Hacking Articles Tips Tricks Videos Tutorials
KitPloit - PenTest Tools! Parrot 5.1 - Security GNU/Linux Distribution Designed with Cloud Pentesting and IoT Security in Mind https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjurce2jTY2YVJZXrwfGY2YzGs8IRoQDZP9GFfbWnS__2Ccg1WL0jpqJ9B1PhfVz3OugU…
is our in-house anonymity solution that routes all the system traffic through TOR automatically without having to set up proxy settings for each individua program, and preventing traffic leaking in most cases.
The new version provides significant fixes and reliability updates, fully supports debian systems without the old resolvconf setup, has a new user interface with improved system tray icon and settings dialog window, and offers a better overall user experience. Parrot IoT improvementsOur IoT version now implements significant performance improvements for the various Raspberry Pi boards, and finally includes Wi-Fi support for the Raspberry Pi 400 board.
The Parrot IoT offering has also been expanded, and it now offers Home and Security editions as well, with a full MATE desktop environment exactly like the desktop counterpart. Architect Edition improvementsOur popular Architect Edition now implements some minor bugfixes and is more reliable than ever.
The Architect Edition is a special edition of Parrot that enables the user to install a barebone Parrot Core system, and then offers a selection of additional modules to further customize the system.
You can use Parrot Architect to install other desktop environments like KDE, GNOME or XFCE, or to install a specific selection of tools. New infrastructure powered by Parrot and KubernetesThe Architect Edition is also used internally by the Parrot Engineering Team to install Parrot Server Edition on all the servers that power our infrastructure, which is officially 100% powered by Parrot and Kubernetes.
This is a major change in the way we handle our infrastructure, which enables us to implement better autoscaling, easier management, smaller attack surface and an overall better network, with the improved scalability and security we were looking for. Download Parrot Security 5.1
___________________________
@hacking_Attack
@Hacking_Video
The new version provides significant fixes and reliability updates, fully supports debian systems without the old resolvconf setup, has a new user interface with improved system tray icon and settings dialog window, and offers a better overall user experience. Parrot IoT improvementsOur IoT version now implements significant performance improvements for the various Raspberry Pi boards, and finally includes Wi-Fi support for the Raspberry Pi 400 board.
The Parrot IoT offering has also been expanded, and it now offers Home and Security editions as well, with a full MATE desktop environment exactly like the desktop counterpart. Architect Edition improvementsOur popular Architect Edition now implements some minor bugfixes and is more reliable than ever.
The Architect Edition is a special edition of Parrot that enables the user to install a barebone Parrot Core system, and then offers a selection of additional modules to further customize the system.
You can use Parrot Architect to install other desktop environments like KDE, GNOME or XFCE, or to install a specific selection of tools. New infrastructure powered by Parrot and KubernetesThe Architect Edition is also used internally by the Parrot Engineering Team to install Parrot Server Edition on all the servers that power our infrastructure, which is officially 100% powered by Parrot and Kubernetes.
This is a major change in the way we handle our infrastructure, which enables us to implement better autoscaling, easier management, smaller attack surface and an overall better network, with the improved scalability and security we were looking for. Download Parrot Security 5.1
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Linux Kernel 5.19.12 bug could damage Intel laptop displays
Linux Kernel 5.19.12 bug could damage Intel laptop displaysPost Views: 7 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Linux users have reported seeing weird white flashes and rapid blinking on their Intel laptop displays after upgrading to Linux kernel version 5.19.12, leading to warnings that the bug may damage displays.Linux kernel version 5.19.12 isn’t experimental or beta but a point release of the stable branch that came out on September 28, 2022.
Besides being a visual annoyance, the unexpected screen flickering prevents users from doing anything on their systems, and Intel Linux kernel engineer Ville Syrjäl warns that it could also damage the display.
