Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
email hacker prak

Does anyone know a site to a fake "installing virus" page? I wanna send it to a friend. But simple, cuz shes 14, she wont know.

submitted by /u/chinesefood99
[link] [comments]
Staying Ahead of Cybercriminals: The Benefits of Bug Bounty Platforms for Businesses

As cyber threats become more advanced and frequent, businesses are increasingly realizing the importance of protecting their digital…Continue reading on Medium »
Read more...
How I chained multiple High-impact vulnerabilities to create a critical one.

Hello Everyone!!! I am Vinay Jagetiya (princej76) and I am back again with my one of the most interesting finding.Continue reading on Medium »
[Read more...](
https://princej-76.medium.com/how-i-chained-multiple-high-impact-vulnearbilities-to-create-a-critical-one-476950a3bb9f?source=rss------bugbounty-5)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
Probable_Subdomains : Subdomains Analysis And Generation Tool

Probable_Subdomains is a Subdomains Analysis And Generation Tool

Online tool: https://weakpass.com/generate/domains TL;DRDuring bug bounties, penetrations tests, red teams exercises, and other great activities, there is always a room when you need to launch amass, subfinder, sublister, or any other tool to find subdomains you can use to break through – like test.google.com, dev.admin.paypal.com or staging.ceo.twitter.com. Within this repository, you will be able to find out the answers to the following questions:

1. What are the most popular subdomains?
2. What are the most common words in multilevel subdomains on different levels?
3. What are the most used words in subdomains?

And, of course, wordlists for all of the questions above! MethodologyAs sources, I used lists of subdomains from public bugbounty programs, that were collected by chaos.projectdiscovery.io, bounty-targets-data or that just had responsible disclosure programs with a total number of 6831 domains! If subdomains appear more than in 5-10 different scopes, they will be put in a certain list. For example, if dev.stg appears both in *.google.com and *.twitter.com, it will have a frequency of 2. It does not matter how often dev.stg appears in *.google.com. That’s all – nothing more, nothing less. ListsSubdomainsIn these lists you will find most popular subdomains as is.
NameWords countSizesubdomains.txt.gz24837884522MBsubdomains_top100.txt100655Bsubdomains_top1000.txt10006.9KBsubdomains_top10000.txt1000072KB Subdomain levelsIn these lists, you will find the most popular words from subdomains split by levels. F.E – dev.stg subdomain will be split into two words dev and stg. dev will have level = 2, stg – level = 1. You can use these wordlists for combinatory attacks for subdomain searches. There are several types of level.txt wordlists that follow the idea of subdomains.
NameWords countSizelevel_1.txt.gz7703788148MBlevel_2.txt.gz11379683131MBlevel_3.txt.gz115851514MBlevel_4.txt.gz1797192.7MBlevel_5.txt.gz73384860KBlevel_1_top100.txt100620Blevel_1_top1000.txt10006.3Klevel_2_top100.txt100550Blevel_2_top1000.txt10005.8KBlevel_3_top100.txt100553Blevel_3_top1000.txt10005.2KBlevel_4_top100.txt100530Blevel_4_top1000.txt10005.1KBlevel_5_top100.txt100444Blevel_5_top1000.txt10005.1KB Popular splitted subdomainsIn these lists, you will find the most popular splitted words from subdomains on all levels. For example – dev.stg subdomain will be splitted in two words dev and stg.
NameWords countSizewords.txt.gz20305456293MBwords_top100.txt100596Bwords_top1000.txt10005.6KBwords_top10000.txt1000062KB DropboxYou can download all the files from Dropbox Attributions* berzerk0 for the inspiration with the great work Probable-Wordlists
* chaos.projectdiscovery.io
* bounty-targets-data/
* Based on some previous iteration of the same idea – https://github.com/zzzteph/substats Click Here To Download
Anatomy of a Reflected XSS: My Discovery on a Microsoft’s Subdomain

A few days ago, while browsing the website visualstudio.microsoft.com1,Continue reading on InfoSec Write-ups »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack The Box OpenSource Writeup

https://cdn-images-1.medium.com/max/1944/0*e01ys4Q1r5NX1wgH.png
Hello world and welcome to Haxez, I’m back on my daily hacking spree and this time I’m looking at the easy Hack The Box machine OpenSource…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack The Box Photobomb Writeup

https://cdn-images-1.medium.com/max/1944/0*j5NjRk1jI4-_rCDs.png
Hello world and welcome to Haxez, this is a write-up for the Hack The Box Photobomb machine. This machine is listed as an easy machine. It…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hack The Box Squashed Writeup

https://cdn-images-1.medium.com/max/1944/0*RFwSwU1UzAkmXLuP.png
Hello world and welcome to haxez and my write-up for the Squashed machine. I’ve been getting back into doing Hack The Box machines again…

Continue reading on Medium »