🔰 الأستاذ فاضل عباس اوغلو 🔰
1.76K subscribers
1.04K photos
387 videos
44 files
820 links
قناة متخصصة لنشر الأمور البرمجية والهندسية وكل ما يتعلق بتكنولوجيا المعلومات والامن السيبراني
تواصلوا معي على @FadhilAbbasoglu
Download Telegram
‏أشهر محركات بحث في مجال الأمن السيبراني واختبار الأختراق
1. shodan :
https://www.shodan.io/
2. DorkSearch :
https://dorksearch.com/
3. Wigle :
https://www.wigle.net/
4. grep app :
https://grep.app/
5. app.binaryedge :
https://app.binaryedge.io/
6. onyphe :
https://www.onyphe.io/
3
NIST Cybersecurity Framework Gets Significant Updates

The new framework also aims to better integrate recent resources, including the Privacy Framework, which is a tool released in 2020 that helps organizations navigate privacy risk management concepts.

An important aspect of CSF 2.0 is that it remains a voluntary framework for the private sector, with updated and expanded guidance on how organizations can implement it.


إطار عمل الأمن السيبراني NIST يحصل على تحديثات مهمة

يهدف الإطار الجديد أيضًا إلى دمج الموارد الحديثة بشكل أفضل ، بما في ذلك Privacy Framework ، وهي أداة تم إصدارها في عام 2020 تساعد المؤسسات على التنقل في مفاهيم إدارة مخاطر الخصوصية.

@OgluF
يمعود هو IP شنو رح يكدر يسوي الهكر مثلا 😅!!!
ماذا يمكن أن يفعل المخترق بعنوان IP؟

كيف يحصل المتسللون على هذه المعلومات السرية؟
حسنًا ، صديقي كل شيء يبدأ بعنوان IP إنه مثل معرفة رقم هاتف شخص ما أو عنوانه البريدي. إن أول شيء يفعله المتسلل على الأرجح هو البحث عن المنافذ والخدمات المفتوحة المستخدمة في المنافذ. يوجد إجمالي 65535 TCP بالإضافة إلى منافذ UDP ، لذا فإن أي شخص يجلس هناك يحاول الاختراق سيحاول بالتأكيد حظه مع أحد المنافذ المفتوحة.
المنافذ المشهورة جدًا التي يجب مراقبتها هي 23/22 (TELNET / SSH) ولكن كلاهما محمي ولكن قد يحالفك الحظ،
لذا دعنا نتعمق في جوهر السؤال بدلاً من الهاكرز ، لنفعل ذلك معي: ماذا سوف أفعل إذا حصلت على عنوان IP الخاص بك ؟؟
لنبدأ سأقوم باختبار اتصال IP الخاص بك للتحقق مما إذا كان يعمل أم لا بعد ذلك ، سوف أقوم بإجراء nmap (ماسح المنافذ ) للعثور على جميع الخدمات التي تعمل على نظامك مع Nmap يمكنني معرفة نظام التشغيل الذي تستخدمه وجميع الثغرات الممكنة مع المنافذ.
ثم يأتي الحكم على الجزء الذي يجب استهدافه أو الخدمات القديمة التي تقوم بتشغيلها (الخدمات الضعيفة)بعد وضع قائمة بذلك سيختلف هجومي إذا كنت أحد مواقع الويب أو خادم الويب فقد أستخدم nikto أو vega للبحث عن نقاط الضعف في تطبيقات الويب. وبعض هذه العيوب الشائعة ولكن الرئيسية هي:

-SQL injection or blind as well
-cross-site scripting
-cross-site forgery
-invalid password or form submission
-shell injection and many others

بعدها تأتي مرحلة الهجوم حيث يمكنني استخدام أدوات شائعة مثل Metasploit لإطلاق عدد لا يحصى من الهجمات أو حتى استخدام الهندسة الاجتماعية لخداعك لفتح رسائل بريد إلكتروني غير مرغوب فيها تحتوي على أحصنة طروادة أو برامج ضارة إذا كنت مثابرًا بدرجة كافية ، فقد أدخل إلى جهاز الكمبيوتر الخاص بك باستخدام أي طرق. حتى ، يمكن استخدام مفرقعات كلمات المرور لكسر المصادقة ضد بروتوكول FTP أو ssh أو telnet.

ومن هذه الأنواع الشائعة هي hydra, john the ripper وغيرها.
بعد الدخول ، قد أتلف جهاز الكمبيوتر الخاص بك ويعتمد ذلك على عقلية المخترق !.
ثم تأتي مرحلة ما بعد الاستغلال حيث يتم تنظيف ملفات السجل وغيرها من المسارات المشبوهة والحفاظ على المثابرة لإعادة الزيارة. كل هذه من مجرد عنوان IP 🤗
اي لغة برأيكم الاسرع ؟ 🤔
Anonymous Poll
44%
C ++
56%
Python
This media is not supported in your browser
VIEW IN TELEGRAM
هذا الفديو هو الاجابة على السؤال اعلاه:
😁2
١٠ أدوات ومواقع تساعد الباحثين

1. Mendeley: A reference manager and academic social network that helps researchers organize, share, and discover research papers.

2. Zotero: A free, open-source reference manager that allows users to collect, organize, cite, and share research sources.

3. Grammarly: An online grammar and spelling checker that helps researchers improve the quality of their writing.

4. Canva: A graphic design tool that allows researchers to create professional-looking posters, infographics, and other visual materials.

