabilities
SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities. The main objective for this scanner is to find the vulnerabilities inside the source code before code gets published in Prod.
Features
* Supported PHP Language
* Supported YAML Language
* Pass results to bug tracking services like Jira also Slack (Sending files to group to multiple people at once).
* Gives results in JSON format, which can easily be used to any other program.
* Works with Rules. We only need to create some rules which the target rule is not present in php/yaml directory.
* Rules that can scan advance patterns
Achievements
SCodeScanner received 5 CVEs for finding vulnerabilities in multiple CMS plugins.
* CVE-2022-1465
* CVE-2022-1474
* CVE-2022-1527
* CVE-2022-1532
* CVE-2022-1604
How to run?
* Download the repository –
* Run
pip3 install -r requirements.txt* And run
python3 scscanner.py --helpDownload
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
SCodeScanner : Stands For Source Code Scanner
SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.
Kali Linux Tutorials
Cyber Security And Mental Health
It is no secret that the internet can be a dark and dangerous place. Whether you’re just spending some leisure time on social media or gambling online, it is important to be vigilant. Every day we read stories in the news about cyber attacks and cyber bullying. These stories usually involve young people who have been the victim of some kind of online harassment. But what many people don’t realize is that these attacks can have a serious impact on the mental health of those involved.
Cyber attacks can take many forms. They can be anything from someone hacking into your personal accounts and posting embarrassing information, to sending threatening or abusive messages. In some cases, the effects of a cyber attack can be so severe that the victim is left feeling suicidal.
Cyber bullying is one of the most common forms of cyber attack. It usually involves someone sending hurtful or mean messages to another person. In some cases, it can also involve posting humiliating photos or videos of the victim online. The effects of cyber bullying can be devastating. Victims of cyber bullying often suffer from anxiety, depression, and low self-esteem. They may also struggle with sleep problems, eating disorders, and substance abuse. In extreme cases, cyber bullying can lead to thoughts of suicide.
And, as more and more people suffer from mental health issues, the internet can be a trigger for those conditions. It’s not just the act of being online that can be harmful, but also the content that people are exposed to.
Cyber security and mental health are two very important issues that are often overlooked. But they are both connected.
Mental health and cyber security are both about protecting yourself from harm. Mental health is about protecting your mind from things that can hurt it. This can include things like anxiety, depression, stress, and trauma. And Cyber security is about protecting your computer and your online information from being hacked or stolen. Both mental health and cyber security are important for your well-being.
Here are some tips to help you stay mindful of both cyber security and mental health.
1. Create strong passwords and keep them secure. Make sure your passwords are strong and difficult to guess. Avoid using easily guessed words like your name, birthdate, or favorite sports team. Use a combination of uppercase and lowercase letters, numbers, and special characters. And never use the same password at more than one site.
2. Be aware of phishing scams. Phishing scams are designed to trick you into giving up personal information, like your passwords or credit card numbers. Be suspicious of any email or text message that asks you to click on a link or provide personal information.
3. Keep your software up to date. That includes your operating system, web browser, and any apps you have installed. Most software updates include security enhancements, so it’s important to install them as soon as they’re available.
4. Use a secure connection. Any time you’re using a public Wi-Fi network, be sure to use a secure connection. That means using a Virtual Private Network (VPN) if one is available, or connecting to a secure HTTPS site.
5. Be mindful of what you post online. Think carefully about what you share on social media and other online platforms. Once something is posted, it’s often difficult to remove it completely.
___________________________
@hacking_Attack
@Hacking_Video
Cyber Security And Mental Health
It is no secret that the internet can be a dark and dangerous place. Whether you’re just spending some leisure time on social media or gambling online, it is important to be vigilant. Every day we read stories in the news about cyber attacks and cyber bullying. These stories usually involve young people who have been the victim of some kind of online harassment. But what many people don’t realize is that these attacks can have a serious impact on the mental health of those involved.
Cyber attacks can take many forms. They can be anything from someone hacking into your personal accounts and posting embarrassing information, to sending threatening or abusive messages. In some cases, the effects of a cyber attack can be so severe that the victim is left feeling suicidal.
Cyber bullying is one of the most common forms of cyber attack. It usually involves someone sending hurtful or mean messages to another person. In some cases, it can also involve posting humiliating photos or videos of the victim online. The effects of cyber bullying can be devastating. Victims of cyber bullying often suffer from anxiety, depression, and low self-esteem. They may also struggle with sleep problems, eating disorders, and substance abuse. In extreme cases, cyber bullying can lead to thoughts of suicide.
And, as more and more people suffer from mental health issues, the internet can be a trigger for those conditions. It’s not just the act of being online that can be harmful, but also the content that people are exposed to.
