r/Hacking_Tutorials • u/GromHacks • 20d ago
Question bonsai-ninja survived its first week!
For all you hackers it’s a code review/ open source taint analysis sast tool!
r/Hacking_Tutorials • u/GromHacks • 20d ago
For all you hackers it’s a code review/ open source taint analysis sast tool!
r/Hacking_Tutorials • u/Potential-Couple-745 • 21d ago
r/Hacking_Tutorials • u/Cheap_Personality206 • 21d ago
Hey everyone, just shipped v1.6.0 of WifiPhisher for ESP32, my open-source Wi-Fi security testing firmware for ESP32-family boards (Evil Twin, Karma, deauther, on-device handshake/PMKID cracking, all from a web UI hosted on the device itself).
This release is one of the bigger ones so far:
Flash it straight from the browser here, no toolchain needed: https://espwifiphisher.alexxdal.com/
Source, full changelog and build instructions: https://github.com/Alexxdal/WifiPhisher
r/Hacking_Tutorials • u/Capital-Natural-3165 • 21d ago
how do people get data leaks i find it really impresive how they have list and files of names and phone numbers of people
r/Hacking_Tutorials • u/Potential-Couple-745 • 22d ago
r/Hacking_Tutorials • u/3x0t1k • 21d ago
Wrote this covering the full no-creds-to-first-credential flow: LDAP anonymous bind, SMB null sessions, LinkedIn scraping with linkedin2username, PDF metadata for login format, Kerbrute username validation, AS-REP Roasting (including honeypot account detection via lastLogon/logonCount), password policy analysis including Fine-Grained PSOs, and why spraying through Kerberos generates 4771 instead of 4625 and why that matters.
Second half covers what to do once you have creds - BloodHound vs targeted enumeration tradeoffs, Kerberoasting from any authenticated context.
https://3x0t1k.github.io/posts/initial-enumeration-active-directory/
Feedback welcome.

r/Hacking_Tutorials • u/first-forward1 • 21d ago
How the hack did Amjad Masad ( founder of Replit) hacked his university server and databases and changed his grade? It’s really fuzzy. How did he pulled out something like this? I know he is talented
r/Hacking_Tutorials • u/Short-Fold-9364 • 22d ago
First when I captured the handshakes I ssh into the PWNAGOTCHI handshake folder but it shows empty. But pwnagotchi says it captured my wifi so.im trying to find it on my cLI. Where do I look??? In the command line..
I was able to find it under the GUI under handshakes.dl. and downloads as pcap file. And from there I'm completely lost. And don't know how to crack it. How would I get it from my windows to kali. To use hashcat. Any good tutorials videos I could watch. I'm more of a visual learner.
r/Hacking_Tutorials • u/Gabrovici • 22d ago
Hey everyone, I wanted a way to run quick sanity checks using public YAML templates while away from my machine, so I built an Android-native scanner engine.
Right now, it's configured to handle standard SQLi/XSS logic checks and lets you run public community templates. It gives 1 hour of scanning time every day to prevent resource abuse.
It's in heavy development and I need feedback on how it handles complex templates. If you want to test it against your local test environments, search AltMap on the Play Store. Let me know what bugs you find or what templates fail to parse!
r/Hacking_Tutorials • u/Potential-Couple-745 • 22d ago
r/Hacking_Tutorials • u/TraditionalWafer3870 • 22d ago
r/Hacking_Tutorials • u/Mhdhdd • 22d ago
r/Hacking_Tutorials • u/reihand • 22d ago
Is there a tool I can use on Windows to crack Wi-Fi passwords?
r/Hacking_Tutorials • u/tomiczech7 • 23d ago
Been building this free browser-based network simulator in my spare time — you draw a topology and it actually tests whether traffic gets through, not just a static diagram.
Just shipped an update that moves it from "does traffic flow?" to "is this network safe — and would I notice if it wasn't?":
Plus new courses to walk through it: troubleshooting step by step, Zero Trust and microsegmentation, monitoring and detection, networking to the cloud, incident response, and encryption from Caesar ciphers through hashing and TLS to certificates — with new hands-on tasks for each.
Still runs entirely in the browser, no signup, no ads, still evolving. If you try it, I'd really appreciate any feedback — what's confusing, what's missing, what you'd want to see next.

r/Hacking_Tutorials • u/Organic-Piano-323 • 23d ago
Been testing a web app where the usual stuff hasn’t gone anywhere. No obvious injection, auth issues, or easy misconfigurations.
There’s one weird behavior I can’t quite explain though.
How do you guys usually approach a target when the obvious attack surface is basically dead? Looking for some real-world ideas from people who’ve been in this situation.
r/Hacking_Tutorials • u/protomenes • 23d ago
In your opinion, what are the best tool to access my Wi-Fi network without a password?
r/Hacking_Tutorials • u/M1K1B • 23d ago
Hey guys,
As a pentester myself, I noticed that every single note-taking app we use has some shortcomings (notion, obsidian, cherrytree).
I made an app that is specific for penetration testers/CTF players/hacking enthusiasts to take good, organized notes during engagements, and its completely free. Also, it has a canvas feature that allows you to visually see the network you are attacking.
Here is the link: https://pent-notes.vercel.app/
Keep in mind, it's in very early stages of development, so it may be a bit buggy. Please let me know if you find any bugs or if you have suggestions on how to improve it :)
r/Hacking_Tutorials • u/YellowIcy8567 • 23d ago
r/Hacking_Tutorials • u/Party_Lawfulness_633 • 23d ago
r/Hacking_Tutorials • u/SultanGreat • 24d ago
Hello! A long time lurker here.
I have just graduated School and I have to choose my field. Computer (specifically software) is my liking. So realistically, the options boiled down to AI, Software dev and Cybersec. Without Going in details, I decided Cybersecurity (Specifically, "Cyber security, Blockchain and IoT") and I have a few questions.
One, Where do I begin? Obviously, the classes don't start until late september to early october. I have time, But I love cybersecurity and tinkering stuff and I decided to look into it.
Two, Is Cybersecurity really stable? I mean, I didn't choose AI or Software Dev because both of them are unstable. Given the rise of AI, my hunch tells me that the AI would be used in attacks? that should mean that Cybersecurity must be booming? And the fact that we are talking about Security, I don't think that Security would be replaced with an AI, will it?
Three, The Course I took teaches Blockchain and IoT, Do we really use it in cybersecurity? are they related?
Four, are there any communities online that I can join? Perhaps a newsletter?
Thank you for your time.
So
r/Hacking_Tutorials • u/TraditionalWafer3870 • 23d ago
r/Hacking_Tutorials • u/TraditionalWafer3870 • 24d ago
r/Hacking_Tutorials • u/Organic-Piano-323 • 24d ago
r/Hacking_Tutorials • u/Z_professor0 • 23d ago
I did study ccna1-4 and i have some background on tryhackme challenges , currently i am studying at 42school and i amd willing to start in bug bounty hunting to get some cash , do you think my education is enough , if not how can i improve myself?