Hacking Articles Tips Tricks Videos Tutorials
471 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Como fui de um range de IP até um RCE via SQL Injection — Bug Bounty

Estarei compartilhando o processo que percorri em um dos meus últimos bug bounties para chegar a tão aclamada falha de RCE. Onde fui de um…Continue reading on Medium »
Read more...
Dark Reading: Attacks/Breaches
Zero Trust Shouldn’t Be The New Normal

Zero trust is useful in some situations, but organizations should not be trying to fit zero trust everywhere. In some cases, identity-based networking is an appropriate alternative.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Help breaking down OST to PST converter

I recently had to buy an OST to PST converter to help with an issue of lost data, which was caused by the rackspace outage. There is one free converter on Github, but as it involved an OST from Outlook 2016, I was unable to use it with that. I want to break down the software I am using and NOT PIRATE it, but learn how it works and develop my own tool to release to the public, or at least Learn why these tools cost money.

Additionally, knowing how this works could be great for breaching or improving email security. Does anyone have advice on how I could learn from application files how this works or know where I could start researching? The software is SysTools OST Recovery. Thanks

submitted by /u/Flareon223
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Study question

Not sure if this really belongs here, probably better for r/oscp but checked the rules and I think I am mostly okay asking this:

If anyone here is studying for OSCP and going through TJNulls list:

What do you do when you get stuck on a box?

I don't want to really go into specifics with what exploit or box, just more general.

But do you just pure "tryharder" it? You know it's exploitable somehow, in theroy. So do you just go for it?

How long do you tryharder for before its more efficient to lookup a walk-through and learn about a tool or attack you never would have known of before?

Is it ever more efficient? Is it better to just continue researching, trying new things until you get it and never look at a walk-through?

I want to watch ippsec videos but I also want to see if I can get some of these without a walk-through, the more walkthroughs I watch the less boxes I can do without already knowing the answer.

Maybe, am I as the the student already supposed to now how to break into these boxes prior to starting this list? Is there documentation or material somewhere that should have been prior knowledge?

Is that sort of just the art of it? You have some knowledge comming in, but you might need to do a lot of research, trial and error and sort of banging your head against the wall to get something to work? Sometimes you just lookup a walk-through and sometimes you just keep at it and you pop the box and you're really glad you didn't lookup a walk-through?

If it's a box that you're not sure is really even vulnerable, in the case of maybe a real life penetration test, when do you say okay I can't hack this, good job securing your system?

What do you do, what do you think I should do?

submitted by /u/Steve69Maddeeeeen69
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Staying focused in a evolving industry.

So to my more experience colleagues, how do you guys stay focused or sum up the will power to learn a new skill or code language etc. I am finishing up my CompTIA course and looking to get my foot in the door doing help desk or something, but between then I figured I should brush up on learning python, or get a better understanding of networking an but I find myself easily distracted. I would like to lean towards a cyber security role but can't seem to sit down long enough to fully understand a lesson and feel like I'm autopilot.

submitted by /u/UrbanIndy
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Camera firmware

Hello everyone,

I was wondering if anyone can point me in a direction on how to modify a firmware for a digital camera.

I have an outdated camera that has been discontinued and as an experiment I would like to tinker with its firmware as I do understand the capabilities of the hardware and would like to unlock some features.

I know for canon camera they have magic lantern so I am trying to do something similar.

Would greatly appreciate any help or guidance.

submitted by /u/david001234567
[link] [comments]
Estarei compartilhando o processo que percorri em um dos meus últimos bug bounties para chegar a tão aclamada falha de RCE. Onde fui de um…Continue reading on Medium » (https://erickfernandox.medium.com/como-fui-de-um-range-de-ip-at%C3%A9-um-rce-via-sql-injection-bug-bounty-eb91adffe439?source=rss------bug_bounty-5)
Introspection GraphQL on Sayurbox.com

Hi everyone,Continue reading on Medium »
Read more...
XSS Reflected on Bukalapak.com

Hi Bug Hunters,Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Cyber Security

https://cdn-images-1.medium.com/max/940/1*zQV7hOwrxqMxcprudv2i2A.jpeg
Cyber security protects against the unauthorized exploitation of internet-connected information, that is, systems, networks, programs…

Continue reading on Medium »
Sent by @TheFeedReaderBot