After analyzing the Linux logs of users affected by the issue, Syrjäl replied to the kernel mailing list saying that the problem lies in bogus panel power sequencing delays, which may harm the panels.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course
Syrjä recommended immediate reversion of the Linux Kernel to an older version to avoid causing hardware damage on people’s machines and to publish a recommendation that “no one using laptops with Intel GPUs run 5.19.2”.
Unfortunately, this realization came after many users had already upgraded to the buggy Linux version, risking damage to their systems and becoming forced to apply kernel version downgrades.
The most sizable community of users impacted by the problem was that of Framework laptops, reporting issues with Arch and Fedora following an upgrade to Linux kernel 5.19.2.
Greg Kroah-Hartman, the leading maintainer of the stable branch, released kernel version 5.19.13 on Tuesday, resolving the problem and giving Linux distributions a safe stepping stone to bounce to.
“This release is to resolve a regression on some Intel graphics systems that had problems with 5.19.12. If you do not have this problem with 5.19.12, there is no need to upgrade,” reads the release announcement.
Popular Arch-based distribution Majaro has already announced they’ll jump from 5.19.7 directly to 5.19.13, avoiding introducing risks to users of Intel GPU laptops.
However, given the delay in pushing Linux kernel upgrades on many other distributions, the buggy version might land on some of them later.
Trending: A primer on OS Command Injection Attacks
Trending: Recon Tool: ReconSpider
Users are advised to check the kernel version numbers before upgrading and avoid Linux 5.19.12 if they’re using an Intel laptop.
Those already impacted by the bug are advised not to leave their displays operating in the blinking mode for long, as this increases the chances of causing irreversible damage to the screen.
Typically, bootloaders allow users to pick from the last three kernel versions, so reverting to a non-problematic version shouldn’t be too hard.
If you don’t see the option on Grub, press and hold the “Shift” button on your keyboard while booting.
Meanwhile, the release of mainline version 6.0 was announced by Linus Torvalds on Sunday, bringing support for Arc GPUs, AMD RDNA 3, and Intel “Raptor Lake,” performance-boosting scheduler changes for Intel Xeon and AMD EPYC chips, energy tweaks, and more.
The next milestone will be version 6.1, which will likely be the first to support Rust, a high-performance memory-safe programming language that provides raw speed and flexibility. Trending: Microsoft SQL servers hacked with FARGO ransomware attacks Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (rel[...]
___________________________
@hacking_Attack
@Hacking_Video
Linux Kernel 5.19.12 bug could damage Intel laptop displays
Linux Kernel 5.19.12 bug could damage Intel laptop displaysPost Views: 7 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Linux users have reported seeing weird white flashes and rapid blinking on their Intel laptop displays after upgrading to Linux kernel version 5.19.12, leading to warnings that the bug may damage displays.Linux kernel version 5.19.12 isn’t experimental or beta but a point release of the stable branch that came out on September 28, 2022.
Besides being a visual annoyance, the unexpected screen flickering prevents users from doing anything on their systems, and Intel Linux kernel engineer Ville Syrjäl warns that it could also damage the display.
After analyzing the Linux logs of users affected by the issue, Syrjäl replied to the kernel mailing list saying that the problem lies in bogus panel power sequencing delays, which may harm the panels.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course
Syrjä recommended immediate reversion of the Linux Kernel to an older version to avoid causing hardware damage on people’s machines and to publish a recommendation that “no one using laptops with Intel GPUs run 5.19.2”.
Unfortunately, this realization came after many users had already upgraded to the buggy Linux version, risking damage to their systems and becoming forced to apply kernel version downgrades.
The most sizable community of users impacted by the problem was that of Framework laptops, reporting issues with Arch and Fedora following an upgrade to Linux kernel 5.19.2.
Greg Kroah-Hartman, the leading maintainer of the stable branch, released kernel version 5.19.13 on Tuesday, resolving the problem and giving Linux distributions a safe stepping stone to bounce to.
