Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
131K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
TryHackMe — File Inclusion (Using python)

Link: https://tryhackme.com/room/fileincContinue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
Apple releases emergency security updates to address zero-day vulnerabilities on iPhones, Macs, and iPads

Apple releases emergency security updates to address zero-day vulnerabilities on iPhones, Macs, and iPadsPost Views: 2 Premium Contenthttps://www.blackhatethicalhacking.com/wp-content/uploads/2022/12/Patreon.png Subscribe to Patreon to watch this episode.
Reading Time: 3 Minutes Apple Releases Emergency Security Updates to Address Two Zero-Day VulnerabilitiesApple has released emergency security updates to address two new zero-day vulnerabilities that have been exploited to compromise iPhones, Macs, and iPads. In security advisories published on Friday, the company warned of a report that these issues may have been actively exploited.

The first vulnerability, tracked as CVE-2023-28206, is an IOSurfaceAccelerator out-of-bounds write that can lead to data corruption, a crash, or code execution. Attackers can use a maliciously crafted app to execute arbitrary code with kernel privileges on targeted devices, once they have successfully exploited the flaw.

The second zero-day vulnerability (CVE-2023-28205) is a WebKit use-after-free weakness, which can result in data corruption or arbitrary code execution when reusing freed memory. Attackers can trick targets into loading malicious web pages under their control, leading to code execution on compromised systems.
See Also: So you want to be a hacker? Offensive Security, Bug Bounty Courses Apple responds to in-the-wild exploitation reports with critical security updatesTo address these vulnerabilities, Apple has released iOS 16.4.1, iPadOS 16.4.1, macOS Ventura 13.3.1, and Safari 16.4.1, which include improved input validation and memory management. The list of affected devices is quite extensive, including iPhone 8 and later, iPad Pro (all models), iPad Air 3rd generation and later, iPad 5th generation and later, iPad mini 5th generation and later, and Macs running macOS Ventura.

Although Apple has acknowledged reports of exploitation in the wild, it has not published any information regarding these attacks. However, Apple revealed that Clément Lecigne of Google’s Threat Analysis Group and Donncha Ó Cearbhaill of Amnesty International’s Security Lab discovered the two flaws exploited in the wild as part of an exploit chain. Both organizations regularly disclose campaigns exploiting zero-day bugs abused by government-sponsored threat actors to deploy commercial spyware on the smartphones and computers of politicians, journalists, dissidents, and other high-risk individuals worldwide.
Super proud of our team at @AmnestyTech and everyone who helped in this investigation.

Today, Apple published an emergency update for all iPhones to patch an exploit chain which we, together with @_clem1 (Google TAG) discovered in the wild. pic.twitter.com/KLMYjqi3lK

— Donncha Ó Cearbhaill (@DonnchaC) April 7, 2023
Trending: The Rise and Fall of Sabu: From Hacker Hero to FBI Informant Trending: Offensive Security Tool: Mythic In February, Apple addressed another WebKit zero-day (CVE-2023-23529), which had been exploited in attacks to trigger OS crashes and gain code execution on vulnerable iPhones, iPads, and Macs. While the zero-days patched recently were most likely used in highly targeted attacks, it is highly recommended to install these emergency updates as soon as possible to block potential attack attempts.
Trending: 10-Year-Old Windows vulnerability still being exploited in the 3CX attacks
Are u a security researcher? Or a company that writes articles or write ups about Cyber Security, Offensive Security (related to information security in general) that[...]
Hacking Articles Tips Tricks Videos Tutorials
Black Hat Ethical Hacking Apple releases emergency security updates to address zero-day vulnerabilities on iPhones, Macs, and iPads Apple releases emergency security updates to address zero-day vulnerabilities on iPhones, Macs, and iPadsPost Views: 2 Premium…
match with our specific audience and is worth sharing?

