How Bug Bounty Programs can Help Improve the Hospital Security
https://blog.bugzero.io/how-bug-bounty-programs-may-help-enhance-hospital-security-9ccc65e4c024?source=rss------bug_bounty-5
https://blog.bugzero.io/how-bug-bounty-programs-may-help-enhance-hospital-security-9ccc65e4c024?source=rss------bug_bounty-5
Healthcare security teams are under extreme pressure to protect their surroundings from an increasing number of threats.Continue reading on Bug Zero » (https://blog.bugzero.io/how-bug-bounty-programs-may-help-enhance-hospital-security-9ccc65e4c024?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to hack the airplane mode on the phone?
Imagine the following situation:
there are 2 people who possess in their phones an application to send SOS, that is, to warn the other person that you are in danger.
The application has all the permissions of the operating system, so it has no limitations.
If one of them activates airplane mode, is there any way to make them receive the SOS notification/message/call?
Then violate airplane mode and only allow messages/calls to be received for the SOS app?
submitted by /u/Albyarc
[link] [comments]
How to hack the airplane mode on the phone?
Imagine the following situation:
there are 2 people who possess in their phones an application to send SOS, that is, to warn the other person that you are in danger.
The application has all the permissions of the operating system, so it has no limitations.
If one of them activates airplane mode, is there any way to make them receive the SOS notification/message/call?
Then violate airplane mode and only allow messages/calls to be received for the SOS app?
submitted by /u/Albyarc
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
If you were only able to learn one programming language, which one would it be?
If you were only able to learn one programming language, which one would it be?
submitted by /u/SebastianSchmitz
[link] [comments]
If you were only able to learn one programming language, which one would it be?
If you were only able to learn one programming language, which one would it be?
submitted by /u/SebastianSchmitz
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Is there anything I can do to an old Android phone to make it a bad grab for thieves?
I'm going to an event around New Year's, and lately where I live, leaving a concert or big event is becoming this gauntlet of thieves just mobbing people and grabbing anything they can. So going with a burner phone, bit of cash, and a dummy wallet.
The burner is an HTC U11 and prepaid sim. Just Uber and maybe a couple other apps installed to get photos off the phone before attempting to leave.
But is there anything I can do to this phone to make it an unholy pain for the thieves? At the very least I imagine they'll try a factory reset immediately, but might leave that until the next morning. It's not like the police would do anything even if I brought them video, photos, a full name and address of the thief.
submitted by /u/OGLizard
[link] [comments]
Is there anything I can do to an old Android phone to make it a bad grab for thieves?
I'm going to an event around New Year's, and lately where I live, leaving a concert or big event is becoming this gauntlet of thieves just mobbing people and grabbing anything they can. So going with a burner phone, bit of cash, and a dummy wallet.
The burner is an HTC U11 and prepaid sim. Just Uber and maybe a couple other apps installed to get photos off the phone before attempting to leave.
But is there anything I can do to this phone to make it an unholy pain for the thieves? At the very least I imagine they'll try a factory reset immediately, but might leave that until the next morning. It's not like the police would do anything even if I brought them video, photos, a full name and address of the thief.
submitted by /u/OGLizard
[link] [comments]
KitPloit - PenTest Tools!
laZzzy - Shellcode Loader, Developed Using Different Open-Source Libraries, That Demonstrates Different Execution Techniques
laZzzy - Shellcode Loader, Developed Using Different Open-Source Libraries, That Demonstrates Different Execution Techniques
KitPloit - PenTest & Hacking Tools
laZzzy - Shellcode Loader, Developed Using Different Open-Source Libraries, That Demonstrates Different Execution Techniques
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Social Engineering: What Is Social Engineering? | Part 2
https://cdn-images-1.medium.com/max/2000/0*Czvs8yhuMG0QXKPn.png
In the last blog, we briefly overview social engineering and how it can be used in real life. In this blog, we'll learn about what is…
Continue reading on Medium »
Social Engineering: What Is Social Engineering? | Part 2
https://cdn-images-1.medium.com/max/2000/0*Czvs8yhuMG0QXKPn.png
In the last blog, we briefly overview social engineering and how it can be used in real life. In this blog, we'll learn about what is…
Continue reading on Medium »
Community Feedback: Thinking of starting all in one offensive security course
https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/
<!-- SC_OFF -->Please remove this if it violates any rules. I wish to be respectful to the community. Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag. I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week. If such a certification were to be created would you pay for it? If so what would you like to see in the course to make it better than others? I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities. <!-- SC_ON --> submitted by /u/Own-Cherry6760 (https://www.reddit.com/user/Own-Cherry6760)
[link] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/) [comments] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/)
https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/
<!-- SC_OFF -->Please remove this if it violates any rules. I wish to be respectful to the community. Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag. I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week. If such a certification were to be created would you pay for it? If so what would you like to see in the course to make it better than others? I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities. <!-- SC_ON --> submitted by /u/Own-Cherry6760 (https://www.reddit.com/user/Own-Cherry6760)
[link] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/) [comments] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
ublock ad blocker
Do y'all know if this is a virus cause someone at my school said it was good but she's a good hacker so idk if I can trust her
submitted by /u/HJGAMER5
[link] [comments]
ublock ad blocker
Do y'all know if this is a virus cause someone at my school said it was good but she's a good hacker so idk if I can trust her
submitted by /u/HJGAMER5
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Community Feedback: Thinking of starting all in one offensive security course.
Please remove this if it violates any rules. I wish to be respectful to the community.
Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag.
I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week.
If such a certification were to be created would you pay for it?
If so what would you like to see in the course to make it better than others?
I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities.
submitted by /u/Own-Cherry6760
[link] [comments]
Community Feedback: Thinking of starting all in one offensive security course.
Please remove this if it violates any rules. I wish to be respectful to the community.
Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag.
I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week.
If such a certification were to be created would you pay for it?
If so what would you like to see in the course to make it better than others?
I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities.
submitted by /u/Own-Cherry6760
[link] [comments]
https://b.thumbs.redditmedia.com/hN4AogiCFv7KYNub4ll2z6K82hVgvQ1Nu-mC8cc8STY.jpg I found a XSS in an electron app. The application has the ability to import files, which are zipped. In the zipped file there is a js file where I was able to pop and alert().
Now the goal is to get RCE.
In the main there is this funtion which opens a external url but you are only allowed to pass HTTPS links.
Vulnerable function in main.js?
My first plan was changing the prototype function.
Changing function in zipped file.
This doesn't work. The last alert does say true though.
Are there any other ways of exploiting the maybe vulnerable function in main?
submitted by /u/kamiel20
[link] [comments]
Now the goal is to get RCE.
In the main there is this funtion which opens a external url but you are only allowed to pass HTTPS links.
Vulnerable function in main.js?
My first plan was changing the prototype function.
Changing function in zipped file.
This doesn't work. The last alert does say true though.
Are there any other ways of exploiting the maybe vulnerable function in main?
submitted by /u/kamiel20
[link] [comments]