ar
Feedback
Dridex Hackers Zone

Dridex Hackers Zone

الذهاب إلى القناة على Telegram

Free Tutorials/Methods/Tools @dridexxsupport

إظهار المزيد
لم يتم تحديد البلدالعملات المشفرة101 158
854
المشتركون
لا توجد بيانات24 ساعات
لا توجد بيانات7 أيام
لا توجد بيانات30 أيام
أرشيف المشاركات
\n\n","datePublished":"2022-10-19T20:00:47Z","dateModified":"2022-10-19T20:00:47Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":38},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":9,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2791","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2791","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2791","headline":"cdn.example allows us to add our project and host a malicious JS file.","articleBody":"cdn.example allows us to add our project and host a malicious JS file.","datePublished":"2022-10-19T20:00:40Z","dateModified":"2022-10-19T20:00:40Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":38},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":10,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2790","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2790","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2790","headline":" \n\n\n\n \n \n Broken Link Hijacking\n\n\n \n\n","datePublished":"2022-10-19T20:00:31Z","dateModified":"2022-10-19T20:00:31Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":37},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":11,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2789","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2789","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2789","headline":"Reflected Broken Link Hijacking You know that feeling when you think you have reflected XSS, but cannot break…","articleBody":"Reflected Broken Link Hijacking\nYou know that feeling when you think you have reflected XSS, but cannot break out of the href or src attributes?\n\nIf the link is a CDN or a file hosting service, you can construct a malicious link and host that file on the service. Admittedly, these are very rare, but definitely something to keep in mind in case you come across this issue in the future.\n\nExample Scenario\nhttp://example.edu/?version=1.0.0 returns a specific version of the JS file being hosted on cdn.example.","datePublished":"2022-10-19T20:00:23Z","dateModified":"2022-10-19T20:00:23Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":37},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":12,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2788","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2788","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2788","headline":"Dridex Hackers Zone","datePublished":"2022-10-19T20:00:13Z","dateModified":"2022-10-19T20:00:13Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":36}]}},{"@type":"ListItem","position":13,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2787","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2787","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2787","headline":"Content Hijacking An attacker can hijack the content of a page by taking over the expired domain/page. A good…","articleBody":"Content Hijacking\nAn attacker can hijack the content of a page by taking over the expired domain/page. A good example of this can be seen in @MisterCh0c’s blog post “How I hijacked top celebrities tweets including Katy Perry, Shakira…”.","datePublished":"2022-10-19T19:59:55Z","dateModified":"2022-10-19T19:59:55Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":39},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":14,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2786","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2786","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2786","headline":"Also sometimes companies still link to expired analytics pages. If the attacker can hijack that expired page,…","articleBody":"Also sometimes companies still link to expired analytics pages. If the attacker can hijack that expired page, they can monitor traffic and possibly gather valuable information about the target’s users.","datePublished":"2022-10-19T19:59:39Z","dateModified":"2022-10-19T19:59:39Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":37},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":15,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2785","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2785","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2785","headline":"Now you can takeover example.com and can control the JS file on example.edu. Information Leakage Hijacking br…","articleBody":"Now you can takeover example.com and can control the JS file on example.edu.\n\nInformation Leakage\nHijacking broken links which are missing the rel=\"noopener noreferrer\" attribute could leak information to the attacker-controlled page.","datePublished":"2022-10-19T19:59:18Z","dateModified":"2022-10-19T19:59:18Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":39},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":16,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2784","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2784","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2784","headline":" \n\n\n \n \n Broken Link Hijacking\n\n\n \n\n","datePublished":"2022-10-19T19:59:04Z","dateModified":"2022-10-19T19:59:04Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":37},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":17,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2783","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2783","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2783","headline":"Stored Broken Link Hijacking Impersonation When a company deletes their social media account they might forge…","articleBody":"Stored Broken Link Hijacking\nImpersonation\nWhen a company deletes their social media account they might forget to remove the link from their website. An attacker can create an account on the social media platform with that username and impersonate the company.\n\nUpdate (Jan, 2022): I advise against reporting broken links to social media accounts to bug bounty programmes. Most vendors will not accept these kind of reports.\n\nExternal JS File Hijacking\nIf a target has an external JS file and that domain/page is expired, you can claim it and then you essentially have stored XSS.\n\nSay for instance example.edu has an external JS file hosted on example.com and example.com has expired.","datePublished":"2022-10-19T19:58:44Z","dateModified":"2022-10-19T19:58:44Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":36},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":18,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2782","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2782","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2782","headline":"Broken Link Hijacking (BLH) exists whenever a target links to an expired domain or page. Broken Link Hijackin…","articleBody":"Broken Link Hijacking (BLH) exists whenever a target links to an expired domain or page. Broken Link Hijacking comes in two forms, reflected and stored. This issue has been exploited in the wild numerous times, but surprisingly few researchers actively look for broken links in bug bounty programs.","datePublished":"2022-10-19T19:57:43Z","dateModified":"2022-10-19T19:57:43Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":34},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":19,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2781","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2781","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2781","headline":"Broken Link Hijacking - How expired links can be exploited","articleBody":"Broken Link Hijacking - How expired links can be exploited","datePublished":"2022-10-19T19:57:22Z","dateModified":"2022-10-19T19:57:22Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":35},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":20,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2780","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2780","mainEntityOfPage":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials/posts/2780","headline":"Dridex Hackers Zone","datePublished":"2022-10-19T19:57:04Z","dateModified":"2022-10-19T19:57:04Z","author":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"publisher":{"@type":"Organization","name":"Dridex Hackers Zone","url":"https://telemetr.io/ar/channels/1426968519-dridexxhackingtutorials","image":"https://img.tlmtr.io/c/1yzpHh/4956437413031422749?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":33}]}}]}
MICROSOFT OFFICE WORD RCE FILE TUTORIAL AND TOOLS AND VIDEO Curtousy of XRAHITEL