“This release is to resolve a regression on some Intel graphics systems that had problems with 5.19.12. If you do not have this problem with 5.19.12, there is no need to upgrade,” reads the release announcement.
Popular Arch-based distribution Majaro has already announced they’ll jump from 5.19.7 directly to 5.19.13, avoiding introducing risks to users of Intel GPU laptops.
However, given the delay in pushing Linux kernel upgrades on many other distributions, the buggy version might land on some of them later.
Trending: A primer on OS Command Injection Attacks
Trending: Recon Tool: ReconSpider
Users are advised to check the kernel version numbers before upgrading and avoid Linux 5.19.12 if they’re using an Intel laptop.
Those already impacted by the bug are advised not to leave their displays operating in the blinking mode for long, as this increases the chances of causing irreversible damage to the screen.
Typically, bootloaders allow users to pick from the last three kernel versions, so reverting to a non-problematic version shouldn’t be too hard.
If you don’t see the option on Grub, press and hold the “Shift” button on your keyboard while booting.
Meanwhile, the release of mainline version 6.0 was announced by Linus Torvalds on Sunday, bringing support for Arc GPUs, AMD RDNA 3, and Intel “Raptor Lake,” performance-boosting scheduler changes for Intel Xeon and AMD EPYC chips, energy tweaks, and more.
The next milestone will be version 6.1, which will likely be the first to support Rust, a high-performance memory-safe programming language that provides raw speed and flexibility. Trending: Microsoft SQL servers hacked with FARGO ransomware attacks Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (rel[...]
___________________________
@hacking_Attack
@Hacking_Video
Black Hat Ethical Hacking
Linux Kernel 5.19.12 bug could damage Intel laptop displays | Black Hat Ethical Hacking
Linux users have reported seeing weird white flashes and rapid blinking on their Intel laptop displays after upgrading to Linux kernel version 5.19.12, leading to warnings that the bug may damage displays.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Offensive Security Tool: VLANPWN
Offensive Security Tool: VLANPWNPost Views: 7 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 2 Minutes VLANPWNVLANPWN is a tool written by in9uz, it is divided into 2 python scripts.
DoubleTagging.py – It is designed to carry out a VLAN Hopping attack as a result of the injection of a frame with two 802.1Q tags.
DTPHijacking.py – A script for conducting a DTP Switch Spoofing/Hijacking attack. It sends a malicious DTP-Desirable frame, as a result of which the attacker’s machine becomes a trunk channel. The impact of this attack is that you can bypass the segmentation of VLAN networks and see all the traffic of VLAN networks.
A great tool to test for the Red Team and Pentesters when performing Internal pentesting and post-exploitation techniques.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/SS1-1024x748.png Example:
Trending: Offensive Security Tool: Arjun
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/SS2-1024x819.png Example:
Clone the repo from here: GitHub Link
Trending: Write up: A primer on OS Command Injection Attacks https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/ProtOSINT-300x150.png OSINT Tool: ProtOSINTSeptember 30, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/BF_ActiveSub-300x150.png Recon Tool: BF ActiveSubSeptember 29, 2022
Reading Time: 4 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/ReconSpider-300x150.png Recon Tool: ReconSpiderSeptember 23, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Social-Hunter-300x150.png OSINT Tool: Social HunterSeptember 22, 2022
Reading Time: 2 minutes https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Offensive Security Tool: VLANPWN first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Offensive Security Tool: VLANPWN
Offensive Security Tool: VLANPWNPost Views: 7 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 2 Minutes VLANPWNVLANPWN is a tool written by in9uz, it is divided into 2 python scripts.
DoubleTagging.py – It is designed to carry out a VLAN Hopping attack as a result of the injection of a frame with two 802.1Q tags.
DTPHijacking.py – A script for conducting a DTP Switch Spoofing/Hijacking attack. It sends a malicious DTP-Desirable frame, as a result of which the attacker’s machine becomes a trunk channel. The impact of this attack is that you can bypass the segmentation of VLAN networks and see all the traffic of VLAN networks.
