Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Operation Aurora: The Largest Cyber Heist in History
https://cdn-images-1.medium.com/max/1920/1*JMma9W5RPUeJrw63PrImuQ.jpeg
Are you aware of the biggest cyber heist in history? Operation Aurora, a series of cyber attacks that occurred between 2009 and 2010…
Continue reading on Kopfkino »
Operation Aurora: The Largest Cyber Heist in History
https://cdn-images-1.medium.com/max/1920/1*JMma9W5RPUeJrw63PrImuQ.jpeg
Are you aware of the biggest cyber heist in history? Operation Aurora, a series of cyber attacks that occurred between 2009 and 2010…
Continue reading on Kopfkino »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Digital False Flag Operations: A How-To Guide
https://cdn-images-1.medium.com/max/2600/1*PS19KRB6Fepy9Ui5PETBhw.jpeg
Pinning your malicious cyber operations to the opposition
Continue reading on Medium »
Digital False Flag Operations: A How-To Guide
https://cdn-images-1.medium.com/max/2600/1*PS19KRB6Fepy9Ui5PETBhw.jpeg
Pinning your malicious cyber operations to the opposition
Continue reading on Medium »
Hacking on Medium
Beyond Penetration Testing: Red Teaming
https://cdn-images-1.medium.com/max/1024/0*vDZlx5iuCqRXobKe.jpeg
Red teaming is a powerful tool for organizations to identify vulnerabilities and weaknesses in their systems and processes. It involves…
Continue reading on Medium »
Beyond Penetration Testing: Red Teaming
https://cdn-images-1.medium.com/max/1024/0*vDZlx5iuCqRXobKe.jpeg
Red teaming is a powerful tool for organizations to identify vulnerabilities and weaknesses in their systems and processes. It involves…
Continue reading on Medium »
Medium
Beyond Penetration Testing: Red Teaming
Red teaming is a powerful tool for organizations to identify vulnerabilities and weaknesses in their systems and processes. It involves…
Hacking on Medium
Knox College: Sensitive info ‘may have been compromised’
Continue reading on Medium »
Knox College: Sensitive info ‘may have been compromised’
Continue reading on Medium »
Medium
Knox College: Sensitive info ‘may have been compromised’
GALESBURG — An investigation of Knox College’s ransomware attack revealed that “sensitive information may have been compromised as a result of the incident,” according to an internal email from Knox…
Vice Society Ransomware Group Targets M
https://www.reddit.com/r/redteamsec/comments/10loar9/vice_society_ransomware_group_targets_m/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.trendmicro.com/en_us/research/23/a/vice-society-ransomware-group-targets-manufacturing-companies.html) [comments] (https://www.reddit.com/r/redteamsec/comments/10loar9/vice_society_ransomware_group_targets_m/)
https://www.reddit.com/r/redteamsec/comments/10loar9/vice_society_ransomware_group_targets_m/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.trendmicro.com/en_us/research/23/a/vice-society-ransomware-group-targets-manufacturing-companies.html) [comments] (https://www.reddit.com/r/redteamsec/comments/10loar9/vice_society_ransomware_group_targets_m/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Recon Tool: msprobe
Recon Tool: msprobePost Views: 5 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 2 Minutes msprobeThis tool by puzzlepeaches, lets you find all things on-prem Microsoft for password spraying and enumeration. It will use a list of common subdomains associated with your target apex domain to attempt and discover valid instances of on-prem Microsoft solutions. You can find ADFS servers, RD Web servers, and more. Great for recon and getting ready before spraying attacks as part of your Red Team Assessment.
Screenshots of the tool in action are below:
https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/163191875-61040ed3-b318-4ad4-97c1-c06fb3f7eeba-1024x700.jpeg
See Also: So you want to be a hacker? Offensive Security Courses InstallingInstall the project using pipx
Trending: Offensive Security Tool: Freeze UsageThe tool has four different modules that assist with the discovery of on-prem Microsoft products:
* Exchange
* RD Web
* ADFS
* Skype for Business
The help menu and supported modules are shown below:
https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/SS1-1.png
See Also: Write up: A primer on OS Command Injection Attacks ExamplesFind ADFS servers associated with apex domain:
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Freeze-300x150.png Offensive Security Tool: FreezeJanuary 13, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Dangerzone-300x150.png Digital Forensics Tool: DangerzoneJanuary 6, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/psudohash-300x150.png Offensive Security Tool: PsudohashDecember 30, 2022 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Recon Tool: msprobe first appeared on Black Hat Ethical Hacking.