If you want to express your idea in an article contact us here for a quote: info@blackhatethicalhacking.com
Source: thehackernews.com Source Link https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png Recent News* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/04/Images-for-the-News-posts-11-300x150.png Rilide: The Malicious Extension that Steals Cryptocurrency and Bypasses 2FAApril 7, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/04/Images-for-the-News-posts-10-300x150.png CryptoClippy: New Malware Targeting Users for Cryptocurrency TheftApril 6, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/04/Images-for-the-News-posts-8-300x150.png Meet Rorschach: The Fastest Ransomware Strain Yet DiscoveredApril 5, 2023
* https://www.blackhatethicalhacking.com/wp-content/uploads/2023/04/Images-for-the-News-posts-7-300x150.png Malicious WinRAR SFX Files Slipping Past Traditional AV SolutionsApril 4, 2023 https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png Offensive Security & Ethical Hacking CourseBegin the learning curve of hacking now! https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png Information Security SolutionsFind out how Pentesting Services can help you.
The post Apple releases emergency security updates to address zero-day vulnerabilities on iPhones, Macs, and iPads first appeared on Black Hat Ethical Hacking.
Fast One-Shot Passive Recon Script with Netlas.io

Simple passive recon script. Have you already chosen an organization that will pay you for the vulnerabilities found?Continue reading on Medium »
Read more...
https://b.thumbs.redditmedia.com/v0uKZHlWmmmQjbtdJHJgroPdAr96Ko52pJucVl0CN3s.jpg I'm wanting to read the data on a presumably LF RFID tag for a garage door of an unknown manufacturer. For which I bought a reasonably simple reader/writer that is able to read 125KHz, 250Khz, 375KHz. 500KHz, 625KHz, 750KHz, 875KHz, 1000KHz and 'HID' 125KHz. Thing is, it cant read any data of this tag, though it does work with other key fobs.

https://preview.redd.it/kn1chb1ku0ta1.jpg?width=291&format=pjpg&auto=webp&s=3dc42766d9a009aae0d836ba385994245af36b9d

Can I make the conclusion this would be a HF RFID tag, or is it possible it is encrypted to the point a 'standard' LF RFID reader isn't even able to read any (encrypted) data? For the reader used by the garage door to be able to read it, it needs to be quite close, like at max 1 cm apart.

submitted by /u/Fit_chicken_pizza
[link] [comments]
Exploit Privilege Escalation Like a Pro

Here is my Privilege Escalation vulnerability on a private program that let attackers takeover whole company…Continue reading on InfoSec Write-ups »
Read more...
Advanced Web Application Security: Exploiting SSTI Vulnerabilities

Server-Side Template Injection (SSTI) vulnerabilities are often overlooked, but they can have severe consequences if exploited by an…Continue reading on InfoSec Write-ups »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
O QUE É ESCALONAMENTO DE PRIVILÉGIOS? PARTE 1

https://cdn-images-1.medium.com/max/1080/1*s7sPLAporxpH1ODYorpC_A.jpeg
A escalação de privilégios é o processo de exploração de vulnerabilidades ou configurações incorretas em sistemas para elevar privilégios…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Reportly - An AzureAD User Activity Report Tool

https://blogger.googleusercontent.com/img/a/AVvXsEhKtu3LUMHFWuaDMxWY7NPlInCtM1ao0_8VDYFU2vRzkH-PeTudPkRHHPb8KSc8CBngHCdUqfFXMc1gIxYGvK17LjUM287CzIBAkVann3RRm7TAKF5_7HoK-KCuVTPi4lw4N7vusUcB0SggAEDOzQofMYkcrBaONHybIU21lL-n3ofLbyCpI6WA7M7HbQ=s320 Reportly is an AzureAD user activity report tool. About the toolThis is a tool that will help blue teams during a cloud incident. When running the tool, the researcher will enter as input a suspicious user and a time frame and will receive a report detailing the following:

1. Information about the user
2. Actions taken by the user
3. Actions taken on the user
4. User login and failure logs UsageWhen running the tool, a link to authentication and a device code will show, follow the link and enter the code to authenticate. https://blogger.googleusercontent.com/img/a/AVvXsEhlEf_DcSqxBrNw1DHVGFL5cIetIiJlTGrz14CQOaY4XB21pNjkc_VApy-zBNc99iznXkDDCdmJqePHzUb1cR1IMNODAoNZ9lluygAHxihygL4tHQ4Wr40whsMgmu8MWRKcvrmkWg5kven6q29mbxOKP9YOfpezgSr42krw0hMF55C-Bsj0euN0EIgbbA=w640-h156 Insert User principal name of a suspicious user.
Insert start and end times in the following format: 2022-11-16
I recommend a range of no longer then a week.

