Hack 2 Secure Community
Open in Telegram
No data
Subscribers
-324 hours
-77 days
-2030 days
Posts Archive
🚨RED TEAM - EVIL INSPECT ELEMENT 🚨
💫 Thank you guys for support and coomig soon more advance series
https://youtu.be/bVzUPnd9tDQ?si=24CPdaiQGQLXOwVu
SHARE AND SUBSCRIBE
*TCM Security*
20% off all certifications and live trainings.
50% off your first payment on all-access memberships (includes all plans and gift vouchers)
Use code *SUMMERHAX24* at checkout
Challenge to everyone asking me a question Regarding Cyber Security Red Teaming...
Question Related to
Malware Development
Exploit Development
Red Teaming AD
Web Exploitation
Ask your question here - https://www.instagram.com/stories/sanatani._.pentester/3414785294506562087?utm_source=ig_story_item_share&igsh=MXJyZDFpYmtyYXlibA==
🚨 cirtification guidance 🚨
Guy's our new video uploaded
https://youtu.be/4Tj9NRug8gw?si=ZP8xrFo1Dw8W5q0C
Ye lo CEHv12 abhi koi iske liye payment nhi karna just learning ke liye sahi hai warna certificate based kharab hai
Ye lo CEHv12 abhi koi iske liye payment nhi karna just learning ke liye sahi hai warna certificate based kharab hai
EC-Council: Certified Ethical Hacking (CEH v12)🔥
Size: 36.1gb
🆕 Full Videos + LAB Added 🆕
🔗 Download: https://gplinks.co/p8E7VFK
🚨 android reverse engineering 🚨
Persisting android malware
https://youtu.be/ARDh9qFHSzo?si=YnpgOWeO7mK4xpuc
➡️ More quality content share and subscribe fast
Kal subha ayegi new video 😋❤️
Topic - Make Persistence Malware for Android fully Manual
(Reaction ploos) 👀
https://www.instagram.com/stories/sanatani._.pentester/3407163609338971710?utm_source=ig_story_item_share&igsh=ZmEwM3dmM2J1NjI5
This is what you will get at the end of the course my private notes for OSCP & Offensive Pentesting 🫶🔥
3. Enumerating Windows Systems
1. Manual Enumeration
2. Enumeration with Powershell
3. Automated Enumeration Tools
1. winpeas
2. winprivesccheck
3. windows exploit suggestor
4. powerup
4. Windows Service Abuse
1. Insecure service permissions
2. Hijack service binaries
3. DLL Hijacking
4. Unquoted service path abuse
5. Windows Passwords
1. Registry
2. Saved Creds
3. SAM
4. Powershell
5. Config Files
6. Saved software sessions (PuTTY)
4. Unattended installation files
6. Windows Registry
1. AutoRun
2. AlwaysInstallElevated
3. Weak Registry Permissions
7. Impersonation Attacks
1. Token Impersonation Overview
2. SeImpersonate
3. SeBackup/SeRestore
4. SeTakeOwnership
5. Potato Attacks
6. Roguepotato
7. Printspoofer
8. Other Windows Components
1. Scheduled Tasks
2. Insecure GUI Apps
3. Startup apps
8. Kernel exploits
:~# Active Directory for Offensive Teamer
1. Active Direcotory Basic
• Introduction to Active Directory
• Domain Controller Fundamentals
• Practical of AD Basic
2. Active Directory Lab Setup
• Downloading important files
• Installing Server & Client
• Configuration of Domain Controller & DNS
3. Initial Compromise Attacks
• OSINT & Phishing
• SMB Relay
• LLMNR Poisoning
• RDP Mitm Attack
• SSH Mitm Attack
• Js Macro Attack
• HTA Macro Attack
4. AD Internal Enumeration
• Powershell Enumeration
• Command Prompt Enumeration
• BloodHound Enumeration
5. Active Directory Lateral Movement
• Dumping Credentials - NTDS.dit
• Dumping Credentials - DCSync
• Pass the Hash
• Pass the ticket
• Over pass the hash
• Kerberosting attacks
• AS-Reproasting
• Domain Cached Credentials
• DCOM Attack
6. Active Directory Pivoting
• Introduction to Pivoting & Port Redirection
• Pivoting with Socat
• Pivoting with Chisel
• Pivoting with SOCKS & Chisel
7. Active Directory Exploitation Attack
• Uncontrained Delegation
• Contrained Delegation
• AD Users Exploitation
• GPO Exploitation
8. Active Directory Persistence
• Credential Persistence
• Silver Ticket
• Golden Ticket
• DCSync
• Diamond Ticket
1. Footprinting & Recon
• Footprinting through Search Eingine
