Тёмный
Drew Alleman
Drew Alleman
Drew Alleman
Подписаться
all things cyber security
TryHackMe: Revenge Walkthough
15:59
6 месяцев назад
Redline Malware Traffic Analysis with Wireshark
10:46
8 месяцев назад
TryHackMe: Basic Malware RE Walkthrough
7:13
9 месяцев назад
TryHackMe: Anonymous Walkthrough
12:37
9 месяцев назад
TryHackMe: Blog Walkthrough
11:34
Год назад
DataSurgeon Installation Guide
3:23
Год назад
Tool Showcase: theHarvester
5:50
Год назад
MS08-067 Exploit Demo
2:11
Год назад
Комментарии
@ThomasWaldmann
@ThomasWaldmann 20 дней назад
Greetings from BorgBackup development! Nice hacking, but maybe you want to clarify the video title: You did not decrypt a borgbackup archive with hashcat. What you did is crack an apache apr1 hash with hashcat, which revealed a password that was also used as the borg key passphrase. So you had the borg key and the cleartext passphrase to use the borg key and that's all needed to use that key and the repo protected by that key.
@LuLSysu
@LuLSysu 29 дней назад
yo, does hazedumper still get updated? if can u post a follow up tutorial for something on CS2(im copying the cheats rn *yes im writing them not C+P* and if they dont work i will be mad but at myself cuz this a 1 year old vid) Update: Did not work, got the error that i expected: could not read or write memory, i know this is being because the github is for csgo. sooo ima try to do something
@kdkjlfk
@kdkjlfk 2 месяца назад
Great content
@Macj707
@Macj707 2 месяца назад
CHEF CRISP WUZ HERE!
@mauricemakesmovies
@mauricemakesmovies 3 месяца назад
Very clear explanation. The odd thing on my end however, is that even on low difficulty, I do not see an included website for RFI like you do on 1:42. Stuff like ../../hackable/flags/fi.php and etc/passwd work just fine, but I do not see an additional website on top like in your video. Any idea why?
@petephelp971
@petephelp971 3 месяца назад
seems to be missing the (and stop it from crashing), also the psrok1's command requires super user permissions to write to the proc filesystem, so its completely useless. Not helpful bruh
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi friends, I hope to get in touch with you and become friends. I need some technical support, let's create wealth together.
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi, I hope to get in touch with you.
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi, I hope to get in touch with you.
@user-ml9vj9kw5r
@user-ml9vj9kw5r 3 месяца назад
The problem with echo 0 > /proc/sys/vm/dirty_writeback_centisecs is that you're still not a root-user as you're trying to do it, and you receive the message "Permission denied", because the proc-file belongs to root. Otherwise the expoilt crashes the machine. So no way to solve it, it seems.
@dzbro1194
@dzbro1194 4 месяца назад
Would a checksum on the netstat binary be enough to determine that it was tampered with?
@drewalleman
@drewalleman 3 месяца назад
Yes, that would detect it.
@adamgkruger
@adamgkruger 4 месяца назад
Loved it!
@zonlee2485
@zonlee2485 4 месяца назад
just wonder ,how does hazedumper get those value
@drewalleman
@drewalleman 4 месяца назад
Signature Scanning. You can scan memory for an array of bytes that matches a pattern for example, maybe the heath offset has the patter AA ?? CD ?? BB EB.
@sametsahin-eh3qj
@sametsahin-eh3qj 4 месяца назад
just got perma-ban from VALVE :D
@drewalleman
@drewalleman 4 месяца назад
Yeah that would make sense
@rubbermaiden
@rubbermaiden 4 месяца назад
Very nice, congrats
@root924
@root924 5 месяцев назад
what font in vim?
@nocturne2172
@nocturne2172 5 месяцев назад
I thought sysadmins used ss nowadays
@drewalleman
@drewalleman 4 месяца назад
They do, this is a proof of concept, and a lot of the code in this project can be directly copied over.
@EnLopXf
@EnLopXf 5 месяцев назад
Malware development next please 🥺
@twobob
@twobob 5 месяцев назад
fun project
@twobob
@twobob 5 месяцев назад
audio too quiet
@greyburns6170
@greyburns6170 4 месяца назад
Turn up the volume
@twobob
@twobob 4 месяца назад
@@greyburns6170yeah I did. Compression is what is required. That said it was a good project. just too quiet.
@user-yi6mz4ef1m
@user-yi6mz4ef1m 5 месяцев назад
not work now
@Twenkle52
@Twenkle52 5 месяцев назад
realy?
@Super.Tecnology
@Super.Tecnology 5 месяцев назад
Excuse me, I would like to ask you a question about a video made 10 months ago that explains how to create a bafckdoor. I would like to know how to create a backdoor between different networks and also tell him that the backdoor I created following his video doesn't work.
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi friends, I hope to get in touch with you and become friends. I need some technical support, let's create wealth together.
@rodrigocarioca1
@rodrigocarioca1 5 месяцев назад
Where is the script to copy to the flipper?
@drewalleman
@drewalleman 5 месяцев назад
qFlipper
@herrpez
@herrpez 5 месяцев назад
Your volume is low, internet brother.
@drewalleman
@drewalleman 5 месяцев назад
Ill make sure to turn it up next time.
@herrpez
@herrpez 5 месяцев назад
@@drewalleman Appreciated, mans. 👌🏿
@creeperkafasi
@creeperkafasi 5 месяцев назад
9:04 You can use jq instead of cat to format the json inside the terminal
@drewalleman
@drewalleman 5 месяцев назад
Thanks I didn't know that!
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi friends, I hope to get in touch with you and become friends. I need some technical support, let's create wealth together.
@Thomas48500
@Thomas48500 5 месяцев назад
Wouldn't it be easier to download the ffuf binary from their github page?
@vishclipper98
@vishclipper98 5 месяцев назад
Excellent, sir, this making video.
@retsamyar
@retsamyar 5 месяцев назад
idk why but i am still using nano for a terminal editor.. really should start using vim... thanks for the video
@michaelmano7261
@michaelmano7261 5 месяцев назад
I've been using Vim for about 2 years now, mostly because I can't figure out how to exit it. - miro.medium.com/v2/resize:fit:1100/format:webp/1*dsX-MVvd62GAO3CfyUoCLQ.png
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi friends, I hope to get in touch with you and become friends. I need some technical support, let's create wealth together.
@MohammedShuayb
@MohammedShuayb 6 месяцев назад
why do i keep finding underrated unknown youtubers. anyway keep doing what you are doing brother i hope to be like you someday
@drewalleman
@drewalleman 6 месяцев назад
Thanks for the support, man! Never give up and always keep learning....
@xt355
@xt355 6 месяцев назад
at 0:55 even if I do traversing only two times like ?page=../../etc/passwd it still gives me file access. Why is that so?
@drewalleman
@drewalleman 6 месяцев назад
The actual files of the server might be only 2 folders into the root folder for example they might just be in /var/dvwa (just guessing) so you only need to specify ../ twice and even if the folder is only 2 folders into the root folder you can pass as many ../ as you want.
@xt355
@xt355 6 месяцев назад
@@drewalleman thanks for the answer and I understand what you mean but even if I simply put ?page=/etc/passwd it still works regardless of the path mentioned. The path traversal here doesn't make sense, it should've been 5 times like you did. It works in all situations such as ?page=/etc/passwd, ../etc/passwd, ../../etc/passwd you get the idea.
@drewalleman
@drewalleman 6 месяцев назад
@@xt355 Hmmm intresting. I understand why the /etc/passwd worked with no "../" in it because you are passing the absolute path to the file (this is typically disabled). But I don't know why it worked with just 2 "../" what security level were you on when you tried this?
@xt355
@xt355 6 месяцев назад
@@drewalleman low security, didn't try it on others maybe if you have time you can have a go at it.
@bestelectrocity
@bestelectrocity 6 месяцев назад
Hey, is it working on cs2 ?
@marinbb6946
@marinbb6946 6 месяцев назад
What keyboard are u using?
@CN-Aqi
@CN-Aqi 3 месяца назад
Hi friends, I hope to get in touch with you and become friends. I need some technical support, let's create wealth together.
@thereisnotomorrow0
@thereisnotomorrow0 6 месяцев назад
sir how can i test that my windows
@drewalleman
@drewalleman 6 месяцев назад
This is for Linux idk if the same netstat source can be compiled on Windows, they might have proprietary code.
