Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to recover my gmail(it got disabled)
So long story short my main gmail was disabled by google. Like would be fine it it wasn’t linked to literally almost all my accounts since 2013 so now I can’t login in to many site and. Have lost years and years of personal pictures. I asked google to appeal however they refused is there some way to get access to my account still as I have several art classes and course that weren’t a few $100 save to my drive and Dropbox linked to that email.
submitted by /u/tilovespandas
[link] [comments]
How to recover my gmail(it got disabled)
So long story short my main gmail was disabled by google. Like would be fine it it wasn’t linked to literally almost all my accounts since 2013 so now I can’t login in to many site and. Have lost years and years of personal pictures. I asked google to appeal however they refused is there some way to get access to my account still as I have several art classes and course that weren’t a few $100 save to my drive and Dropbox linked to that email.
submitted by /u/tilovespandas
[link] [comments]
Best way to set up for assumed breach?
https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/
<!-- SC_OFF -->I have OSCP training and web app pentesting experience but I'm new to the red team/purple team type stuff. How do you folks normally set up for assumed breach scenarios? Say you have a client that wants to do an assumed breach purple team assessment of their on-prem domain and you have a cobalt strike server set up. How do you ask them to set up for you? Do you... ask them to set up a machine on the domain and give you creds to it? ask them to turn off whatever protections so you can put a beacon on the machine? just ask for information to vpn to the network? etc. What exactly is the normal way you would do this? <!-- SC_ON --> submitted by /u/Jumpy_Hamster (https://www.reddit.com/user/Jumpy_Hamster)
[link] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/)
https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/
<!-- SC_OFF -->I have OSCP training and web app pentesting experience but I'm new to the red team/purple team type stuff. How do you folks normally set up for assumed breach scenarios? Say you have a client that wants to do an assumed breach purple team assessment of their on-prem domain and you have a cobalt strike server set up. How do you ask them to set up for you? Do you... ask them to set up a machine on the domain and give you creds to it? ask them to turn off whatever protections so you can put a beacon on the machine? just ask for information to vpn to the network? etc. What exactly is the normal way you would do this? <!-- SC_ON --> submitted by /u/Jumpy_Hamster (https://www.reddit.com/user/Jumpy_Hamster)
[link] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vyrcx/best_way_to_set_up_for_assumed_breach/)
Spoofing MS Office comments
https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/
<!-- SC_OFF -->https://badoption.eu/blog/2023/02/06/spoof_office_comments.html MS Office does not verify comments, as they are stored in the file. Allows spoofing of author and or comments, even crosstenant for AAD. <!-- SC_ON --> submitted by /u/PfiatDe (https://www.reddit.com/user/PfiatDe)
[link] (https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/)
https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/
<!-- SC_OFF -->https://badoption.eu/blog/2023/02/06/spoof_office_comments.html MS Office does not verify comments, as they are stored in the file. Allows spoofing of author and or comments, even crosstenant for AAD. <!-- SC_ON --> submitted by /u/PfiatDe (https://www.reddit.com/user/PfiatDe)
[link] (https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vz1zh/spoofing_ms_office_comments/)
Let’s Go (VS) Code - Red Team style
https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/
<!-- SC_OFF -->https://badoption.eu/docs/blog/2023/01/31/code_c2.html VSCode has a protable binary, which also allows a reverse shell and some other nice features (File Explorer, Debugging, Local Port Forwarding). Authentication is via Github and hosting iscomplete on MS domains. PS: I am the author, so if there are any questions, or feedback let me know. <!-- SC_ON --> submitted by /u/PfiatDe (https://www.reddit.com/user/PfiatDe)