Cyber security and mental health are two very important issues that are often overlooked. But they are both connected.
Mental health and cyber security are both about protecting yourself from harm. Mental health is about protecting your mind from things that can hurt it. This can include things like anxiety, depression, stress, and trauma. And Cyber security is about protecting your computer and your online information from being hacked or stolen. Both mental health and cyber security are important for your well-being.
Here are some tips to help you stay mindful of both cyber security and mental health.
1. Create strong passwords and keep them secure. Make sure your passwords are strong and difficult to guess. Avoid using easily guessed words like your name, birthdate, or favorite sports team. Use a combination of uppercase and lowercase letters, numbers, and special characters. And never use the same password at more than one site.
2. Be aware of phishing scams. Phishing scams are designed to trick you into giving up personal information, like your passwords or credit card numbers. Be suspicious of any email or text message that asks you to click on a link or provide personal information.
3. Keep your software up to date. That includes your operating system, web browser, and any apps you have installed. Most software updates include security enhancements, so it’s important to install them as soon as they’re available.
4. Use a secure connection. Any time you’re using a public Wi-Fi network, be sure to use a secure connection. That means using a Virtual Private Network (VPN) if one is available, or connecting to a secure HTTPS site.
5. Be mindful of what you post online. Think carefully about what you share on social media and other online platforms. Once something is posted, it’s often difficult to remove it completely.
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
Cyber Security And Mental Health - Kali Linux Tutorials
x x It is no secret that the internet can be a dark and dangerous place. Whether you’re just spending some leisure time on social media or gambling online, it is important to be vigilant. Every day we read stories in the news about cyber attacks and cyber…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Deep Web
Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the Hackers Mentality - NEW VIDEO URL with edit per the demand of U.S. Attorney (explained in details of video)
https://external-preview.redd.it/0pDkbw8EB47go5ojUhO_slZe51fR9yZFa03kCbi2WSg.jpg?width=320&crop=smart&auto=webp&s=c380987d12cfe2f1fda7d89857e66cd213fec13c submitted by /u/reservesteel9
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the Hackers Mentality - NEW VIDEO URL with edit per the demand of U.S. Attorney (explained in details of video)
https://external-preview.redd.it/0pDkbw8EB47go5ojUhO_slZe51fR9yZFa03kCbi2WSg.jpg?width=320&crop=smart&auto=webp&s=c380987d12cfe2f1fda7d89857e66cd213fec13c submitted by /u/reservesteel9
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Reddit
r/deepweb on Reddit: Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the Hackers Mentality - NEW VIDEO URL with edit…
Posted by u/reservesteel9 - 92 votes and 18 comments
hacking: security in practice
I implemented the Bluetooth/programmable/hackable buttplug, and got on VICE World news frontpage
So /u/IWishIKnewSooner999 just started a chat we me, mentioning he was asking about a similar project a couple of days ago over here:
https://reddit.com/r/hacking/comments/xnw4ee/bluetoothprogrammablehackable_buttplug/
And it seems you people liked it, so though you might liked to know I actually implemented it, and got on the front page of Worldnews of VICE and Motherboard...
https://www.vice.com/en/article/5d3w9z/did-hans-neimann-cheat-at-chess-with-a-sex-toy-this-coder-is-attempting-to-find-out
the actual repo: https://github.com/RonSijm/ButtFish
submitted by /u/RonSijm
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
I implemented the Bluetooth/programmable/hackable buttplug, and got on VICE World news frontpage
So /u/IWishIKnewSooner999 just started a chat we me, mentioning he was asking about a similar project a couple of days ago over here:
https://reddit.com/r/hacking/comments/xnw4ee/bluetoothprogrammablehackable_buttplug/
And it seems you people liked it, so though you might liked to know I actually implemented it, and got on the front page of Worldnews of VICE and Motherboard...
https://www.vice.com/en/article/5d3w9z/did-hans-neimann-cheat-at-chess-with-a-sex-toy-this-coder-is-attempting-to-find-out
the actual repo: https://github.com/RonSijm/ButtFish
submitted by /u/RonSijm
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Reddit
From the hacking community on Reddit: I implemented the Bluetooth/programmable/hackable buttplug, and got on VICE World news frontpage
Explore this post and more from the hacking community
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the Hackers Mentality - NEW VIDEO URL with edit per the demand of U.S. Attorney (explained in details of video)
https://external-preview.redd.it/0pDkbw8EB47go5ojUhO_slZe51fR9yZFa03kCbi2WSg.jpg?width=320&crop=smart&auto=webp&s=c380987d12cfe2f1fda7d89857e66cd213fec13c submitted by /u/reservesteel9
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the Hackers Mentality - NEW VIDEO URL with edit per the demand of U.S. Attorney (explained in details of video)
https://external-preview.redd.it/0pDkbw8EB47go5ojUhO_slZe51fR9yZFa03kCbi2WSg.jpg?width=320&crop=smart&auto=webp&s=c380987d12cfe2f1fda7d89857e66cd213fec13c submitted by /u/reservesteel9
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Defcon 30: Tor - Darknet Opsec By a Veteran Darknet Vendor & the...
