
сряда, 29 април 2020 г.
вторник, 28 април 2020 г.
неделя, 19 април 2020 г.
Show HN: I made a Flipper plugin for redux and React Native https://ift.tt/3exWk46
събота, 18 април 2020 г.
Show HN: Codelift – A “No Code” GUI for Your React App https://ift.tt/2xFwF8X
Show HN: Universal Tone Generator – A Generative Music Experience https://ift.tt/3eBRyTk
Show HN: Real Networking at Virtual Place https://ift.tt/2RPkY6n
Show HN: I made a multiplayer web game with Elm https://ift.tt/2XLDekZ
Show HN: Sheets Add-On for Monte-Carlo Simulations https://ift.tt/3eAz7y0
Show HN: Explore Wikipedia edits made by institutions, companies and governments https://ift.tt/3bkQDV9
Show HN: Shishua – Fast pseudo-random generator https://ift.tt/2VmHyFT
Show HN: Vault on AWS – A Terraform Project for Secrets Management Anywhere https://ift.tt/2Vioc4p
Show HN: Open-Source GitOps Framework for K8s Based on Terraform and Kustomize https://ift.tt/3bkQxg1
Show HN: An Emulator in JavaScript (That Interfaces with Multiple UIs) https://ift.tt/2xxy2Xo
Show HN: A tool for visualizing your YouTube watch history https://ift.tt/2Vh792W
Show HN: Gentle is a social app where you give and get kindness (TestFlight) https://ift.tt/3blUfpP
Show HN: VimTricks, a Vim Email Newsletter https://ift.tt/3bkWKbV
Show HN: Capture and recall ideas without context switching https://ift.tt/2xF1ivg
Show HN: A place that lists free games https://ift.tt/2wTiblA
Show HN: Changelog Generation Tool https://ift.tt/2z6GM6Z
Show HN: I've been writing TILs for 5 years https://ift.tt/3alscFL
Show HN: TypeScript language plugin gives superpowers to SQL tagged strings https://ift.tt/2KeluGZ
Show HN: Running Your Own Read Later Service with Raspberry Pi and Pinboard https://ift.tt/2KhfRIc
Show HN: Gact Store https://ift.tt/3ai54Ib
Show HN: Interactive 3D Tour of a San Francisco Skatepark Created on a Phone https://ift.tt/2RPhTTQ
Show HN: Find out if you are getting paid fairly and help to reduce pay inequity https://ift.tt/34Lucpv
петък, 17 април 2020 г.
Show HN: Plain Old Recipe: convert online recipes to plain-text https://ift.tt/2KejYEP
Show HN: Infstream – We’re trying to fix video monetization for creators https://ift.tt/34Rcd11
Show HN: Random Poetry from Reddit Posts https://ift.tt/3cm3wye
Show HN: Play Fishbowl at your next virtual hangout (free, open source) https://ift.tt/3eschJb
Show HN: JWT terminal tool https://ift.tt/2KcmE5E
Show HN: Free Movies https://ift.tt/2VHf9ci
Show HN: Covid ICU Bed Tracking – In Production on 130 ICUs https://ift.tt/2Kb2YiI
Show HN: Chrome extension that notifies you when new technology products launch https://ift.tt/34JoV1O
Show HN: Encrypted, synced, offline first todo list https://ift.tt/2VgZmSJ
Show HN: A basketball hoop to maximize shots that go in [video] https://ift.tt/2Kg4HTQ
Show HN: I made an API to generate social media images https://ift.tt/2RKh0w3
Show HN: awesome-Baremetal https://ift.tt/2VDBFCR
Show HN: Mobile 3D group video chat with spatial audio for friends and events https://ift.tt/3exXEUo
Show HN: I built an actual Chaos Monkey for Kubernetes https://ift.tt/3bdfpXb
Show HN: Python package to create HQ images programmatically with templates https://ift.tt/2wRQyJG
Show HN: Zoomerbackgrounds.com – community sourced virtual video backgrounds https://ift.tt/3ajbw1s
Show HN: A Parallel Implementation of Graph2Vec https://ift.tt/2RMxjbE
Show HN: Sound visualisation, better than FFT (iOS) https://ift.tt/3ewKrLx
Show HN: Graphite – Create apps from GraphQL APIs without writing code https://ift.tt/34GXwO4
Show HN: Ulist – a mailing list service (like mailman) that keeps it simple https://ift.tt/2Vij3tj
Show HN: Site built with Vue.js to write a story of your project or startup https://ift.tt/2RHovDO
Show HN: I made a website to check Growth rate and Doubling days of Covid-19 https://ift.tt/2VE1Qcy
четвъртък, 16 април 2020 г.
Show HN: AWS Transcribe and OBS = real-time subtitles https://ift.tt/3bfUyCJ
Show HN: Play Hearts – Open-source, made with Vue and web sockets https://ift.tt/3bidFf9
Show HN: JHP, ultra-simple static site rendering in JavaScript https://ift.tt/3cnIyiA
Show HN: Crib-note – Collaborative study notes. Edit, make and share study notes https://ift.tt/2KffMo4
Show HN: S3 Bucket Monitoring – Are your private buckets private? https://ift.tt/3eq2mnf
Show HN: A Stupid-Simple Alternative to Google Alerts Built for Program Managers https://ift.tt/3ctmLGl
Show HN: Chatty – a Slack app that help you stay on top of your networking https://ift.tt/34FPBAF
Show HN: (WIP) Axel = Haskell and Lisp https://ift.tt/3aeL8Gb
Show HN: Get notified when grocery pickup slots are available https://ift.tt/2RIDuxn
Show HN: The Big Brother DataBase https://ift.tt/2Kc2etC
Show HN: FoundersList) Looking for a cofounder or a new startup to work on? https://ift.tt/3cl2wun
Show HN: Interactive tool for building webapp tutorials https://ift.tt/2XFH8fb
Show HN: Glass Dome — an Alfred workflow to fight link rot in markdown notes https://ift.tt/2VbG29s
Show HN: Clikan – a super simple personal kanban board that runs in a CLI https://ift.tt/2KfYRSl
Show HN: Earthly – Run all your builds containerized https://ift.tt/2VALfGG
Show HN: Video conference and synchronized YouTube video to do fitness in groups https://ift.tt/3eteeFa
Show HN: Discover real and interesting thought leaders on Twitter for any topic https://ift.tt/3er8USu
Show HN: A Go library to run and manage processes in your program https://ift.tt/2wKrLan
Show HN: Track and share all of your investments in one place https://ift.tt/3adIxwb
Show HN: Open – Free React landing page template https://ift.tt/3be7IQH
Show HN: Gradient boosting research papers from the last 25 years https://ift.tt/3ckincD
Show HN: I wrote an open source cloud gaming service by WebRTC and Golang https://ift.tt/2KdGP36
Show HN: React-tater – A React component to add annotations to any element https://ift.tt/2yg9P7Y
Show HN: A poor man's background blurring solution for Windows https://ift.tt/3acfUiQ
сряда, 15 април 2020 г.
Show HN: Verify JSON using minimal schema https://ift.tt/2K81lT5
Show HN: License key management app written in Go https://ift.tt/2z7Lfql
Show HN: Goodnight Zoom - Connecting with isolated seniors via remote storytime https://ift.tt/3bdGyt6
Show HN: An attempt to spot Covid-19 outbreaks using wearable devices https://ift.tt/2XDrukv
Show HN: Parachute – All layoff lists consolidated and easy to filter https://ift.tt/3ejisiB
Take the invite challenge and join Hack The Box penetration testing labs today. ↳...
Take the invite challenge and join Hack The Box penetration testing labs today.
Hack The Box is an online platform allowing you to test your penetration testing skills and exchange ideas and methodologies with thousands of people in the security field. Click below to hack our invite challenge, then get started on one of our many live machines or challenges….
from Hack+ https://ift.tt/3ejnf3z
via IFTTT
Show HN: Interview Questions to Ask Your Interviewer on Software Interviews https://ift.tt/2Vp1XbS
Launch HN: Zynq (YC W20) – Book meetings instantly with your team https://ift.tt/3ceXNdw
Show HN: An opinionated aggregator for technical blogs written by individuals https://ift.tt/2RGzWLX
Show HN: Automation for Ha Hashicorp Vault Cluster (AWS, GCP, Azure) https://ift.tt/2K6OgsX
Show HN: Reverse geocoding API for interesting and memorable places https://ift.tt/3bciU06
Show HN: Find ways to help your community as we grapple with Covid-19 https://ift.tt/2KiKH3f
вторник, 14 април 2020 г.
Show HN: CartDash – Beat Instacart Delivery Outages https://ift.tt/2Vyfjmx
Show HN: Covid-19 Dashboard – Playable timeline, Cases explorer, Curve explorer https://ift.tt/2wF3IJT
Show HN: Open-source machine learning automation platform https://ift.tt/2RBaDLg
Show HN: Bullish▲ Stock market performance stats in your inbox https://ift.tt/2VxzBwc
Free Online Learning Due to Coronavirus (Updated Continuously) ↳...
Free Online Learning Due to Coronavirus (Updated Continuously)
↳ https://www.classcentral.com/report/free-online-learning-coronavirus/
In response to the pandemic and isolation measures put in place in most countries, course providers are offering learning content for free or at a heavily discounted price. On this page, Class Central keeps track of these offers. We’ll be updating the list as new ones appear….
from Hack+ https://ift.tt/2VrOq3A
via IFTTT
Show HN: Tom Nook's Laptop https://ift.tt/34BvJhT
Show HN: Cortex – Open-source alternative to SageMaker for model serving https://ift.tt/2RE09ee
Show HN: Mmap.it – personal search without context switching https://ift.tt/2RDrpJG
Show HN: TerminusDB – An open source in-memory graph database https://ift.tt/2VwgpPB
Show HN: Live Stand-Up Comedy from Home https://ift.tt/2VqQw3K
Show HN: Founder Bingo – Most common mistakes founders make https://ift.tt/3a5Vd87
Show HN: Language detection using Spacy and Fasttext https://ift.tt/2RBsTUY
Show HN: MixHop: Higher-Order Graph Convolutional Architectures (PyTorch) https://ift.tt/34yKkuq
Show HN: Local stored wiki engine made with Vue based on Markdown and JSON https://ift.tt/2XBfjos
Show HN: Check the credibility of any news story https://ift.tt/2XAzl24
Show HN: Micro – A distributed systems runtime for the Cloud https://ift.tt/3efMMKZ
Show HN: How we reduced our Twilio costs 80% by switching to iMessage https://ift.tt/3a8Uwei
Show HN: Backup your Slack chat without admin permissions or workspace apps https://ift.tt/2RyTGRS
понеделник, 13 април 2020 г.
So Much Free Covid Cyber Resources to Level Up Your Career! ↳...
So Much Free Covid Cyber Resources to Level Up Your Career!
↳ https://www.youtube.com/watch?v=_wr-DJucLBA
In this video, I discuss the extent of an ongoing project I’ve been working to centrally document a repository of resources including training, instructor led webinars with labs, conferences (virtual), and books all free and all cyber. A lot of people are impacted by Covid, so use this time to take…
from Hack+ https://ift.tt/3ceoyPf
via IFTTT
CATEGORIES ↳ https://ift.tt/2V2UbFI An awesome list of...
CATEGORIES
↳ https://github.com/gerryguy311/CyberProfDevelopmentCovidResources
An awesome list of resources for training, conferences, speaking, labs, reading, etc that are free all the time or during COVID-19 that cybersecurity professionals with downtime can take advantage of to improve their skills and marketability to come out on the other side ready to rock….
from Hack+ https://ift.tt/3ccL7nu
via IFTTT
AWS Certified Cloud Practitioner ↳...
AWS Certified Cloud Practitioner
↳ https://pearsonadvance.com/courses/aws-certified-cloud-practitioner/
Seven hours of video instruction covering the fundamentals of cloud computing; AWS core services such as Amazon EC2, Amazon RDS, and Amazon S3; security; architecture design principles; best practices; and cost management….
from Hack+ https://ift.tt/2V3pEYy
via IFTTT
CompTIA Security+ (SY0-501) ↳ https://ift.tt/34yT83u CompTIA...
CompTIA Security+ (SY0-501)
↳ https://pearsonadvance.com/courses/comptia-security-sy0-501/
CompTIA Security+ (SY0-501) Complete Video Course is an engaging self-paced video training solution that provides learners with more than 19 hours of personal training from security expert Sari Greene….
from Hack+ https://ift.tt/2RxBYho
via IFTTT
неделя, 12 април 2020 г.
Public Domain Network Monitoring Tools ↳...
Public Domain Network Monitoring Tools
↳ http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html#ipam
…
from Hack+ https://ift.tt/2xqehRf
via IFTTT
Chaining Three Bugs to Get RCE in Microsoft AttackSurfaceAnalyzer ↳...
Chaining Three Bugs to Get RCE in Microsoft AttackSurfaceAnalyzer
This is a blog post about how I found three vulns and chained them to get RCE in the Microsoft AttackSurfaceAnalyzer (ASA moving forward) GUI version. Around a month ago someone posted a link to the new version of the tool from Microsoft….
from Hack+ https://ift.tt/2K0YevS
via IFTTT
Hacking Unity Games ↳ https://ift.tt/3efmQiy In this post...
Hacking Unity Games
↳ https://www.hypn.za.net/blog/2020/04/11/hacking-unity-games/
In this post I’m going to explore a few ways to hack games written using Unity. Under the hood Unity makes use of “Mono” which is a cross-compiler for DotNet….
from Hack+ https://ift.tt/2wv4edc
via IFTTT
IoT Security Wiki ↳ https://ift.tt/1RSF7B5 Welcome to IoT Security Wiki. It is an intiative to...
IoT Security Wiki
↳ https://iotsecuritywiki.com/
Welcome to IoT Security Wiki. It is an intiative to help developers and security researchers to get all security resource related to IoT devices. Although listing out all resources related to IoT is very difficult, but i have tried my best to list out Major technical material available….
from Hack+ https://ift.tt/2V36thy
via IFTTT
Courk’s Blog ↳ https://courk.cc Introduction A couple of months ago, I spent a couple of time...
Courk’s Blog
Introduction A couple of months ago, I spent a couple of time fiddling around my ISP-provided residential gateway. This gateway is actually not just a gateway. It’s more like a mix between a set-top Box Read More ……
from Hack+ https://ift.tt/2y7vwqI
via IFTTT
腾讯科恩实验室官方博客 ↳ https://ift.tt/3b3EBiB 2018-05-22 腾讯科恩实验室最新汽车安全研究成果:宝马多款车型的安全研究综述 by...
腾讯科恩实验室官方博客
↳ http://keenlab.tencent.com/index.html
2018-05-22 腾讯科恩实验室最新汽车安全研究成果:宝马多款车型的安全研究综述 by Tencent Keen Security Lab 一、研究简介 宝马网联汽车研究是一项遵循白帽黑客准则的安全研究项目。在这个研究过程中,腾讯科恩实验室对多款宝马汽…
from Hack+ https://ift.tt/2RxdZPl
via IFTTT
↳ http://rtl-sdr.com/ GOES 16/17 and GK-2A are geosynchronous weather satellites that transmit high...
GOES 16/17 and GK-2A are geosynchronous weather satellites that transmit high resolution weather images and data. In particular they are far enough away from the earth to be able to take beautiful ‘full disk’ images which show the entirety of one side of the Earth….
from Hack+ https://ift.tt/3b3OfBV
via IFTTT
/dev/ttyS0 – Embedded Device Hacking ↳ https://ift.tt/Oo2uXX Welcome to /dev/ttys0! We are a...
/dev/ttyS0 – Embedded Device Hacking
Welcome to /dev/ttys0! We are a loosely affiliated group whose exact membership is difficult to quantify, dedicated to exploring, exploiting and improving embedded devices….
from Hack+ https://ift.tt/2Rzz1x0
via IFTTT
w00tsec ↳ https://ift.tt/2cAv8Wj The Chinese 0CTF took place on March 12-13 and it was yet...
w00tsec
↳ https://w00tsec.blogspot.com/
The Chinese 0CTF took place on March 12-13 and it was yet another fun CTF. I played with my teammates from TheGoonies and we were ranked #48….
from Hack+ https://ift.tt/34srAgg
via IFTTT
Home ↳ http://jcjc-dev.com In part 4 we extracted the entire firmware from the router and...
Home
In part 4 we extracted the entire firmware from the router and decompressed it. As I explained then, you can often get most of the firmware directly from the manufacturer’s website: Firmware upgrade binaries often contain partial or entire filesystems, or even entire firmwares….
from Hack+ https://ift.tt/39WgmBO
via IFTTT
Blog ↳ https://ift.tt/34thAn3 This is a continuation to the last blog in the series – RedTeaming...
IoT Exploitation and Mobile Security Pentesting by Attify - Offensive IoT Exploitation and Mobile...
IoT Exploitation and Mobile Security Pentesting by Attify - Offensive IoT Exploitation and Mobile Application Pentesting
Welcome to another blog post by Attify – your source for all security and pentesting tips and techniques for IoT devices and mobile applications. In this post, we would like to introduce you to the Attify Badge Tool – which works as a……
from Hack+ https://ift.tt/2y57VH4
via IFTTT
IoT PenTest Lab ↳ http://iotpentest.com/ There EEPROM, and UART pins and Ralink CPU some Other IC...
IoT PenTest Lab
There EEPROM, and UART pins and Ralink CPU some Other IC chips are available, here mainly focusing on the EEPROM chip (winbond W25Q16), if you are not able to watch the EEPROM name on it use torchlight to see….
from Hack+ https://ift.tt/3b53lHh
via IFTTT
Spicy / WebGoat Writeups ↳ https://ift.tt/3b2idWX GitLab.com…
Spicy / WebGoat Writeups
↳ https://gitlab.com/BlackSheepSpicy/WebGoat
GitLab.com…
from Hack+ https://ift.tt/2yawOkw
via IFTTT
събота, 11 април 2020 г.
Learning Paths ↳ https://ift.tt/2NR6vau Learning paths are a way to build fundamental, low...
Learning Paths
Learning paths are a way to build fundamental, low level knowledge around a particular topic. Enrolling in a particular path will give you the knowledge and skills that you can apply to real world scenarios….
from Hack+ https://ift.tt/2JZx8FI
via IFTTT
петък, 10 април 2020 г.
Welcome · Practical Cryptography for Developers ↳ https://ift.tt/2Ksfz0m Warning: this book...
Welcome · Practical Cryptography for Developers
↳ https://cryptobook.nakov.com/
Warning: this book is not finished! I am still working on some of the chapters. Once it is completed, I will publish it as PDF and EPUB. Be patient….
from Hack+ https://ift.tt/3a22dmq
via IFTTT
четвъртък, 9 април 2020 г.
RedELK Part 3 – Achieving operational oversight ↳...
RedELK Part 3 – Achieving operational oversight
↳ https://outflank.nl/blog/2020/04/07/redelk-part-3-achieving-operational-oversight/
This is part 3 of a multipart blog series on RedELK: Outflank’s open sourced tooling that acts as a red team’s SIEM and helps with overall improved oversight during red team operations….
from Hack+ https://ift.tt/2JVGjGQ
via IFTTT
Process Injection Part 1 | CreateRemoteThread() ↳...
Process Injection Part 1 | CreateRemoteThread()
↳ https://sevrosecurity.com/2020/04/08/process-injection-part-1-createremotethread/
In this new series, I am going to dive deep into Windows Process Injection. The purpose of this series is to dig into how each injection technique works at its core. Each post is going to be broken down into four (4) parts:…
from Hack+ https://ift.tt/2VgBltF
via IFTTT
grep.app ↳ http://grep.app/ Search across a half million git repos….
Site Reliability Engineering ↳ https://ift.tt/2z5scsK Can a system be considered...
Site Reliability Engineering
↳ https://landing.google.com/sre/books/
Can a system be considered truly reliable if it isn’t fundamentally secure? Or can it be considered secure if it’s unreliable? Security is crucial to the design and operation of scalable systems in production, as it plays an important part in product quality, performance, and availability….
from Hack+ https://ift.tt/39VCmwv
via IFTTT
сряда, 8 април 2020 г.
Reverse engineering – Supercell – chapter 9 ↳...
Reverse engineering – Supercell – chapter 9
↳ http://www.giovanni-rocca.com/reverse-engineering-supercell-chapter-9/
“Cool! it’s crazy how much people I see in this room”….
from Hack+ https://ift.tt/2xcxlCo
via IFTTT
понеделник, 6 април 2020 г.
Hacking ChromeCasts for fun ↳ https://ift.tt/2yF3gMl A...
Hacking ChromeCasts for fun
↳ https://www.brussec.com/2019/01/11/hacking-chromecasts-for-fun/
A while ago two hackers by the name of HackerGiraffe and j3ws3r allegedly “hacked” a bunch of Google ChromeCasts to promote PewDiePie’s (Felix Kjellberg) YouTube Channel….
from Hack+ https://ift.tt/2JPd34x
via IFTTT
неделя, 5 април 2020 г.
B3nac/InjuredAndroid ↳ https://ift.tt/39KIVC9 InjuredAndroid A vulnerable Android...
B3nac/InjuredAndroid
↳ https://github.com/B3nac/InjuredAndroid
InjuredAndroid A vulnerable Android application with ctf examples. I hope to add a flag that explains a different vulnerability every week. Setup Enable debugging on your test phone. Connect your phone and your pc with a usb cable. Install via adb. adb install InjuredAndroid.apk….
from Hack+ https://ift.tt/39Mezz8
via IFTTT
Dissecting the Windows Defender Driver - WdFilter (Part 3) ↳...
Dissecting the Windows Defender Driver - WdFilter (Part 3)
↳ https://n4r1b.netlify.com/posts/2020/03/dissecting-the-windows-defender-driver-wdfilter-part-3/
Welcome back to Dissecting the Windows Defender Driver, in the previous part we saw how WdFilter handles the loading of images in memory through an ImageLoad callback routine, we also saw how new threads are checked in two different Thread-creation callback routines and lastly we saw how messages ar…
from Hack+ https://ift.tt/3bUIMNT
via IFTTT
Follow The White Rabbit Teaser - CSCG 2020 ↳ https://www.youtube.com/watch?v=IhLBamqn_5Q Teaser for...
Follow The White Rabbit Teaser - CSCG 2020
↳ https://www.youtube.com/watch?v=IhLBamqn_5Q
Teaser for the Follow The White Rabbit Challenge. -=[ 🔴 Stuff I use ]=- → Microphone:* https://geni.us/ntg3b → Graphics tablet:* https://geni.us/wacom-intuos → Camera#1 for streaming:* https://geni.us/sony-camera → Lens for streaming:* https://geni.us/sony-lense → Connect Camera#1 to…
from Hack+ https://ift.tt/2ULo7Gv
via IFTTT
6.858 Spring 2020 Lecture 12: Network security ↳...
6.858 Spring 2020 Lecture 12: Network security
↳ https://www.youtube.com/watch?v=2SEF3LgFZ-4&feature=youtu.be
MIT 6.858: Computer Systems Security https://css.csail.mit.edu/6.858/2020/…
from Hack+ https://ift.tt/2Xbb3M0
via IFTTT
HackTheBox - Registry ↳ https://www.youtube.com/watch?v=w0h0QYswFNA&feature=youtu.be 00:50 -...
HackTheBox - Registry
↳ https://www.youtube.com/watch?v=w0h0QYswFNA&feature=youtu.be
00:50 - Begin of Recon, discovering hostname in SSL Certificate 05:10 - Running GoBuster against Registry.htb and Docker.Registry.htb to discover CA Certificate in /install/ 09:00 - /v2/ on Docker.Registry.HTB requires login, guessing admin:admin and then looking into the Docker Registry API 12:30 -…
from Hack+ https://ift.tt/39O6NEO
via IFTTT
Creating a VM to learn Linux PrivEsc ↳...
Creating a VM to learn Linux PrivEsc
↳ https://www.youtube.com/watch?v=B_7NIkSlYuQ&feature=youtu.be
Support the stream: https://streamlabs.com/ippsec…
from Hack+ https://ift.tt/3bS1rKg
via IFTTT
Computer Hacking - “Insatiable Birdie” Elttam Web CTF 1/n ↳...
Computer Hacking - “Insatiable Birdie” Elttam Web CTF 1/n
↳ https://www.youtube.com/watch?v=HdQgKuP7NQg&feature=youtu.be
We’re back! We take a look at the first four levels of Elttam’s “Insatiable Birdie” Web CTF challenge - https://www.libctf.so. Timestamps are below. https://twitch.tv/justinsteven Timestamps: 0:15:58 birdie-red (web) 0:18:47 birdie-orange (web) 0:23:45 birdie-yellow (web) - fun one! 0:36:55 birdie…
from Hack+ https://ift.tt/3e0sRzl
via IFTTT
събота, 4 април 2020 г.
Protecting your Android App against Reverse Engineering and Tampering ↳...
Protecting your Android App against Reverse Engineering and Tampering
I built a premium (paid) android app that has been cracked and modded. Therefore, I started researching ways to secure my code and make it more difficult to modify my app. Before I continue, You cannot mitigate these issues or completely prevent people from breaking your app….
from Hack+ https://ift.tt/34bX6Ps
via IFTTT
BattlEye reverse engineer tracking ↳...
BattlEye reverse engineer tracking
↳ https://secret.club/2020/03/31/battleye-developer-tracking.html
Modern commercial anti-cheats are faced by an increasing competetiveness in professional game-hack production, and thus have begun implementing questionable method to prevent this….
from Hack+ https://ift.tt/2V4IahJ
via IFTTT
Adlice Software ↳ https://ift.tt/2TViRxJ When roaming...
Adlice Software
↳ https://www.adlice.com/making-an-antivirus-engine-the-guidelines/
When roaming around the techies forums, I often see some people (and many not very experienced) asking for “How do I make an antivirus”, sometimes with not very adapted languages (bat, PHP, …) and having a wrong idea of what an antivirus is, and how it should be built….
from Hack+ https://ift.tt/34hP33K
via IFTTT
Inside Kraken Security Labs: Flaws Found in CoolWallet S Hardware Wallets ↳...
Inside Kraken Security Labs: Flaws Found in CoolWallet S Hardware Wallets
The CoolBitX CoolWallet S is a credit-card sized wallet that pairs with mobile phone applications (both Android and iOS) via Bluetooth. We recently discovered the CoolWallet S Android application stores the wallet’s PIN, pairing password, and hardware seed in plaintext….
from Hack+ https://ift.tt/2Xar30I
via IFTTT
Viralmaniar/Passhunt ↳ https://ift.tt/2HZJyLu Passhunt is a simple tool for...
Viralmaniar/Passhunt
↳ https://github.com/Viralmaniar/Passhunt
Passhunt is a simple tool for searching of default credentials for network devices, web applications and more. Search through 523 vendors and their 2084 default passwords. The list of default passwords is obtained from cirt.net. All passwords and vendor list maintained by cirt.net…
from Hack+ https://ift.tt/39DKrFX
via IFTTT
How to import external spidering output to Burpsuite or ZAP ↳...
How to import external spidering output to Burpsuite or ZAP
↳ https://www.hahwul.com/2020/04/how-to-import-external-spidering-output-to-burp-or-zap.html
Normally, BurpSuite or ZAP is the main tool of testing during bugbounty or security testing. It’s good to navigate directly with the spider function in there, but sometimes you need help from an external crawler….
from Hack+ https://ift.tt/39Hh71p
via IFTTT
Dockerfiles for (un)popular fuzzers! 🐳 ↳...
Dockerfiles for (un)popular fuzzers! 🐳
↳ https://github.com/WiseSecurity/dockerized-fuzzers
Dockerfiles for (un)popular fuzzers! 🐳 Building images At first build base image: docker build -t fuzzbuntu -f fuzzbuntu-dockerfile . Build and run desired fuzzer: docker build -t afl -f afl-dockerfile ….
from Hack+ https://ift.tt/3dS4wvz
via IFTTT
rootsecdev/Microsoft-Blue-Forest ↳...
rootsecdev/Microsoft-Blue-Forest
↳ https://github.com/rootsecdev/Microsoft-Blue-Forest
Microsoft-Blue-Forest Creating a hardened “Blue Forest” with Server 2016/2019 Domain Controllers…
from Hack+ https://ift.tt/34b9IpQ
via IFTTT
How to document your knowledge (in a CV/resume) ↳...
How to document your knowledge (in a CV/resume)
↳ https://gynvael.coldwind.pl/?lang=en&id=728
From time to time I am asked to look at someone’s CV/resume and to suggest improvements….
from Hack+ https://ift.tt/2JGMxdU
via IFTTT
Hacking Livestream #17: Basics of fuzzing ↳ https://www.youtube.com/watch?v=BrDujogxYSk Next topic...
Hacking Livestream #17: Basics of fuzzing
↳ https://www.youtube.com/watch?v=BrDujogxYSk
Next topic will be on basics of fuzzing. Probably nothing that my more advanced viewers don’t already know.See also:https://ift.tt/2X99TRi……
from Hack+ https://ift.tt/2UGDf7O
via IFTTT
Collin Mulliner, Security Engineer, Cruise ↳...
Collin Mulliner, Security Engineer, Cruise
↳ https://securityconversations.fireside.fm/collin-mulliner-cruise
Mobile security pioneer Collin Mulliner talks about the early days of hacking PalmOS devices, the current state of smartphone platforms, his work on securing self driving cars, and why he built and open-sourced a firmware analyzer tool….
from Hack+ https://ift.tt/2V5Na5O
via IFTTT
Hacking the GameBoy cartridge protection ↳ https://www.youtube.com/watch?v=ix5yZm4fwFQ In this video...
Hacking the GameBoy cartridge protection
↳ https://www.youtube.com/watch?v=ix5yZm4fwFQ
In this video we hack the GameBoy cartridge protection by building our own GameBoy cartridge using an FPGA! You can find the FPGA source-code on my Github here: https://github.com/ghidraninja/gameboy-fpga-cartridge/ - ModernVintageGame on the CIC chips: https://www.youtube.com/watch?v=x8PYE8A-WEw…
from Hack+ https://ift.tt/2yurhp7
via IFTTT
петък, 3 април 2020 г.
Ghidra Ninja ↳ https://www.youtube.com/channel/UC3S8vxwRfqLBdIhgRlDRVzw …
Ghidra Ninja
↳ https://www.youtube.com/channel/UC3S8vxwRfqLBdIhgRlDRVzw
…
from Hack+ https://ift.tt/39Fx8oF
via IFTTT
A Study of WebRTC Security ↳ https://ift.tt/2dD7irJ Web Real-Time Communication...
A Study of WebRTC Security
↳ http://webrtc-security.github.io/#ref.3
Web Real-Time Communication (abbreviated as WebRTC) is a recent trend in web application technology, which promises the ability to enable real-time communication in the browser without the need for plug-ins or other requirements….
from Hack+ https://ift.tt/2R8Xk4y
via IFTTT
четвъртък, 2 април 2020 г.
iPhone Camera Hack ↳ https://ift.tt/3dOyjpa Imagine you are on a...
iPhone Camera Hack
↳ https://www.ryanpickren.com/webcam-hacking-overview
Imagine you are on a popular website when all of a sudden an ad banner hijacks your camera and microphone to spy on you. That is exactly what this vulnerability would have allowed….
from Hack+ https://ift.tt/2UARz1M
via IFTTT
‘War Dialing’ Tool Exposes Zoom’s Password Problems ↳...
‘War Dialing’ Tool Exposes Zoom’s Password Problems
↳ https://krebsonsecurity.com/2020/04/war-dialing-tool-exposes-zooms-password-problems/
As the Coronavirus pandemic continues to force people to work from home, countless companies are now holding daily meetings using videoconferencing services from Zoom….
from Hack+ https://ift.tt/2X07nNb
via IFTTT
sup3rhero1 - Twitch ↳ https://ift.tt/2UUDISR …
sup3rhero1 - Twitch
↳ https://www.twitch.tv/sup3rhero1
…
from Hack+ https://ift.tt/3aD0a9R
via IFTTT
XSS challenge ↳ https://ift.tt/3454XhC DM me (@_zulln) the solution!…
XSS challenge
↳ https://xsschallenge.zulln.se/
DM me (@_zulln) the solution!…
from Hack+ https://ift.tt/2xMuLms
via IFTTT
NTLM Relay ↳ https://ift.tt/3dLtYmm NTLM relay is a technique of standing between a...
NTLM Relay
↳ https://en.hackndo.com/ntlm-relay/
NTLM relay is a technique of standing between a client and a server to perform actions on the server while impersonating the client. It can be very powerful and can be used to take control of an Active Directory domain from a black box context (no credentials)….
from Hack+ https://ift.tt/2JyIRLe
via IFTTT
EyeWitness - Looking Sharp ↳ https://ift.tt/2UyR0Fz Ever...
EyeWitness - Looking Sharp
↳ https://fortynorthsecurity.com/blog/eyewitness-looking-sharp/
Ever since its initial release, EyeWitness has only had a Linux version (originally in Python 2, and now in Python 3). This has proven very useful for us on our tests and it’s a tool we run on every single assessment. However, there has always been a need for a real Windows version of EyeWitness….
from Hack+ https://ift.tt/2xDQRYC
via IFTTT
сряда, 1 април 2020 г.
Stealing videos from vlc ↳ https://ift.tt/3amQUX8 VLC for iOS was...
Stealing videos from vlc
↳ https://www.inputzero.io/2020/03/idor-in-vlc-ios.html
VLC for iOS was vulnerable to an unauthenticated insecure direct object reference (IDOR) which could allow a local attacker to steal media from the storage by just navigating to the source URL/IP….
from Hack+ https://ift.tt/3dIr7uJ
via IFTTT
5 Best Practices to Maintain Endpoint Security ↳...
5 Best Practices to Maintain Endpoint Security
↳ https://medium.com/@chen_50373/5-best-practices-to-maintain-endpoint-security-82000a07c4
For the past century, technological advancement has been disrupting industries, sending ripples of change throughout the world. Every time a new piece of technology is released, the security perimeter of the network stretches….
from Hack+ https://ift.tt/3aMiugs
via IFTTT
Six years of the GitHub Security Bug Bounty program ↳...
Six years of the GitHub Security Bug Bounty program
↳ https://github.blog/2020-03-25-six-years-of-the-github-security-bug-bounty-program/
Last month GitHub reached some big milestones for our Security Bug Bounty program. As of February 2020, it’s been six years since we started accepting submissions….
from Hack+ https://ift.tt/2X10gUs
via IFTTT
Exploiting magic links, critical bugs are one line away ↳...
Exploiting magic links, critical bugs are one line away
↳ https://0xsha.io/posts/exploiting-magic-links-critical-bugs-are-one-line-away
Hello, luvs, I haven’t blog for a while, we are facing a sad pandemic 😷so I’ve decided to create this to make an important announcement, and also entertain you with an interesting vulnerability I’ve found. please read the short intro….
from Hack+ https://ift.tt/2UXainf
via IFTTT
Bento check: Detecting authentication credentials leaked over HTTP ↳...
Bento check: Detecting authentication credentials leaked over HTTP
↳ https://bento.dev/blog/2020/bento-check-no-auth-over-http/
Our mission at r2c is to profoundly improve software security and reliability to safeguard human progress, and we wanted to contribute to the static analysis community by writing some security-focused checks for Python. Understandably, Python devs have focused on style for a long time….
from Hack+ https://ift.tt/39Ayr84
via IFTTT
InQL Scanner ↳ https://ift.tt/2QPnqcD InQL is now public! As a...
