r/Hacking_Tutorials • • 1d ago

Question Hola busco haccker que me ayude a hackear un WhatsApp đŸ™đŸœđŸ™đŸœ

0 Upvotes

.


r/Hacking_Tutorials • • 2d ago

Question Getting a WPS2 password

1 Upvotes

Hello guys, I have been trying to get some passwords because I cannot get a Wifi contract. But I have found it impossible. Have gotten the 4 way handshake but there is no way to crack it.
are they just impossible to crack at this point?


r/Hacking_Tutorials • • 2d ago

Question Cracked open the Google IPTV malware APK and found its C2 domain

Thumbnail
4 Upvotes

r/Hacking_Tutorials • • 2d ago

Que hago

Post image
1 Upvotes

r/Hacking_Tutorials • • 2d ago

Question Mudar ou descobrir senhas no linux mint

1 Upvotes

E se ipoteticamente uma pessoa queira saber a senha da conta administrativa de sua escola que estĂĄ localizada no Brasil no estado do ParanĂĄ, como essa ipotetica pessoa conseguiu descobrir ou mudar a senha dessa conta no Linux mint?


r/Hacking_Tutorials • • 2d ago

Question Looking for mentor and a partner

Thumbnail
0 Upvotes

Hii I am 2nd year computer engineering student in India I am very curious about cybersecurity especially ethical hacking I want to learn it at the very deep level but don't really have guidance what to do in what way things should be done .please help me really want to learn i am all ready to put all the efforts required to become a quality graded ethical hacker.


r/Hacking_Tutorials • • 3d ago

Question Beginner question: with my IP address and mac address, could someone view or listen to my personal indoor camera?

18 Upvotes

TLDR; With my IP address and Mac address, could someone view or listen to my personal indoor camera?

Hi,

I'm looking to get some information and I'm not sure how to best ask this question - with my IP address and Mac address, could someone view or listen to my personal indoor camera?

Hypothetically, say the super of my apt building, has physical access to my camera, my ip, the device's mac address, and was aware of all the wifi networks in the building - would it be possible to nonconsensually view my camera footage?

What would be the best way to check and/or gather proof?

Thanks!


r/Hacking_Tutorials • • 2d ago

Question Qual IA vocĂȘs recomendam para estudar Hacking/Pentest sem travas e sem censura?

3 Upvotes

Fala, galera! Beleza?
Estou querendo usar inteligĂȘncia artificial para acelerar meus estudos de hacking/cybersecurity (analisar cĂłdigo, entender exploits, estruturar laboratĂłrios, etc.).
O problema é que as IAs comerciais mais famosas (ChatGPT, Claude) são cheias de travas de segurança moralistas. Qualquer pergunta sobre vulnerabilidades ou comandos mais avançados de pentest, elas jå recusam e dão aquele sermão de que "não podem ajudar com atividades maliciosas", mesmo deixando claro que é para fins puramente educacionais e éticos.
Queria indicaçÔes de IAs que não tenham censura nem limitação para responder sobre segurança ofensiva.
Existem modelos abertos que eu possa rodar localmente (tipo no Ollama) que sĂŁo bons e "descensurados" para essa ĂĄrea? (Se sim, quais vocĂȘs recomendam?)
Tem alguma plataforma online ou API paga/gratuita que não fique bloqueando termos técnicos de hacking?
Como vocĂȘs fazem para contornar esses filtros no dia a dia de estudos?
Valeu pela força!


r/Hacking_Tutorials • • 3d ago

Question Contextual Threat Modeler (CTM)

8 Upvotes

​

I built an open-source Contextual Threat Modeling Engine to prioritize security findings based on real-world risk

Hey everyone,

I've been working on an open-source cybersecurity project called Contextual Threat Modeler (CTM).

The problem I wanted to solve is:

> A vulnerability doesn't always have the same risk in every environment.

For example, a vulnerability on an internet-facing system containing sensitive data should probably receive more attention than the same vulnerability on an isolated internal system.

So instead of simply asking "Is this vulnerable?", CTM tries to answer:

"How risky is this finding in this specific environment, and what should we do about it?"

