How I exploited Blind SQLi without using any tool!— StackZero
Hi hackers! Here is another article that will show how to exploit a WELL KNOWN vulnerability in practice.Continue reading on InfoSec Write-ups »
Read more...
Hi hackers! Here is another article that will show how to exploit a WELL KNOWN vulnerability in practice.Continue reading on InfoSec Write-ups »
Read more...
Bug Bounty: Google Maps API key leaked on reconnaissance.
Hi folks, this article is about how I discovered a leaked google map API key on public facing web application during a bug bounty program.Continue reading on Medium »
Read more...
Hi folks, this article is about how I discovered a leaked google map API key on public facing web application during a bug bounty program.Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Persistence on a windows machine using “winrm” (no creds needed)
https://cdn-images-1.medium.com/max/728/1*L_1TwfRPoufjE1gm7yH19Q.png
Step 1:
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Persistence on a windows machine using “winrm” (no creds needed)
https://cdn-images-1.medium.com/max/728/1*L_1TwfRPoufjE1gm7yH19Q.png
Step 1:
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Persistence on a windows machine using “winrm” (no creds needed)
Step 1:
Hacking on Medium
Russian hacker detained in India for allegedly assisting students in the cheating of the jee-main
A Russian person has allegedly been apprehended by India’s Central Bureau of Investigation (CBI) for attempting to hack into a platform…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Russian hacker detained in India for allegedly assisting students in the cheating of the jee-main
A Russian person has allegedly been apprehended by India’s Central Bureau of Investigation (CBI) for attempting to hack into a platform…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Russian hacker detained in India for allegedly assisting students in the cheating of the jee-main
A Russian person has allegedly been apprehended by India’s Central Bureau of Investigation (CBI) for attempting to hack into a platform…
Hacking on Medium
Professional Knowledge Hacking
Hire Hacker now
Email me now: wambadcosta@gmail.com
Adddd me on ICQ : 715450097
Skype: wamba dcosta
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Professional Knowledge Hacking
Hire Hacker now
Email me now: wambadcosta@gmail.com
Adddd me on ICQ : 715450097
Skype: wamba dcosta
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Professional Knowledge Hacking
Hire Hacker now Email me now: wambadcosta@gmail.com Adddd me on ICQ : 715450097 Skype: wamba dcosta
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
What is USB Rubber Ducky — Keystroke ?
https://cdn-images-1.medium.com/max/800/0*g87UVNliDVpmMlW5.jpg
USB Rubber Ducky | Penetration Testing
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
What is USB Rubber Ducky — Keystroke ?
https://cdn-images-1.medium.com/max/800/0*g87UVNliDVpmMlW5.jpg
USB Rubber Ducky | Penetration Testing
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
What is USB Rubber Ducky — Keystroke ?
USB Rubber Ducky | Penetration Testing
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How I exploited Blind SQLi without using any tool!— StackZero
https://cdn-images-1.medium.com/max/930/0*nzhwtJt2LWjdzs8w.jpg
Hi hackers! Here is another article that will show how to exploit a WELL KNOWN vulnerability in practice.
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
How I exploited Blind SQLi without using any tool!— StackZero
https://cdn-images-1.medium.com/max/930/0*nzhwtJt2LWjdzs8w.jpg
Hi hackers! Here is another article that will show how to exploit a WELL KNOWN vulnerability in practice.
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I exploited Blind SQLi without using any tool!— StackZero
Hi hackers! Here is another article that will show how to exploit a WELL KNOWN vulnerability in practice.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Meretas password password zip menggunakan john the ripper
https://cdn-images-1.medium.com/max/1366/1*cA0AjWWtWRXxMl6YopyVNw.png
baik kali ini sayaingin sharing tentang bagaimana cara melakukan serangan brute force terhadap zip file yang memiliki password bisa di…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Meretas password password zip menggunakan john the ripper
https://cdn-images-1.medium.com/max/1366/1*cA0AjWWtWRXxMl6YopyVNw.png
baik kali ini sayaingin sharing tentang bagaimana cara melakukan serangan brute force terhadap zip file yang memiliki password bisa di…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Meretas password password zip menggunakan john the ripper
baik kali ini sayaingin sharing tentang bagaimana cara melakukan serangan brute force terhadap zip file yang memiliki password bisa di…
Exploitation of misconfigured Amazon aws s3 buckets
https://gr3y-n00b.medium.com/exploitation-of-misconfigured-amazon-aws-s3-buckets-9c4ad7175814?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://gr3y-n00b.medium.com/exploitation-of-misconfigured-amazon-aws-s3-buckets-9c4ad7175814?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
This is my another write up about how we can exploit Vulnerable misconfiguration Amazon Aws s3 buckets
Yo!
