GhostSec
Open in Telegram
Originally the NBP project which was made to teach upcoming hackers and hacktivists, now reworked to being the 3rd ghostsec channel after telegram bans
Show moreThe country is not specifiedTechnologies & Applications19 446
No data
Subscribers
+824 hours
+667 days
+23730 days
Posts Archive
Life isn't just about passing on your genes. We can leave behind much more than just DNA to the next generation. Through all kinds of art forms, through what we've seen, heard, felt through anger, joy, and sorrow. These are the things WE MUST pass on. That's what we must live for. We need to pass the torch, and let our children read our messy and sad history by its light and hopefully in a better tomorrow. We have all the magic of the digital age to do that. The human race will come to an end eventually, and new species may rule over this planet or earth may not be forever, but we still have the responsibility to leave what traces of life we can. Building the future and keeping the past alive are one and the same thing.
Re-releasing one of our older writeups/tutorials on finding and attacking SCADA/ICS devices. This is a very basic writeup and a general starting point for those interested in pursuing the attack of ICS devices as a whole!
There will eventually be a more refined and updated version with advanced topics being covered that will be released on our SCPA github page.
Life is about passing on more than just your DNA, We can leave behind A LOT through all forms of art in the world through anger, joy, and even sorrow. These are the things we will pass onto the next generation. With a better tomorrow!
~GhostSec 👻
We are very proud and happy with all the attacks going on for todays major attacks against OpIsrael, Especially coming from our sister and affiliated groups, The ones attacking different corps,gov sites, and most importantly industrial systems causing physical and heavy damage to this oppressive and illegitimate state.
For one example:
In coordination with ArabianGhosts, we attacked a Israeli Gas Station POS control Systems
https://check-host.net/check-report/24c041b7k9b2 https://check-host.net/check-report/24c0424ak842 https://check-host.net/check-report/24c03ea7k79b https://check-host.net/check-report/24c03e4ckdf9 https://check-host.net/check-report/24c03cf2k217 There will be a wide effect :- Disruption in their works like transactions, managing sales, tracking inventory, and handling payments, streamlining operations and providing valuable data for analysisWe do highly suggest checking out our sister group that focuses on attacking Israel : https://t.me/MadCapZone Find something you truly believe in and fight for it, To stand for nothing means you fall for everything! Fight for the freedom of yourself and the ones around you, Fight against your own oppression and the oppression of those who's voices you may only hear. We stand by everyone who has been affected by the genocide and terrible war crimes Israel has committed! Seek the rights and freedom that you rightly deserve! ~ From GhostSec with love ❤️
Today we are very happy to release a new tool we’ve been working on, a web fuzzer with AI/ML capabilities built with stealth in mind and various unique features. This is the initial release with more updates to come.
https://github.com/ghostsec420/phantomfuzzer
Feel free to report any issues or bugs.
I am a brother of the clouds And I only know how to share I know that everything belongs to everyone,That everything is alive in me!!
👻+4
Over the past few months we have been actively targeting Industrial systems all over Israel, and we are proud and happy to say that as of yesterday we have hit over 600+ ICS devices. Ranging from different device types like IEC, MODBUS, UNITRONICS, BACNET and so much more!
What did attacking these industrial devices getting hacked lead to?
Operational Downtime
Equipment Damage
Financial Loss
and more!
With pleas of a ceasefire they are quick to break it, For what they did against Palestine, For what they did against Lebanon, for what they are preparing for against Syria and everyone else facing their genocide and injustice. WE HEAR YOU, WE WILL CONTINUE TO FIGHT WITH YOU AND LET YOUR VOICES RING ALL AROUND THE WORLD!
Find something you believe in and fight for it, pass something to the next generation. The world needs all of us to do good now more than ever. Fight for your own freedom and pursue your own dreams for only YOU can be the impact you want to see in this world 👻
Today we bring a small breach which can be chained to a much more devastating attack. Affecting miat which is the main airport used in Mongolia.
This attack was done purely because we can and for the lulz. We already dehashed some of the passwords for you all while admin creds and some were left to the community. Consider it a fun game to build upon!
A very small fun time thing while you wait for our next announcement
PS: Its gonna be worth the wait 🍉
Find something you believe in and fight for it, If its not you taking action no one else will start.
~ With Love GhostSec 👻
Happy new year to everyone! A look back on this year quite a lot was done even though it was considered slower then our previous years we are glad to say we have done a lot publicly and privately we have a lot planned for the next year and are excited to show what we have spent a lot of time and effort on. We wish all of you continue to chase your freedom, goals and dreams and never give up on yourselves as you are all the only ones who can assure your own happiness, success and personal freedom!
sorry we didn’t save the world this year we were too busy building ours again.