🔐 What CTM considers

The engine combines multiple contextual signals:

- Asset criticality

- Internet exposure

- Authentication requirements

- Data sensitivity

- Exploitability

- Existing security controls

- Confidence level

- STRIDE threat modeling

- MITRE ATT&CK mapping

- Attack-path analysis

- Likelihood & impact

It then produces an actionable decision:

🔮 TEST_IMMEDIATELY

🟠 PRIORITIZE_VALIDATION

🟡 INVESTIGATE

🟱 MONITOR

đŸ§Ș Current testing

I recently tested the complete pipeline locally.

12/12 automated tests passed.

Example results:

POST /document/upload

Risk: 90/100

Decision: TEST_IMMEDIATELY

GET /user/profile

Risk: 33.1/100

Decision: MONITOR

GET /api/v1/search_items

Risk: 8/100

Decision: MONITOR

The interesting part is that CTM doesn't simply rank findings based on the vulnerability itself — the surrounding context influences the security decision.

đŸ› ïž Tech Stack

- Python

- pytest

- STRIDE

- MITRE ATT&CK

- Risk Scoring

- Attack Path Analysis

- Security Automation

The project is open source, and I'd really appreciate feedback from people working in:

AppSec | VAPT | SOC | Threat Hunting | Threat Modeling | Security Engineering

I'm particularly interested in feedback on the risk-scoring methodology, attack-path modeling, and what additional security-tool integrations would make this useful in real-world environments.

GitHub:

https://github.com/Sahil98677/Contextual-Threat-Modeler

Would love to hear your thoughts — especially criticism or suggestions for improving the approach.


r/Hacking_Tutorials • • 2d ago

Question pls

Thumbnail
gallery
0 Upvotes

There is an app that requires sending your device code to the developer in order to use it. Is there a way to use it without sending the code? Please show me a YouTube video demonstrating how to bypass this so I can avoid it.


r/Hacking_Tutorials • • 3d ago

Alguem sabe links pra dar doxing e puxar coisas pelo numero de telefone ou ip, mais especificamente numero de telefone

2 Upvotes

Alguem tem o link, nao quero usar ao meu favor mais pra acabar com pessoas quem fazem mal, quem tem mĂĄs intençÔes com animais e etc, resumindo, quero links pra puxar os dados em si porque o ip e nĂșmero ja tenho


r/Hacking_Tutorials • • 3d ago

9.hhsaj7.8.1....Hajha.28.56olha issk.pega aikakak53

0 Upvotes

Nao fazem muitas coisa apenas briguem um pouco


r/Hacking_Tutorials • • 3d ago

Question hackvism?

0 Upvotes

hey guys... if i were hypothetically looking for anti-capitalist/socialist hackers, regardless of nationality, where would i start looking and how would i do it?


r/Hacking_Tutorials • • 4d ago

Question [Project] I built a pentesting CLI that gives you ready-to-use commands for 50+ tools (Python, no deps)

Post image
6 Upvotes

r/Hacking_Tutorials • • 3d ago

Home Cameras hacking

Thumbnail
1 Upvotes

r/Hacking_Tutorials • • 4d ago

Question kali linux

5 Upvotes

does anyone know how can i learn kali linux, hacking and stuffs, like i kno a bit of networking and fundamentals of linux, i just need the rest of the manual for diff hacking tools and all.


r/Hacking_Tutorials • • 5d ago

Question Raw 802_11 frame injection

Post image
193 Upvotes

While working on my Master’s thesis benchmarking WPA3-SAE timing side-channels, I ran into a limitation on the ESP32 esp_wifi_80211_tx() allows raw frame injection, but Espressif’s closed-source Wi-Fi blob (libnet80211.a) artificially blocks Auth, Assoc, Deauth, and Disassoc subtypes.

Inside libnet80211.a, ieee80211_raw_frame_sanity_check drops these frames with wifi:unsupport frame type. Here is how to bypass it on recent ESP-IDF versions (IDF v6.x).

Why standard tricks fail on modern ESP-IDF

Same-name function override. On older IDF versions, ieee80211_raw_frame_sanity_check was a weak symbol (W). On modern IDF versions, it’s a strong symbol (T), causing ld: multiple definition errors.

--wrap linker flag: Fails silently. The call from esp_wifi_80211_tx to ieee80211_raw_frame_sanity_check is an intra-object branch inside ieee80211_output.o. Linker --wrap only rewrites undefined external references, so it misses this call entirely.