5. Prezi: A web-based presentation software that allows users to create dynamic, interactive presentations.

6. Evernote: A note-taking tool that allows researchers to capture ideas, organize notes, and collaborate with others.

7. SurveyMonkey: A tool that allows researchers to design and conduct online surveys to gather data.

8. Tableau: A data visualization tool that helps researchers to create interactive and meaningful visualizations from large data sets.

9. GitHub: A web-based platform that allows researchers to collaborate on software development projects and share code with others.

10. Google Forms: A free survey tool that allows researchers to create and share surveys, collect and analyze responses, and export data in various formats.
هل يمكن الاختراق من خلال وصلة شاحن الهاتف؟

نعم، يمكن الاختراق من خلال وصلة شاحن الهاتف في حالة تم استخدام شاحن غير موثوق به أو مصدر طاقة غير موثوق به. يمكن أن يتم استخدام شاحن مزيف أو يحتوي على برمجيات خبيثة (مثل فيروسات أو برامج التجسس) التي تستغل الثغرات في نظام التشغيل للهاتف الذكي. ويمكن أن يؤدي ذلك إلى تعريض البيانات الشخصية والحساسة للخطر.

من الأفضل استخدام الشواحن الرسمية للهواتف الذكية أو الشواحن المعتمدة من قبل الشركة المصنعة للجهاز، وتجنب استخدام الشواحن المشبوهة أو المجهولة المصدر. كما ينصح بعدم توصيل الهاتف بأي جهاز غير موثوق به أو مجهول، وتحديث الهاتف بانتظام بأحدث التحديثات لتصحيح أي ثغرات في نظام التشغيل.
#منقول
👏3
السلام عليكم ورحمة الله وبركاته، بسبب مشكلة فنية في موقع التواصل الاجتماعي الفيسبوك تم إرسال طلبات صداقة من بعض حساباتكم الى حسابات اخرى بدون علمكم.
ادناه رابط لحذف هذه الطلبات ان وجدت .. مع التقدير

https://m.facebook.com/friends/center/requests/outgoing
Forwarded from Cyber Security News
Apple and Google Join Forces to Stop Unauthorized Tracking Alert System

The goal is to standardize the alerting mechanisms and minimize opportunities for misuse across Bluetooth location-tracking devices from different vendors. To that end, Samsung, Tile, Chipolo, eufy Security, and Pebblebee have all come on board.

A crucial aspect of the proposed specification is the use of a pairing registry, which contains verifiable (but obfuscated) identity information of the owner of an accessory (e.g., phone number or email address) along with the serial number of the accessory.

📸 Photo: Apple com

@Cyber_Security_Channel
👍1
الفرق بين المبرمج و #المهرج
دفعت إدارة عمدة مقاطعة سان برناردينو 1.1 مليون دولار فدية

على الرغم من أن مكتب التحقيقات الفيدرالي وهيئات إنفاذ القانون يوصون دائمًا بعدم دفع فدية في هذه الهجمات ، في هذه الحالة ، اختارت الإدارة الدفع على الأرجح لأنه لم يكن لديهم طريقة أخرى لاستعادة الأنظمة المشفرة أو لتجنب الكشف عن البيانات الحساسة.

قال كليفورد نيومان ، مدير مركز USC لأمن أنظمة الكمبيوتر ، لصحيفة Los Angeles Times: "إذا كنت تدفع من خلال عملة مشفرة ، فأنت لا تعرف لمن تدفعها". "يمكن أن يكون كيانًا خاضعًا للعقوبات ، سواء كانت إيران ، أو كوريا الشمالية ، أو منظمة إرهابية".

San Bernardino County Sheriff’s Department Paid a $1.1M Ransom

Despite the FBI and law enforcement bodies always recommend not paying ransom in these attacks, in this case, the department opted to pay likely because they had no other way to recover the encrypted systems or to avoid the disclosure of sensitive data.

“If you’re paying through cryptocurrency, you don’t know who you’re paying it to,” Clifford Neuman, the director of USC’s Center for Computer Systems Security, told the Los Angeles Times. “It could be a sanctioned entity, whether it’s Iran, whether it’s North Korea, whether it’s a terrorist organization”.

@OgluF
خبر مهم لمستخدمي #WordPress

يعرض البرنامج المساعد WordPress Advanced Custom Fields XSS + 2M موقع للهجمات

وأشار الباحثون إلى أن المشكلة قابلة للاستغلال بغض النظر عما إذا كانت منافذ إدارة cPanel (2080 ، 2082 ، 2083 ، 2086) معرضة خارجيًا أم لا. أفاد الباحثون أن المشكلة قابلة للاستغلال أيضًا لاستهداف مواقع الويب على المنفذين 80 و 443 إذا كانت تدار بواسطة cPanel.

يمكن للمهاجم استغلال المشكلة لاختطاف جلسة cPanel لمستخدم شرعي وتنفيذ أنشطة ضارة ، بما في ذلك تحميل قذيفة ويب والحصول على تنفيذ الأوامر.


WordPress Advanced Custom Fields plugin XSS exposes +2M Sites to Attacks

The researchers pointed out that the issue is exploitable regardless of whether or not the cPanel management ports (2080, 2082, 2083, 2086) are exposed externally. The researchers reported that the issue is also exploitable to target websites on ports 80 and 443 if they are being managed by cPanel.

The attacker can exploit the issue to hijack a legitimate user’s cPanel session and carry out malicious activities, including uploading a web shell and gaining command execution.

@OgluF