Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
hacking: security in practice
Is it possible for someone to hack your computer and you never know?

Hello all, I am interested in learning more about cyber security and I have been perusing this subreddit!



I was curious about this. I know there are different ways for your information to be exploited, but if someone was really good, is it possible for them to have access to the contents of your computer, your emails, texts, accounts, etc. without you ever knowing? (i.e. my stupid virus scanner software doesnt know?) Thank you!

submitted by /u/DumbMedStudent69420
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Bootcamp Advice

Hello everyone,

I wanted to ask about some general advice for my career path.

As for relevant information,I am from Germany, thats why the popular IT Helpdesk -> certs -> Cybersec career doesnt work for me. Most jobs here require an IT apprenticeship or more often an actual degree.

Now, i have the opportunity to visit a bootcamp to actually get a job without having to do either of those two. Of course at a far lower entry salary.

I have the option to choose between a Cybersecurity bootcamp (12 weeks) by Ironhack, however i cant really see what career paths this would open. There are no actual certs included and you cant really learn anything that makes you qualified in ITsec in 12 weeks, imo. So, i think the perspectives look bleak.

Other options are Web dev, Java dev, or Data Science. Now, my question is, which one of all of these would you guys recommend to 1. get a job and 2. maybe get some relevant knowledge for a following ITsec career.

I was thinking the most useful one would be Web dev for Back end knowledge and Javascript, but maybe someone knows better ways to go.

Any input is much appreciated :)

submitted by /u/ovonir
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
School filter

(Not sure if this is the right sub) My school has a web filter called forti guard and it really gets in my way, do you guys know how to circumvent this? I've already tried using VPNs and proxy sites but they're all blocked so I'm going to Reddit because I'm all out of ideas

submitted by /u/Logan_-_
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Do you believe the Russian hack on the pipeline?

Just seems odd to me they somehow instantly were able to determine this was some "new" Russian hacking group with no explanation as to why they were found to be the guilty party.

submitted by /u/apersst
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
https://b.thumbs.redditmedia.com/lZjN-bJT2ASIvH937S-lWS8YlYkPeyzw9uSy4aa6aQc.jpg

https://preview.redd.it/e3o6py8ysqy61.png?width=3775&format=png&auto=webp&s=e4015e7d2a3d03b58e43d58f3d2902c6e655cab0



Two weeks ago I found 7 passwordless VNC connections that allow monitoring and switching on and off of oilfield pumps.



This is all very dangerous and I believe it is due to a single company providing the system.



Here are the companies that you can access via vnc:

XXX:XXX.XXX.155:5800 (Texas)

XXX:XXX.XXX.106:5800 (San Diego)

XXX:XXX.XXX.183:5800 (Colorado)

XXX:XXX.XXX.184:5800 (Colorado)

XXX:XXX.XXX.185:5800 (Colorado)

XXX:XXX.XXX.112:5900 (Chicago)

XXX:XXX.XXX.142:5900 (Chicago)

(addresses removed - only the last digits are correct)



I thought they would fix after what happened to coloninan pipeline. But nothing is still everything

accessible by everyone and can cause problems.



I found these addresses on shodan.

submitted by /u/LargeTrader
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
interesting problem that i have

so right now I'm using data cause my dad did something that makes our home wifi have a sign in portal thing and idk the password of that, any way to bypass that and use wifi??? I tried a vpn but that won't work...

I don't think there is a way to bypass it but just asking because some hackerman might know haha

if you need to know I'm using a redmi note 8 on Android 11 and a windows laptop, I don't mind which one of these gets connection any is fine...

also I have a vodafone router and isp is vodafone

submitted by /u/ScxrDoom
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
[hardware] Can I just short these wifi antenas to neuter my tv decoder?

Hi, I have this TV decoder that my ISP/tv-provider gave me, and which we must forcibly use to see cable. It creates a wifi network on it's own, with a default name (which includes my ISP's name) and probably resets to a default password. I want to neuter it, since I have configured it to turn the network off, but it just keeps turning it on on its' own and I don't want watch for vulnerabilities on that network, since I can't configure it that much and uses WPS too.

Here's how the wifi connectors look which is pretty standart

I don't want to damage it or mod it more than I can fix in order to return it later if we move or change ISP. I could simply remove the antenas and be done, but I'm afraid it might notify the ISP, log errors that when I ask for support they'll notice, or prompt an error or whatever.

What I want to do (but I'm open to suggestions) is shorting the antenna connector. I measured the antennas' resistance but it seems is lower than 0.2 ohms and it actually has full continuity. Is this ok? would there be a problem long term or something?

Thanks in advance.