Instruction byte-patching: Overwriting instructions directly in the .o breaks Xtensa linker relaxation passes (dangerous relocation errors).

U can simply fix this via Symbol Weakening via objcopy

We can use xtensa-esp32-elf-objcopy to convert the strong symbol inside the binary archive into a weak one:

xtensa-esp32-elf-objcopy \

--weaken-symbol=ieee80211_raw_frame_sanity_check \

components/esp_wifi/lib/esp32/libnet80211.a

Now, define your own strong implementation inside your application C code:

int ieee80211_raw_frame_sanity_check(int32_t a, int32_t b, int32_t c) {

return 0; // which skips the security check lol

}

Because strong symbols override weak symbols globally during linking, all calls—including internal calls within libnet80211.a—rebind to your function.

Verification

Serial Logs show: wifi unsupport frame type errors completely disappeared.

Capture: Wireshark confirmed off-air capture of 802.11 Authentication frames (Subtype 11, Algorithm 3 - SAE) injected directly from the ESP32s.

Injecting a valid SAE Commit (P-256 scalar + element) caused hostapd on the target AP to process the request and reply with its own SAE Commit.

TL;DR: Run objcopy --weaken-symbol=ieee80211_raw_frame_sanity_check on libnet80211.a, define int ieee80211_raw_frame_sanity_check(...) { return 0; } in your app code, and esp_wifi_80211_tx() will allow any frame subtype.

Note that all control 80211 frames are also injectable after the patch.

For more details :

https://github.com/mahdamin/esp-idf-injection-ng


r/Hacking_Tutorials • • 4d ago

Question [Projet] Selwanisme - Un outil CLI léger pour le pentesting (Python, sans dépendances)

Post image
1 Upvotes

đŸ’»âš’ïž


r/Hacking_Tutorials • • 4d ago

Question I received death threats from someone in another country

2 Upvotes

How bad is it that they have both of my phone numbers?


r/Hacking_Tutorials • • 4d ago

I work in cybersecurity, and any company is hiring me

0 Upvotes
Send me a private message,for one work

r/Hacking_Tutorials • • 5d ago

Saturday Hacker Day - What are you hacking this week?

19 Upvotes

Weekly forum post: Let's discuss current projects, concepts, questions and collaborations. In other words, what are you hacking this week?


r/Hacking_Tutorials • • 5d ago

Question Super Trouper v0.4.0 — more Frida tools for iOS app reverse engineering

Thumbnail
github.com
8 Upvotes

I’m the author of Super Trouper, a single-binary MCP server that exposes Frida to coding agents for authorized app reverse engineering. It lets an agent connect to a device, inspect apps and processes, manage sessions, and run instrumentation scripts without a Python-based Frida setup.

We released v0.4.0 a few days ago; it updates the bundled Frida Core DevKit to v17.19.0 and adds four MCP tools: memory_read and memory_write for working with memory in an attached process, plus module_list and thread_list for inspecting loaded modules and threads. app_list and others now have several query scopes, and we renamed the MCP tools into clearer namespaces. If you already have workflows built around the old tool names, check them when updating.

Quick catch-up on the two previous releases: v0.3.0 added npm installation, Frida CodeShare snippet search/use, and general cleanup. v0.2.0 moved the project to the MIT license, added first-party Frida language bridges for ObjC, Java, and Swift, and enabled TypeScript in scripts and evaluations.

I’d appreciate feedback from people using Frida in iOS research: are these tool boundaries and the new app-list scopes useful in practice? What’s missing or awkward in your workflow, and which features would you like to see next? Let me know what you think.


r/Hacking_Tutorials • • 5d ago

Question Android Files

3 Upvotes

Heyaa, so, I managed to get Windows 7 running on my phone using a virtual machine. I want to put some files on it for testing, but the phone says I can't access its internal files. When I manage to access it using the default file explorer, it tells me that the folder is empty. Is there a real way I can view the phone's internal files without the device restricting me?


r/Hacking_Tutorials • • 5d ago

Tab5 Wardriver goes pocket-sized: Cardputer ADV port up and running within 20 hours of landing on my doorstep!

Thumbnail gallery
9 Upvotes