Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Social Engineering: What Is Social Engineering? | Part 2
https://cdn-images-1.medium.com/max/2000/0*Czvs8yhuMG0QXKPn.png
In the last blog, we briefly overview social engineering and how it can be used in real life. In this blog, we'll learn about what is…
Continue reading on Medium »
Social Engineering: What Is Social Engineering? | Part 2
https://cdn-images-1.medium.com/max/2000/0*Czvs8yhuMG0QXKPn.png
In the last blog, we briefly overview social engineering and how it can be used in real life. In this blog, we'll learn about what is…
Continue reading on Medium »
Community Feedback: Thinking of starting all in one offensive security course
https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/
<!-- SC_OFF -->Please remove this if it violates any rules. I wish to be respectful to the community. Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag. I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week. If such a certification were to be created would you pay for it? If so what would you like to see in the course to make it better than others? I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities. <!-- SC_ON --> submitted by /u/Own-Cherry6760 (https://www.reddit.com/user/Own-Cherry6760)
[link] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/) [comments] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/)
https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/
<!-- SC_OFF -->Please remove this if it violates any rules. I wish to be respectful to the community. Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag. I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week. If such a certification were to be created would you pay for it? If so what would you like to see in the course to make it better than others? I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities. <!-- SC_ON --> submitted by /u/Own-Cherry6760 (https://www.reddit.com/user/Own-Cherry6760)
[link] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/) [comments] (https://www.reddit.com/r/Pentesting/comments/zp3ffc/community_feedback_thinking_of_starting_all_in/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
ublock ad blocker
Do y'all know if this is a virus cause someone at my school said it was good but she's a good hacker so idk if I can trust her
submitted by /u/HJGAMER5
[link] [comments]
ublock ad blocker
Do y'all know if this is a virus cause someone at my school said it was good but she's a good hacker so idk if I can trust her
submitted by /u/HJGAMER5
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Community Feedback: Thinking of starting all in one offensive security course.
Please remove this if it violates any rules. I wish to be respectful to the community.
Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag.
I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week.
If such a certification were to be created would you pay for it?
If so what would you like to see in the course to make it better than others?
I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities.
submitted by /u/Own-Cherry6760
[link] [comments]
Community Feedback: Thinking of starting all in one offensive security course.
Please remove this if it violates any rules. I wish to be respectful to the community.
Hey folks I'm thinking of building a course which provides entry level students and professionals with the best of Network pentesting + Webapp security + Adversary simulations with Labs in online LIVE 6 months course at a sub $1000 price tag.
I thought of this because I took certification from Offsec and couple of SANS courses both had freakishly expensive price tags to capitalize on the market. With no one to guide and mentor it was harder to focus on self paced Offsec courses with my full time job hence I want to provide a live course where students can learn over the weekends and do homework during the week.
If such a certification were to be created would you pay for it?
If so what would you like to see in the course to make it better than others?
I want to make the course a bit crowdsourced to fix the growing pains of these existing certification authorities.
submitted by /u/Own-Cherry6760
[link] [comments]
https://b.thumbs.redditmedia.com/hN4AogiCFv7KYNub4ll2z6K82hVgvQ1Nu-mC8cc8STY.jpg I found a XSS in an electron app. The application has the ability to import files, which are zipped. In the zipped file there is a js file where I was able to pop and alert().
Now the goal is to get RCE.
In the main there is this funtion which opens a external url but you are only allowed to pass HTTPS links.
Vulnerable function in main.js?
My first plan was changing the prototype function.
Changing function in zipped file.
This doesn't work. The last alert does say true though.
Are there any other ways of exploiting the maybe vulnerable function in main?
submitted by /u/kamiel20
[link] [comments]
Now the goal is to get RCE.
In the main there is this funtion which opens a external url but you are only allowed to pass HTTPS links.
Vulnerable function in main.js?
My first plan was changing the prototype function.
