Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Is the Google Voice Scam, the biggest scam of 2022?
https://cdn-images-1.medium.com/max/1024/1*Po-trmp2stJxtDVzylpX_A.png
What is Google Voice?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Is the Google Voice Scam, the biggest scam of 2022?
https://cdn-images-1.medium.com/max/1024/1*Po-trmp2stJxtDVzylpX_A.png
What is Google Voice?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Is the Google Voice Scam, the biggest scam of 2022?
What is Google Voice?
Cobalt Strike - OneDrive DLL injection
https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/
Advanced Persistent Threats (APTs) Ransomware threat actors are targeting more legitimate software's used in global companies like default backup solutions such as Microsoft OneDrive. Therefore, when investigating the missing OneDrive DLL's with ProcMon, the file "cscapi.dll" is loaded from "C:\Users\%USERNAME%\AppData\Local\Microsoft\OneDrive". This allows threat actors to gain persistence when end-user opens OneDrive since the DLL will be loaded in the process. https://youtu.be/bs_fMlw6DvE submitted by /u/EpicOfAllEpics (https://www.reddit.com/user/EpicOfAllEpics)
[link] (https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/
Advanced Persistent Threats (APTs) Ransomware threat actors are targeting more legitimate software's used in global companies like default backup solutions such as Microsoft OneDrive. Therefore, when investigating the missing OneDrive DLL's with ProcMon, the file "cscapi.dll" is loaded from "C:\Users\%USERNAME%\AppData\Local\Microsoft\OneDrive". This allows threat actors to gain persistence when end-user opens OneDrive since the DLL will be loaded in the process. https://youtu.be/bs_fMlw6DvE submitted by /u/EpicOfAllEpics (https://www.reddit.com/user/EpicOfAllEpics)
[link] (https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2k1v4/cobalt_strike_onedrive_dll_injection/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Cobalt Strike - OneDrive DLL injection
Advanced Persistent Threats (APTs) Ransomware threat actors are targeting more legitimate software's used in global companies like default backup...
Best used laptop for practice…
https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/
Hey everyone, I’m currently a support engineer for small company. I want to grow my skills and apply for other positions that revolve more around information security and pen-testing. I want to purchase a used laptop (other than my Mac) to practice with. What do you guys and girls recommend? submitted by /u/GladStrike6073 (https://www.reddit.com/user/GladStrike6073)
[link] (https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/
Hey everyone, I’m currently a support engineer for small company. I want to grow my skills and apply for other positions that revolve more around information security and pen-testing. I want to purchase a used laptop (other than my Mac) to practice with. What do you guys and girls recommend? submitted by /u/GladStrike6073 (https://www.reddit.com/user/GladStrike6073)
[link] (https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2lmek/best_used_laptop_for_practice/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Best used laptop for practice…
Hey everyone, I’m currently a support engineer for small company. I want to grow my skills and apply for other positions that revolve more around...
hacking: security in practice
guys I trolled a hacker 😅😂😰😆
Hey I met this know it all hacker and I asked for access to his secure vnc server to show me how it works. I ip geo located this guy found out his time zone, and played a police siren through his window 10 coumper at 1 in the morning 😅😅🤣🤣. Lmaoo he probably jumped outside his skin
submitted by /u/lendaub
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
guys I trolled a hacker 😅😂😰😆
Hey I met this know it all hacker and I asked for access to his secure vnc server to show me how it works. I ip geo located this guy found out his time zone, and played a police siren through his window 10 coumper at 1 in the morning 😅😅🤣🤣. Lmaoo he probably jumped outside his skin
submitted by /u/lendaub
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
guys I trolled a hacker 😅😂😰😆
Hey I met this know it all hacker and I asked for access to his secure vnc server to show me how it works. I ip geo located this guy found out his...
hacking: security in practice
What can I do to mess with this bully?
So for context, this kid at my school bullies one of my close friends and I own a website that he actively goes on and uses. What can I add to this website to fuck with him? (Also, other kids at the school also actively use the website, it is used to play unblocked games and access any website unblocked)
If you have any questions please say them, I will give more context
submitted by /u/undertaleiscool123
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What can I do to mess with this bully?
