Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium » (https://mr23r0.medium.com/code-flaws-leads-to-org-admin-account-takeover-ad9515a96eab?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Code flaws leads to Org/Admin Account Takeover
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackeando Apps Android — Forma clássica
https://cdn-images-1.medium.com/max/600/1*slmC4Uu3CrFJuJeJeOVTkA.png
Um pouco de realidade
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Hackeando Apps Android — Forma clássica
https://cdn-images-1.medium.com/max/600/1*slmC4Uu3CrFJuJeJeOVTkA.png
Um pouco de realidade
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hackeando Apps Android — Forma clássica
Um pouco de realidade
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Taking Control of Turgistan’s Government Through Hacking
https://cdn-images-1.medium.com/max/2600/0*NRCkoeXj-xXZdEoc
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Taking Control of Turgistan’s Government Through Hacking
https://cdn-images-1.medium.com/max/2600/0*NRCkoeXj-xXZdEoc
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Taking Control of Turgistan’s Government Through Hacking
After a few months of hacking, I wanted to get into something bigger. I wanted to see if instead of taking down websites, I could find a…
Code flaws leads to Org/Admin Account Takeover
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium »
Read more...
Hello Everyone, I’m Saransh Saraf and I’m back with another unique account takeover idea, so let’s just dive into it :)Continue reading on Medium »
Read more...
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE)
https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! https://github.com/freeload101/Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy Want to pentest or run Android apps in minutes ? Sick of BlueStacks or NOX malware/adware ? Not a single binary in this script and it's open source and downloads are direct from proper sources. There is lots of great powershell tricks (not great code) in this script. I worked hard on thing's like: making it portable as possible setting up and downloading extremely fast environment for Android, Java and Python converting ssl certs to Android without openssl using certutil.exe only I would like to make it even easier to use but I don't want to spend more time developing it if nobody is going to use it so please let me know if you like it and open bugs/suggestions/feature request etc! If you're a mod about to remove this post can you do me the kind pleasure of telling me why and how I can help the community better please let me know. submitted by /u/rmccurdyDOTcom (https://www.reddit.com/user/rmccurdyDOTcom)
[link] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! https://github.com/freeload101/Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy Want to pentest or run Android apps in minutes ? Sick of BlueStacks or NOX malware/adware ? Not a single binary in this script and it's open source and downloads are direct from proper sources. There is lots of great powershell tricks (not great code) in this script. I worked hard on thing's like: making it portable as possible setting up and downloading extremely fast environment for Android, Java and Python converting ssl certs to Android without openssl using certutil.exe only I would like to make it even easier to use but I don't want to spend more time developing it if nobody is going to use it so please let me know if you like it and open bugs/suggestions/feature request etc! If you're a mod about to remove this post can you do me the kind pleasure of telling me why and how I can help the community better please let me know. submitted by /u/rmccurdyDOTcom (https://www.reddit.com/user/rmccurdyDOTcom)
[link] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2oa7y/java_android_magisk_burp_objection_root_emulator/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE)
Java Android Magisk Burp Objection Root Emulator Easy (JAMBOREE) Updated Video Tutorial ! ...
Help Starting
https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the basics of networks and have played around with Kali Linux a little bit. I was wondering if anyone had any tips on a good starting point for someone that is brand new to all of this stuff. submitted by /u/Parkydunn (https://www.reddit.com/user/Parkydunn)
[link] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the basics of networks and have played around with Kali Linux a little bit. I was wondering if anyone had any tips on a good starting point for someone that is brand new to all of this stuff. submitted by /u/Parkydunn (https://www.reddit.com/user/Parkydunn)
[link] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/) [comments] (https://www.reddit.com/r/Pentesting/comments/y2ot7m/help_starting/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Help Starting
Hey everyone I’m a sophomore in college and after a bit of research I want to pursue a career in penetration testing. I’ve started learning the...
Pivoting Over Challenge Based Enterprise WiFi Network
https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/pivoting-over-peap-mschapv2-wifi-network/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/
submitted by /u/tbhaxor (https://www.reddit.com/user/tbhaxor)
[link] (https://tbhaxor.com/pivoting-over-peap-mschapv2-wifi-network/) [comments] (https://www.reddit.com/r/redteamsec/comments/y2qz4c/pivoting_over_challenge_based_enterprise_wifi/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Pivoting Over Challenge Based Enterprise WiFi Network
Posted in r/redteamsec by u/tbhaxor • 1 point and 0 comments
hacking: security in practice
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation, but unfortunately struggle with the beginning steps like enumeration. I know what to do normally (Use Nmap, enum4linux, etc), but when I gain too little information I get stuck. I try using guides, but struggle with understanding how they were able to find so much information in massive rooms. I hope I'm not to vague and don't mean to upset anyone with these simple questions. I'm just concerned I'm not progressing in my learning path.
submitted by /u/Power_level_9000_spy
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation, but unfortunately struggle with the beginning steps like enumeration. I know what to do normally (Use Nmap, enum4linux, etc), but when I gain too little information I get stuck. I try using guides, but struggle with understanding how they were able to find so much information in massive rooms. I hope I'm not to vague and don't mean to upset anyone with these simple questions. I'm just concerned I'm not progressing in my learning path.
submitted by /u/Power_level_9000_spy
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What can I do to make cryptography and enumeration easier?
I've been doing tryhackme and starting hack the box for roughly 2 months. I understand concepts such as gaining access and prelivalge escalation,...
hacking: security in practice
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed it turned on core isolation on my pc.
