Search results

  1. abadon1969

    Interesting Lazarus infects companies through news websites and financial software

    😈 Lazarus infects companies through news websites and financial software Experts have discovered sophisticated targeted attacks by the Lazarus hacker group targeting businesses in South Korea. — The hackers used a combination of two main methods: ⏺First, they infected victims' systems through...
  2. abadon1969

    Interesting Lazarus infects companies through news websites and financial software

    😈 Lazarus infects companies through news websites and financial software Experts have discovered sophisticated targeted attacks by the Lazarus hacker group targeting businesses in South Korea. — The hackers used a combination of two main methods: ⏺First, they infected victims' systems through...
  3. abadon1969

    Interesting Hacking Websites: A Cheat Sheet on SQL Injections

    💉 Hacking Websites: A Cheat Sheet on SQL Injections There are 5 main types of SQL injections: ⏺Classic (In-Band or Union-based). The most dangerous and rare attack today. Allows immediate extraction of any data from the database. ⏺Error-based. Allows extraction of information about the...
  4. abadon1969

    Video Tutorial How Hackers Find Hidden Data in Website Headers (cURL & Burp Suite)) picoCTF - GET aHead

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  5. abadon1969

    Interesting How to quickly change your IP in Linux

    🔍 How to quickly change your IP in Linux — Today we'll look at a couple of programs that allow you to change your IP address absolutely free. After installation, these programs will literally change your IP with just one command, meaning you can hide your real IP address. Both of these...
  6. abadon1969

    Interesting Password Recovery Tool

    🔸 Password Recovery Tool LaZagne is an open-source password recovery tool. It is designed to extract saved passwords from various applications on the system. Some features of LaZagne on Linux: ⏺Browser support. Allows you to recover saved passwords from popular web browsers. ⏺Database...
  7. abadon1969

    Video Tutorial Master SQL Injection in 4 Minutes!!!! | picoCTF - More SQLi

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  8. abadon1969

    Interesting Brave Open Sources Cookiecrumbler

    🦁 Brave Open Sources Cookiecrumbler Cookiecrumbler is a tool from Brave that automatically detects and blocks cookie consent notices on websites. The tool works as follows: ⏺Cookiecrumbler crawls popular websites using regional proxies; ⏺Downloads pages using Puppeteer to find cookie consent...
  9. abadon1969

    Interesting Mimikatz Cheat Sheet

    📄 Mimikatz Cheat Sheet Mimikatz is an open-source tool that allows you to extract Windows credentials from memory, as well as view and save authentication credentials, such as Kerberos tickets. It is often used by security professionals and attackers to test and exploit Windows...
  10. abadon1969

    Video Tutorial Access Hidden Files witch XXE Attack (XML External Entity Injection) | picoCTF - SOAP

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  11. abadon1969

    Interesting Cracking an encrypted PDF file | Cracking encrypted rar, zip, 7z archives | Utilities: pdfcrack, rarcrack, and more

    😈 Cracking an encrypted PDF file | Cracking encrypted rar, zip, 7z archives | Utilities: pdfcrack, rarcrack, and more — In today's article, the author will share examples of cracking password-encrypted PDF files and archives. He will also show examples of using programs such as pdfcrack...
  12. abadon1969

    Interesting Transparent Traffic Interception

    🚠 Transparent Traffic Interception sslstrip is a tool that: ⏺silently intercepts HTTP traffic on the network ⏺monitors HTTPS links and redirects ⏺and then matches these links to their HTTP counterparts or homograph-like HTTPS links — It also supports modes for serving a site icon (favicon)...
  13. abadon1969

    Video Tutorial How Hackers Upload WebShell Backdoor (File Upload Vulnerability) | picoCTF - n0s4n1ty 1

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  14. abadon1969

    Interesting The most important events in the world of infosec in April

    👩‍💻 The most important events in the world of infosec in April This month: ⏺Roskomnadzor's "white list" contains 75,000 IP addresses ⏺Pavel Zhovner spoke about the work on Flipper One ⏺Pre-installed malware found again in budget Android smartphones ⏺Researchers hacked a Nissan Leaf ⏺AI...
  15. abadon1969

    Interesting Google Dorking or Using Google to the Max | Cheat Sheet

    🔎 Google Dorking or Using Google to the Max | Cheat Sheet Google Dorks or Google Hacking is a technique used to discover hidden information and vulnerabilities found on public servers. This is a method in which normal website search queries are fully utilized to identify information hidden on...
  16. abadon1969

    Video Tutorial How Hackers Brute Force Passwords (By Rotating IP ADDRESS) | picoCTF - Crack the Gate 2

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  17. abadon1969

    Interesting Tracking the movement of iOS devices

    ❗️ Tracking the movement of iOS devices iSniff-GPS is a passive sniffing tool for capturing and visualizing WiFi location data disclosed by iOS devices. It passively sniffs SSID probes, ARP broadcast packets, and MDNS (Bonjour) packets of nearby iPhones, iPads, and other wireless devices. The...
  18. abadon1969

    Interesting How to Escalate Privilege During an Active Directory Penetration Test

    🎃 How to Escalate Privilege During an Active Directory Penetration Test An Active Directory (AD) pentest is a simulation of attacks on a company's domain infrastructure to identify vulnerabilities related to account management, access policies, service settings, and trust relationships. In...
  19. abadon1969

    Video Tutorial Access Hidden Files witch URL Command Injection | picoCTF - CaaS

    *** Hidden text: You do not have sufficient rights to view the hidden text. Visit the forum thread! ***
  20. abadon1969

    Interesting BypassAV, Fileless Attack, and AMSI (Theory)

    ❗️ BypassAV, Fileless Attack, and AMSI (Theory) Malware developers are constantly looking for ways to evade detection by security tools. One way is to bypass scanners using obfuscation, encryption, steganography, and other methods to make it more difficult for antivirus software to determine...
Top Bottom