Penetration Testing on PostgreSQL (5432)
🔥 Telegram: t.me/hackinarticles
✴ Twitter: x.com/hackinarticles
PostgreSQL is a powerful open-source relational database system widely used in enterprise applications. When exposed or misconfigured, attackers may exploit weak authentication or database privileges to gain unauthorized access.
📚 Techniques Covered in This Guide
🔎 Nmap Port Scanning
🔐 Password Brute Force using Hydra
💻 Access PostgreSQL Shell (psql)
📄 Metasploit: Postgres Readfile
📡 Metasploit: Postgres SQL Query Module
🔑 Dumping Password Hashes
💥 Command Execution using Postgres Copy From Program
📖 Article:
hackingarticles.in/penetration-te…#CyberSecurity#EthicalHacking#Pentesting#PostgreSQL#RedTeam#InfoSec
SSH Penetration Testing (Port 22)
🔥 Telegram: t.me/hackinarticles
✴ Twitter: x.com/hackinarticles
SSH (Secure Shell) is a cryptographic protocol used for secure remote login and command execution over unsecured networks. During penetration testing, misconfigurations or weak credentials in SSH services can allow attackers to gain unauthorized access. ()
📚 Techniques Covered in This Guide
🔎 Enumeration with Nmap
🔐 Password Cracking using Hydra
⚡ Authentication using Metasploit
💻 Running Commands on Remote Machine
🔁 SSH Port Redirection
🧪 Nmap SSH Brute Force Script
🔍 Enumerating SSH Authentication Methods
🔑 Key-Based Authentication
🛠 Key-Based Authentication using Metasploit
📦 Post Exploitation using Metasploit
🌐 Local Port Forwarding (Password Based)
🔐 Local Port Forwarding (Key Based)
📖 Article:
hackingarticles.in/ssh-penetratio…#CyberSecurity#EthicalHacking#Pentesting#SSH#RedTeam#InfoSec
CTF legends, hacker style, and bigger savings.
Grab limited-edition HTB CTF swag or build your own bundle with your favorite pieces and unlock up to 50% off while the offers last.
Rep the community. Gear up before they’re gone.
Limited Edition CTF Swag: okt.to/yfvCPt
Build Your Own Swag Bundle: okt.to/F2VXvc#HackTheBox#HTB#CTF#CaptureTheFlag#Cybersecurity
A new Sherlock is now live on Dedicated Labs.
Step into ShadowMonarch, a hard Digital Forensics & Malware Analysis case where suspicious network activity from a core infrastructure server points to a sophisticated backdoor using Berkeley Packet Filter (BPF) for network stealth.
Your mission: reverse engineer the malware, uncover how it hides, and extract every indicator of compromise.
Created by mtzsec.
Play ShadowMonarch now >>> okt.to/oHQDvi#HackTheBox#HTB#Sherlocks#DedicatedLabs#DigitalForensics#MalwareAnalysis#DFIR#Cybersecurity
🚨 The attacker is already inside. What do you do next? Containment, eradication, recovery, these are the skills that determine how bad a breach actually gets.
See thread for more 🧵
🔗 Join theTHM room tryhackme.com/room/responsea…
Cisco Just Showed the Future of Networking
Cisco Cloud Control puts everything in one place — and now AI agents are actually doing the work.
GO CHECK IT OUT: ntck.co/ciscocloudcont…#sponsored@CiscoNetworking
Microsoft’s move to remove trust for cross-signed kernel drivers is a huge step forward for Windows security.
What many organizations may not realize is that reaching enforcement isn’t automatic.
Microsoft recently increased the evaluation period from 100 hours to 240 hours before enforcement can activate.
During that evaluation period, if a driver is encountered that would fail the new trust policy, the system remains in audit/evaluation mode and the timer resets.
Recently while reviewing WDAC audit data, we found a customer with a driver that would have prevented enforcement from activating. They had no idea it was there.
The security improvement is real, but visibility into the audit events is just as important as the policy itself.
Microsoft:
techcommunity.microsoft.com/blog/windows-i…
Our analysis:
magicsword.io/blog/microsoft…
If you enjoyed my killing AD attack paths ContinuumCon talk, then I think you will like this too.
In this podcast, my teammate Tyler and I talk about how you can use ADeleg to find attack paths in Active Directory.
This is like literally the process I use on internals.
🎧offsec.blog/episode-173-ho…
1.7M Followers 2 FollowingClaude is an AI assistant built by @anthropicai to be safe, accurate, and secure. Talk to Claude on https://t.co/ZhTwG8dz3D or download the app.
249K Followers 1K FollowingCofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
111K Followers 917 FollowingPresident and CEO of @Qualcomm. Husband and proud father. I share my views about wireless and related technologies. Opinions are mine.
246K Followers 820 FollowingCooking fun AI systems & products @databricks. Prev: co-founder & CTO @ Hyperbolic, OctoAI (acquired by @nvidia) Apache TVM, PhD @ University of Washington.
1.8M Followers 1K FollowingCo-Founder of Coursera; Stanford CS adjunct faculty. Former head of Baidu AI Group/Google Brain. #ai #machinelearning, #deeplearning #MOOCs