After authentication, in order to create a full report choose the option "5" https://blogger.googleusercontent.com/img/a/AVvXsEiET-TSt49mTgn1dCWYkfn5fc3oI5nlWwo202PooXpsZ_LwNuJJjTAeRDNhShjQB67GgHvJaH5niwGHUGTfe6kzJ5PI8g_p6AiIsjMAGsRiiMdtv8yfSDIy8XkJpszMZhklcyjzB1bVOvSLcsR-f37EvygdASuDMOIOktlzXOMDZ69UmSIEvQ4E7ktUNQ=w640-h230 When the report will be ready the tool will print "Your report is ready!". The reports are created in the executable's directory. InstallationIn order to use the tool you will need an AzureAD application with the following delegated microsoft graph api permissions:
* AuditLog.Read.All

* GroupMember.Read.All

* RoleManagement.Read.Directory

* User.Read

* User.Read.All

dont forget to grant admin consent https://blogger.googleusercontent.com/img/a/AVvXsEhuuN5ziaE8rZe8CoTc_9mJ5ALOY1nGYvHTl3aeDI8btJnbVYlGKJB0-LzkuHE2Z1-oyfLJpa8k8niIXqeh7FDgAoRjJaNZdZv0Eicxrt3C_ZAlaMMbnfG4hd-cI3tr6oOI1OEnmRllU2KFrlTqhdEyvPM7mZl68j9CJavRthWaNrEqDMs7YZz6sP1YdQ=w640-h166 To create an application go to "App registration" tab and select "New registration" option. https://blogger.googleusercontent.com/img/a/AVvXsEg7B3l02Cmog3p0QANhXoisjXDIP1rCAdk6r6YNle7rM_VQQpLxCkSKHJuqaxRcFNExPuyij0rY7BYskMQWd1puN1lxv0CKLqiekIMROTR6rByCEPjreRfDEAdQYSqH6x1ISOhfbjVFMQspVGLftKR_jEq8-c1kSg2rZdSJ5UXcq7xYdTx1MAtGTT9ZGw=w640-h72 Also, when creating the application, make sure you mark the following option as "yes": https://blogger.googleusercontent.com/img/a/AVvXsEjklHW86ryDHw7Sne0FSwlUCrTyGTO50fgvtCY9RDdTw6VRaXe9uHiOi5eih5mdcPZmCunBMhKRNg_OUmAsQfW4xBwjOiVqjLFimKVNoUn3uPVBWp3noGSilSS_H13mRgedQX0i_EOHcSgEYIakoQMtHXYcqOYQN-2Z_IbIqNNi0cD2f7yZGph5D6lZ5g=w640-h158 * you can find this property under the application's "Authentication" tab.
Add a secret to the application. https://blogger.googleusercontent.com/img/a/AVvXsEhc1Yu4qNEcgkE4T1IuIIzkAkPL4hjbuvrBRU7Sf-HCGozQahX7AjDDtPYnIE9O3E022yuCF2m6orSDFtYXFu4pmCdrDTeCB5EXeaXbkODPLwWvr00UuDTw24m8rHJELFTahfGuaR5ysEl-_y_Qr5RPMGlLTQlGy3_lJGpFGGeqcYAqkiRhaBLczMsHLg=w640-h166 * Go to "Certificates & secrets"
* Add a secret
* Immediately copy the secret to the config file (after you watch it once, it disappears)

After you created the application you need to fill the config.cfg file:
clientId = application id
clientSecret = application secret
tenantId = tenant id Download Reportly
hacking: security in practice
Pool on the roof - April 10, 2023

Have a no0b question? New to hacking? Looking for a script? Need help with your github project? Something wrong with your payload? Stuck on a CTF or bug bounty?

This is a weekly recurring post to make friends with other hackers, ask questions, and get any type of help you may need.

Make sure to read our wiki as it's full of resources for you.

Keep all beginner questions in this weekly stickied post.

submitted by /u/AutoModerator
[link] [comments]