hacktricks icon indicating copy to clipboard operation
hacktricks copied to clipboard

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Results 62 hacktricks issues
Sort by recently updated
recently updated
newest added

Hi all, I am trying to create a rogue DC to do a DC Shadow attack in my virtual environment. I get to NT AUTHORITY\SYSTEM on the PC I want...

Hi, I found some broken links: - [ ] https://beta.brainsmasher.eu/ (file: a.i.-exploiting/bra.i.nsmasher-presentation/Basic_Bruteforcer.md, error: ECONNRESET) - [ ] https://beta.brainsmasher.eu (file: a.i.-exploiting/bra.i.nsmasher-presentation/basic-bruteforcer.md, error: ECONNRESET) - [ ] https://beta.brainsmasher.eu/ (file: a.i.-exploiting/bra.i.nsmasher-presentation/basic-captcha-breaker.md, error: ECONNRESET)...

Page - https://book.hacktricks.xyz/network-services-pentesting/pentesting-web Tool - https://github.com/projectdiscovery/katana Also I recommend checking it out, its kinda cool Best regards :)

Hello @carlospolop , After reading your API Security page (https://book.hacktricks.xyz/network-services-pentesting/pentesting-web/web-api-pentesting), I wanted to suggest that you include Cherrybomb which is an API security tool that audit your API based on...

I'm sure this will be a controversial request to make for many people using Hacktricks however I will make it nonetheless. I'm one of those weird guys that prefers light...

Best Practice details how to use Criminalip. https://www.criminalip.io/developer/best-practice It is also provided by Filter, tags, API, etc. https://www.criminalip.io/developer/filters-and-tags/filters https://www.criminalip.io/developer/filters-and-tags/tags https://www.criminalip.io/developer/api/post-user-me If you use Asset Search in CriminalIP, you can obtain...

https://book.hacktricks.xyz/network-services-pentesting/8009-pentesting-apache-jserv-protocol-ajp The package "libapache2-mod-jk" is no longer available in Kali Linux. It's necessary for the "AJP Proxy" section. My workaround was downloading it from a Debian repo here: https://packages.debian.org/buster/libapache2-mod-jk ```bash...

minor grammar update You can remove this content before sending the PR: ## Attribution We value your knowledge and encourage you to share content. Please ensure that you only upload...

Congragratulations issues I can