Commit graph

588 commits

Author SHA1 Message Date
Sébastien Copin
fe88ec40e7
Update 1414-pentesting-ibmmq.md (typos) 2023-10-12 13:52:24 +02:00
Sébastien Copin
30cbf6ebc7 Add Pentesting IBM MQ (1414) 2023-10-12 01:08:45 +02:00
Leandro
a3d33f13c3
Adding SQL Server Linked Servers Passwords Attack
Adding a section to the pentesting-mssql-microsoft-sql-server playbook where SQL Server Linked Servers Passwords Attack is detailed with information and scripts to handle the needed configurations. Also a script for the extraction and decryption of the passwords is added.
Furthermore, additional information is provided to better understand the attack.
2023-10-09 20:52:49 +01:00
CPol
aafdb7f10e
GITBOOK-4111: change request with no subject merged in GitBook 2023-10-05 14:47:43 +00:00
CPol
7f25eb4d37
GITBOOK-4108: change request with no subject merged in GitBook 2023-10-04 15:51:37 +00:00
CPol
261348bb2c
GITBOOK-4100: change request with no subject merged in GitBook 2023-09-28 15:09:34 +00:00
CPol
afd72865a1
GITBOOK-4092: change request with no subject merged in GitBook 2023-09-24 09:51:34 +00:00
Peter Potrowl
22c8a0639e
Fix sentence in werkzeug.md
Sentence made no sense
2023-09-17 21:52:17 +02:00
Adam Chovanec
3d67f023f8
minor fix of automatic commands
The -u flag was used twice.
2023-09-11 13:41:59 +02:00
Carlos Polop
85f15789e5
Merge pull request #703 from ScribblerCoder/docker-nginx-proxy
add dockerized version of nginx proxy with ajp
2023-09-11 02:00:52 +02:00
Carlos Polop
51bcb61305
Merge pull request #701 from afaq1337/patch-2
Update code-review-tools.md
2023-09-11 00:53:37 +02:00
Carlos Polop
8a91ee0d81
Merge pull request #700 from afaq1337/patch-1
Update code-review-tools.md
2023-09-11 00:27:19 +02:00
Carlos Polop
00a4a530df
Merge pull request #691 from viktoriia-lsg/master
Angular methodology
2023-09-11 00:07:37 +02:00
CPol
9a823c5316
GITBOOK-4073: change request with no subject merged in GitBook 2023-09-07 06:07:56 +00:00
ScribblerCoder
640dac454d
add dockerized version of nginx proxy with ajp 2023-09-07 03:35:02 +03:00
Afaq
3a92d887a8
Update code-review-tools.md
Added a tool for pnpm package manager.
2023-09-06 18:09:21 +05:00
Afaq
d0d6f13464
Update code-review-tools.md
Added a tool for RUST.
2023-09-06 18:05:05 +05:00
CPol
23c4c394e0
GITBOOK-4072: change request with no subject merged in GitBook 2023-09-05 17:43:46 +00:00
CPol
cdac602134
GITBOOK-4070: change request with no subject merged in GitBook 2023-09-05 14:44:49 +00:00
CPol
129d9d0d73
GITBOOK-4069: change request with no subject merged in GitBook 2023-09-05 14:37:12 +00:00
carlospolop
93b6df668e trickest 2023-09-05 00:10:11 +02:00
CPol
5d5ee35764
GITBOOK-4067: change request with no subject merged in GitBook 2023-09-04 16:23:40 +00:00
CPol
8cd2f11ec3
GITBOOK-4065: change request with no subject merged in GitBook 2023-09-04 14:02:39 +00:00
carlospolop
987e1109d8 trickest 2023-09-03 17:41:02 +02:00
CPol
90e5cbe540
GITBOOK-4064: change request with no subject merged in GitBook 2023-09-03 13:08:13 +00:00
carlospolop
d308298b26 intruder 2023-09-03 01:51:32 +02:00
carlospolop
2463753c56 intruder 2023-09-03 01:48:41 +02:00
CPol
0de31f2383
GITBOOK-4061: change request with no subject merged in GitBook 2023-08-31 15:11:42 +00:00
