Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
RCE tutorial/resources

Can anybody share some resources on how to use an RCE bug to get a reverse shell? I am trying to do this on a vulnerable VM from vulnhub.

submitted by /u/Captain_Sok
[link] [comments]
Sent by @TheFeedReaderBot
Dark Reading: Attacks/Breaches
ChatGPT Gut Check: Cybersecurity Threats Overhyped or Not?

UK cybersecurity authorities and researchers tamp down fears that ChatGPT will overwhelm current defenses, while the CEO of OpenAI worries about its use in cyberattacks.
Dark Reading: Attacks/Breaches
Unpatched Samsung Chipset Vulnerabilities Open Android Users to RCE Attacks

Users of affected devices that want to mitigate risk from the security issues in the Exynos chipsets can turn off Wi-Fi and Voice-over-LTE settings, researchers from Google's Project Zero say.
Exploring Reset Password Vulnerabilities: Risks, Exploits, and Prevention Strategies

Reset password vulnerabilities are a common security flaw that can allow attackers to gain unauthorized access to user accounts by…Continue reading on Medium »
Read more...
FakeCalls malware upgrade and vishing now using high quality ai
https://www.reddit.com/r/redteamsec/comments/11um8p4/fakecalls_malware_upgrade_and_vishing_now_using/

<!-- SC_OFF -->Interesting article on the new FakeCalls malware...I didn't realise vishing has already started using ai to generate clean, automated responses. I guess Chat GPT and Whisper were bound to be used in the wrong way. https://www.hackwatcher.com/p/fakecalls-the-next-step-in-voice-phishing <!-- SC_ON --> submitted by /u/MenuParking7693 (https://www.reddit.com/user/MenuParking7693)
[link] (https://www.reddit.com/r/redteamsec/comments/11um8p4/fakecalls_malware_upgrade_and_vishing_now_using/) [comments] (https://www.reddit.com/r/redteamsec/comments/11um8p4/fakecalls_malware_upgrade_and_vishing_now_using/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Is it possible to retrieve data directly from an underground internet cable?

Supposing you get access to an underground internet cable by digging to it or whatever, can you retrieve passing data from it?
for example say you cut it then you connect it to a device then you link it back again so it keeps running, can you store data in that device? I mean its logically to assume that everyone's data such as emails, numbers, messages, passwords are passing through that cable, or will there be an encryption problem? Is this possible?

submitted by /u/Xenii0
[link] [comments]
Reflected XSS on Admin Login Page

Hi! I’m Aswin,security researcher and a penetration tester.Here we are discussing reflected XSS in a private bug bounty program.Continue reading on InfoSec Write-ups »
Read more...
IDOR on Data Transaction

Kali ini saya akan berbagi sebuah artikel tentang IDOR, IDOR atau “Insecure Direct Object References” merupakan salah satu kerentanan yang…Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Hackers Are Watching, Turn Off WIFI Calling.

https://cdn-images-1.medium.com/max/1920/1*NmqrvAbe4emrzmBHKoxDvg.jpeg
Multiple security holes with Samsung Galaxy smartphones were found by Google's Project Zero team, which could make it simple for hackers…

Continue reading on Medium »