Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
66K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Telegram trace

Hey I was scammed can I trace a IP address through telegram? Or trace a crypto wallet ID? I am guessing the answer is going to be "Nope, shit to be you"

submitted by /u/backcountry57
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
How to tell if IP address from hacker is from a vpn?

Hi, first time submitting to this community. I know in the rules it says no "I got hacked" posts, but I am looking more specifically for advice on what to do with this guy's IP address. So basically, some hacker got access to my email, and began trying to transfer a bunch of accounts to his email (venmo, paypal, riot, blizzard, etc.). He successfully transferred the ones that were not 2fA. Thankfully, I caught on while he was in the process of doing it, so I changed all my passwords and set up 2fA on a bunch of accounts.

I was wondering what I could do to take some revenge/justice using IP addresses that steam gave me when he tried changing account things. I have two IP addresses he was using, two in completely different locations so I am unsure if they are from VPNs or not. I also have the gmail account that he transferred all of the stuff onto. I am not very experienced in this kind of stuff, so I am looking for guidance. How could I report him to authorities? What do you guys think?

submitted by /u/computer2000
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Deep Web
Deep web

What is the coolest thing you’ve come across on the deep web? Like in the movies they make it seem like you can buy super cool guns and missels and things like that and I was just wondering if you could actually do that? (Of course I’m not gonna buy a missel) but I think that it’s crazy how people can get there hands on stuff like that.

submitted by /u/Monkeyhank420
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials pinned «Hacking on Medium How to clone SIM Card and use it in two phones | SIM Card Cloning | Things Required : Continue reading on Medium » ___________________________ @hacking_Attack @Hacking_Video»
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware

https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malwarePost Views: 243
Reading Time: 1 Minute
Chinese hackers recently targeted a general director at the Rubin Design Bureau, a Russian defence contractor that designs nuclear submarines for the Russian Navy, using the PortDoor malware delivered via spear-phishing emails.
According to researchers at Cybereason, the PortDoor malware was developed by a threat actor likely operating on behalf of Chinese state-sponsored interests and is being delivered through the RoyalRoad weaponizer, an attack tool frequently used by China-based threat actors to attack high-value targets.

PortDoor malware, the researchers said, is designed with obfuscation and persistence in mind and features multiple functionalities, including the ability to do reconnaissance, target profiling, delivery of additional payloads, privilege escalation, process manipulation, static detection antivirus evasion, one-byte XOR encryption, AES-encrypted data exfiltration and more.

The use of the RoyalRoad weaponizer, the social engineering style, the infection vector, and similarities between the PotDoor malware and other known Chinese APT malware make it clear that the spear-phishing operation is being conducted by or on behalf of a Chinese state-sponsored hacker group, Cybereason said.
See Also: F5 Big-IP Vulnerable to Security-Bypass Bug The weaponizer has previously been used by Chinese hacker groups such as Tick, Tonto Team, TA428, Goblin Panda, and Rancor. It weaponizes RTF documents that drop an encoded file named “8.t”, which, once decoded, delivers a variety of malware based on hackers’ objectives.

In this particular case, a general director at the Rubin Design Bureau, Russia’s largest submarine design centre that has designed more than two-thirds of all nuclear submarines in the Russian Navy, was sent a spear-phishing email by hackers that contained a weaponized RTF document. The document appeared to contain the schematics of an autonomous underwater vehicle and was timestomped to 2007 to avoid detection.
See Also: Offensive Security Tool: SSHPry2.0
According to researchers who discovered and analyzed the weaponized RTF document, the document drops a Microsoft Word add-in file when it is opened and executed, thereby bypassing detection of automatic execution persistence. The dropper payload, named winlog.wll, features the following capabilities:

1. Gathering reconnaissance and profiling of the victim’s machine
2. Receiving commands and downloading additional payloads from the C2 server
3. Communicating with the C2 server using raw socket as well as HTTP over port 443 with proxy authentication support
4. Privilege escalation and process manipulation
5. Dynamic API resolving for static detection evasion
6. One byte XOR encryption of sensitive data and configuration strings
7. The collected information is AES-encrypted before it is sent to the C2 server
Once it infiltrates a system, the PortDoor malware establishes communications with a C2 server, waits for additional commands to execute, and uses AES to encrypt the stolen PC information data before routing it to the C2 server. The malware also hides most of its main functionality and avoid static detection of suspicious API calls by dynamically resolving its API calls instead of using static imports, Cybereason said. See Also: Hacking Stories: Xbox Underground“RoyalRoad has be[...]