Posted in r/hacking by u/reservesteel9 • 1 point and 0 comments
Dark Reading: Attacks/Breaches
Time to Change Our Flawed Approach to Security Awareness
Defend against phishing attacks with more than user training. Measure users' suspicion levels along with cognitive and behavioral factors, then build a risk index and use the information to better protect those who are most vulnerable.
Time to Change Our Flawed Approach to Security Awareness
Defend against phishing attacks with more than user training. Measure users' suspicion levels along with cognitive and behavioral factors, then build a risk index and use the information to better protect those who are most vulnerable.
Dark Reading: Attacks/Breaches
Illumio Introduces New Solution to Stop Endpoint Ransomware from Spreading Across the Hybrid Attack Surface
Illumio Endpoint extends zero trust segmentation to see risk and set policy across macOS and Windows devices.
___________________________
@hacking_Attack
@Hacking_Video
Illumio Introduces New Solution to Stop Endpoint Ransomware from Spreading Across the Hybrid Attack Surface
Illumio Endpoint extends zero trust segmentation to see risk and set policy across macOS and Windows devices.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Illumio Introduces New Solution to Stop Endpoint Ransomware from Spreading Across the Hybrid Attack Surface
Illumio Endpoint extends zero trust segmentation to see risk and set policy across macOS and Windows devices.
Dark Reading: Attacks/Breaches
Jamf Announces Intent to Acquire ZecOps, to Provide a Market-Leading Security Solution for Mobile Devices as Targeted Attacks Continue to Grow
ZecOps extends Jamf's mobile security capabilities by adding advanced detections and incident response.
___________________________
@hacking_Attack
@Hacking_Video
Jamf Announces Intent to Acquire ZecOps, to Provide a Market-Leading Security Solution for Mobile Devices as Targeted Attacks Continue to Grow
ZecOps extends Jamf's mobile security capabilities by adding advanced detections and incident response.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Jamf Announces Intent to Acquire ZecOps, to Provide a Market-Leading Security Solution for Mobile Devices as Targeted Attacks Continue…
ZecOps extends Jamf's mobile security capabilities by adding advanced detections and incident response.
Exploit Collector
Netfilter nft_set_elem_init Heap Overflow Privilege Escalation
___________________________
@hacking_Attack
@Hacking_Video
Netfilter nft_set_elem_init Heap Overflow Privilege Escalation
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Netfilter nft_set_elem_init Heap Overflow Privilege Escalation
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
WordPress Motopress Hotel Booking Lite 4.4.2 Cross Site Scripting
https://4.bp.blogspot.com/-mbNmyGHywr4/WWlve-suujI/AAAAAAAAIP4/9elXOC6IHOcW_3VzQDLCix2bjP9zh38ZgCLcBGAs/s1600/h83.png
Motopress Hotel Booking Lite plugin version 4.4.2 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
WordPress Motopress Hotel Booking Lite 4.4.2 Cross Site Scripting
https://4.bp.blogspot.com/-mbNmyGHywr4/WWlve-suujI/AAAAAAAAIP4/9elXOC6IHOcW_3VzQDLCix2bjP9zh38ZgCLcBGAs/s1600/h83.png
Motopress Hotel Booking Lite plugin version 4.4.2 suffers from a persistent cross site scripting vulnerability.
SHA-256 |
3ed48165602f4bd9548ae2c2a60d166d4e4c761edf4ac75c034e6792d95ba5bbDownload
# Exploit Title: WordPress Plugin Motopress Hotel Booking Lite 4.4.2 - Stored Cross-Site Scripting (XSS)
# Date: 2022-09-28
# Exploit Author: Ali Alipour
# Vendor Homepage: https://motopress.com/
# Software Link: https://wordpress.org/plugins/motopress-hotel-booking-lite/
# Version: 4.4.2
# Tested on: Windows 10 Pro x64 - XAMPP Server
# CVE : N/A
PoC:
1: Install Latest WordPress
2: Install and activate Latest Motopress Hotel Booking Lite (4.4.2).
3: Navigate to Accommodation >> Services.
4: Click on "Add New" button And Enter the JavaScript Payload in the Title Field : ( "> )
5:Click on the publish button.
6. Visit http://localhost/wp/services/
7. XSS payload execute.
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
WordPress Motopress Hotel Booking Lite 4.4.2 Cross Site Scripting
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.