So for context, this kid at my school bullies one of my close friends and I own a website that he actively goes on and uses. What can I add to this website to fuck with him? (Also, other kids at the school also actively use the website, it is used to play unblocked games and access any website unblocked)
If you have any questions please say them, I will give more context
submitted by /u/undertaleiscool123
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What can I do to mess with this bully?
So for context, this kid at my school bullies one of my close friends and I own a website that he actively goes on and uses. What can I add to...
Code flaws leads to Org/Admin Account Takeover
https://mr23r0.medium.com/code-flaws-leads-to-org-admin-account-takeover-ad9515a96eab?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://mr23r0.medium.com/code-flaws-leads-to-org-admin-account-takeover-ad9515a96eab?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Code flaws leads to Org/Admin Account Takeover
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium » (https://mr23r0.medium.com/code-flaws-leads-to-org-admin-account-takeover-ad9515a96eab?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Code flaws leads to Org/Admin Account Takeover
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackeando Apps Android — Forma clássica
https://cdn-images-1.medium.com/max/600/1*slmC4Uu3CrFJuJeJeOVTkA.png
Um pouco de realidade
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Hackeando Apps Android — Forma clássica
https://cdn-images-1.medium.com/max/600/1*slmC4Uu3CrFJuJeJeOVTkA.png
Um pouco de realidade
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hackeando Apps Android — Forma clássica
Um pouco de realidade
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Taking Control of Turgistan’s Government Through Hacking
https://cdn-images-1.medium.com/max/2600/0*NRCkoeXj-xXZdEoc
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Taking Control of Turgistan’s Government Through Hacking
https://cdn-images-1.medium.com/max/2600/0*NRCkoeXj-xXZdEoc
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Taking Control of Turgistan’s Government Through Hacking
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Code flaws leads to Org/Admin Account Takeover
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium »
Read more...
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium »
Read more...
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE)
https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! https://github.com/freeload101/Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy Want to pentest or run Android apps in minutes ? Sick of BlueStacks or NOX malware/adware ? Not a single binary in this script and it's open source and downloads are direct from proper sources. There is lots of great powershell tricks (not great code) in this script. I worked hard on thing's like: making it portable as possible setting up and downloading extremely fast environment for Android, Java and Python converting ssl certs to Android without openssl using certutil.exe only I would like to make it even easier to use but I don't want to spend more time developing it if nobody is going to use it so please let me know if you like it and open bugs/suggestions/feature request etc! If you're a mod about to remove this post can you do me the kind pleasure of telling me why and how I can help the community better please let me know. submitted by /u/rmccurdyDOTcom (https://www.reddit.com/user/rmccurdyDOTcom)
[link] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! https://github.com/freeload101/Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy Want to pentest or run Android apps in minutes ? Sick of BlueStacks or NOX malware/adware ? Not a single binary in this script and it's open source and downloads are direct from proper sources. There is lots of great powershell tricks (not great code) in this script. I worked hard on thing's like: making it portable as possible setting up and downloading extremely fast environment for Android, Java and Python converting ssl certs to Android without openssl using certutil.exe only I would like to make it even easier to use but I don't want to spend more time developing it if nobody is going to use it so please let me know if you like it and open bugs/suggestions/feature request etc! If you're a mod about to remove this post can you do me the kind pleasure of telling me why and how I can help the community better please let me know. submitted by /u/rmccurdyDOTcom (https://www.reddit.com/user/rmccurdyDOTcom)
[link] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE)
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! ...
Help Starting
https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the basics of networks and have played around with Kali Linux a little bit. I was wondering if anyone had any tips on a good starting point for someone that is brand new to all of this stuff. submitted by /u/Parkydunn (https://www.reddit.com/user/Parkydunn)
[link] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the basics of networks and have played around with Kali Linux a little bit. I was wondering if anyone had any tips on a good starting point for someone that is brand new to all of this stuff. submitted by /u/Parkydunn (https://www.reddit.com/user/Parkydunn)
[link] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Help Starting
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the...