CPol
749e1c091d
GITBOOK-4059: change request with no subject merged in GitBook 2023-08-30 09:07:26 +00:00
Carlos Polop
fae6f50ce8
Merge pull request #696 from DeveloperOl/master
Update pentesting-postgresql.md
2023-08-29 20:47:50 +02:00
Carlos Polop
f2d54cb3c6
Merge pull request #690 from jblommaert/master-1
Fix: Typo
2023-08-29 20:18:44 +02:00
Oliver Boehlk
95f20afc82
Update pentesting-postgresql.md
unify Select in caps lock
2023-08-28 09:37:49 +02:00
Oliver Boehlk
2cff636067
Update pentesting-postgresql.md
Add current_catalog as Postgres enumeration command
2023-08-28 09:34:29 +02:00
Carlos Polop
db529bc0a3
Merge pull request #686 from Syncriix/master
SMB Local User Enummeration
2023-08-27 22:04:29 +02:00
CPol
3d9ea66965
GITBOOK-4051: change request with no subject merged in GitBook 2023-08-25 07:48:03 +00:00
CPol
7b95b4b0e9
GITBOOK-4044: change request with no subject merged in GitBook 2023-08-22 09:57:13 +00:00
CPol
554b95eac8
GITBOOK-4035: change request with no subject merged in GitBook 2023-08-16 04:32:29 +00:00
CPol
4c29b49ee0
GITBOOK-4034: change request with no subject merged in GitBook 2023-08-15 18:05:01 +00:00
CPol
d724c6604b
GITBOOK-4032: change request with no subject merged in GitBook 2023-08-15 16:09:09 +00:00
Sebastian
712e41590b
Merge branch 'carlospolop:master' into master 2023-08-15 10:12:22 +02:00
Sebastian
aaf5917e25
Added Automation 2023-08-15 10:09:34 +02:00
CPol
fd47bcfc8d
GITBOOK-4031: change request with no subject merged in GitBook 2023-08-15 01:35:49 +00:00
viktoriia-lsg
94b66dff7a
Update angular.md 2023-08-14 15:50:33 +03:00
viktoriia-lsg
7393f7a7ef
Angular methodology is edited 2023-08-14 15:49:18 +03:00
Julien Blommaert
49bb2cc70c
Fix: Typo
Fix typo in the Pentesting VoIP Readme
2023-08-14 14:01:55 +02:00
viktoriia-lsg
a8b75fece8
Angular methodology is added 2023-08-14 14:58:56 +03:00
Sebastian
bd550716ae
SMB Local User Enummeration 2023-08-08 11:05:26 +02:00
CPol
d66ecb4cdd
GITBOOK-4021: change request with no subject merged in GitBook 2023-07-31 15:59:11 +00:00
CPol
84d05a4c74
GITBOOK-4018: change request with no subject merged in GitBook 2023-07-30 21:28:42 +00:00
CPol
184e54867b
GITBOOK-4012: change request with no subject merged in GitBook 2023-07-19 11:35:52 +00:00
Carlos Polop
2cc2d9b182
Merge pull request #671 from austinleblanc/patch-1
Update 3128-pentesting-squid.md
2023-07-19 13:16:59 +02:00
Carlos Polop
4f4d314fca
Merge pull request #665 from sidhawkss/patch-1
Change: machine_id explanation
2023-07-17 17:25:20 +02:00
CPol
1ea7eeae91
GITBOOK-4011: change request with no subject merged in GitBook 2023-07-17 13:05:52 +00:00
carlospolop
d84af2b1f5 hp 2023-07-14 17:03:41 +02:00
carlospolop
6277fe6f8b hackenproof 2023-07-14 16:20:34 +02:00
CPol
cbc84fb677
GITBOOK-4009: change request with no subject merged in GitBook 2023-07-14 11:41:41 +00:00
CPol
f11b4d1856
GITBOOK-4008: change request with no subject merged in GitBook 2023-07-13 09:57:55 +00:00
austinleblanc
d948dd6bc1
Update 3128-pentesting-squid.md
Typo fix
2023-07-10 14:14:36 -04:00
Carlos Polop
74c65ab7b2
Merge pull request #660 from NaxnN/patch-6
Update werkzeug.md
2023-07-10 12:38:14 +02:00
SidHawks
a18bebaf7e
