hacking: security in practice
Potencional Google Photos Leak
So I wanted to download my YT avatar picture, since I lost the original picture. While doing that I noticed that it was hosted at very strange domain (yt3.ggpht.com). I threw ggpht.com into online tool Robtex.com and found 31 random publicly acessible pictures. They are hosted as objects and are acessible easily. Does anyone know why are those hosted there? Could this be a Google Photos user data leak?
submitted by /u/MarBar_SK
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Potencional Google Photos Leak
So I wanted to download my YT avatar picture, since I lost the original picture. While doing that I noticed that it was hosted at very strange domain (yt3.ggpht.com). I threw ggpht.com into online tool Robtex.com and found 31 random publicly acessible pictures. They are hosted as objects and are acessible easily. Does anyone know why are those hosted there? Could this be a Google Photos user data leak?
submitted by /u/MarBar_SK
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Potencional Google Photos Leak
So I wanted to download my YT avatar picture, since I lost the original picture. While doing that I noticed that it was hosted at very strange ...
[BUG BOUNTY] SUBDOMAIN TAKEOVER IN TARGET CNAME NETLIFY
Um controle de subdomínio ocorre quando um invasor obtém controle sobre um subdomínio de um domínio de destino. Normalmente, isso acontece…Continue reading on Medium »
Read more...
Um controle de subdomínio ocorre quando um invasor obtém controle sobre um subdomínio de um domínio de destino. Normalmente, isso acontece…Continue reading on Medium »
Read more...
[BUG BOUNTY] SUBDOMAIN TAKEOVER IN TARGET CNAME NETLIFY
https://medium.com/@kauenavarro/bug-bounty-subdomain-takeover-in-target-cname-netlify-1b2d22383f?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@kauenavarro/bug-bounty-subdomain-takeover-in-target-cname-netlify-1b2d22383f?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
[BUG BOUNTY] SUBDOMAIN TAKEOVER IN TARGET CNAME NETLIFY
Um controle de subdomínio ocorre quando um invasor obtém controle sobre um subdomínio de um domínio de destino. Normalmente, isso acontece…
Um controle de subdomínio ocorre quando um invasor obtém controle sobre um subdomínio de um domínio de destino. Normalmente, isso acontece…Continue reading on Medium » (https://medium.com/@kauenavarro/bug-bounty-subdomain-takeover-in-target-cname-netlify-1b2d22383f?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
[BUG BOUNTY] SUBDOMAIN TAKEOVER IN TARGET CNAME NETLIFY
Um controle de subdomínio ocorre quando um invasor obtém controle sobre um subdomínio de um domínio de destino. Normalmente, isso acontece…
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.Continue reading on InfoSec Write-ups »
Read more...
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.Continue reading on InfoSec Write-ups »
Read more...
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
https://infosecwriteups.com/unrestricted-file-upload-a-common-bug-with-a-high-potential-revenue-on-hackerone-stackzero-dcf71e56e48b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/unrestricted-file-upload-a-common-bug-with-a-high-potential-revenue-on-hackerone-stackzero-dcf71e56e48b?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/unrestricted-file-upload-a-common-bug-with-a-high-potential-revenue-on-hackerone-stackzero-dcf71e56e48b?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
https://cdn-images-1.medium.com/max/1200/0*W1eVnqQ-Q0_6InmD.jpg
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
https://cdn-images-1.medium.com/max/1200/0*W1eVnqQ-Q0_6InmD.jpg
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Unrestricted File Upload: A Common Bug With A High Potential Revenue On HackerOne! — StackZero
An explanation of what is unrestricted file upload vulnerability and how to exploit it in a lab by using DVWA.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Brute It — THM
https://cdn-images-1.medium.com/max/600/1*d3ftonhz9KyrfkzW_cOn0Q.png
We have another box that is hosted on Try Hack me. This is another easy box that involves brute force, hash cracking and privilege…
Continue reading on System Weakness »
___________________________
@hacking_Attack
@Hacking_Video
Brute It — THM
https://cdn-images-1.medium.com/max/600/1*d3ftonhz9KyrfkzW_cOn0Q.png
We have another box that is hosted on Try Hack me. This is another easy box that involves brute force, hash cracking and privilege…
Continue reading on System Weakness »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Brute It — THM
We have another box that is hosted on Try Hack me. This is another easy box that involves brute force, hash cracking and privilege…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Moving the Cybersecurity Goal Posts
https://cdn-images-1.medium.com/max/800/0*xxqGYnyVdRV6n14x
Photo Credit — Interexy.com — Top Cybersecurity Trends To Monitor In 2022–2023
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Moving the Cybersecurity Goal Posts
https://cdn-images-1.medium.com/max/800/0*xxqGYnyVdRV6n14x
Photo Credit — Interexy.com — Top Cybersecurity Trends To Monitor In 2022–2023
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Moving the Cybersecurity Goal Posts
Photo Credit — Interexy.com — Top Cybersecurity Trends To Monitor In 2022–2023
hacking: security in practice
Are you aware of any methods to filter a MAC address in a local WiFi network wthout the admin password for the router configuration?
