Hacking Articles Tips Tricks Videos Tutorials
467 subscribers
65.7K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Dark Reading: Attacks/Breaches
Software-Dependency Data Delivers Security to Developers

Google has opened up its software-dependency database, adding to the security data available to developers and tool makers. Now developers need to use it.
Dark Reading: Attacks/Breaches
Security Is a Revenue Booster, Not a Cost Center

Focusing on what customers and partners need from a company can help CISOs show the real financial benefits of improving cybersecurity.
Dark Reading: Attacks/Breaches
Bugs in Manarium Play-to-Earn Platform Showcase Crypto-Gaming Insecurity

Researchers plug in winning scores to make off with NFTs without actually playing the GameFi platform's minigames.
bWAPP OS Command Injection

OS Command Injection Nedir?Continue reading on Medium »
Read more...
https://preview.redd.it/blxnmrxd4zta1.jpg?width=108&crop=smart&auto=webp&s=0f2387c047d890530e7deb59562ec38dd9290e2c The washer at my apartment is just like this one, except there is a card slot instead of a coin slot. I could not find any keyholes on it anywhere. Help!

submitted by /u/anon_2525
[link] [comments]
hacking: security in practice
Hello guys give your opinion about this roadmap

1- I completed a 4hr course about OSI model (all layers , all protocols) + noted every info on a note book
2- I begun studying a 20 hr+ udemy course involves : Footprintng , scanning, website penetration , wireless hacking , Man in middle , coding keylogger and backdoor . I will take my time with this course and note every info on a notebook

3- Practice this info on hack this site missions

is this good ? any recommendations are appreciated :)

submitted by /u/Mr_Jaber
[link] [comments]
hacking: security in practice
MDNS deliberately built to be vulnerable?

I have come to the conclusion that mdns (apple iPhone) is a deliberate backdoor into every iOS device. Prove me wrong.

submitted by /u/Phantasius224
[link] [comments]
Bug Zero at a Glance [Week 08-14 April]

What happened with Bug Zero?Continue reading on Bug Zero »
Read more...
hacking: security in practice
Recommendation for laptop with gpu for "cracking"

Looking for thoughts and ideas for a laptop that works well with Linux so I can "maybe" hashcat on the go. Really light stuff nothing crazy. Maybe decrypting some sub-ghz signals things like that.

Let me know if it's a dumb idea.

submitted by /u/Stock-Philosophy8675
[link] [comments]
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Is ARP spoofing an exploit by definition?

Hey all

I am working on an assignment which basically has the question of identifying an exploit with a relevant CVE that would allow for TCP session identification. The closest I could find to this was CVE-1999-0667 with ARP spoofing, where the cache is poisoned to perform a man-in-the-middle attack.

I am however confused, as I do not know if this constitutes as an exploit or just a technique within an exploit. I tried my hardest to skim through thousands of CVEs to see if there were any exploits related to the identification of TCP sessions, but most of them were just denial-of-service attacks.

I would appreciate some clarification on this topic because I am just so lost

submitted by /u/J-100
[link] [comments]