A great tool to test for the Red Team and Pentesters when performing Internal pentesting and post-exploitation techniques.
See Also: So you want to be a hacker? Complete Offensive Security and Ethical Hacking Course
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/SS1-1024x748.png Example:
python3 DoubleTagging.py --interface eth0 --nativevlan 1 --targetvlan 20 --victim 10.10.20.24 --attacker 10.10.10.54Trending: Recon Tool: ReconSpiderTrending: Offensive Security Tool: Arjun
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/SS2-1024x819.png Example:
python3 DTPHijacking.py --interface eth0DisclaimerThis tool is provided for educational and research purpose only. The author of this project are no way responsible for any misuse of this tool. We use it to test under NDA agreements with clients and their consents for Pentesting purposes and we never encourage to misuse or take responsibility for any damage caused!Clone the repo from here: GitHub Link
Trending: Write up: A primer on OS Command Injection Attacks https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/ProtOSINT-300x150.png OSINT Tool: ProtOSINTSeptember 30, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/BF_ActiveSub-300x150.png Recon Tool: BF ActiveSubSeptember 29, 2022
Reading Time: 4 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/ReconSpider-300x150.png Recon Tool: ReconSpiderSeptember 23, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Social-Hunter-300x150.png OSINT Tool: Social HunterSeptember 22, 2022
Reading Time: 2 minutes https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Offensive Security Tool: VLANPWN first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Black Hat Ethical Hacking
Offensive Security Tool: VLANPWN | Black Hat Ethical Hacking
VLANPWN is a tool that is divided into 2 python scripts. One is designed to carry out a VLAN Hopping attack and the other allows conducting a DTP Switch Spoofing/Hijacking attack.
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Linux Kernel 5.19.12 bug could damage Intel laptop displays Linux Kernel 5.19.12 bug could damage Intel laptop displaysPost Views: 7 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe…
ated to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-2-300x150.png Microsoft SQL servers backdoored with new malwareOctober 6, 2022
Reading Time: 4 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-1-300x150.png Researchers get $46k in bounties for Akamai misconfiguration vulnerabilityOctober 5, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-300x150.png Microsoft confirms zero-day exploits against Exchange Server in ‘limited’ attacksOctober 4, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-7-300x150.png Lazarus hackers abuse Dell driver bug using new FudModule rootkitOctober 3, 2022
Reading Time: 4 minutes
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Linux Kernel 5.19.12 bug could damage Intel laptop displays first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-2-300x150.png Microsoft SQL servers backdoored with new malwareOctober 6, 2022
Reading Time: 4 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-1-300x150.png Researchers get $46k in bounties for Akamai misconfiguration vulnerabilityOctober 5, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-300x150.png Microsoft confirms zero-day exploits against Exchange Server in ‘limited’ attacksOctober 4, 2022
Reading Time: 3 minutes
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-7-300x150.png Lazarus hackers abuse Dell driver bug using new FudModule rootkitOctober 3, 2022
Reading Time: 4 minutes
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Linux Kernel 5.19.12 bug could damage Intel laptop displays first appeared on Black Hat Ethical Hacking.