Recon Tool: msprobe
Recon Tool: msprobePost Views: 5 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 2 Minutes msprobeThis tool by puzzlepeaches, lets you find all things on-prem Microsoft for password spraying and enumeration. It will use a list of common subdomains associated with your target apex domain to attempt and discover valid instances of on-prem Microsoft solutions. You can find ADFS servers, RD Web servers, and more. Great for recon and getting ready before spraying attacks as part of your Red Team Assessment.
Screenshots of the tool in action are below:
https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/163191875-61040ed3-b318-4ad4-97c1-c06fb3f7eeba-1024x700.jpeg
See Also: So you want to be a hacker? Offensive Security Courses InstallingInstall the project using pipx
pipx install git+https://github.com/puzzlepeaches/msprobe.gitTrending: Offensive Security Tool: VillainTrending: Offensive Security Tool: Freeze UsageThe tool has four different modules that assist with the discovery of on-prem Microsoft products:
* Exchange
* RD Web
* ADFS
* Skype for Business
The help menu and supported modules are shown below:
https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/SS1-1.png
See Also: Write up: A primer on OS Command Injection Attacks ExamplesFind ADFS servers associated with apex domain:
msprobe adfs acme.comFind RD Web servers associated with apex domain with verbose output: msprobe rdp acme.com -vFind all Microsoft products hostsed on-prem for a domain: msprobe full acme.comClone the repo from here: GitHub Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent Tools* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Shotlooter-300x150.png Recon Tool: ShotlooterJanuary 20, 2023* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Freeze-300x150.png Offensive Security Tool: FreezeJanuary 13, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Dangerzone-300x150.png Digital Forensics Tool: DangerzoneJanuary 6, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/psudohash-300x150.png Offensive Security Tool: PsudohashDecember 30, 2022 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Recon Tool: msprobe first appeared on Black Hat Ethical Hacking.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit Released
Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit ReleasedPost Views: 49 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Akamai researchers have released proof of concept exploit code for a critical Windows CryptoAPI vulnerability, which was discovered by the NSA and U.K.’s NCSC and allows for MD5-collision certificate spoofing. Tracked as CVE-2022-34689, this security flaw was addressed with security updates in August 2022, but was not made public by Microsoft until October.
The vulnerability allows unauthenticated attackers to manipulate existing public x.509 certificates to spoof their identity and perform actions such as authentication or code signing as the targeted certificate.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Exploiting the vulnerabilityThe Akamai researchers have also shared an OSQuery to help defenders detect CryptoAPI library versions vulnerable to attacks.
They have found that older versions of Chrome (v48 and earlier) and Chromium-based applications can be exploited, but believe that there are more vulnerable targets in the wild.
The vulnerability can impact the validation of trust for HTTPS connections and signed executable code, files, or emails and can also provide attackers with the ability to perform man-in-the-middle attacks and decrypt confidential information.
Trending: A primer on OS Command Injection Attacks
Trending: Recon Tool: Shotlooter Update your Windows serversThe researchers advise to patch your Windows servers and endpoints with the latest security patch released by Microsoft.
Trending: PoC exploits released for critical bugs in popular WordPress plugins Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-6-3-300x150.png LearnPress: 75,000 WordPress Websites at Risk from Critical VulnerabilitiesJanuary 25, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-5-3-300x150.png Cisco VPN Routers: 19,000 Devices Left Exposed to Remote Command Execution Exploit ChainJanuary 24, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-4-3-300x150.png OneNote Attachments: The Next Frontier in Malware DistributionJanuary 23, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-7-1-300x150.png T-Mobile hacked to steal data of 37 million accounts in API data breachJanuary 20, 2023
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit Released first appeared on Black Hat Ethical Hacking.
Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit Released
Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit ReleasedPost Views: 49 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Akamai researchers have released proof of concept exploit code for a critical Windows CryptoAPI vulnerability, which was discovered by the NSA and U.K.’s NCSC and allows for MD5-collision certificate spoofing. Tracked as CVE-2022-34689, this security flaw was addressed with security updates in August 2022, but was not made public by Microsoft until October.
The vulnerability allows unauthenticated attackers to manipulate existing public x.509 certificates to spoof their identity and perform actions such as authentication or code signing as the targeted certificate.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Exploiting the vulnerabilityThe Akamai researchers have also shared an OSQuery to help defenders detect CryptoAPI library versions vulnerable to attacks.