Pivoting Over Challenge Based Enterprise WiFi Network
https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/pivoting-over-peap-mschapv2-wifi-network/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/pivoting-over-peap-mschapv2-wifi-network/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Pivoting Over Challenge Based Enterprise WiFi Network
Posted in r/redteamsec by u/tbhaxor • 1 point and 0 comments
hacking: security in practice
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation, but unfortunately struggle with the beginning steps like enumeration. I know what to do normally (Use Nmap, enum4linux, etc), but when I gain too little information I get stuck. I try using guides, but struggle with understanding how they were able to find so much information in massive rooms. I hope I'm not to vague and don't mean to upset anyone with these simple questions. I'm just concerned I'm not progressing in my learning path.
submitted by /u/Power_level_9000_spy
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation, but unfortunately struggle with the beginning steps like enumeration. I know what to do normally (Use Nmap, enum4linux, etc), but when I gain too little information I get stuck. I try using guides, but struggle with understanding how they were able to find so much information in massive rooms. I hope I'm not to vague and don't mean to upset anyone with these simple questions. I'm just concerned I'm not progressing in my learning path.
submitted by /u/Power_level_9000_spy
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation,...
hacking: security in practice
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed it turned on core isolation on my pc.
I use this pc for gaming as well, and i kinda noticed a bit of overheating and a few fps drops but nothing really alarming. checked my cpu monitoring app and told me it couldn't read my cpu stats because of the core isolation, so i investigated what it is.
I understand it protects my host machine from malware or dangerous stuff that could happened on my VM (i think?), but as im just starting in this world i figured maybe there wouldn't be a problem to have it turned off, just for my peace of mind? as i said, there are not really any alarming behaviors on my host machine.
i probably should get another computer learn this sort of things without risking my main machine i guess, but for now i just have the one. is core isolation a must have for any ethical hacking activity? or is it ok for me to turn it off in the meantime?
submitted by /u/GODstonn
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed it turned on core isolation on my pc.
I use this pc for gaming as well, and i kinda noticed a bit of overheating and a few fps drops but nothing really alarming. checked my cpu monitoring app and told me it couldn't read my cpu stats because of the core isolation, so i investigated what it is.
I understand it protects my host machine from malware or dangerous stuff that could happened on my VM (i think?), but as im just starting in this world i figured maybe there wouldn't be a problem to have it turned off, just for my peace of mind? as i said, there are not really any alarming behaviors on my host machine.
i probably should get another computer learn this sort of things without risking my main machine i guess, but for now i just have the one. is core isolation a must have for any ethical hacking activity? or is it ok for me to turn it off in the meantime?
submitted by /u/GODstonn
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed...
hacking: security in practice
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated with each passing day, and now the person is also harassing her best friend. This person has made multiple "tribute" pages, made multiple accounts to message her to explain in detail how he is going to SA her, sent her upskirt shots of her sitting, Made public 'upskirt" posts of her und*rage, and much worse. The threats are horrific and the girls now have reason to believe that they know their addresses, but police refuse to help without "more evidence". We have responded to the stalker with a grabify link and captured two IP addresses, once through an instagram link and also safari. but i fear that they may be using a VPN.
Please, tell me there's something i can do. I have absolutely zero knowledge with this stuff, so I am hopeful one of you fine folks can at least give me some pointers. I appreciate it, as all i want in this world is to protect my family. Thank you all in advance.
submitted by /u/mtn_mama
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated with each passing day, and now the person is also harassing her best friend. This person has made multiple "tribute" pages, made multiple accounts to message her to explain in detail how he is going to SA her, sent her upskirt shots of her sitting, Made public 'upskirt" posts of her und*rage, and much worse. The threats are horrific and the girls now have reason to believe that they know their addresses, but police refuse to help without "more evidence". We have responded to the stalker with a grabify link and captured two IP addresses, once through an instagram link and also safari. but i fear that they may be using a VPN.
Please, tell me there's something i can do. I have absolutely zero knowledge with this stuff, so I am hopeful one of you fine folks can at least give me some pointers. I appreciate it, as all i want in this world is to protect my family. Thank you all in advance.
submitted by /u/mtn_mama
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated...