hacker_trick | Unsorted

Telegram-канал hacker_trick - Hacker tricks

3151

CVEs🔰 Tools🛠 RedTeam📕

Subscribe to a channel

Hacker tricks

Disable Windows Defender
(+ UAC Bypass, + Upgrade to SYSTEM)
https://blog.injectexp.dev/2024/02/28/disable-windows-defender-uac-bypass-upgrade-to-system

Читать полностью…

Hacker tricks

ADCS ESC14 Abuse Technique
https://posts.specterops.io/adcs-esc14-abuse-technique-333a004dc2b9

Читать полностью…

Hacker tricks

AndroidSuperInject: Injecting into SELinux-protected system service processes under root on Android
https://github.com/cs1ime/AndroidSuperInject

Читать полностью…

Hacker tricks

Hacking Terraform State for Privilege Escalation
https://blog.plerion.com/hacking-terraform-state-privilege-escalation

Читать полностью…

Hacker tricks

DigitalOcean OpenVPN/SOCKS for Burp Suite
https://github.com/honoki/burp-digitalocean-droplet-openvpn

Читать полностью…

Hacker tricks

Weaponization of Token Theft – A Red Team Perspective
https://trustedsec.com/blog/weaponization-of-token-theft-a-red-team-perspective

Читать полностью…

Hacker tricks

Data Scientists Targeted by Malicious Hugging Face ML Models with Silent Backdoor
https://jfrog.com/blog/data-scientists-targeted-by-malicious-hugging-face-ml-models-with-silent-backdoor

Читать полностью…

Hacker tricks

SCCM Hierarchy Takeover with High Availability
https://posts.specterops.io/sccm-hierarchy-takeover-with-high-availability-7dcbd3696b43

Читать полностью…

Hacker tricks

Open a link, and your Wi-Fi password is changed
deadoverflow/open-a-link-and-your-wi-fi-password-is-changed-7c47ccb4d095" rel="nofollow">https://medium.com/@deadoverflow/open-a-link-and-your-wi-fi-password-is-changed-7c47ccb4d095

Читать полностью…

Hacker tricks

Unveiling custom packers: A comprehensive guide
https://estr3llas.github.io/unveiling-custom-packers-a-comprehensive-guide

Читать полностью…

Hacker tricks

ADCSCoercePotato: Yet another technique for coercing machine authentication but specific for ADCS server
https://github.com/decoder-it/ADCSCoercePotato

Читать полностью…

Hacker tricks

This repository contains Resources for malware development using Rust
https://github.com/Whitecat18/Rust-for-Malware-Development

Читать полностью…

Hacker tricks

Hello Lucee! Let us hack Apple again?
https://blog.projectdiscovery.io/hello-lucee-let-us-hack-apple-again

Читать полностью…

Hacker tricks

CLRInjector: A PoC .NET-specific process injection tool
https://github.com/bananabr/CLRInjector

Читать полностью…

Hacker tricks

toxicache: Golang scanner to find web cache poisoning vulnerabilities in a list of URLs and test multiple injection techniques.
https://github.com/xhzeem/toxicache

Читать полностью…

Hacker tricks

Navigating the Cloud: Exploring Lateral Movement Techniques
https://unit42.paloaltonetworks.com/cloud-lateral-movement-techniques

Читать полностью…

Hacker tricks

Xeno-RAT: is an open-source remote access tool (RAT) developed in C#, providing a comprehensive set of features for remote system management. Has features such as HVNC, live microphone, reverse proxy, and much more!
https://github.com/moom825/xeno-rat

Читать полностью…

Hacker tricks

Leaking ObjRefs to Exploit HTTP .NET Remoting
https://code-white.com/blog/leaking-objrefs-to-exploit-http-dotnet-remoting

Читать полностью…

Hacker tricks

Script to dump emails through Microsoft Graph API. it also include another script to push a file on the Azure tenant
https://github.com/Mr-Un1k0d3r/MsGraphFunzy

Читать полностью…

Hacker tricks

S-inject: Windows injection
Supports x86/x64 DLL and Shellcode
https://github.com/Joe1sn/S-inject

Читать полностью…

Hacker tricks

Common ADCS Vulnerabilities: Logging, Exploitation, and Investigation - Part 2
https://labs.lares.com/adcs-exploits-investigations-pt2

Читать полностью…

Hacker tricks

Unveiling UAC-0184: The Steganography Saga of the IDAT Loader Delivering Remcos RAT
https://blog.morphisec.com/unveiling-uac-0184-the-remcos-rat-steganography-saga

Читать полностью…

Hacker tricks

Bypass Rate Limits on authentication endpoints like a pro………!
a13h1/bypass-rate-limits-on-authentication-endpoints-like-a-pro-2054460a43c0" rel="nofollow">https://medium.com/@a13h1/bypass-rate-limits-on-authentication-endpoints-like-a-pro-2054460a43c0

Читать полностью…

Hacker tricks

I took over 10 Million Accounts, Easy API Hacking
https://ravaan21.medium.com/i-took-over-10-million-accounts-easy-api-hacking-89a7092abe40

Читать полностью…

Hacker tricks

A handy tool to explore various string encoding
https://github.com/unixzii/StringExplorer

Читать полностью…

Hacker tricks

Chunking CobaltStrike Payloads + Jump Method
https://github.com/DamonMohammadbagher/NativePayload_LocalCreateThread7

Читать полностью…

Hacker tricks

LockBit Attempts to Stay Afloat With a New Version
https://www.trendmicro.com/en_us/research/24/b/lockbit-attempts-to-stay-afloat-with-a-new-version

Читать полностью…

Hacker tricks

EPSS (Exploit Prediction Scoring System) is a framework used to assess the likelihood of a vulnerability being exploited
https://github.com/KaanSK/go-epss

Читать полностью…

Hacker tricks

AI ChatBot <= 4.8.9 - Unauthenticated SQL Injection via qc_wpbo_search_response
https://github.com/RandomRobbieBF/CVE-2023-5204
TP-Link NCXXX Authentication Bypass
https://ssd-disclosure.com/ssd-advisory-tp-link-ncxxx-authentication-bypass

Читать полностью…

Hacker tricks

Shelter: is a completely weaponized sleep obfuscation technique that allows to fully encrypt your in-memory payload making an extensive use of ROP
https://github.com/Kudaes/Shelter

Читать полностью…
Subscribe to a channel