They have found that older versions of Chrome (v48 and earlier) and Chromium-based applications can be exploited, but believe that there are more vulnerable targets in the wild.
The vulnerability can impact the validation of trust for HTTPS connections and signed executable code, files, or emails and can also provide attackers with the ability to perform man-in-the-middle attacks and decrypt confidential information.
Trending: A primer on OS Command Injection Attacks
Trending: Recon Tool: Shotlooter Update your Windows serversThe researchers advise to patch your Windows servers and endpoints with the latest security patch released by Microsoft.
Trending: PoC exploits released for critical bugs in popular WordPress plugins Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing?
If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: bleepingcomputer.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2022/03/Merch.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-6-3-300x150.png LearnPress: 75,000 WordPress Websites at Risk from Critical VulnerabilitiesJanuary 25, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-5-3-300x150.png Cisco VPN Routers: 19,000 Devices Left Exposed to Remote Command Execution Exploit ChainJanuary 24, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-4-3-300x150.png OneNote Attachments: The Next Frontier in Malware DistributionJanuary 23, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/01/Images-for-the-News-posts-7-1-300x150.png T-Mobile hacked to steal data of 37 million accounts in API data breachJanuary 20, 2023
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Windows CryptoAPI Flaw Allows Attackers to Spoof Identity, PoC Exploit Released first appeared on Black Hat Ethical Hacking.
Is pentesting that well paid
https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/
<!-- SC_OFF -->I’m I love computers and have wanted to become a penetration for a while now. I am currently having a look at local colleges and 6th forms. I have also looked a lot on indeed to see what skills companies require. I have noticed many junior pentesting jobs are about 30k a year. Where would I go from this position if I were to get it? some senior jobs earn about 70k a year but I would likely not achieve this for years in the field I assume? Thanks in advance Anthony <!-- SC_ON --> submitted by /u/THESEASANIC (https://www.reddit.com/user/THESEASANIC)
[link] (https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/) [comments] (https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/)
https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/
<!-- SC_OFF -->I’m I love computers and have wanted to become a penetration for a while now. I am currently having a look at local colleges and 6th forms. I have also looked a lot on indeed to see what skills companies require. I have noticed many junior pentesting jobs are about 30k a year. Where would I go from this position if I were to get it? some senior jobs earn about 70k a year but I would likely not achieve this for years in the field I assume? Thanks in advance Anthony <!-- SC_ON --> submitted by /u/THESEASANIC (https://www.reddit.com/user/THESEASANIC)
[link] (https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/) [comments] (https://www.reddit.com/r/Pentesting/comments/10lpsuf/is_pentesting_that_well_paid/)
XSS vulnerability
Hii amigos today we are going to discuss about XSS vulnerability listed also known as Cross-site-Scripting vulnerability which is regarded…Continue reading on Medium »
Read more...
Hii amigos today we are going to discuss about XSS vulnerability listed also known as Cross-site-Scripting vulnerability which is regarded…Continue reading on Medium »
Read more...
GUAC - Aggregates Software Security Metadata Into A High Fidelity Graph Database
http://www.kitploit.com/2023/01/guac-aggregates-software-security.html
http://www.kitploit.com/2023/01/guac-aggregates-software-security.html
Note: GUAC is under active (https://www.kitploit.com/search/label/Active) development - if you are interested in contributing, please look at contributor guide (https://github.com/guacsec/guac/blob/main/CONTRIBUTING.md) and the "express interest" issue (https://github.com/guacsec/guac/issues/1) Graph for Understanding Artifact Composition (GUAC) aggregates software security metadata (https://www.kitploit.com/search/label/Metadata) into a high fidelity graph database—normalizing entity identities and mapping standard relationships between them. Querying this graph can drive higher-level organizational outcomes such as audit, policy, risk management, and even developer assistance.
Conceptually, GUAC occupies the “aggregation and synthesis” layer of the software supply chain (https://www.kitploit.com/search/label/Supply%20Chain) transparency (https://www.kitploit.com/search/label/Transparency) logical model:
Conceptually, GUAC occupies the “aggregation and synthesis” layer of the software supply chain (https://www.kitploit.com/search/label/Supply%20Chain) transparency (https://www.kitploit.com/search/label/Transparency) logical model: