hacking: security in practice
How does Parameterised prevent SQL Injections?
I've read that Parameterised can be used to prevent SQL injections, but not sure how, I have a web page where I used sql injections to get access into it like so :
webpage:
username: _ _ _ _ _ _ _
password: _ _ _ _ _ _ _
I got to the password field and Input the following command:
Some explained to me what this command is doing, it's essentially by passing the username and password and adding a sql injection after them, this is how it looks like on the backend.
Now, how would Parameterised Stop this SQL injection?
submitted by /u/swiftcoderx
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
How does Parameterised prevent SQL Injections?
I've read that Parameterised can be used to prevent SQL injections, but not sure how, I have a web page where I used sql injections to get access into it like so :
webpage:
username: _ _ _ _ _ _ _
password: _ _ _ _ _ _ _
I got to the password field and Input the following command:
';SELECT * FROM members;' Some explained to me what this command is doing, it's essentially by passing the username and password and adding a sql injection after them, this is how it looks like on the backend.
select members.id from members where name='' and password='';SELECT * FROM members --> Now, how would Parameterised Stop this SQL injection?
submitted by /u/swiftcoderx
[link] [comments]
➖ Sent by @TheFeedReaderBot ➖
___________________________
@hacking_Attack
@Hacking_Video
reddit
How does Parameterised prevent SQL Injections?
I've read that Parameterised can be used to prevent SQL injections, but not sure how, I have a web page where I used sql injections to get...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
What Programming Language Do Hackers Use in 2022?
https://cdn-images-1.medium.com/max/626/0*Dhru4kcRKAGP4xvI.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
What Programming Language Do Hackers Use in 2022?
https://cdn-images-1.medium.com/max/626/0*Dhru4kcRKAGP4xvI.jpg
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
What Programming Language Do Hackers Use in 2022?
Before diving deep into the programming languages hackers tend to use, it depends on the type of hacking you’re willing/going to do. At which layer are you trying to hack or crack something…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
What can a hacker do with an IP address? How do hackers obtain such confidential information?
https://cdn-images-1.medium.com/max/603/1*QBYqLNZgRazrT8nWD1VY0w.png
What can a hacker do with an IP address?
well, let’s dive straight into the heart of the question.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
What can a hacker do with an IP address? How do hackers obtain such confidential information?
https://cdn-images-1.medium.com/max/603/1*QBYqLNZgRazrT8nWD1VY0w.png
What can a hacker do with an IP address?
well, let’s dive straight into the heart of the question.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
What can a hacker do with an IP address? How do hackers obtain such confidential information?
What can a hacker do with an IP address? well, let’s dive straight into the heart of the question. Rather than hackers, let’s do it with me…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
$MOO token price increased from $0.018 to 0.65$ when the attacker repeated the cycle
https://cdn-images-1.medium.com/max/1322/1*gXsW2AJL-qUuJEzKOtDWLA.jpeg
Moola is a non-custodial protocol built on the Celo blockchain in which depositors earn compound interest which is paid for by borrowers…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
$MOO token price increased from $0.018 to 0.65$ when the attacker repeated the cycle
https://cdn-images-1.medium.com/max/1322/1*gXsW2AJL-qUuJEzKOtDWLA.jpeg
Moola is a non-custodial protocol built on the Celo blockchain in which depositors earn compound interest which is paid for by borrowers…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
$MOO token price increased from $0.018 to 0.65$ when the attacker repeated the cycle
Moola is a non-custodial protocol built on the Celo blockchain in which depositors earn compound interest which is paid for by borrowers…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
CTF Journal 14 — Try Hack Me — Upload Vulnerability(2/?)
https://cdn-images-1.medium.com/max/1536/1*H4B5ykeFq-zf4TCkI4Mn0g.png
2022/10/27
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
CTF Journal 14 — Try Hack Me — Upload Vulnerability(2/?)
https://cdn-images-1.medium.com/max/1536/1*H4B5ykeFq-zf4TCkI4Mn0g.png
2022/10/27
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
CTF Journal 14 — Try Hack Me — Upload Vulnerability(2/?)
2022/10/27
How to get as good as possible in pentesting in 4 months?
https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/
the title is probably cringe but I want to push myself and become as good as possible in pentesting in 4 months. I already have some osdev and webdev exprience, and have recently done some CTFs but I think I should first learn about networking before I start using tools to solve CTFs. So I was thinking of doing LFS, making a network stack for my OS, and reading books about networking/pentesting, and then playing some CTFs. Can you recommend any good books or uni courses? Btw time is not a problem for me submitted by /u/DivideSad9852 (https://www.reddit.com/user/DivideSad9852)
[link] (https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/) [comments] (https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/
the title is probably cringe but I want to push myself and become as good as possible in pentesting in 4 months. I already have some osdev and webdev exprience, and have recently done some CTFs but I think I should first learn about networking before I start using tools to solve CTFs. So I was thinking of doing LFS, making a network stack for my OS, and reading books about networking/pentesting, and then playing some CTFs. Can you recommend any good books or uni courses? Btw time is not a problem for me submitted by /u/DivideSad9852 (https://www.reddit.com/user/DivideSad9852)
[link] (https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/) [comments] (https://www.reddit.com/r/Pentesting/comments/yfiar6/how_to_get_as_good_as_possible_in_pentesting_in_4/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
How to get as good as possible in pentesting in 4 months?
the title is probably cringe but I want to push myself and become as good as possible in pentesting in 4 months. I already have some osdev and...