FREE VBA MACRO DOWNLOAD

FREE DOWNLOAD OF THE BROKEN LINK CHECKER

broken-link-checker broken-link-checker will crawl a target and look for broken links. Whenever I use this tool I like to run: $ blc -rof --filter-level 3 https://example.com/ After a while I often find myself adapting it to something like this in order to prevent false positives: $ blc -rfoi --exclude linkedin.com --exclude youtube.com --filter-level 3 https://example.com/

<!-- http://example.edu/?link=maliciouspath --> <!DOCTYPE html> <html> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width"> <title>Broken Link Hijacking</title> </head> <body> <script src="//cdn.example/maliciouspath/script.js"></script> </body> </html>

cdn.example allows us to add our project and host a malicious JS file.

<!-- http://example.edu/?version=1.0.0 --> <!DOCTYPE html> <html> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width"> <title>Broken Link Hijacking</title> </head> <body> <script src="//cdn.example/1.0.0/script.js"></script> </body> </html>

Reflected Broken Link Hijacking You know that feeling when you think you have reflected XSS, but cannot break out of the href or src attributes? If the link is a CDN or a file hosting service, you can construct a malicious link and host that file on the service. Admittedly, these are very rare, but definitely something to keep in mind in case you come across this issue in the future. Example Scenario http://example.edu/?version=1.0.0 returns a specific version of the JS file being hosted on cdn.example.

photo content

Content Hijacking An attacker can hijack the content of a page by taking over the expired domain/page. A good example of this can be seen in @MisterCh0c’s blog post “How I hijacked top celebrities tweets including Katy Perry, Shakira…”.

Also sometimes companies still link to expired analytics pages. If the attacker can hijack that expired page, they can monitor traffic and possibly gather valuable information about the target’s users.

Now you can takeover example.com and can control the JS file on example.edu. Information Leakage Hijacking broken links which are missing the rel="noopener noreferrer" attribute could leak information to the attacker-controlled page.

<!DOCTYPE html> <html> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width"> <title>Broken Link Hijacking</title> </head> <body> <script src="//example.com/script.js"></script> </body> </html>

Stored Broken Link Hijacking Impersonation When a company deletes their social media account they might forget to remove the link from their website. An attacker can create an account on the social media platform with that username and impersonate the company. Update (Jan, 2022): I advise against reporting broken links to social media accounts to bug bounty programmes. Most vendors will not accept these kind of reports. External JS File Hijacking If a target has an external JS file and that domain/page is expired, you can claim it and then you essentially have stored XSS. Say for instance example.edu has an external JS file hosted on example.com and example.com has expired.

Broken Link Hijacking (BLH) exists whenever a target links to an expired domain or page. Broken Link Hijacking comes in two forms, reflected and stored. This issue has been exploited in the wild numerous times, but surprisingly few researchers actively look for broken links in bug bounty programs.

Broken Link Hijacking - How expired links can be exploited

sticker.webp0.13 KB