~GhostSec 👻❤️
We'll go ahead and once again showcase the SCPA. Often time people reach out asking for a place to continue their learning journey to understand hacking better, Now obviously being practical and learning from experience is the best way but how can you do that without knowing things theoretically for a start. The SCPA written and supported by GhostSec is an advanced guidance to continue learning hacking in an offensive manner
We are also proud to announce new updates and changes coming soon to the SCPA
https://github.com/ghostsec420/SCPA
PS: Our silence does not mean our end. Our presence has never faded We have quite a lot planned coming up, we hear all of you, we see everything going on. WE STAND TOGETHER IN UNISON TO MAKE REAL CHANGE!
~GhostSec 👻❤️
Repost from InfoSec Insider
In memory of the Ghosts of Palestine martyrs, your legacy of bravery inspires us. We remember you deeply and miss you always. Glory to the martyrs! - Ghosts of Palestine
Video credit: GhostSec
#Gaza #GhostsofPs
https://t.me/GhostsofPs_org
Telegram has banned the second ghostsec channel that was up therefore we will be reworking this channel to being the main ghostsec channel, all previous learning material and content posted here as part of NBP will stay. Moving forward though this will become the main ghostsec channel.
Repost from 𝗠𝗮𝗱𝗖𝗮𝗽 ☠️_/°•🇵🇸
1. Open CMD as Administrator.
2. Install product key (example):
slmgr /ipk YYVX9-NTFWV-6MDM3-9PT4T-4M68B3. Set KMS machine:
slmgr /skms kms.03k.org4. Activate Windows:
slmgr /atoVerify Activation:
slmgr /dlvIf you encounter the error "Activation system prompts on non-core versions of the computer 0xC004F074slui.exe 0x2a 0x80040111": 1. Open "Registry Editor" (Windows + R then type Regedit). 2. Modify the value of SkipRearm to 1: Navigate to HKEY_LOCAL_MACHINE -> SOFTWARE -> Microsoft -> Windows NT -> CurrentVersion -> SoftwareProtectionPlatform, and change the value of SkipRearm to 1. Then restart your computer. 3. Run CMD as Administrator, input:
SLMGR -REARMFollow the prompts and restart your computer again.
Repost from 𝗠𝗮𝗱𝗖𝗮𝗽 ☠️_/°•🇵🇸
Windows 10 professional key
W269N-WFGWX-YVC9B-4J6C9-T83GXWindows 10 enterprise key
NPPR9-FWDCX-D2C8J-H872K-2YT43Windows 11 keys
W269N-WFGWX-YVC9B-4J6C9-T83GX MH37W-N47XK-V7XM9-C7227-GCQG9 2X7P3-NGJTH-Q9TJF-8XDP9-T83GT J2WWN-Q4338-3GFW9-BWQVK-MG9TT NBQWQ-W9PTV-B4YWP-4K773-T6PKG 236TW-X778T-8MV9F-937GT-QVKBB 87VT2-FY2XW-F7K39-W3T8R-XMFGF KH2J9-PC326-T44D4-39H6V-TVPBY TFP9Y-VCY3P-VVH3T-8XXCC-MF4YK J783Y-JKQWR-677Q8-KCXTF-BHWGC C4M9W-WPRDG-QBB3F-VM9K8-KDQ9Y 2VCGQ-BRVJ4-2HGJ2-K36X9-J66JG MGX79-TPQB9-KQ248-KXR2V-DHRTDWin Server 2019 Std
N69G4-B89J2-4G8F4-WWYCC-J464CWin Server 2019 Essential
WVDHN-86M7X-466 P 6-VHXV7-YY726
Repost from 𝗠𝗮𝗱𝗖𝗮𝗽 ☠️_/°•🇵🇸
Windows 10 19H2 keys
NPPR9-FWDCX-D2C8J-H872K-2YT43 NPPR9-FWDCX-D2C8J-H872K-2YT43 WGGHN-J84D6-QYCPR-T7PJ7-X766F W269N-WFGWX-YVC9B-4J6C9-T83GX 2F77B-TNFGY-69QQF-B8YKP-D69TJ NYW94-47Q7H-7X9TT-W7TXD-JTYPM 2B87N-8KFHP-DKV6R-Y2C8J-PKCKT NJ4MX-VQQ7Q-FP3DB-VDGHX-7XM87 MH37W-N47XK-V7XM9-C7227-GCQG9 WNMTR-4C88C-JK8YV-HQ7T2-76DF9 VK7JG-NPHTM-C97JM-9MPGT-3V66T DPH2V-TTNVB-4X9Q3-TJR4H-KHJW4Windows 10 keys
W269N-WFGWX-YVC9B-4J6C9-T83GX P7N43-7CKCH-8DJ7T-3Y6RV-G6PJR P9C2R-NM3BW-JR7DG-2R38J-D9MPF KH2J9-PC326-T44D4-39H6V-TVPBY TFP9Y-VCY3P-VVpT-8XXCC-MF4YK 236TW-X778T-8MV9F-937GT-QVKBB 87VT2-FY2XW-F7K39-W3T8R-XMFGF 6K2KY-BFH24-PJW6W-9GK29-TMPWP RHTBY-VWY6D-QJRJ9-JGQ3X-Q2289 C4M9W-WPRDG-QBB3F-VM9K8-KDQ9Y 2VCGQ-pVJ4-2HGJ2-K36X9-J66JG MGX79-TPQB9-KQ248-KXR2V-DHRTD FJHWT-KDGHY-K2384-93CT7-323RC 6K2KY-BFH24-PJW6W-9GK29-TMPWP KH2J9-PC326-T44D4-39H6V-TVPBY TFP9Y-VCY3P-VVH3T-8XXCC-MF4YK 236TW-X778T-8MV9F-937GT-QVKBB 87VT2-FY2XW-F7K39-W3T8R-XMFGF J783Y-JKQWR-677Q8-KCXTF-BHWGC