Change: machine_id explanation 2023-07-02 00:04:36 -03:00
Fabio Zuber
c57346ff77
docs(IIS): correct typo in basic auth bypass 2023-06-27 16:25:54 +02:00
Carlos Polop
41263c3fd8
Merge pull request #654 from shiomiyan/patch-3
Fix typo in GraphQL document
2023-06-24 18:44:47 +02:00
KeoOp
dc3bd534ee
Update werkzeug.md 2023-06-19 10:18:43 +08:00
CPol
96d3c84e90
GITBOOK-3985: change request with no subject merged in GitBook 2023-06-14 14:40:53 +00:00
CPol
9a68c91e4e
GITBOOK-3984: change request with no subject merged in GitBook 2023-06-14 10:51:55 +00:00
CPol
fa3b6dffc2
GITBOOK-3983: change request with no subject merged in GitBook 2023-06-14 00:31:26 +00:00
CPol
0164fe76c8
GITBOOK-3982: change request with no subject merged in GitBook 2023-06-13 16:23:33 +00:00
CPol
5850e04a1f
GITBOOK-3981: change request with no subject merged in GitBook 2023-06-13 10:26:10 +00:00
CPol
aac81361dc
GITBOOK-3975: change request with no subject merged in GitBook 2023-06-10 23:31:32 +00:00
shiomiyan
62befea09c
Fix typo in GraphQL document 2023-06-10 23:46:50 +09:00
CPol
273f175b12
GITBOOK-3971: change request with no subject merged in GitBook 2023-06-08 16:46:11 +00:00
CPol
cd4025c14f
GITBOOK-3968: change request with no subject merged in GitBook 2023-06-06 22:57:49 +00:00
CPol
e53c11a86a
GITBOOK-3966: change request with no subject merged in GitBook 2023-06-06 21:42:32 +00:00
CPol
f06b553ee0
GITBOOK-3965: change request with no subject merged in GitBook 2023-06-01 21:44:32 +00:00
CPol
ff4a3d95b7
GITBOOK-3962: change request with no subject merged in GitBook 2023-06-01 20:34:49 +00:00
Ally Petitt
f8c7abee39
Clean up and add additional WAF bypass techniques to waf-bypass.md 2023-05-31 20:00:55 -07:00
CPol
ffcdd1e35d
GITBOOK-3957: change request with no subject merged in GitBook 2023-05-29 10:58:05 +00:00
CPol
fbc68e5920
GITBOOK-3956: change request with no subject merged in GitBook 2023-05-29 10:35:28 +00:00
CPol
28e205b34c
GITBOOK-3949: change request with no subject merged in GitBook 2023-05-26 15:11:27 +00:00
CPol
c6842d3ff8
GITBOOK-3947: change request with no subject merged in GitBook 2023-05-26 11:10:05 +00:00
carlospolop
fdf9afee4e hacking career 2023-05-26 11:43:15 +02:00
Carlos Polop
4583682aaa
Merge pull request #633 from NaxnN/patch-3
fix typo in pentesting-mysql.md
2023-05-26 11:29:31 +02:00
CPol
dcb169177f
GITBOOK-3930: change request with no subject merged in GitBook 2023-05-16 16:54:39 +00:00
CPol
b212998555
GITBOOK-3915: change request with no subject merged in GitBook 2023-05-12 14:33:51 +00:00
CPol
1a404c88e7
GITBOOK-3913: change request with no subject merged in GitBook 2023-05-12 09:08:05 +00:00
CPol
2fafcfd659
GITBOOK-3903: change request with no subject merged in GitBook 2023-05-09 16:45:28 +00:00
CPol
c469ce05ac
GITBOOK-3892: change request with no subject merged in GitBook 2023-05-04 23:22:39 +00:00
CPol
ecd03d0108
GITBOOK-3884: change request with no subject merged in GitBook 2023-04-30 21:54:03 +00:00
CPol
98facb9725
GITBOOK-3883: change request with no subject merged in GitBook 2023-04-30 21:23:47 +00:00
KeoOp
af31fe3b83
fix typo in pentesting-mysql.md 2023-04-29 17:34:39 +08:00
Carlos Polop
575d54e2e5
Merge pull request #627 from LionelOvaert/patch-1