• Intro to OSINT
• Email Footprinting
• Website Footprinting
• Firewall Detection
• DNS Footprinting
• DNS Records Recon
• Google DNS Lookup
• Traceroute Analysis
• Shodan Recon
• whatweb & Wappalyzer
• Subdomain Enumeration
• Google Dork
• Content Discovery
• Finding Origin IP
• Wayback URL
• Source Code Analysis
2. Target Scanning & Enumeration
☐ Scanning Networks
• Mapping Live Nodes - ICMP/ARP/TCP
• Mapping Subnets
• Mapping Network Topology
• Port Scanning - TCP/UDP
• Banner Grabbing
• Version Scanning
• OS Scanning
• IDS/IPS Bypass Scanning - Spoofing/Decoy/MTU Fragment/Aggresive
☐ Network Enumeration
• FTP enumeration
• SMB enumeration
• NetBios Enumeration
• RDP Enumeration
• SMTP Enumeration
• DNS Enumeration
• HTTP Enumeration
3. Initial Access Attacks
• Public Exploit
• Password Attacks - Brute Force/Rianbow/Dictonary attacks
• Web Attacks
• OWASP Top 10
• Local File Inclusion
• Remote File Inclusion
• Complete IDOR
• Complete XXE
• Broken Authentication
• Remote Code Execution
• MySQL to RCE
• OS Command Injection
4. File Sharing Techniques
• Python Servers
• Php Server
• SCP SSH Share
• Command Prompt
• Powershell
5. Host Based Persistence - Windows OS
• Startup Persistence
• Registry Persistence
• Logon Scripts
6. Host Based Persistence - Linux OS
• Backdooring Server Persistence
• Bashrc File Persistence
• Service Persistence
• User Add Persistence
7. Locally Internal Enumeration - Linux OS
• User & Group Enumeration
• Hostname & OS Enumeration
• Process & Service Enumeration
• Network Enumeration
• Firewall Enumeration
• Scheduled Task Enumeration
• File Permission Enumeration
8. Locally Internal Enumeration - Windows OS
• User & Group Enumeration
• Hostname & OS Enumeration
• Process & Service Enumeration
• Network Enumeration
• Firewall Enumeration
• Scheduled Task Enumeration
• Installed Software Enumeration
• File Permission Enumeration
9. Linux Privileges Escalation
• Kernel Exploit
• SUID/SGID Exploit
• Weak File Permission
• Sudo Bypass
• Service Exploit
• Cron Jobs
• NFS Exploit
• Capabilities Exploit
• Docker Exploit
10. Windows Privileges Escalation
• Kernel Exploit
• Service Abuse
• Sensitive Credientials
• Registry Exploit
• Privileges Attacks
• UAC Bypass
11. Credentials Dumping
• Introduction to Credeentials Dumping
• Dumping Memory Password Hash - Registry Method
• Dumping Memory Password Hash - Task Manager
• Dumping Memory Password Hash - Mimikatz
• Dumping Browser Password Hash - laZagne
• Dumping Password - Fake URL Server Social Engineering Attack
12. Lateral Movement & Pivoting
• Lateral Movement Introduction
• PsExec Latreal Movement
• SMBExec Lateral Movement
• CME Lateral Movement
• RDP Lateral Movement
• WinRm Lateral Movement
• Pass The Hash - Metasploit
• Pass The Hash - CME
• Pass The Hash - PsExec
• Pass The Hash - Evil-WinRm
• Pivoting Introduction
• SSH Tunnling Pivoting
• SOCKS Proxy Pivoting
• Chisle Pivoting
:~# Linux Privileges Escalation
1. Intro to Privilege Escalation
2. Intro to Linux User Management
1. Files and user privileges
3. Enumerating Linux
1. Manual Enumeration
2. Automated enumeration
1. Linpeas
2. linux exploit suggestor
3. linux privesc check
4. Sensitive Credentials
1. History files
2. Config files
3. SSH keys
5. Weak file permissions
1. /etc/passwd write
2. /etc/shadow R/W
6. Cron jobs
1. Insecure file permissions
2. Environment variables
3. Wildcards
7. SUID/SGID Executables
1. Finding SUID binaries
2. Known exploits
3. Environment variables
8. Sudo
1. Shell escape sequences
2. Environment variables (LD_PRELOAD, LD_LIBRARY_PATH)
9. Other linux components
1. NFS
2. Capabilities: getcap
3. Service Wxploits (mysql udf)
2. Kernel Exploits
:~# Windows Privileges Escalation
1. Intro to Course
2. Introduction to Windows Privileges
1. Access Control Mechanisms
2. Situational Awareness