I'm trying to acess the MAC filtering options for my home router, but apparently my internet company keeps that private. Would anyone here know of any alterntive methods (however creative) to block a device from connecting to my local network?
submitted by /u/TheAgora1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Are you aware of any methods to filter a MAC address in a local WiFi network wthout the admin password for the router configuration?
I'm trying to acess the MAC filtering options for my home router, but apparently my internet company keeps that private. Would anyone here know of any alterntive methods (however creative) to block a device from connecting to my local network?
submitted by /u/TheAgora1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Are you aware of any methods to filter a MAC address in a local...
I'm trying to acess the MAC filtering options for my home router, but apparently my internet company keeps that private. Would anyone here know of...
hacking: security in practice
Does anyone have a flipper zero?
I’ve seen some reviews on YouTube on the flipper zero. When I go to the website it’s still under construction. US isn’t even a country they can ship it to. So I’m just wondering if anyone has had a chance to go through one and see what it’s capable of.
submitted by /u/emrbe
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Does anyone have a flipper zero?
I’ve seen some reviews on YouTube on the flipper zero. When I go to the website it’s still under construction. US isn’t even a country they can ship it to. So I’m just wondering if anyone has had a chance to go through one and see what it’s capable of.
submitted by /u/emrbe
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Does anyone have a flipper zero?
I’ve seen some reviews on YouTube on the flipper zero. When I go to the website it’s still under construction. US isn’t even a country they can...
hacking: security in practice
ClamAV 1.0.0 LTS released | OpenSource AntiVirus | Cisco Talos
submitted by /u/Neustradamus
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
ClamAV 1.0.0 LTS released | OpenSource AntiVirus | Cisco Talos
submitted by /u/Neustradamus
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
ClamAV 1.0.0 LTS released | OpenSource AntiVirus | Cisco Talos
Posted in r/hacking by u/Neustradamus • 1 point and 0 comments
Kali Linux Tutorials
SharpSCCM : A C# Utility For Interacting With SCCM
SharpSCCM is a post-exploitation tool designed to leverage Microsoft Endpoint Configuration Manager (a.k.a. ConfigMgr, formerly SCCM) for lateral movement and credential gathering without requiring access to the SCCM administration console GUI.
SharpSCCM was initially created to execute user hunting and lateral movement functions ported from PowerSCCM (by @harmj0y, @jaredcatkinson, @enigma0x3, and @mattifestation) and now contains additional functionality to gather credentials and abuse newly discovered attack primitives for coercing NTLM authentication in SCCM sites where automatic site-wide client push installation is enabled.
Please visit the wiki for documentation detailing how to build and use SharpSCCM.
Author
Chris Thompson is the primary author of this project. Duane Michael (@subat0mik) and Evan McBroom (@mcbroom_evan) are active contributors as well. Please feel free to reach out on Twitter (@_Mayyhem) with questions, ideas for improvements, etc., and on GitHub with issues and pull requests.
Warning
This tool was written as a proof of concept in a lab environment and has not been thoroughly tested. There are lots of unfinished bits, terrible error handling, and functions I may never complete. Please be careful and use at your own risk.
Click Here To Download
SharpSCCM : A C# Utility For Interacting With SCCM
SharpSCCM is a post-exploitation tool designed to leverage Microsoft Endpoint Configuration Manager (a.k.a. ConfigMgr, formerly SCCM) for lateral movement and credential gathering without requiring access to the SCCM administration console GUI.
SharpSCCM was initially created to execute user hunting and lateral movement functions ported from PowerSCCM (by @harmj0y, @jaredcatkinson, @enigma0x3, and @mattifestation) and now contains additional functionality to gather credentials and abuse newly discovered attack primitives for coercing NTLM authentication in SCCM sites where automatic site-wide client push installation is enabled.
Please visit the wiki for documentation detailing how to build and use SharpSCCM.
Author
Chris Thompson is the primary author of this project. Duane Michael (@subat0mik) and Evan McBroom (@mcbroom_evan) are active contributors as well. Please feel free to reach out on Twitter (@_Mayyhem) with questions, ideas for improvements, etc., and on GitHub with issues and pull requests.
Warning
This tool was written as a proof of concept in a lab environment and has not been thoroughly tested. There are lots of unfinished bits, terrible error handling, and functions I may never complete. Please be careful and use at your own risk.
Click Here To Download
Kali Linux Tutorials
SharpSCCM : A C# Utility For Interacting With SCCM
SharpSCCM is a post-exploitation tool designed to leverage Microsoft Endpoint Configuration Manager (a.k.a. ConfigMgr, formerly SCCM)