Update airbus ioxid article links
2023-04-26 15:56:32 +02:00
Carlos Polop
3d0193ad04
Merge pull request #623 from Reelix/patch-4
Fixed missing return characters in RTSP samples
2023-04-26 15:55:58 +02:00
Carlos Polop
07ef1482c5
Merge pull request #622 from XHNan/patch-1
add missing semicolons in nginx conf flie
2023-04-26 15:55:28 +02:00
Carlos Polop
05839a81bc
Merge branch 'master' into patch-1 2023-04-26 15:53:56 +02:00
Carlos Polop
a62813bab5
Merge pull request #618 from CoolHandSquid/DNS-typo-Fix
DNS typo Fix
2023-04-26 15:53:05 +02:00
Carlos Polop
bcee308b40
Merge pull request #617 from CoolHandSquid/Ffuf-Vhost-typo-Fix-1
Ffuf Vhost typo Fix
2023-04-26 15:52:51 +02:00
carlospolop
5ec5b67e79 update twitter 2023-04-25 20:35:28 +02:00
Lionel Ovaert
289fd8f050
Update airbus ioxid article links 2023-04-24 00:34:35 +02:00
CPol
71c5d3bf94
GITBOOK-3882: change request with no subject merged in GitBook 2023-04-23 19:27:30 +00:00
CPol
05b150f7d2
GITBOOK-3881: change request with no subject merged in GitBook 2023-04-23 19:20:09 +00:00
Reelix
b2b6a64782
Fixed missing return characters in RTSP samples
The DESCRIBE examples were missing the required \r\n\r\n's - I added them back in.
2023-04-19 14:42:54 +02:00
CPol
a9e2d3b784
GITBOOK-3880: change request with no subject merged in GitBook 2023-04-19 03:00:28 +00:00
KeoOp
0c3c193d16
fix semicolon missing in nginx conf flie 2023-04-19 10:17:03 +08:00
CPol
d8f6431f57
GITBOOK-3878: change request with no subject merged in GitBook 2023-04-18 14:22:56 +00:00
CPol
551efedf6a
GITBOOK-3877: change request with no subject merged in GitBook 2023-04-18 04:09:32 +00:00
CPol
679bd88424
GITBOOK-3876: change request with no subject merged in GitBook 2023-04-17 15:36:54 +00:00
CPol
bef0b1cc79
GITBOOK-3875: change request with no subject merged in GitBook 2023-04-17 15:16:32 +00:00
Chris
e78ce434d8
DNS typo Fix 2
DNS typo Fix 2
2023-04-13 17:23:59 -04:00
Chris
b4fc82c7fb
DNS typo Fix
DNS typo Fix
2023-04-13 17:19:39 -04:00
Chris
fa1099b8cf
Ffuf Vhost typo Fix
Ffuf Vhost typo Fix
2023-04-13 17:16:02 -04:00
CPol
b5069b5f86
GITBOOK-3870: change request with no subject merged in GitBook 2023-04-11 01:00:47 +00:00
Carlos Polop
51579a95f4
Merge pull request #614 from bl13pbl03p/patch-1
Update werkzeug.md | Replaced md5 with sha1
2023-04-09 17:19:32 +02:00
carlospolop
286ea6a24c hacktricks cloud 2023-04-07 10:52:01 +02:00
CPol
972364b176
GITBOOK-3869: change request with no subject merged in GitBook 2023-04-07 00:41:31 +00:00
CPol
dc61908373
GITBOOK-3868: change request with no subject merged in GitBook 2023-04-06 23:17:12 +00:00
CPol
00d80675fd
GITBOOK-3865: change request with no subject merged in GitBook 2023-04-06 09:53:48 +00:00
bl13bl03p
e28194bcef
Update werkzeug.md | Replaced md5 with sha1
Corrected sentence `If you are on an **old version** of Werkzeug, try changing the **hashing algorithm to md5** instead of md5.` 

To

`If you are on an **old version** of Werkzeug, try changing the **hashing algorithm to md5** instead of sha1.`
2023-04-05 19:08:32 +02:00
carlospolop
2197a2102f f 2023-04-05 17:19:27 +02:00
CPol
c3d99d5e4f
GITBOOK-3863: change request with no subject merged in GitBook 2023-04-05 15:16:57 +00:00
carlospolop