InQL Scanner
↳ https://blog.doyensec.com/2020/03/26/graphql-scanner.html
InQL is now public! As a part of our continuing security research journey, we started developing an internal tool to speed-up GraphQL security testing efforts. We’re excited to announce that InQL is available on Github….
from Hack+ https://ift.tt/39DFNYC
via IFTTT
Where is my Train : Tracking to Hacking ! ↳...
Where is my Train : Tracking to Hacking !
↳ https://medium.com/@aniltom/where-is-my-train-tracking-to-hacking-d388e4b97225
I am Anil Tom . Since it’s been a long time that I have written a blog, I thought of writing one today. Here, I am sharing some of my findings in one of the Google acquisition domains. “Where Is My Train” by Sigmoid Labs Pvt. Ltd….
from Hack+ https://ift.tt/3dNOv9W
via IFTTT
Hack The Box - Sniper ↳...
Hack The Box - Sniper
↳ https://rizemon.github.io/hackthebox/php/smb/chm/windows/2020/03/29/sniper-htb.html
The operating system that I will be using to tackle this machine is a Kali Linux VM. What I learnt from other writeups is that it was a good habit to map a domain name to the machine’s IP address so as that it will be easier to remember. This can done by appending a line to /etc/hosts….
from Hack+ https://ift.tt/3427vwT
via IFTTT
Impact of DNS over HTTPS (DoH) on DNS Rebinding Attacks ↳...
Impact of DNS over HTTPS (DoH) on DNS Rebinding Attacks
↳ https://research.nccgroup.com/2020/03/30/impact-of-dns-over-https-doh-on-dns-rebinding-attacks/
DNS over HTTPS (DoH) is a new protocol to perform DNS resolution over HTTPS. It has been in the news recently as Google and Mozilla have both implemented DoH in Chrome and Firefox respectively. DoH encrypts DNS traffic using HTTPS….
from Hack+ https://ift.tt/2Jshr9A
via IFTTT
Bug bounties. Five Weeks To Your First Bug ↳...
Bug bounties. Five Weeks To Your First Bug
↳ https://0xsha.gitbook.io/bug-bounties-five-weeks-to-your-first-bug/
These programs allow the developers to discover and resolve bugs before the general public is aware of them, preventing incidents of widespread abuse….
from Hack+ https://ift.tt/2yldmle
via IFTTT
Description ↳ https://ift.tt/33VnsF6 The IoTGoat Project is a deliberately insecure...
Description
↳ https://github.com/OWASP/IoTGoat
The IoTGoat Project is a deliberately insecure firmware based on OpenWrt and maintained by OWASP to educate software developers and security professionals with testing commonly found vulnerabilities in IoT devices….
from Hack+ https://ift.tt/2UzpEPF
via IFTTT
OWASP Firmware Security Testing Methodology ↳...
OWASP Firmware Security Testing Methodology
↳ https://scriptingxss.gitbook.io/firmware-security-testing-methodology/
Whether network connected or standalone, firmware is the center of controlling any embedded device. As such, it is crucial to understand how firmware can be manipulated to perform unauthorized functions and potentially cripple the supporting ecosystem’s security….
from Hack+ https://ift.tt/3bJKGAY
via IFTTT
↳...
↳ https://docs.google.com/presentation/d/1N9Ygrpg0Z-1GFDhLMiG3jJV6B_yGqBk8tuRWO1ZicV8/preview?sle=true
…
from Hack+ https://ift.tt/2R27Hai
via IFTTT
How To Bypass CSP By Hiding JavaScript In A PNG Image ↳...
How To Bypass CSP By Hiding JavaScript In A PNG Image
↳ https://www.secjuice.com/hiding-javascript-in-png-csp-bypass/
Hide a malicious JavaScript library into a PNG image and tweet it, then include it in a vulnerable website by exploiting a XSS bypassing its Content-Security-Policy (CSP). It’s not Sci-Fi… it’s HTML Canvas….
from Hack+ https://ift.tt/2JIghXT
via IFTTT
gquere/pwn_jenkins ↳ https://ift.tt/2lRBu8X Use ysoserial to generate a payload. Then...
gquere/pwn_jenkins
↳ https://github.com/gquere/pwn_jenkins
Use ysoserial to generate a payload. Then RCE using this script: Details here….
from Hack+ https://ift.tt/3dVMrwS
via IFTTT
A self basic audit for Android applications ↳...
A self basic audit for Android applications
↳ http://www.giovanni-rocca.com/a-self-basic-audit-for-android-applications/
Those days we are fighting with no mercy disinformations, privacy abusement and generally measures adopted by various governments that uses the covid19 pandemic to spread tracking and survelliance to citizens….
from Hack+ https://ift.tt/2yrwcHx
via IFTTT
Hack+ Chat ↳ https://ift.tt/3bITdUF 47 members, 7 online You spam I ban! Simple as that! View...
Hack+ Chat
47 members, 7 online You spam I ban! Simple as that! View in Telegram If you have Telegram, you can view and join Hack+ Chat right away….
from Hack+ https://ift.tt/2UzKyhC
via IFTTT