Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
66K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Chinese hackers targeting Russian nuclear…
en one of the most used RTF weaponizers in the Chinese threat actors sphere in recent years. It is mostly observed in the initial compromise phase of targeted attacks where spear-phishing is used to lure victims into opening malicious documents which in turn exploit Microsoft Equation Editor vulnerabilities to drop different malware.

“Both the Tonto Team and TA428 threat actors have been observed attacking Russian organisations in the past, and more specifically attacking research and defense related targets. For example, it was previously reported that Tonto Team is known to have attacked Russian organizations in the past using the Bisonal malware.

“When comparing the spear-phishing email and malicious documents in these attacks with previously examined phishing emails and lure documents used by the Tonto Team to attack Russian organisations, there are certain similarities in the linguistic and visual style used by the attackers in the phishing emails and documents,” the firm added.
Source: www.teiss.co.uk (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-1-90x90.png Hundreds of Millions of Dell Users at Risk from Kernel-Privilege Bugs2 hours ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/HPE-corp-logo-90x90.jpg Hewlett Packard Enterprise Plugs Critical Bug in Edge Platform Tool1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/F5-Big-IP-e1619725870974-90x90.jpg F5 Big-IP Vulnerable to Security-Bypass Bug5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/nvidia-90x90.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-1-4-90x90.png Mount Locker Ransomware Aggressively Changes Up Tactics2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock2 weeks ago
The post Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Hundreds of Millions of Dell Users at Risk from Kernel-Privilege Bugs https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg Hundreds of Millions of Dell Users at Risk from Kernel-Privilege…
ul exploit could allow attackers to interact with peripheral devices such as the hard disk drive (HDD) or and GPU to either read/write directly to the disk or invoke direct memory access (DMA), which is used to read and write physical memory operations.

“For example, we could communicate with ATA port IO for directly writing to the disk, then overwrite a binary that is loaded by a privileged process,” according to the analysis.

Researchers also discussed a third problem unrelated to the IOCTL handler bugs: The driver file itself is located in C:\Windows\Temp, which opens the door to other issues.

“The classic way to exploit this would be to transform any bring-your-own vulnerable driver (BYOVD) into an elevation-of-privileges vulnerability since loading a (vulnerable) driver means you require administrator privileges, which essentially eliminates the need for a vulnerability,” according to the posting. “Thus, using this side-noted vulnerability virtually means you can take any BYOVD to an elevation of privileges.” See Also: Hacking Stories: Xbox UndergroundHow to Remediate Dell Driver BugsDell has issued patches, available in Dell Security Advisory DSA-2021-088. However, SentinelLabs noted a potential issue.

“Note that the certificate was not yet revoked (at the time of writing),” researchers said. “This is not considered best practice since the vulnerable driver can still be used in a BYOVD attack as mentioned earlier.”

The impact this could have on users and enterprises that fail to patch is “far reaching and significant,” according to the analysis, although so far no in-the-wild exploits have shown up.

It’s very likely that will soon change, however: “With hundreds of million of enterprises and users currently vulnerable, it is inevitable that attackers will seek out those that do not take the appropriate action,” researchers said.
Source: threatpost.com (Click Link)Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/HPE-corp-logo-90x90.jpg Hewlett Packard Enterprise Plugs Critical Bug in Edge Platform Tool1 day ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/05/Untitled-design-90x90.png Chinese hackers targeting Russian nuclear submarine design firm with PortDoor malware2 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/F5-Big-IP-e1619725870974-90x90.jpg F5 Big-IP Vulnerable to Security-Bypass Bug5 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Google-Chrome-Browser-1-90x90.jpg Google Chrome V8 Bug Allows Remote Code-Execution6 days ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/apple_logo_store-90x90.jpg Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/nvidia-90x90.jpg Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Telegram_Messagees-90x90.jpg Telegram Platform Abused in ‘ToxicEye’ Malware Campaigns1 week ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-1-4-90x90.png Mount Locker Ransomware Aggressively Changes Up Tactics2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/Untitled-design-11-90x90.png Pulse Secure Critical Zero-Day Security Bug Under Active Exploit2 weeks ago
* https://www.blackhatethicalhacking.com/wp-content/uploads/2021/04/firefox_patch-90x90.jpg Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock2 weeks ago
The post Hundreds of Millions of Dell Users at Risk from Kernel-Privilege Bugs first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackers Hub

I need a hacker to change my university grades changing university/college grades is not a game, it requires professional hacking skills…

Continue reading on Medium »
Deep Web
Was I phished?