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Real Fake Bitcoin Sender Software, Fake BTC Transaction Sender Tool Fake Bitcoin Sender Software…
https://cdn-images-1.medium.com/max/600/1*GBPQmqKS2-qEfPBvI3-fmA.jpeg
WHAT IS BITCOIN
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Real Fake Bitcoin Sender Software, Fake BTC Transaction Sender Tool Fake Bitcoin Sender Software…
https://cdn-images-1.medium.com/max/600/1*GBPQmqKS2-qEfPBvI3-fmA.jpeg
WHAT IS BITCOIN
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Real Fake Bitcoin Sender Software, Fake BTC Transaction Sender Tool Fake Bitcoin Sender Software…
WHAT IS BITCOIN
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Encode x StarkNet Autumn Hackathon: dApp<-Wallet Integration-A Walk-Through for New dApp Projects…
https://cdn-images-1.medium.com/max/1920/1*8xCdYtY1hU5GpXTp8hN76A.jpeg
On Thursday, 6th October we were delighted to host the dApp<-Wallet Integration<-A Walk-Through for New dApp Projects event for our…
Continue reading on Encode Club »
___________________________
@hacking_Attack
@Hacking_Video
Encode x StarkNet Autumn Hackathon: dApp<-Wallet Integration-A Walk-Through for New dApp Projects…
https://cdn-images-1.medium.com/max/1920/1*8xCdYtY1hU5GpXTp8hN76A.jpeg
On Thursday, 6th October we were delighted to host the dApp<-Wallet Integration<-A Walk-Through for New dApp Projects event for our…
Continue reading on Encode Club »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Encode x StarkNet Online Autumn Hackathon: dApp<->Wallet Integration-A Walk-Through for New dApp…
On Thursday, 6th October we were delighted to host the dApp<->Wallet Integration<->A Walk-Through for New dApp Projects event for our…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
BSC Chain Cross-Chain Bridge Hacking Analysis
https://cdn-images-1.medium.com/max/1600/1*_P5Y3d2GRSz-xdVBLyIqgQ.png
Brief Description Of The Attack
Continue reading on Numen Cyber Labs »
___________________________
@hacking_Attack
@Hacking_Video
BSC Chain Cross-Chain Bridge Hacking Analysis
https://cdn-images-1.medium.com/max/1600/1*_P5Y3d2GRSz-xdVBLyIqgQ.png
Brief Description Of The Attack
Continue reading on Numen Cyber Labs »
___________________________
@hacking_Attack
@Hacking_Video
Medium
BSC Chain Cross-Chain Bridge Hacking Analysis
Brief Description Of The Attack
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
PSScriptAnalyzer: SAST Tool for PowerShell Script
https://cdn-images-1.medium.com/max/1559/1*-adRiLAlD8dh1ns-YUW5MA.png
PowerShell Script Analyzer, also known as PSScriptAnalyzer, is a static code analysis tool (SAST tool), which examines the PowerShell…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
PSScriptAnalyzer: SAST Tool for PowerShell Script
https://cdn-images-1.medium.com/max/1559/1*-adRiLAlD8dh1ns-YUW5MA.png
PowerShell Script Analyzer, also known as PSScriptAnalyzer, is a static code analysis tool (SAST tool), which examines the PowerShell…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
PSScriptAnalyzer: SAST Tool for PowerShell Script
PowerShell Script Analyzer, also known as PSScriptAnalyzer, is a static code analysis tool (SAST tool), which examines the PowerShell…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
BNB Chain Halted After Being Hacked, Estimated $536 Million Compromised
https://cdn-images-1.medium.com/max/1592/1*0gFp7UTq-0LZNA6BLFqlQg.png
A wallet worth more than $536 million started experiencing unusual activity, causing the BNB Chain to come to a complete halt.
Continue reading on Ambros App »
___________________________
@hacking_Attack
@Hacking_Video
BNB Chain Halted After Being Hacked, Estimated $536 Million Compromised
https://cdn-images-1.medium.com/max/1592/1*0gFp7UTq-0LZNA6BLFqlQg.png
A wallet worth more than $536 million started experiencing unusual activity, causing the BNB Chain to come to a complete halt.
Continue reading on Ambros App »
___________________________
@hacking_Attack
@Hacking_Video
Medium
BNB Chain Halted After Being Hacked, Estimated $536 Million Compromised
A wallet worth more than $536 million started experiencing unusual activity, causing the BNB Chain to come to a complete halt.