submitted by /u/pinchitony
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Bypass User Account Control (UAC) to gain elevated (Administrator) privileges to run any program at a high integrity level. 
Requirements
Administrator account UAC notification level set to default or lower
How it works
ByeIntegrity hijacks a DLL located in the Native Image Cache (NIC). The NIC is used by the .NET Framework to store optimized .NET Assemblies (https://www.kitploit.com/search/label/Assemblies) that have been generated from programs like Ngen, the .NET Framework Native Image Generator. Because Ngen is usually run under the current user with Administrative privileges through the Task Scheduler, the NIC grants modify access for members of the Administrators group. The Microsoft (https://www.kitploit.com/search/label/Microsoft) Management (https://www.kitploit.com/search/label/Management) Console (https://www.kitploit.com/search/label/Console) (MMC) Windows Firewall (https://www.kitploit.com/search/label/Firewall) Snap-in uses the .NET Framework, and upon initializing it, modules from the NIC are loaded into the MMC process. The MMC executable uses AutoElevate, a mechanism Windows uses that automatically elevates a process’s token without UAC prompting. ByeIntegrity hijacks a specific DLL located in the NIC named Accessibility.ni.dll. It writes some shellcode into an appropriately-sized area of padding located in the .text section of the DLL. The entry point of the DLL is then updated to point to the shellcode. Upon DLL load, the entry point (which is actually the shellcode) is executed. The shellcode calculates the address of kernel32!CreateProcessW, creates a new instance of cmd.exe running as an Administrator, and then simply returns TRUE. This is only for the DLL_PROCESS_ATTACH reason; all other reasons will immediately return TRUE.
UACMe
This attack is implemented in UACMe as method #63. If you want to try out this attack, please, use UACMe first. The attack is the same, however, UACMe uses a different method to modify the NIC. ByeIntegrity uses IFileOperation while UACMe uses ISecurityEditor. In addition, UACMe chooses the correct Accessibility.ni.dll for your system and preforms the system maintenance tasks if necessary (to generate the NIC components). ByeIntegrity simply chooses the first NIC entry that exists (which may/may not be the correct entry that MMC is using) and does not run the system maintenance tasks. ByeIntegrity contains significantly more code than UACMe, so reading the UACMe implementation will be much easier to understand than reading the ByeIntegrity code. Lastly, ByeIntegrity launches a child process during the attack whereas UACMe does not. tl;dr: UACMe is simpler and more effective than ByeIntegrity, so use UACMe first.
Using the code
If you’re reading this then you probably know how to compile the source. Just note that this hasn’t been tested or designed with x86 in mind at all, and it probably won’t work on x86 anyways. Just like UACMe, I will never upload compiled binaries to this repo. There are always people who want the world to crash and burn, and I'm not going to provide an easy route for them to run this on somebody else's computer and cause intentional damage. I also don't want script-kiddies to use this attack without understanding what it does and the damage it can cause.
Supported Versions
This attack works from Windows 7 (7600) up until the latest version of Windows 10.

Download Byeintegrity-Uac (https://github.com/AzAgarampur/byeintegrity-uac)

___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
GIF
KitPloit - PenTest Tools!
ByeIntegrity-UAC - Bypass UAC By Hijacking A DLL Located In The Native Image Cache

https://1.bp.blogspot.com/-ul6nQMxjEE8/YJgZrfaJTCI/AAAAAAAAWH8/ph3XBkphgAkqi5C2QAspk1s4e9juYjuzwCNcBGAsYHQ/w640-h356/byeintegrity-uac_1_example.gif Bypass User Account Control (UAC) to gain elevated (Administrator) privileges to run any program at a high integrity level. Requirements* Administrator account
* UAC notification level set to default or lower How it worksByeIntegrity hijacks a DLL located in the Native Image Cache (NIC). The NIC is used by the .NET Framework to store optimized .NET Assemblies that have been generated from programs like Ngen, the .NET Framework Native Image Generator. Because Ngen is usually run under the current user with Administrative privileges through the Task Scheduler, the NIC grants modify access for members of the Administrators group.

The Microsoft Management Console (MMC) Windows Firewall Snap-in uses the .NET Framework, and upon initializing it, modules from the NIC are loaded into the MMC process. The MMC executable uses AutoElevate, a mechanism Windows uses that automatically elevates a process’s token without UAC prompting.

ByeIntegrity hijacks a specific DLL located in the NIC named Accessibility.ni.dll. It writes some shellcode into an appropriately-sized area of padding located in the .textsection of the DLL. The entry point of the DLL is then updated to point to the shellcode. Upon DLL load, the entry point (which is actually the shellcode) is executed. The shellcode calculates the address of kernel32!CreateProcessW, creates a new instance of cmd.exerunning as an Administrator, and then simply returns TRUE. This is only for the DLL_PROCESS_ATTACHreason; all other reasons will immediately return TRUE. UACMeThis attack is implemented in UACMe as method #63. If you want to try out this attack, please, use UACMe first. The attack is the same, however, UACMe uses a different method to modify the NIC. ByeIntegrity uses IFileOperationwhile UACMe uses ISecurityEditor. In addition, UACMe chooses the correct Accessibility.ni.dllfor your system and preforms the system maintenance tasks if necessary (to generate the NIC components). ByeIntegrity simply chooses the first NIC entry that exists (which may/may not be the correct entry that MMC is using) and does not run the system maintenance tasks. ByeIntegrity contains significantly more code than UACMe, so reading the UACMe implementation will be much easier to understand than reading the ByeIntegrity code. Lastly, ByeIntegrity launches a child process during the attack whereas UACMe does not.

tl;dr: UACMe is simpler and more effective than ByeIntegrity, so use UACMe first. Using the codeIf you’re reading this then you probably know how to compile the source. Just note that this hasn’t been tested or designed with x86 in mind at all, and it probably won’t work on x86 anyways.

Just like UACMe, I will never upload compiled binaries to this repo. There are always people who want the world to crash and burn, and I'm not going to provide an easy route for them to run this on somebody else's computer and cause intentional damage. I also don't want script-kiddies to use this attack without understanding what it does and the damage it can cause. Supported VersionsThis attack works from Windows 7 (7600) up until the latest version of Windows 10. Download Byeintegrity-Uac