1fa9f77ec3 change 2023-04-05 14:02:54 +02:00
CPol
b68d444c7e
GITBOOK-3842: change request with no subject merged in GitBook 2023-03-28 22:07:13 +00:00
CPol
54b48259f0
GITBOOK-3841: change request with no subject merged in GitBook 2023-03-28 21:30:40 +00:00
CPol
85479f242d
GITBOOK-3839: change request with no subject merged in GitBook 2023-03-28 14:32:52 +00:00
CPol
bfb02053d9
GITBOOK-3838: change request with no subject merged in GitBook 2023-03-28 11:38:04 +00:00
CPol
209a38ca99
GITBOOK-3837: change request with no subject merged in GitBook 2023-03-28 10:26:45 +00:00
CPol
dee4c5fa4e
GITBOOK-3836: change request with no subject merged in GitBook 2023-03-28 10:15:00 +00:00
Carlos Polop
000d1f75c6
Merge pull request #609 from alichtman/patch-2
Fix "nodeIntegration" typos
2023-03-27 11:40:46 +02:00
Carlos Polop
bd7c5f95b2
Merge pull request #608 from alichtman/patch-1
Small typos / wording fix
2023-03-27 11:39:59 +02:00
Carlos Polop
605c7041f0
Merge pull request #607 from soutzis/soutzis-pentesting-mysql-patch1-typo
Small typo fix in example queries and an addition of a MySQL command
2023-03-27 11:39:26 +02:00
Carlos Polop
57a6a58b47
Merge pull request #606 from blacklanternsecurity/master
BBOT for bucket enumeration, subdomain takeover
2023-03-27 11:38:20 +02:00
Carlos Polop
9c58a361bd
Merge pull request #604 from petersandor/fix/typo-beginning
fix: typos
2023-03-27 11:36:43 +02:00
Carlos Polop
6f0ef1dcae
Merge pull request #603 from LighTend3r/master
Update laravel.md
2023-03-27 11:35:51 +02:00
CPol
2a8f3fc60f
GITBOOK-3835: change request with no subject merged in GitBook 2023-03-27 09:33:17 +00:00
Aaron Lichtman
5647d029b8
Fix "nodeIntegration" typos 2023-03-24 01:52:50 -07:00
Aaron Lichtman
2e79ff1ae4
Small typos / wording fix 2023-03-24 01:49:35 -07:00
Petros
2970f9704c
1 typo fix and 1 MySQL commands addition
- There was a typo in the query which is supposed to load the binary file as a blob into the remote database (section "Privilege Escalation via library, Windows"). Instead of load_file(), it used load_files() which is incorrect.

 - Added the "connect <database>;" command as well, under the "MySQL commands" section
2023-03-22 11:46:34 +02:00
TheTechromancer
c3e269b1ef
Update README.md 2023-03-21 23:01:23 -04:00
TheTechromancer
0db8cb0492 BBOT for bucket enumeration, subdomain takeover 2023-03-21 17:10:11 -04:00
Peter Šándor
92d821c204
fix: typos 2023-03-19 19:16:17 +01:00
LighTender - Dev
51984e88c7 Update laravel.md
I just change the `AES.key_size` because now it's an array of integers, and add the length of our key.
2023-03-19 18:42:20 +01:00
CPol
7104c3c53a
GITBOOK-3825: No subject 2023-03-15 09:38:23 +00:00
CPol
6b22eab3d2
GITBOOK-3820: No subject 2023-03-12 18:00:45 +00:00
CPol
94e9127a8d
GITBOOK-3819: No subject 2023-03-05 23:41:46 +00:00
carlospolop
f0e09e3f54 social 2023-03-06 00:16:20 +01:00
carlospolop
9e5102b4c0 social 2023-03-06 00:15:43 +01:00
CPol
bb1f6e0b75
GITBOOK-3817: No subject 2023-03-05 22:20:47 +00:00
carlospolop
89016342d8 f 2023-03-05 22:38:33 +01:00
carlospolop
bee65ef8c6 twit 2023-03-05 20:58:55 +01:00
CPol
675802d483
GITBOOK-3816: No subject 2023-03-05 19:54:13 +00:00
carlospolop
d0476b922d d 2023-03-05 19:35:39 +01:00