Yo!Continue reading on Medium » (https://gr3y-n00b.medium.com/exploitation-of-misconfigured-amazon-aws-s3-buckets-9c4ad7175814?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
This is my another write up about how we can exploit Vulnerable misconfiguration Amazon Aws s3 buckets
Yo!
Pushing Burpsuite cert to system store in Android(rooted)
https://medium.com/@rasiraskp/pushing-burpsuite-cert-to-system-store-in-android-rooted-f1be6533f384?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@rasiraskp/pushing-burpsuite-cert-to-system-store-in-android-rooted-f1be6533f384?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Pushing Burpsuite cert to system store in Android(rooted)
Having your burpsuite ca certificate pushed to system store provides you greater advantage in your testing. certificates in system store…
Having your burpsuite ca certificate pushed to system store provides you greater advantage in your testing. certificates in system store…Continue reading on Medium » (https://medium.com/@rasiraskp/pushing-burpsuite-cert-to-system-store-in-android-rooted-f1be6533f384?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Pushing Burpsuite cert to system store in Android(rooted)
Having your burpsuite ca certificate pushed to system store provides you greater advantage in your testing. certificates in system store…
New to cybersecurity
https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/
I want to become a pentester. I’ve done a ton of research in regards to certification and ctf’s before posting on here. I do not want to get a degree in computer science so please any info to a noob would be greatly appreciated that would be an alternative route/path to be able to get a job. Give me your opinion on how I should get started. I’m wiping an old laptop I have to use for Linux and practice coding but I know nothing of Linux or anything else to this regard. Treat me like you would someone who knows nothing about cybersecurity. Thank you. submitted by /u/WHATTHEPHOBIA (https://www.reddit.com/user/WHATTHEPHOBIA)
[link] (https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/) [comments] (https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/
I want to become a pentester. I’ve done a ton of research in regards to certification and ctf’s before posting on here. I do not want to get a degree in computer science so please any info to a noob would be greatly appreciated that would be an alternative route/path to be able to get a job. Give me your opinion on how I should get started. I’m wiping an old laptop I have to use for Linux and practice coding but I know nothing of Linux or anything else to this regard. Treat me like you would someone who knows nothing about cybersecurity. Thank you. submitted by /u/WHATTHEPHOBIA (https://www.reddit.com/user/WHATTHEPHOBIA)
[link] (https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/) [comments] (https://www.reddit.com/r/redteamsec/comments/y6zhvb/new_to_cybersecurity/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
New to cybersecurity
I want to become a pentester. I’ve done a ton of research in regards to certification and ctf’s before posting on here. I do not want to get...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
SteaLinG : Open-Source Penetration Testing Framework Designed For Social Engineering
The SteaLinG is an open-source penetration testing framework designed for social engineering After the hack, you can upload it to the victim’s device and run it. DisclaimersThis is only for testing purposes and can only be used where strict consent has been given. Do not use this for illegal purposes How can I benefit from this project?* you can use it
* for developers
you can read the source code and try to understand how to make a project like this FeaturesmoduleShort descriptionDump passwordsteal All passwords saved , upload file a passwords saved to megaDump Historydump browser historydump filesSteal files from the hard drive with the extension you want New featuresmoduleShort description1-Telegram Session HijackTelegram session hijacker
* How it works ? The recording session in Telegram is stored locally in this particular path C:\Usersin the ‘tedata’ folder
module2- Dropper
* What requirements does he need from you?
