Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Bayanay – Python Wardriving Tool

Bayanay is a Python Wardriving tool. WarDriving is the act of navigating, on foot or by car, to discover wireless networks in the surrounding area.

Features

Wardriving is done by combining the SSID information obtained with scapy using the HTML5 geolocation feature.

Usage

I cannot be held responsible for the malicious use of the vehicle.

ssidBul.py has been tested via TP-LINK TL WN722N.

Selenium 3.11.0 and Firefox 59.0.2 are used for location.py. Firefox geckodriver is located in the directory where the codes are.

SSID and MAC names and location information were created and changed in the test environment.

ssidBul.py and location.py must be run concurrently.

ssidBul.py result:

20 March 2018 11:48PM|9c:b2:b2:11:12:13|ECFJ3M

20 March 2018 11:48PM|c0:25:e9:11:12:13|T7068

Here is a screenshot of allowing location information while running location.py:
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhyfQRUaQcll3jnmkrlrhyjCVvYOgWhAI8Iq3oUSzHSgzcJ9vBr2JfkDzQ4dFBZFPL3XY5h9hotZowHY8apCgLC6LdsJIdauSHnCYYU_lpl-9hZT_n36brWdhwQqTlIr6wd8CI4sTv8QRVHTWSe6l28r50PYeHXsZweRLi2MsRr9QRWa_3h-DSJYsWy/s728/Bayanay.png
The screenshot of the location information is as follows:
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhAuozKnMvnvkQYv-GSskR6SUZcx5wCz5ckMUl-xM6rSKGkGlGaZSX8L5MQopJ4GEcokZoewnNuWtkNhXc7o6qyxm-UlntWgWnv2iryprKz9F422wwjRGvR8XTLlOzw9WjiQPOGN8zSDfkFkpqZs5Tz8L6EDZgtXtJMg16rj_D3cFCETbSuMN72A8Fl/s1310/Bayanay-1.png
konum.py result:

lat=38.8333635|lon=34.759741899|20 March 2018 11:47PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:49PM

lat=38.8333635|lon=34.759741899|20 March 2018 11:49PM

After the data collection processes, the following output is obtained as a result of running wardriving.py:

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM|9c:b2:b2:11:12:13|ECFJ3M

lat=38.8333635|lon=34.759741899|20 March 2018 11:48PM|c0:25:e9:11:12:13|T7068
Click Here To Download

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Intel confirms leaked Alder Lake BIOS Source Code is authentic

Intel confirms leaked Alder Lake BIOS Source Code is authenticPost Views: 30 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Intel has confirmed that a source code leak for the UEFI BIOS of Alder Lake CPUs is authentic, raising cybersecurity concerns with researchers.Alder Lake is the name of Intel’s 12th generation Intel Core processors, released in November 2021.

On Friday, a Twitter user named ‘freak’ posted links to what was said to be the source code for Intel Alder Lake’s UEFI firmware, which they claim was released by 4chan.

The link led to a GitHub repository named ‘ICE_TEA_BIOS’ that was uploaded by a user named ‘LCFCASD.’ This repository contained what was described as the ‘BIOS Code from project C970.’
https://www.bleepstatic.com/images/news/security/i/intel/alder-lake-source-code-leak/github-project.jpg
Security researchers concernedWhile Intel has downplayed the security risks of the source code leak, security researchers warn that the contents could make it easier to find vulnerabilities in the code.

“The attacker/bug hunter can hugely benefit from the leaks even if leaked OEM implementation is only partially used in the production,” explains hardware security firm Hardened Vault.

“The Insyde’s solution can help the security researchers, bug hunters (and the attackers) find the vulnerablity and understand the result of reverse engineering easily, which adds up to the long-term high risk to the users.”

Positive Technologies hardware researcher Mark Ermolov also warned that the leak included a KeyManifest private encryption key, a private key used to secure Intel’s Boot Guard platform.
A very bad thing happened: now, the Intel Boot Guard on the vendor's platforms can no longer be trusted… ☹️ pic.twitter.com/K5mXcp5ipW

— Mark Ermolov (@_markel___) October 8, 2022
While it is not clear if the leaked private key is used in production, if it is, hackers could potentially use it to modify the boot policy in Intel firmware and byp[...]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Intel confirms leaked Alder Lake BIOS Source Code is authentic Intel confirms leaked Alder Lake BIOS Source Code is authenticPost Views: 30 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/09/Patreon.png…
ass hardware security.

BleepingComputer has contacted Intel, Insyde, and Lenovo with questions about the leak and whether the private keys were used in production.

We will update this article with any responses as we learn more.
Trending: Microsoft SQL servers hacked with FARGO ransomware attacks Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?

If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-1-1-300x150.png Linux Kernel 5.19.12 bug could damage Intel laptop displaysOctober 7, 2022
Reading Time: 3 minutes

* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-2-300x150.png Microsoft SQL servers backdoored with new malwareOctober 6, 2022
Reading Time: 4 minutes

* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-1-300x150.png Researchers get $46k in bounties for Akamai misconfiguration vulnerabilityOctober 5, 2022
Reading Time: 3 minutes

* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/10/Images-for-the-News-posts-300x150.png Microsoft confirms zero-day exploits against Exchange Server in ‘limited’ attacksOctober 4, 2022
Reading Time: 3 minutes
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Intel confirms leaked Alder Lake BIOS Source Code is authentic first appeared on Black Hat Ethical Hacking.