Cloudfox - Automating Situational Awareness For Cloud Penetration Tests
http://www.kitploit.com/2022/10/cloudfox-automating-situational.html
___________________________
@hacking_Attack
@Hacking_Video
http://www.kitploit.com/2022/10/cloudfox-automating-situational.html
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Cloudfox - Automating Situational Awareness For Cloud Penetration Tests
CloudFox helps you gain situational awareness in unfamiliar cloud environments. It’s an open source command line (https://www.kitploit.com/search/label/Command%20Line) tool created to help penetration testers and other offensive security professionals find exploitable attack paths in cloud infrastructure. CloudFox helps you answer the following common questions (and many more): What regions is this AWS account using and roughly how many resources are in the account? What secrets are lurking in EC2 userdata or service specific environment variables? What actions/permissions does this [principal] have? What roles trusts are overly permissive or allow cross-account assumption? What endpoints/hostnames/IPs can I attack from an external starting point (public internet)? What endpoints/hostnames/IPs can I attack from an internal starting point (assumed breach within the VPC)? What filesystems can I potentially mount from a compromised resource inside the VPC?
Quick Start CloudFox is modular (you can run one command at a time), but there is an aws all-checks command that will run the other aws commands for you with sane defaults: cloudfox aws --profile [profile-name] all-checks
___________________________
@hacking_Attack
@Hacking_Video
Quick Start CloudFox is modular (you can run one command at a time), but there is an aws all-checks command that will run the other aws commands for you with sane defaults: cloudfox aws --profile [profile-name] all-checks
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.
CloudFox is designed to be executed by a principal with limited read-only permissions, but it's purpose is to help you find attack paths that can be exploited in simulated compromise scenarios (aka, objective based penetration testing). For the full documentation please refer to our wiki (https://github.com/BishopFox/CloudFox/wiki). Supported Cloud Providers Provider CloudFox Commands AWS 15 Azure 2 (alpha) GCP Support Planned Kubernetes Support Planned Install Option 1: Download the latest binary release (https://github.com/BishopFox/cloudfox/releases) for your platform. Option 2: Install Go (https://golang.org/doc/install), clone the CloudFox repository and compile from source # git clone https://github.com/BishopFox/cloudfox.git
...omitted for brevity...
# cd ./cloudfox
# go build .
# ./cloudfox
Prerequisites AWS AWS CLI installed Supports AWS profiles, AWS environment variables, or metadata retrieval (on an ec2 instance) A principal with one recommended policies attached (described below) Recommended attached policies: SecurityAudit + CloudFox custom policy (https://github.com/BishopFox/cloudfox/blob/main/misc/aws/cloudfox-policy.json) Additional policy notes (as of 09/2022): Policy Notes CloudFox custom policy (https://github.com/BishopFox/cloudfox/blob/main/misc/aws/cloudfox-policy.json) Has a complete list of every permission cloudfox uses and nothing else arn:aws:iam::aws:policy/SecurityAudit Covers most cloudfox checks but is missing newer services or permissions like apprunner:*, grafana:*, lambda:GetFunctionURL, lightsail:GetContainerServices arn:aws:iam::aws:policy/job-function/ViewOnlyAccess Covers most cloudfox checks but is missing newer services or permissions like AppRunner:*, grafana:*, lambda:GetFunctionURL, lightsail:GetContainerServices - and is also missing iam:SimulatePrincipalPolicy. arn:aws:iam::aws:policy/ReadOnlyAccess Only missing AppRunner, but also grants things like "s3:Get*" which can be overly permissive. arn:aws:iam::aws:policy/AdministratorAccess This will work just fine with CloudFox, but if you were handed this level of access as a penetration tester, that should probably be a finding in itself :) Azure Viewer or similar permissions applied.
