hacking: security in practice
Emulating USB device's command
Hi, I have Wacom tablet with buttons on it and I need to emulate its button.
That button is DisplayToggle and it cycles between monitors so I can easily use that tablet on different monitors. However when you have 3 monitors, you are on monitor 2 and want to go to 1, you have to press it 2 times (2 -> 3 -> 1). I'd like to make my device which will keep track of current active monitor and send that command multiple times.
I have several ideas how this could be done.
1. Hook into tablet's driver and send that command directly. I don't have enough experience with reverse engineering so I guess this is pass for me.
2. Wintab API - this would actually be possible but I couldn't edit system context's mapping. I have only managed to do this for currently active WinForms window - as soon as I clicked outside of that window, my mapping went back to system's. I don't even know if that Wacom driver uses Wintab API and has it's own context or what... I think this would be the cleanest way, if it worked.
3. This is method I am currently trying to do. Emulate HID command and send it to driver. Is this even possible in Windows? Everything I can find is how to send command to device, but literally nothing about emulating device's command and sending it to Windows. I have captured raw data using Wireshark and now if there was any way to "inject" it into Windows HID driver, this could actually work. But I don't want to create new device - I want to inject command like it came from existing device.
4. My last idea is to create tablet "copy" using some MCU, give it VID and PID and Windows would see two tablets. One real and one copy which would only be sending that single button commands. I think this would be the "easiest", but I don't like this idea that much just because I would have duplicated device in Wacom preferences.
Could you please help me with it somehow?
Thank you in advance.
submitted by /u/TheSpixxyQ
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Emulating USB device's command
Hi, I have Wacom tablet with buttons on it and I need to emulate its button.
That button is DisplayToggle and it cycles between monitors so I can easily use that tablet on different monitors. However when you have 3 monitors, you are on monitor 2 and want to go to 1, you have to press it 2 times (2 -> 3 -> 1). I'd like to make my device which will keep track of current active monitor and send that command multiple times.
I have several ideas how this could be done.
1. Hook into tablet's driver and send that command directly. I don't have enough experience with reverse engineering so I guess this is pass for me.
2. Wintab API - this would actually be possible but I couldn't edit system context's mapping. I have only managed to do this for currently active WinForms window - as soon as I clicked outside of that window, my mapping went back to system's. I don't even know if that Wacom driver uses Wintab API and has it's own context or what... I think this would be the cleanest way, if it worked.
3. This is method I am currently trying to do. Emulate HID command and send it to driver. Is this even possible in Windows? Everything I can find is how to send command to device, but literally nothing about emulating device's command and sending it to Windows. I have captured raw data using Wireshark and now if there was any way to "inject" it into Windows HID driver, this could actually work. But I don't want to create new device - I want to inject command like it came from existing device.
4. My last idea is to create tablet "copy" using some MCU, give it VID and PID and Windows would see two tablets. One real and one copy which would only be sending that single button commands. I think this would be the "easiest", but I don't like this idea that much just because I would have duplicated device in Wacom preferences.
Could you please help me with it somehow?
Thank you in advance.
submitted by /u/TheSpixxyQ
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Emulating USB device's command
Hi, I have Wacom tablet with buttons on it and I need to emulate its button. That button is DisplayToggle and it cycles between monitors so I can...
hacking: security in practice
Can a Network create a Hacking Alert?
Assuming a non employee try's to access an oil pipeline, water source or some other government facility, could the network just block the IP address to prevent being hacked? Is a ransom attack mean the network just has no security software, little security or is a human being expected to be on duty during the attack and turn a switch off?
submitted by /u/Doug6388
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Can a Network create a Hacking Alert?
Assuming a non employee try's to access an oil pipeline, water source or some other government facility, could the network just block the IP address to prevent being hacked? Is a ransom attack mean the network just has no security software, little security or is a human being expected to be on duty during the attack and turn a switch off?
submitted by /u/Doug6388
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Can a Network create a Hacking Alert?
Assuming a non employee try's to access an oil pipeline, water source or some other government facility, could the network just block the IP...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
10 Ways To Improve Your Online Security
https://cdn-images-1.medium.com/max/600/0*S5W3f_fPcHzwmc4H
Don’t Take Your Security Lightly, Before It’s Too Late!