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
whats the best website or anything to dox someone/ get the most info on them

Let me know if i came to the right place!, Probably not one of the best places to come and ask for help, I'm coming to you guys because i want to dox (get contact information) from this one person, I've done it before but obviously l've had to pay but the main reason I want to do it again and im coming here is because this random female keeps stalking me and has been obsessed with me for the longest and she's sending people my personal pictures. It all started because once she broke up with her ex, months later i started talking to him (her ex) but i didn't know about her all I knew was she was a crazy ex and she ended up getting into the dude's social media and found my n*des and sent them to me and was blackmailing me and ended up sending them to just random people and it got to the point where I had to deactivate my instagram and everything else because she was sending them to people I follow, mind you i follow my niece and brother and she was close to sending it to them mind you my niece is seriously 10 year old. So I did what was best. So if you guys know any websites that can help me the most. What I have about her is her fake instagram and Snapchat and once I have her information i would like to call her parents because from what i know she's underage while me and the person i was talking to are +18, im just trying to be at peace I honestly can't even sleep right because of her. So if you have anything that could help me please Imk. If there is a community that I should ask for better answers Imk please i don't use Reddit that much.

submitted by /u/moesyny
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
making a crypter

recenty, I've been curious about how crypters are made, and I cannot find out how to create my own in Golang, I want it to do the following, take the executable as input, then encrypt it using XOR/AES, and the problem here is about the stub, how can the encrypted executable decrypt itself in the memory?

submitted by /u/Leblancless
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Pool on the roof - October 10, 2022

Have a no0b question? New to hacking? Looking for a script? Need help with your github project? Something wrong with your payload? Stuck on a CTF or bug bounty?

This is a weekly recurring post to make friends with other hackers, ask questions, and get any type of help you may need.

Make sure to read our wiki as it's full of resources for you.

Keep all beginner questions in this weekly stickied post.

submitted by /u/AutoModerator
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
HSTP - Simple Hyper Service Transfer Protocol On Networks

https://blogger.googleusercontent.com/img/a/AVvXsEglGO0s6kF72j37FqQEEbrkhN5mCL83f31cqWLM1PmNFS0o2618X0OrQiPvm4iykRApKhuymisT-Fz3Tpt1Xl4Yp_ChNW9ZSoWlpEQQ2ug2PFb9eyyDSgojSOrgZvZ7bYPPnDfbskLe5v6Wnfii7ynZdQ4hK3Vx5s5rPrKoIx9rVay8ymXtlOE7YbRA-A=w640-h434 The protocol aims to develop a application layer abstraction for the Hyper Service Transfer Protocol.

HSTP is a recursion as nature of HSTP. This protocol implements itself as a interface. On every internet connected device, there is a HSTP instance. That's why the adoption is not needed. HSTP already running top of the internet. We have just now achieved to explain the protocol over protocols on heterogeneous networks. That's why do not compare with web2, web3 or vice versa. AbstractHSTP is a application representation interface for heterogeneous networks.

HSTP interface enforces to implement a set of methods to be able to communicate with other nodes in the network. Thus serves, clients, and other nodes can communicate with each other with trust based, end to end encrypted way. By the time the node resolution is based on fastest path resolution algorithm I wrote. Protocol 4 BabiesStory time!

* Baby crying!


* Needs milk!


* Mommy has a problem.
* Father has a problem.
* Let's fix this!

A small overview

Think about, we're in the situation of one mother and one father lives a happy life. They had a baby! Suddenly, the mother needed to drink pills regularly to cure a disase. The pill is a poison for the baby. The baby is crying and the mother calls father because he is the only trusted person to help the baby. But the father sometime can not stay at home, he needs to do something to feed the baby. Father heard one milkman has fresh and high quality milks for low price. Father decides to try to talk the milkman, milkman deliver the milk to the father, father carry the milk to the mother. Mother give the milk to the baby. Baby is happy now and the baby sleeps, mother see the baby is happy.

The family never buy the milk from outside, this is the first time they buy milk for the baby: (Mom do not know the number of milkman, milkman do not know the home address) As steps:

0) - Baby wants to drink milk.
1) - Baby cries to the mom.
3) - Mom see the baby is crying.
4) - Mom checks the fridge. Mom sees the milk is empty. (Mother is only trusting the Father)
5) - Mom calls the father.
6) - Father calls the milkman.
7) - Milkman delivers the milk to father.
8) - Father delivers the milk to mom.
9) - Mom gives the milk to the baby.
10) - Baby drinks the milk.
11) - Baby is happy.
12) - Baby sleeps.
13) - Mother see the baby is happy and sleeps.
14) - In order to be able to contact the milkman again, the mother asks the father to tell her that she wants the milkman to save the address of the house and the mobile phone of the mother.
15) - Mother calls the father.
16) - Father calls the milkman.
17) - Milkman saves the address of the house and the mobile phone of the mother.

Oops, tomorrow baby wakes up and cries again,
0) - Baby wants to drink milk.
1) - Baby cries to the mom.
2) - Mom see the baby is crying.
3) - Mom checks the fridge. Mom sees the milk is empty. (Mother is trusting the Father had right decision in the first place by giving the address to the milkman, and the milkman had right decision in the first place by saving the address of the house and the mobile phone of the mother.)
4) - Mother calls the milkman (Mother is trusting the Father's decision only)
5) - Milkman delivers the milk to mom.
6) - Mom gives the milk to the baby.
7) - Baby drinks the milk.
8) - Baby is happy.
9) - Baby sleeps.
10) - Mother see the baby is happy and sleeps.
11) - Mother is happy and the mother trust the milkman now.
thi[...]

___________________________
@hacking_Attack
@Hacking_Video