Supported CommandsProviderCommand NameDescriptionAWSall-checks (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#all-checks)Run all of the other commands using reasonable defaults. You'll still want to check out the non-default options of each command, but this is a great place to start.AWSaccess-keys (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#access-keys)Lists active access keys for all users. Useful for cross referencing a key you found with which in-scope account it belongs to.AWSbuckets (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#filesystems)Lists the buckets in the account and gives you handy commands for inspecting them further.AWSecr (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#ecr)List the most recently pushed image URI from all repositories. Use the loot file to pull selected images down with docker/nerdctl for inspection.AWSendpoints (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#endpoints)Enumerates endpoints from various services. Scan these endpoints from both an internal and external position to look for things that don't require authentication, are misconfigured, etc.AWSenv-vars (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#env-vars)Grabs the environment variables from services that have them (App Runner, ECS, Lambda, Lightsail containers, Sagemaker are supported. If you find a sensitive secret, use cloudfox iam-simulator AND pmapper to see who has access to them.AWSfilesystems (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#filesystems)Enumerate the EFS and FSx filesystems that you might be able to mount without creds (if you have the right network access).
___________________________
@hacking_Attack
@Hacking_Video
...omitted for brevity...
# cd ./cloudfox
# go build .
# ./cloudfox
Prerequisites AWS AWS CLI installed Supports AWS profiles, AWS environment variables, or metadata retrieval (on an ec2 instance) A principal with one recommended policies attached (described below) Recommended attached policies: SecurityAudit + CloudFox custom policy (https://github.com/BishopFox/cloudfox/blob/main/misc/aws/cloudfox-policy.json) Additional policy notes (as of 09/2022): Policy Notes CloudFox custom policy (https://github.com/BishopFox/cloudfox/blob/main/misc/aws/cloudfox-policy.json) Has a complete list of every permission cloudfox uses and nothing else arn:aws:iam::aws:policy/SecurityAudit Covers most cloudfox checks but is missing newer services or permissions like apprunner:*, grafana:*, lambda:GetFunctionURL, lightsail:GetContainerServices arn:aws:iam::aws:policy/job-function/ViewOnlyAccess Covers most cloudfox checks but is missing newer services or permissions like AppRunner:*, grafana:*, lambda:GetFunctionURL, lightsail:GetContainerServices - and is also missing iam:SimulatePrincipalPolicy. arn:aws:iam::aws:policy/ReadOnlyAccess Only missing AppRunner, but also grants things like "s3:Get*" which can be overly permissive. arn:aws:iam::aws:policy/AdministratorAccess This will work just fine with CloudFox, but if you were handed this level of access as a penetration tester, that should probably be a finding in itself :) Azure Viewer or similar permissions applied.
Supported CommandsProviderCommand NameDescriptionAWSall-checks (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#all-checks)Run all of the other commands using reasonable defaults. You'll still want to check out the non-default options of each command, but this is a great place to start.AWSaccess-keys (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#access-keys)Lists active access keys for all users. Useful for cross referencing a key you found with which in-scope account it belongs to.AWSbuckets (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#filesystems)Lists the buckets in the account and gives you handy commands for inspecting them further.AWSecr (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#ecr)List the most recently pushed image URI from all repositories. Use the loot file to pull selected images down with docker/nerdctl for inspection.AWSendpoints (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#endpoints)Enumerates endpoints from various services. Scan these endpoints from both an internal and external position to look for things that don't require authentication, are misconfigured, etc.AWSenv-vars (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#env-vars)Grabs the environment variables from services that have them (App Runner, ECS, Lambda, Lightsail containers, Sagemaker are supported. If you find a sensitive secret, use cloudfox iam-simulator AND pmapper to see who has access to them.AWSfilesystems (https://github.com/BishopFox/cloudfox/wiki/AWS-Commands#filesystems)Enumerate the EFS and FSx filesystems that you might be able to mount without creds (if you have the right network access).
___________________________
@hacking_Attack
@Hacking_Video
GitHub
Home · BishopFox/cloudfox Wiki
Automating situational awareness for cloud penetration tests. - Home · BishopFox/cloudfox Wiki