Continue reading on Luis Writes »
___________________________
@hacking_Attack
@Hacking_Video
10 Ways To Improve Your Online Security
https://cdn-images-1.medium.com/max/600/0*S5W3f_fPcHzwmc4H
Don’t Take Your Security Lightly, Before It’s Too Late!
Continue reading on Luis Writes »
___________________________
@hacking_Attack
@Hacking_Video
Medium
10 Ways To Improve Your Online Security
Don’t Take Your Security Lightly, Before It’s Too Late!
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Asistencia sanitaria irlandesa cierra los sistemas de TI tras un ataque de ransomware.
https://cdn-images-1.medium.com/max/1421/0*Yyts6JG4zrhVQ6bm
PUBLICADO EN 14 MAYO, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Asistencia sanitaria irlandesa cierra los sistemas de TI tras un ataque de ransomware.
https://cdn-images-1.medium.com/max/1421/0*Yyts6JG4zrhVQ6bm
PUBLICADO EN 14 MAYO, 2021POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Asistencia sanitaria irlandesa cierra los sistemas de TI tras un ataque de ransomware.
PUBLICADO EN 14 MAYO, 2021POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hello, You’ve Reached The Darker Side
https://cdn-images-1.medium.com/max/2600/0*8nQ-WK2aZfhzVmmf
Hacking happens. We’re here to help. Ourselves.
Continue reading on Medium »
Hello, You’ve Reached The Darker Side
https://cdn-images-1.medium.com/max/2600/0*8nQ-WK2aZfhzVmmf
Hacking happens. We’re here to help. Ourselves.
Continue reading on Medium »
How I got my first bounty
The journey from duplicates, P5, NA, Out of scopes to a valid P4 bug was really challenging. I did a lot of mistakes, corrected them…Continue reading on Medium »
Read more...
The journey from duplicates, P5, NA, Out of scopes to a valid P4 bug was really challenging. I did a lot of mistakes, corrected them…Continue reading on Medium »
Read more...
IDOR leads to Change the password of all users (ATO).
https://skypatil.medium.com/idor-leads-to-change-the-password-of-all-users-ato-b598f610a009?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://skypatil.medium.com/idor-leads-to-change-the-password-of-all-users-ato-b598f610a009?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
IDOR leads to Change the password of all users (ATO).
Hi Mates,, I am Akash Patil (@skypatil98) from India . I am in bug bounty field from last 2 years. Today I’m gonna share an interesting…
Hi Mates,, I am Akash Patil (@skypatil98) from India . I am in bug bounty field from last 2 years. Today I’m gonna share an interesting…Continue reading on Medium » (https://skypatil.medium.com/idor-leads-to-change-the-password-of-all-users-ato-b598f610a009?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
IDOR leads to Change the password of all users (ATO).
Hi Mates,, I am Akash Patil (@skypatil98) from India . I am in bug bounty field from last 2 years. Today I’m gonna share an interesting…
The journey from duplicates, P5, NA, Out of scopes to a valid P4 bug was really challenging. I did a lot of mistakes, corrected them…Continue reading on Medium » (https://anishkashukla.medium.com/how-i-got-my-first-bounty-897dba1bcff8?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
WinPmem : The Multi-Platform Memory Acquisition Tool
WinPmem has been the default open source memory acquisition driver for windows for a long time. It used to live in the Rekall project, but has recently been separated into its own repository. Description WinPmem is a physical memory acquisition tool with the following features: Open source Support for WinXP – Win 10, x86 + […]
The post WinPmem : The Multi-Platform Memory Acquisition Tool appeared first on Kali Linux Tutorials.
WinPmem : The Multi-Platform Memory Acquisition Tool
WinPmem has been the default open source memory acquisition driver for windows for a long time. It used to live in the Rekall project, but has recently been separated into its own repository. Description WinPmem is a physical memory acquisition tool with the following features: Open source Support for WinXP – Win 10, x86 + […]
The post WinPmem : The Multi-Platform Memory Acquisition Tool appeared first on Kali Linux Tutorials.