Created an account at a market, made a few purchases. Now when I go to log in my password is incorrect and the mnemonic phrase to recover isn’t working either.

submitted by /u/alex7478
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
For complete documentation visit www.botkube.io (http://www.botkube.io/) BotKube integration with Slack (https://slack.com/), Mattermost (https://mattermost.com/) or Microsoft Teams (https://www.microsoft.com/microsoft-365/microsoft-teams/group-chat-software) helps you monitor your Kubernetes (https://www.kitploit.com/search/label/Kubernetes) cluster, debug critical deployments and gives recommendations for standard practices by running checks on the Kubernetes resources. You can also ask BotKube to execute kubectl (https://www.kitploit.com/search/label/Kubectl) commands on k8s cluster which helps debugging (https://www.kitploit.com/search/label/Debugging) an application or cluster.
Hacktoberfest 2020
BotKube is participating in Hacktoberfest (https://www.kitploit.com/search/label/Hacktoberfest) 2020. We are giving some really cool swags to our contributors, learn more at - https://www.infracloud.io/blogs/infracloud-joins-hacktoberfest-2020/.
Getting started
Please follow this (https://www.botkube.io/installation/) for a complete BotKube installation guide.
Architecture

___________________________
@hacking_Attack
@Hacking_Video
Informer Controller: Registers informers to kube-apiserver to watch events on the configured k8s resources. It forwards the incoming k8s event to the Event Manager. Event Manager: Extracts required fields from k8s event object and creates a new BotKube event struct. It passes BotKube event struct to the Filter Engine. Filter Engine: Takes the k8s object and BotKube event struct and runs Filters on them. Each filter runs some validations on the k8s object and modifies the messages in the BotKube event struct if required. Event Notifier: Finally, notifier sends BotKube event over the configured communication channel. Bot Interface: Bot interface takes care of authenticating and managing connections with communication mediums like Slack, Mattermost, Microsoft (https://www.kitploit.com/search/label/Microsoft) Teams and reads/sends messages from/to them. Executor: Executes BotKube or kubectl command and sends back the result to the Bot interface. Visit www.botkube.io (http://www.botkube.io/) for Configuration, Usage and Examples.

Download Botkube (https://github.com/infracloudio/botkube)

___________________________
@hacking_Attack
@Hacking_Video
Botkube - An App That Helps You Monitor Your Kubernetes Cluster, Debug Critical Deployments &Amp; Gives Recommendations For Standard Practices

For complete documentation visit www.botkube.io BotKube integration with Slack, Mattermost or Microsoft Teams helps you monitor your Kubernetes cluster, debug critical deployments and gives recommendations for standard practices by running checks on the Kubernetes resources. You can also ask BotKube to execute kubectl commands on k8s cluster which helps debugging an application or cluster.Hacktoberfest 2020 BotKube is participating in Hacktoberfest 2020. We are giving some really cool swags to our contributors, learn more at - https://www.infracloud.io/blogs/infracloud-joins-hacktoberfest-2020/. Getting started Please follow this for a complete BotKube installation guide. Architecture Informer Controller: Registers informers to kube-apiserver to watch events on the configured k8s resources. It forwards the incoming k8s event to the Event Manager. Event Manager: Extracts required fields from k8s event object and creates a new BotKube event struct. It passes BotKube event struct to the Filter Engine. Filter Engine: Takes the k8s object and BotKube event struct and runs Filters on them. Each filter runs some validations on the k8s object and modifies the messages in the BotKube event struct if required. Event Notifier: Finally, notifier sends BotKube event over the configured communication channel. Bot Interface: Bot interface takes care of authenticating and managing connections with communication mediums like Slack, Mattermost, Microsoft Teams and reads/sends messages from/to them. Executor: Executes BotKube or kubectl command and sends back the result to the Bot interface. Visit www.botkube.io for Configuration, Usage and Examples. Download Botkube
Read more...

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Clicked a stalker link on my iPhone

A week later some guy texted me my address and name and left a voicemail of him breathing heavily into the phone. My computer signed all my accounts off as well, so I’m not sure if this guy has my passwords (and my credit card as I kept it on my gmail). Luckily, I paused it before he charged anything, but I feel like I’m being paranoid since he can’t possibly get to my computer through my iPhone

Right?

How much damage can this guy do to me?

submitted by /u/DirtySodaStyrofoam
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video