Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How to sniff packets from Android phone using Ettercap?

Im trying to do a MitM attack where I use arp poisoning through Ettercap to capture packets from my android phone. When I scan for hosts, only the default 10.0.0 ip addresses show up.

Is there a way I can manually add my androids ip as a host and make it a target? Or how can I get my androids ip to show up?

Also, if I wanted to capture traffic that the android sends to the router and I made my android as the first target, what would I set as the second target?

Just to preface, this is for a school assignment and theres no ill intent. Thanks for any advice/suggestions!

submitted by /u/SarahP15
[link] [comments]
How exploitable sensitive information in API is able to destruct business in disruption era — Part3

Well played, finally the rival has been through all of customer’s journey and draw the following flow:Continue reading on Medium »
Read more...
Dark Reading: Attacks/Breaches
Russian SolarWinds Culprits Launch Fresh Barrage of Espionage Cyberattacks

The threat group behind the SolarWinds supply-chain attacks is back with new tools for spying on officials in NATO countries and Africa.
Dark Reading: Attacks/Breaches
Why xIoT Devices Are Cyberattackers' Gateway Drug for Lateral Movement

Detailing how extended IoT (xIoT) devices can be used at scale by attackers to establish persistence across networks and what enterprises should start doing about the risk.
Dark Reading: Attacks/Breaches
Software-Dependency Data Delivers Security to Developers

Google has opened up its software-dependency database, adding to the security data available to developers and tool makers. Now developers need to use it.
Dark Reading: Attacks/Breaches
Security Is a Revenue Booster, Not a Cost Center

Focusing on what customers and partners need from a company can help CISOs show the real financial benefits of improving cybersecurity.
Dark Reading: Attacks/Breaches
Bugs in Manarium Play-to-Earn Platform Showcase Crypto-Gaming Insecurity

Researchers plug in winning scores to make off with NFTs without actually playing the GameFi platform's minigames.
bWAPP OS Command Injection

OS Command Injection Nedir?Continue reading on Medium »
Read more...
https://preview.redd.it/blxnmrxd4zta1.jpg?width=108&crop=smart&auto=webp&s=0f2387c047d890530e7deb59562ec38dd9290e2c The washer at my apartment is just like this one, except there is a card slot instead of a coin slot. I could not find any keyholes on it anywhere. Help!

submitted by /u/anon_2525
[link] [comments]
hacking: security in practice
Hello guys give your opinion about this roadmap

1- I completed a 4hr course about OSI model (all layers , all protocols) + noted every info on a note book
2- I begun studying a 20 hr+ udemy course involves : Footprintng , scanning, website penetration , wireless hacking , Man in middle , coding keylogger and backdoor . I will take my time with this course and note every info on a notebook

3- Practice this info on hack this site missions

is this good ? any recommendations are appreciated :)

submitted by /u/Mr_Jaber
[link] [comments]
hacking: security in practice
MDNS deliberately built to be vulnerable?

I have come to the conclusion that mdns (apple iPhone) is a deliberate backdoor into every iOS device. Prove me wrong.

submitted by /u/Phantasius224
[link] [comments]
Bug Zero at a Glance [Week 08-14 April]

What happened with Bug Zero?Continue reading on Bug Zero »
Read more...