Mubeng - An Incredibly Fast Proxy Checker And IP Rotator With Ease
http://www.kitploit.com/2021/05/mubeng-incredibly-fast-proxy-checker.html
http://www.kitploit.com/2021/05/mubeng-incredibly-fast-proxy-checker.html
Proxy IP rotator: Rotates your IP address for every specific request. Proxy checker: Check your proxy IP which is still alive. All HTTP/S methods are supported. HTTP & SOCKSv5 proxy protocols (https://www.kitploit.com/search/label/Protocols) apply. All parameters & URIs are passed. Easy to use: You can just run it against your proxy file, and choose the action you want! Cross-platform: whether you are Windows, Linux, Mac, or even Raspberry Pi, you can run it very well.
Why mubeng?
It's fairly simple, there is no need for additional configuration. mubeng has 2 core functionality:
1. Run proxy server as proxy IP rotation
This is useful to avoid different kinds of IP ban, i.e. bruteforce (https://www.kitploit.com/search/label/Bruteforce) protection, API rate-limiting or WAF blocking based on IP. We also leave it entirely up to user to use proxy pool resources from anywhere.
2. Perform proxy checks
So, you don't need any extra proxy checking tools out there if you want to check your proxy pool.
Installation
Binary
Simply, download a pre-built binary from releases page (https://github.com/kitabisa/mubeng/releases) and run!
Docker
Pull the Docker (https://docs.docker.com/get-docker/) image by running: ▶ docker pull kitabisa/mubeng
Source
Using Go (v1.15+) compiler: ▶ GO111MODULE=on go get -u ktbs.dev/mubeng/cmd/mubeng NOTE: The same command above also works for updating.
— or
Manual building executable from source code: ▶ git clone https://github.com/kitabisa/mubeng
▶ cd mubeng
▶ make build
▶ (sudo) mv ./bin/mubeng /usr/local/bin
▶ make clean
Usage
For usage, it's always required to provide your proxy list, whether it is used to check or as a proxy pool for your proxy IP rotation.
Basic
▶ mubeng [-c|-a :8080] -f file.txt [options...]
Options
Here are all the options it supports. ▶ mubeng -h Flag Description -f, --file Proxy file. -a, --address : Run proxy server. -d, --daemon Daemonize proxy server. -c, --check To perform proxy live check. -t, --timeout Max. time allowed for proxy server/check (default: 30s). -r, --rotate Rotate proxy IP for every AFTER request (default: 1). -v, --verbose Dump HTTP request/responses or show died proxy on check. -o, --output Log output from proxy server or live check. -u, --update Update mubeng to the latest stable version. -V, --version Show current mubeng version.
NOTES:
Rotations are counted for all requests, even if the request fails. Rotation means random, NOT choosing a proxy after/increment from proxy pool. We do not set up conditions if a proxy has been used. So, there is no guarantee if your request reaches the N value (-r/--rotate) your IP proxy will rotate. Daemon mode (-d/--daemon) will install mubeng as a service on the (Linux/OSX) system/setting up callback (Windows). Hence you can control service with journalctl, service or net (for Windows) command to start/stop proxy server. Whenever you activate the daemon mode, it works by forcibly stop and uninstalling the existing mubeng service, then re-install and starting it up in daemon. Verbose mode (-v/--verbose) and timeout (-t/--timeout) apply to both proxy check and proxy IP rotation actions. HTTP traffic requests and responses is displayed when verbose mode (-v/--verbose) is enabled, but We DO NOT explicitly display the request/response body, and All cookie values in headers will be redacted automatically. If you use output option (-o/--output) to run proxy IP rotator, request/response headers are NOT written to the log file. A timeout option (-t/--timeout) value is a possibly signed sequence of decimal numbers, each with optional fraction and a unit suffix, such as "5s", "300ms", "-1.5h" or "2h45m". Valid time units are "ns", "us" (or "µs"), "ms", "s", "m", and "h".
Examples
Why mubeng?