@Anonymous_banku
@Anonymous_banku 7 месяцев назад
Keep up the good work bro 🎉
@Adu79
@Adu79 7 месяцев назад
are you doublebooting ubuntu or is it ur main system
@drewalleman
@drewalleman 7 месяцев назад
I switch a lot, but rn my main is windows with VMware hosting Ubuntu.
@Cramsus
@Cramsus 7 месяцев назад
is there a way to uninstall it from the target computer?
@jackportin4822
@jackportin4822 7 месяцев назад
getting core-utils not found any reason?
@antoineflowers6438
@antoineflowers6438 7 месяцев назад
Awesome video!!! Do you play HTB battlegrounds or mayhem? That would be a cool video seeing you use this..
@drewalleman
@drewalleman 7 месяцев назад
I have not. I will look into it.
@stranger-mn
@stranger-mn 7 месяцев назад
Nice video, thank you, can you make a videos more simplify, like learning how to c***k step by step, and how to read memory in binary the tools used.... You know like this staff. Anw why's thank you
@drewalleman
@drewalleman 7 месяцев назад
What do you mean by c***k? haha
@Jack-oz4dd
@Jack-oz4dd 7 месяцев назад
Bro make walkthrought for crackme files <3
@d0x1d_
@d0x1d_ 7 месяцев назад
did you switch to linux or just doubleboot ?
@Thylanis
@Thylanis 7 месяцев назад
How did you learn all this stuff?
@drewalleman
@drewalleman 7 месяцев назад
TryHackMe, Homelabs, RU-vid, and a lot of time.
@TsukiCTF
@TsukiCTF 7 месяцев назад
Good one
@hayreddinbarbarossa3132
@hayreddinbarbarossa3132 7 месяцев назад
Amazing video dear friend. I hope you keep it up.
@r3miix
@r3miix 8 месяцев назад
do both PC's need to be on the same network?
@harrysmokes9265
@harrysmokes9265 7 месяцев назад
For what he's doing yeah they would. You'd need to port forward or use some sort of dns server. It's been ages since I've done anything like that so not sure whats the best but I have used no ip before. You'd then set the ip and port of your dns server and then you'd be able to do this anywhere theoretically. Or you can port forward on your router. All depends what it's for and how secure you want to be
@redcrystal3170
@redcrystal3170 8 месяцев назад
What OS are you using?
@drewalleman
@drewalleman 8 месяцев назад
Ubuntu with some gnome extensions
@appocalypse3012
@appocalypse3012 5 месяцев назад
​@@drewallemancould you please share those chrome extensions, its really awesome and I would like to try it out
@drewalleman
@drewalleman 5 месяцев назад
​@@appocalypse3012 they are gnome extensions for Ubuntu github.com/Drew-Alleman/neovim
@Malwarekid
@Malwarekid 8 месяцев назад
Whats your discords?
@drewalleman
@drewalleman 8 месяцев назад
._hello nothing illegal
@Malwarekid
@Malwarekid 8 месяцев назад
@@drewalleman i never do any thing illegal
@Malwarekid
@Malwarekid 8 месяцев назад
@@drewalleman i just make your script more easy to execute for persistence
@drewalleman
@drewalleman 8 месяцев назад
@@Malwarekid my discord is "._hello"
@takashisclh8766
@takashisclh8766 8 месяцев назад
Bro u r goat
@CU.SpaceCowboy
@CU.SpaceCowboy 8 месяцев назад
great video. yall ever try binject? it keeps functionality of binaries (if you want) and launches your own custom exe or shellcode. that way you dont have to make a 1000 custom binaries. fyi its golang so the exe is gonna be fairly large, but at least its statically compiled.
@drewalleman
@drewalleman 8 месяцев назад
Whattt that's crazy! I will check that out..
@CU.SpaceCowboy
@CU.SpaceCowboy 8 месяцев назад
@@drewalleman i honestly think the only video on RU-vid about it was literally made by the creator itd be a good video. seems down your alley
@drewalleman
@drewalleman 8 месяцев назад
@@CU.SpaceCowboy I will definitely consider it. I am about to start working on another idea that might implement that tool so will see.
@dadamnmayne
@dadamnmayne 7 месяцев назад
@@CU.SpaceCowboy usually, you need to hollow the process so that you'll have a place to run the shellcode.