[link] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/)
https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/
<!-- SC_OFF -->https://badoption.eu/docs/blog/2023/01/31/code_c2.html VSCode has a protable binary, which also allows a reverse shell and some other nice features (File Explorer, Debugging, Local Port Forwarding). Authentication is via Github and hosting iscomplete on MS domains. PS: I am the author, so if there are any questions, or feedback let me know. <!-- SC_ON --> submitted by /u/PfiatDe (https://www.reddit.com/user/PfiatDe)
[link] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/) [comments] (https://www.reddit.com/r/redteamsec/comments/10vz40w/lets_go_vs_code_red_team_style/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Day 24— Agent Sudo Walkthrough • TryHackMe
https://cdn-images-1.medium.com/max/600/0*Dcj_F3ufwQ6YKDsF.gif
Today is my day 24 and we are to go solve a machine names agent sudo which on TryHackMe
Continue reading on Medium »
Day 24— Agent Sudo Walkthrough • TryHackMe
https://cdn-images-1.medium.com/max/600/0*Dcj_F3ufwQ6YKDsF.gif
Today is my day 24 and we are to go solve a machine names agent sudo which on TryHackMe
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
The Power of Home Gnomes As Guardians of Children
https://cdn-images-1.medium.com/max/600/1*3b58WXwDZbXQn1rEKyqiyQ.jpeg
The Power of Home Gnomes As Guardians of Children
Continue reading on Medium »
The Power of Home Gnomes As Guardians of Children
https://cdn-images-1.medium.com/max/600/1*3b58WXwDZbXQn1rEKyqiyQ.jpeg
The Power of Home Gnomes As Guardians of Children
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Safer Internet Day: How To Coordinated Vulnerability Disclosure
https://cdn-images-1.medium.com/max/1800/1*E-vYV0vndGY2PWS0VRtYeA.png
Today (7 Feb ’23) is Safer Internet Day! The Chapter8 team tries to make the internet safer every day.
Continue reading on Medium »
Safer Internet Day: How To Coordinated Vulnerability Disclosure
https://cdn-images-1.medium.com/max/1800/1*E-vYV0vndGY2PWS0VRtYeA.png
Today (7 Feb ’23) is Safer Internet Day! The Chapter8 team tries to make the internet safer every day.
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Is a good hacker unstoppable ?
Hello ! Is a good hacker with great skills basically unstoppable ? Is it realistically possible to have a good protection against them ? Thanks.
submitted by /u/Fun_Emphasis6658
[link] [comments]
Is a good hacker unstoppable ?
Hello ! Is a good hacker with great skills basically unstoppable ? Is it realistically possible to have a good protection against them ? Thanks.
submitted by /u/Fun_Emphasis6658
[link] [comments]
10 Essential Tips for Bug Bounty Hunters
https://thexssrat.medium.com/10-essential-tips-for-bug-bounty-hunters-eb9b88aa5bfa?source=rss------bug_bounty-5
https://thexssrat.medium.com/10-essential-tips-for-bug-bounty-hunters-eb9b88aa5bfa?source=rss------bug_bounty-5
Bug bounty programs have become increasingly popular in recent years as a way for companies to ensure the security of their websites and…Continue reading on Medium » (https://thexssrat.medium.com/10-essential-tips-for-bug-bounty-hunters-eb9b88aa5bfa?source=rss------bug_bounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Fingerprints and Iris Scans at Risk: The Rise of Biometrics Hacking — Tools & Methods Explained
https://cdn-images-1.medium.com/max/731/1*O-RmXUDgGVnjbG1iEOtVrw.png
It’s 2023, and possible that biometrics will play a bigger role in website logins and other forms of authentication in the future. Earlier…
Continue reading on Medium »
Fingerprints and Iris Scans at Risk: The Rise of Biometrics Hacking — Tools & Methods Explained
https://cdn-images-1.medium.com/max/731/1*O-RmXUDgGVnjbG1iEOtVrw.png
It’s 2023, and possible that biometrics will play a bigger role in website logins and other forms of authentication in the future. Earlier…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Even more resources to make you a better hacker
Becoming a “hacker” can mean many different things to different people, so the resources you need to improve will depend on what type of…
Continue reading on Medium »
Even more resources to make you a better hacker
Becoming a “hacker” can mean many different things to different people, so the resources you need to improve will depend on what type of…
Continue reading on Medium »