It's fairly simple, there is no need for additional configuration. mubeng has 2 core functionality:
1. Run proxy server as proxy IP rotation
This is useful to avoid different kinds of IP ban, i.e. bruteforce (https://www.kitploit.com/search/label/Bruteforce) protection, API rate-limiting or WAF blocking based on IP. We also leave it entirely up to user to use proxy pool resources from anywhere.
2. Perform proxy checks
So, you don't need any extra proxy checking tools out there if you want to check your proxy pool.
Installation
Binary
Simply, download a pre-built binary from releases page (https://github.com/kitabisa/mubeng/releases) and run!
Docker
Pull the Docker (https://docs.docker.com/get-docker/) image by running: ▶ docker pull kitabisa/mubeng
Source
Using Go (v1.15+) compiler: ▶ GO111MODULE=on go get -u ktbs.dev/mubeng/cmd/mubeng NOTE: The same command above also works for updating.
— or
Manual building executable from source code: ▶ git clone https://github.com/kitabisa/mubeng
▶ cd mubeng
▶ make build
▶ (sudo) mv ./bin/mubeng /usr/local/bin
▶ make clean
Usage
For usage, it's always required to provide your proxy list, whether it is used to check or as a proxy pool for your proxy IP rotation.
Basic
▶ mubeng [-c|-a :8080] -f file.txt [options...]
Options
Here are all the options it supports. ▶ mubeng -h Flag Description -f, --file Proxy file. -a, --address : Run proxy server. -d, --daemon Daemonize proxy server. -c, --check To perform proxy live check. -t, --timeout Max. time allowed for proxy server/check (default: 30s). -r, --rotate Rotate proxy IP for every AFTER request (default: 1). -v, --verbose Dump HTTP request/responses or show died proxy on check. -o, --output Log output from proxy server or live check. -u, --update Update mubeng to the latest stable version. -V, --version Show current mubeng version.
NOTES:
Rotations are counted for all requests, even if the request fails. Rotation means random, NOT choosing a proxy after/increment from proxy pool. We do not set up conditions if a proxy has been used. So, there is no guarantee if your request reaches the N value (-r/--rotate) your IP proxy will rotate. Daemon mode (-d/--daemon) will install mubeng as a service on the (Linux/OSX) system/setting up callback (Windows). Hence you can control service with journalctl, service or net (for Windows) command to start/stop proxy server. Whenever you activate the daemon mode, it works by forcibly stop and uninstalling the existing mubeng service, then re-install and starting it up in daemon. Verbose mode (-v/--verbose) and timeout (-t/--timeout) apply to both proxy check and proxy IP rotation actions. HTTP traffic requests and responses is displayed when verbose mode (-v/--verbose) is enabled, but We DO NOT explicitly display the request/response body, and All cookie values in headers will be redacted automatically. If you use output option (-o/--output) to run proxy IP rotator, request/response headers are NOT written to the log file. A timeout option (-t/--timeout) value is a possibly signed sequence of decimal numbers, each with optional fraction and a unit suffix, such as "5s", "300ms", "-1.5h" or "2h45m". Valid time units are "ns", "us" (or "µs"), "ms", "s", "m", and "h".
Examples
For example, you've proxy pool (proxies.txt) as: http://127.0.0.1:8080
https://127.0.0.1:3128
socks5://127.0.0.1:2121
...
... Because we use auto-switch transport, mubeng can accept multiple proxy protocol schemes at once.
Please refer to documentation (https://pkg.go.dev/ktbs.dev/mubeng/pkg/mubeng#Transport) for this package.
Proxy checker
Pass --check flag in command to perform proxy checks: ▶ mubeng -f proxies.txt --check --output live.txt The above case also uses --output flag to save a live proxy into file (live.txt) from checking result.
https://127.0.0.1:3128
socks5://127.0.0.1:2121
...
... Because we use auto-switch transport, mubeng can accept multiple proxy protocol schemes at once.
Please refer to documentation (https://pkg.go.dev/ktbs.dev/mubeng/pkg/mubeng#Transport) for this package.
Proxy checker
Pass --check flag in command to perform proxy checks: ▶ mubeng -f proxies.txt --check --output live.txt The above case also uses --output flag to save a live proxy into file (live.txt) from checking result.