Blind SSRF in Skype (Microsoft)
https://jayateerthag.medium.com/blind-ssrf-in-skype-microsoft-6639f4961052?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://jayateerthag.medium.com/blind-ssrf-in-skype-microsoft-6639f4961052?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Blind SSRF in Skype (Microsoft)
Server Side Request Forgery is a vulnerability that allows attacker to make server request to attacker controlled network location/path.
Server Side Request Forgery is a vulnerability that allows attacker to make server request to attacker controlled network location/path.Continue reading on Medium » (https://jayateerthag.medium.com/blind-ssrf-in-skype-microsoft-6639f4961052?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Blind SSRF in Skype (Microsoft)
Server Side Request Forgery is a vulnerability that allows attacker to make server request to attacker controlled network location/path.
Blind SSRF in Skype (Microsoft)
Server Side Request Forgery is a vulnerability that allows attacker to make server request to attacker controlled network location/path.Continue reading on Medium »
Read more...
Server Side Request Forgery is a vulnerability that allows attacker to make server request to attacker controlled network location/path.Continue reading on Medium »
Read more...
hacking: security in practice
Messing around with the Hak5 Screen Crab
Hey all. Picked up a screen crab and I've barely gotten to play with it but I bought it under the assumption that it could dual purpose as an HDMI Video capture card (similar to the El Gato HD60) Has anyone messed with this thing in here? Is it possible to use it for that purpose in any way? Can you stream the HDMI video capture over NDI to OBS?! Just looking to start a Convo on the topic 🙂
submitted by /u/BradElBard
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Messing around with the Hak5 Screen Crab
Hey all. Picked up a screen crab and I've barely gotten to play with it but I bought it under the assumption that it could dual purpose as an HDMI Video capture card (similar to the El Gato HD60) Has anyone messed with this thing in here? Is it possible to use it for that purpose in any way? Can you stream the HDMI video capture over NDI to OBS?! Just looking to start a Convo on the topic 🙂
submitted by /u/BradElBard
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Messing around with the Hak5 Screen Crab
Hey all. Picked up a screen crab and I've barely gotten to play with it but I bought it under the assumption that it could dual purpose as an HDMI...
hacking: security in practice
Mr. Robot S1 E1
I'm watching Mr. Robit for the first time and he starts off by forcing Ron's Tor browser to use a specific exit node. How is that possible?
submitted by /u/Real_GoofyNinja
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Mr. Robot S1 E1
I'm watching Mr. Robit for the first time and he starts off by forcing Ron's Tor browser to use a specific exit node. How is that possible?
submitted by /u/Real_GoofyNinja
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Mr. Robot S1 E1
I'm watching Mr. Robit for the first time and he starts off by forcing Ron's Tor browser to use a specific exit node. How is that possible?
hacking: security in practice
Get in a cyber security career
Can I get a job in cyber security field with just certifications (like CISSP) or TryHackMe and HackTheBox achievements? Of course I'll study a lot and apply it for practice. But I mean should I still start in a helpdesk or system admin jobs before getting one that is closer to cyber security?
Because the entry level job or the helpdesk and system admin jobs in our country has a very low salary. I am not into that, but it's just that I am also a bread winner in our family.
I am currently a senior software engineer and hoping to change career and be in cyber security field.
submitted by /u/philematophile
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Get in a cyber security career
Can I get a job in cyber security field with just certifications (like CISSP) or TryHackMe and HackTheBox achievements? Of course I'll study a lot and apply it for practice. But I mean should I still start in a helpdesk or system admin jobs before getting one that is closer to cyber security?
Because the entry level job or the helpdesk and system admin jobs in our country has a very low salary. I am not into that, but it's just that I am also a bread winner in our family.
I am currently a senior software engineer and hoping to change career and be in cyber security field.
submitted by /u/philematophile
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Get in a cyber security career
Can I get a job in cyber security field with just certifications (like CISSP) or TryHackMe and HackTheBox achievements? Of course I'll study a lot...
Do you have to be extroverted to be a pen tester?
https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/
Hi I have a question to ask you guys. Can I become a pen tester if I’m introverted, and shy? I’m a computer science major who’s going to graduate with his associates degree in the spring of 2024. After that I’m going to transfer to another college that offers computer science and cybersecurity all in one. Also I remember watching a video about pen testing by the cyber mentor and he said that you have to be able to debrief the clients at a high based technical level. How do I make myself more extroverted, and increase my social skills to be able to explain things to people at a high based technical level? submitted by /u/ELIDAL99 (https://www.reddit.com/user/ELIDAL99)
[link] (https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/) [comments] (https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/
Hi I have a question to ask you guys. Can I become a pen tester if I’m introverted, and shy? I’m a computer science major who’s going to graduate with his associates degree in the spring of 2024. After that I’m going to transfer to another college that offers computer science and cybersecurity all in one. Also I remember watching a video about pen testing by the cyber mentor and he said that you have to be able to debrief the clients at a high based technical level. How do I make myself more extroverted, and increase my social skills to be able to explain things to people at a high based technical level? submitted by /u/ELIDAL99 (https://www.reddit.com/user/ELIDAL99)
[link] (https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/) [comments] (https://www.reddit.com/r/Pentesting/comments/yflvlc/do_you_have_to_be_extroverted_to_be_a_pen_tester/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Do you have to be extroverted to be a pen tester?
Hi I have a question to ask you guys. Can I become a pen tester if I’m introverted, and shy? I’m a computer science major who’s going to graduate...