Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Exploit Code Released for Actively Exploited GoAnywhere MFT Vulnerability Exploit Code Released for Actively Exploited GoAnywhere MFT VulnerabilityPost Views: 1 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/up…
2/Images-for-the-News-posts-4-300x150.png Sh1mmer: A New Exploit Enables Unenrollment of Enterprise-Managed ChromebooksFebruary 1, 2023
https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now!
The post Exploit Code Released for Actively Exploited GoAnywhere MFT Vulnerability first appeared on Black Hat Ethical Hacking.
API (Application Programming Interface) vulnerability refers to weaknesses or flaws in a software application’s API that could be…Continue reading on Medium » (https://medium.com/@Theshahid/securing-your-api-a-guide-to-protecting-against-common-vulnerabilities-cb00513d76f0?source=rss------bug_bounty-5)
— — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — -Continue reading on Medium » (https://medium.com/@ramawijayas.techdr7/null-pointer-dereference-cwe-476-8acc5f525b0d?source=rss------bug_bounty-5)
As-Salaam-Alaikum (Peace be unto you) Hello Amazing hackers My name is Aryan I am a Bug Bounty Hunter. This is my Third Write-up, hope You…Continue reading on Medium » (https://medium.com/@mydudehello91/how-i-got-1000-by-clickacking-233e89d76ffd?source=rss------bug_bounty-5)
How I Got +1000$ by Clickjacking

As-Salaam-Alaikum (Peace be unto you) Hello Amazing hackers My name is Aryan I am a Bug Bounty Hunter. This is my Third Write-up, hope You…Continue reading on Medium »
Read more...
NULL Pointer Dereference [CWE-476]

— — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — -Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to find the owner of a website

What websites/tools do you use to find the owner (or contact details) of a website/domain?

Thanks

submitted by /u/thesellercvf
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to recover my gmail(it got disabled)

So long story short my main gmail was disabled by google. Like would be fine it it wasn’t linked to literally almost all my accounts since 2013 so now I can’t login in to many site and. Have lost years and years of personal pictures. I asked google to appeal however they refused is there some way to get access to my account still as I have several art classes and course that weren’t a few $100 save to my drive and Dropbox linked to that email.

submitted by /u/tilovespandas
[link] [comments]
Best way to set up for assumed breach?
https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/

<!-- SC_OFF -->I have OSCP training and web app pentesting experience but I'm new to the red team/purple team type stuff. How do you folks normally set up for assumed breach scenarios? Say you have a client that wants to do an assumed breach purple team assessment of their on-prem domain and you have a cobalt strike server set up. How do you ask them to set up for you? Do you... ask them to set up a machine on the domain and give you creds to it? ask them to turn off whatever protections so you can put a beacon on the machine? just ask for information to vpn to the network? etc. What exactly is the normal way you would do this? <!-- SC_ON --> submitted by /u/Jumpy_Hamster (https://www.reddit.com/user/Jumpy_Hamster)
[link] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/)
Let’s Go (VS) Code - Red Team style
https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/

<!-- SC_OFF -->https://badoption.eu/docs/blog/2023/01/31/code_c2.html VSCode has a protable binary, which also allows a reverse shell and some other nice features (File Explorer, Debugging, Local Port Forwarding). Authentication is via Github and hosting iscomplete on MS domains. PS: I am the author, so if there are any questions, or feedback let me know. <!-- SC_ON --> submitted by /u/PfiatDe (https://www.reddit.com/user/PfiatDe)
[link] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/)