Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Dark Reading: Attacks/Breaches
Apache Commons Vulnerability: Patch but Don't Panic

Experts say CVE-2022-42899 is a serious vulnerability, but widespread exploitation is unlikely because of the specific conditions that need to exist for it to happen.
Dark Reading: Attacks/Breaches
SBOMs: An Overhyped Concept That Won't Secure Your Software Supply Chain

We need more than the incomplete snapshot SBOMs provide to have real impact.
hacking: security in practice
Advise for elevating prompt with reverse tcp shell

Lab setup: Attempting to attack a Microsoft Win10 developer Vm with Kali Linux. Using the social engineering toolkit, I was able to get a reverse shell back to the Kali machine,which gave me a cmd.exe session

From what I read online, I should be able to drop from a cmd.exe prompt into a powershell prompt (no issue) then run as administrator (issue) The Win10 VM is being promoted for creds and not my Kali Machine. The user I’m impersonating is a local admin, but the shell that i access in Kali doesn’t have permission to make registry changes or create additional users. Any advice/commands I should try next are appreciated.

submitted by /u/HelpBeginning4777
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
I seem to have found a lot of IP addresses with almost all of their ports open.

So i was basically just playing around with zmap and then ended up coming across a load of IPs with many open ports. I scanned these IPs on nmap and noticed they are practically using every service you could think of. I'm wondering if this is some sort of configuration of the servers side causing it to appear that these ports are open or is it something else?

submitted by /u/Ok-Chipmunk4539
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Scan QR Code and Got Hacked (CVE-2021–43530 : UXSS on Firefox Android Version)

I. QR CodeContinue reading on Medium »
Read more...