* And how does it work?? Requirements The first thing it asks you is the
The first thing is to create a paste on the site and make it private Then it adds the url you gave it and then it gives you the exe file, its function is that when it works on any device it starts adding itself to Registry device in two different ways It starts to open pastebin and inserts the special paste you created, takes the paste url, downloads its content and runs And you can enter the url at any time and put another url. It is very normal because the dropper goes every 10 minutes. Checks the URL. If it finds it, it changes it, downloads its content, downloads it, and connects to find it. You don’t do anything, and so, every 10 minutes, you can literally do it, you can access your device from anywhere
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgbJis7QwhgjgCWTAcrLbIvDQUUisRzGCRN8J8ifY8SAU_ozZjn3uaGzbnGgIeQ1WH2in0fSitnzxgfKeJxQQZ2mhNKDKGosols4Fgw54DCHIYR1cLCDeMaQYm-resI9frOSevJ-Lxa7Qppi3r4JxkbOvtCT5Rqxn5v-kDbVgJKH8SHB2BcFla_NF7p/s699/SteaLinG.png
3- Linux support
4-You can now choose between Mega or Pastebin Requirements* python >= 3.8 ++ Download Python
* os : Windows
* os : Linux Installation to Windows:git clone https://github.[...]
___________________________
@hacking_Attack
@Hacking_Video
SteaLinG : Open-Source Penetration Testing Framework Designed For Social Engineering
The SteaLinG is an open-source penetration testing framework designed for social engineering After the hack, you can upload it to the victim’s device and run it. DisclaimersThis is only for testing purposes and can only be used where strict consent has been given. Do not use this for illegal purposes How can I benefit from this project?* you can use it
* for developers
you can read the source code and try to understand how to make a project like this FeaturesmoduleShort descriptionDump passwordsteal All passwords saved , upload file a passwords saved to megaDump Historydump browser historydump filesSteal files from the hard drive with the extension you want New featuresmoduleShort description1-Telegram Session HijackTelegram session hijacker
* How it works ? The recording session in Telegram is stored locally in this particular path C:\Usersin the ‘tedata’ folder
C:
└── Users
├── .AppData
│ └── Roaming
│ └── TelegramDesktop
│ └── tdata Once you have moved this folder with all its contents on your device in the same path, then you do what will happen for it is that simple The tool does all this, all you have to do is give it your token on the site https://anonfiles.com/The first step is to go to the path where the tdata file is located, and then convert it to a zip file. Of course, if the Telegram was working, this would not happen. If there was any error, it means that the Telegram is open, so I would do the kill processes. antivirus You will see that this is malicious behavior, so I avoided this part at all by the try and except in the code The name of the archive file is used in the name of the device of your victim, because if you have more than one, I mean, after that, you will post request for the zipfile on the anonfiles website using the API key or the token of your account on the site. On it, you will find your token Just that, teacher, and it is not exposed from any AVmodule2- Dropper
* What requirements does he need from you?
* And how does it work?? Requirements The first thing it asks you is the
URLof the virus or whatever you want to download to the victim’s device, but keep in mind that the URL must be direct, meaning that it must be the end Its Yama .exe or .png,whatever is important is that it be a link that ends with a backstamp The second thing is to take the API Kay from you, and you will answer it as well. Either you register, click on the word API, you will find it, and you will take the username and password So how does it work?The first thing is to create a paste on the site and make it private Then it adds the url you gave it and then it gives you the exe file, its function is that when it works on any device it starts adding itself to Registry device in two different ways It starts to open pastebin and inserts the special paste you created, takes the paste url, downloads its content and runs And you can enter the url at any time and put another url. It is very normal because the dropper goes every 10 minutes. Checks the URL. If it finds it, it changes it, downloads its content, downloads it, and connects to find it. You don’t do anything, and so, every 10 minutes, you can literally do it, you can access your device from anywhere
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgbJis7QwhgjgCWTAcrLbIvDQUUisRzGCRN8J8ifY8SAU_ozZjn3uaGzbnGgIeQ1WH2in0fSitnzxgfKeJxQQZ2mhNKDKGosols4Fgw54DCHIYR1cLCDeMaQYm-resI9frOSevJ-Lxa7Qppi3r4JxkbOvtCT5Rqxn5v-kDbVgJKH8SHB2BcFla_NF7p/s699/SteaLinG.png
3- Linux support
4-You can now choose between Mega or Pastebin Requirements* python >= 3.8 ++ Download Python
* os : Windows
* os : Linux Installation to Windows:git clone https://github.[...]
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
SteaLinG : Open-Source Penetration Testing Framework
The SteaLinG is an open-source penetration testing framework designed for social engineering After the hack, you can upload