Changing function in zipped file.
This doesn't work. The last alert does say true though.
Are there any other ways of exploiting the maybe vulnerable function in main?
submitted by /u/kamiel20
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Tool reccomendations
A relative just died.
In a few days I'll be driving a couple of hours away to help clean up after, one of the things I'll have to deal with is gaining access to his devices. Looking at lower end android devices, several windows laptops ranging from Win7 to Win 10 and some likely unencrypted ssds.
I work in IT and do some hacking for fun but have very little experience with gaining access to devices.
What tools should I bring, I have a BadUsb that I plan to run a word list trough if all else fails. I have a couple of bootable USBs and a laptop.
Anybody with experience doing this? I don't even need to exfiltrate passwords, as easy as that would make things, all I really need is short term access to accounts so I can stop things from being billed.
submitted by /u/4esv
[link] [comments]
Tool reccomendations
A relative just died.
In a few days I'll be driving a couple of hours away to help clean up after, one of the things I'll have to deal with is gaining access to his devices. Looking at lower end android devices, several windows laptops ranging from Win7 to Win 10 and some likely unencrypted ssds.
I work in IT and do some hacking for fun but have very little experience with gaining access to devices.
What tools should I bring, I have a BadUsb that I plan to run a word list trough if all else fails. I have a couple of bootable USBs and a laptop.
Anybody with experience doing this? I don't even need to exfiltrate passwords, as easy as that would make things, all I really need is short term access to accounts so I can stop things from being billed.
submitted by /u/4esv
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Hardware hacking essentials
Hi, I'm planning on getting into hardware hacking. I understand that tools may vary based on the device, but I was looking for the physical tools you'd use that'd come in handy when hacking any device.
FYI, I'm not a newbie. I know programming and networking (a fair amount). I'm just looking at how to implement it in hardware.
submitted by /u/brni_lmao
[link] [comments]
Hardware hacking essentials
Hi, I'm planning on getting into hardware hacking. I understand that tools may vary based on the device, but I was looking for the physical tools you'd use that'd come in handy when hacking any device.
FYI, I'm not a newbie. I know programming and networking (a fair amount). I'm just looking at how to implement it in hardware.
submitted by /u/brni_lmao
[link] [comments]
Revolutionize Your Hacking Skills with ChatGPT: The AI Assistant That Will Take Your Cybersecurity…
As a penetration tester or bug bounty hunter, you know the importance of having the right tools at your disposal. ChatGPT is a powerful AI…Continue reading on Medium »
Read more...
As a penetration tester or bug bounty hunter, you know the importance of having the right tools at your disposal. ChatGPT is a powerful AI…Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
TryHackMe AoC 2022 =>[Day 18] Sigma Lumberjack Lenny Learns New Rules
https://cdn-images-1.medium.com/max/944/1*eXaFuMjRd5zwKes_Efb_xw.png
Disclaimer: The purpose of this article is to help you at times when you are frustrated to perform this task.
Continue reading on Medium »
TryHackMe AoC 2022 =>[Day 18] Sigma Lumberjack Lenny Learns New Rules
https://cdn-images-1.medium.com/max/944/1*eXaFuMjRd5zwKes_Efb_xw.png
Disclaimer: The purpose of this article is to help you at times when you are frustrated to perform this task.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HACKER FEST: 2019 CTF
https://cdn-images-1.medium.com/max/875/0*_HrEAfNVz_BZuZWs.jpeg
Conheci este CTF através do canal CATx003_ no YouTube que propôs um desafio para hackear 30 máquinas em 30 dias.
Continue reading on Medium »
HACKER FEST: 2019 CTF
https://cdn-images-1.medium.com/max/875/0*_HrEAfNVz_BZuZWs.jpeg
Conheci este CTF através do canal CATx003_ no YouTube que propôs um desafio para hackear 30 máquinas em 30 dias.
Continue reading on Medium »