Repost from 𝗠𝗮𝗱𝗖𝗮𝗽 ☠️_/°•🇵🇸
🔹 HOW TO MAKE 16GB RDP FREE 💻
🔸 Discription:
Remote Desktop Protocol (RDP), a secure network communication protocol offered by Microsoft, allows users to execute remote operations on other computers. It facilitates secure information exchange between remotely connected machines over an encrypted communication channel.
Repost from ℍ𝕒𝕔𝕜𝕖𝕣 𝕊𝕠𝕔𝕚𝕖𝕥𝕪 🧩 ( Learn something new )
🔒 How to Encrypt Your VirtualBox Hard Drive
🛡️ Why Encrypt?
- Enhance the security of your VirtualBox VMs, especially when using tools like BLTOOLS for checking logs.
🚀 Steps to Encrypt VirtualBox Hard Drive
1. Ensure VirtualBox is Updated
- 📥 Make sure you are using the latest version of VirtualBox.
2. Open VirtualBox and Select Your VM
- 📂 Open VirtualBox.
- 🖱️ Select the virtual machine you want to encrypt.
3. Access VM Settings
- ⚙️ Right-click on the selected VM and click Settings.
4. Go to Storage Settings
- 💽 In the Settings window, navigate to the Storage tab.
5. Select the Disk to Encrypt
- 🗂️ Under thehy Encrypt?
- Enhancesection, click on the hard disk you want to encrypt.
6. Enable Encryption
- 🔐 In the Attributes section, click on ther VirtualBox checkbox.
- 🛡️ Choose the encryption algorithm (e.g., AES).
- 🔑 Enter and confirm a secure password.
7. Apply Changes
- ✅ Click OK to apply the changes.
- 💾 Save the password securely.
8. Start the VM
- ▶️ Start the virtual machine.
- 🔑 Enter the encryption password if prompted.
🖥️ Alternative: Using Command Line
1. Open Command Prompt or Terminal
- 💻 On Windows, open Command Prompt.
- 💻 On macOS/Linux, open Terminal.
2. Run Encryption Command
- Use the following command to encrypt the virtual disk:
achine you want to encrypt.
3. Access VM Settings
- ⚙️ Right-click on the sel - 🔄 Replacept Your VirtualBox Harwith the actual path to your virtual disk file.
- 🔑 Enter and confirm the encryption password.
Example Commandially when using tools like BLTOOLS for checking logs.
🚀 Steps to Encrypt VirtualBox Hard Drive
1. Ensure
🔑 Important Notes
- 📦 Backup Your Data: Always backup your VM and important data before encryption.
- 📝 Password Management: Store the encryption password securely.
- ⚡ Performance Impact: Encryption may slightly impact VM performance.
By following these steps, you can secure your VirtualBox hard drive, providing an additional layer of security when handling sensitive logs and data with tools like BLTOOLS.
Little trick
1. when opening the page we see the panel and then its redirected to login page.
2. I open DEV console in browser, reload the page and activate the "stop on exception".
3. This show the url calling the API (with the amazon credentials).
2. I took the parameter in the url and searched it in the DEV console to see where it is defined, and then get the other parameters.
3. Once I have this script I try to call the other parameters, and since the API doesn't require any authentication im able to call the users (it is a parameter).
4. There is two users: admin and user1. They both have same md5 hash that I cracked and gave: password.
Yes, it can be that bad secure.
OSINT Toolbox
Search leaked data for Email, Phone Number, Facebook account, Twitter profile and Telegram username.
@CrossTrack_bot