I use this pc for gaming as well, and i kinda noticed a bit of overheating and a few fps drops but nothing really alarming. checked my cpu monitoring app and told me it couldn't read my cpu stats because of the core isolation, so i investigated what it is.
I understand it protects my host machine from malware or dangerous stuff that could happened on my VM (i think?), but as im just starting in this world i figured maybe there wouldn't be a problem to have it turned off, just for my peace of mind? as i said, there are not really any alarming behaviors on my host machine.
i probably should get another computer learn this sort of things without risking my main machine i guess, but for now i just have the one. is core isolation a must have for any ethical hacking activity? or is it ok for me to turn it off in the meantime?
submitted by /u/GODstonn
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed it turned on core isolation on my pc.
I use this pc for gaming as well, and i kinda noticed a bit of overheating and a few fps drops but nothing really alarming. checked my cpu monitoring app and told me it couldn't read my cpu stats because of the core isolation, so i investigated what it is.
I understand it protects my host machine from malware or dangerous stuff that could happened on my VM (i think?), but as im just starting in this world i figured maybe there wouldn't be a problem to have it turned off, just for my peace of mind? as i said, there are not really any alarming behaviors on my host machine.
i probably should get another computer learn this sort of things without risking my main machine i guess, but for now i just have the one. is core isolation a must have for any ethical hacking activity? or is it ok for me to turn it off in the meantime?
submitted by /u/GODstonn
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Core isolation - Memory integrity on or of?
Im studying ethical hacking on my own (literally just started), downloaded VirtualBox, created a Vmachine with kali to start learning and noticed...
hacking: security in practice
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated with each passing day, and now the person is also harassing her best friend. This person has made multiple "tribute" pages, made multiple accounts to message her to explain in detail how he is going to SA her, sent her upskirt shots of her sitting, Made public 'upskirt" posts of her und*rage, and much worse. The threats are horrific and the girls now have reason to believe that they know their addresses, but police refuse to help without "more evidence". We have responded to the stalker with a grabify link and captured two IP addresses, once through an instagram link and also safari. but i fear that they may be using a VPN.
Please, tell me there's something i can do. I have absolutely zero knowledge with this stuff, so I am hopeful one of you fine folks can at least give me some pointers. I appreciate it, as all i want in this world is to protect my family. Thank you all in advance.
submitted by /u/mtn_mama
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated with each passing day, and now the person is also harassing her best friend. This person has made multiple "tribute" pages, made multiple accounts to message her to explain in detail how he is going to SA her, sent her upskirt shots of her sitting, Made public 'upskirt" posts of her und*rage, and much worse. The threats are horrific and the girls now have reason to believe that they know their addresses, but police refuse to help without "more evidence". We have responded to the stalker with a grabify link and captured two IP addresses, once through an instagram link and also safari. but i fear that they may be using a VPN.
Please, tell me there's something i can do. I have absolutely zero knowledge with this stuff, so I am hopeful one of you fine folks can at least give me some pointers. I appreciate it, as all i want in this world is to protect my family. Thank you all in advance.
submitted by /u/mtn_mama
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Can i locate my little sisters stalker using their IP? (or VPN)
Hi all, as the title suggests, I am trying to identify the person who has been stalking my sister for the last three years. Things have escalated...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
AWS S3 bucket Misconfigurations and Exploitations
https://cdn-images-1.medium.com/max/600/1*Fn8KIESISWySftKiFMq8IQ.png
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
AWS S3 bucket Misconfigurations and Exploitations
https://cdn-images-1.medium.com/max/600/1*Fn8KIESISWySftKiFMq8IQ.png
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
AWS S3 bucket Misconfigurations and Exploitations
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackers Using Vishing to Trick Victims into?
https://cdn-images-1.medium.com/max/728/0*EcmDZPMR03g7WfMz.jpg
Malicious actors are resorting to voice phishing (vishing) tactics to dupe victims into installing Android malware on their devices, new…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Hackers Using Vishing to Trick Victims into?
https://cdn-images-1.medium.com/max/728/0*EcmDZPMR03g7WfMz.jpg
Malicious actors are resorting to voice phishing (vishing) tactics to dupe victims into installing Android malware on their devices, new…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hackers Using Vishing to Trick Victims into?
Malicious actors are resorting to voice phishing (vishing) tactics to dupe victims into installing Android malware on their devices, new…
OSCP : Complete Guide Part-1
Hi everyone, so I’m sharing some resources & tools information which will be helpful in your OSCP journey. If you have a career in…Continue reading on Medium »
Read more...
Hi everyone, so I’m sharing some resources & tools information which will be helpful in your OSCP journey. If you have a career in…Continue reading on Medium »
Read more...
AWS S3 bucket Misconfigurations and Exploitations
https://akash-venky091.medium.com/aws-s3-bucket-misconfigurations-and-exploitations-6d89546eec54?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://akash-venky091.medium.com/aws-s3-bucket-misconfigurations-and-exploitations-6d89546eec54?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
AWS S3 bucket Misconfigurations and Exploitations
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —Continue reading on Medium » (https://akash-venky091.medium.com/aws-s3-bucket-misconfigurations-and-exploitations-6d89546eec54?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
AWS S3 bucket Misconfigurations and Exploitations
— — — — — — — — — - AWS S3 bucket Misconfigurations — — — —— —