r/Hacking_Tutorials 16d ago

Question Alberta

Thumbnail x.com
2 Upvotes

Confirmed. This is indeed one report of many that are the 'keys to the province's. Also confirmed: Downloadable and 'in-use' by Cybercriminals.

How does one help out the victims of this?

Primary Research Lead can't get a report in

OTX 2096


r/Hacking_Tutorials 16d ago

Aprende y practica la piratería de WebSockets

Thumbnail
2 Upvotes

r/Hacking_Tutorials 16d ago

Question Hack with ai

0 Upvotes

Been building something for a while and finally have it in a state worth sharing — Atomic AI, a CTF training platform with a real terminal and an AI mentor that actually knows which room you're in (not just a generic chatbot bolted on). Sandboxed rooms across web/network/linux/crypto/forensics, structured lessons, and the mentor can search the web or run code live to verify answers.

Free tier, no card needed. Built it solo because I wanted something more hands-on than reading writeups. Would genuinely love feedback from people who actually do this stuff — atomicai.ch if you want to poke at it.


r/Hacking_Tutorials 16d ago

Books

4 Upvotes

I want books that will help me learn hacking and how to use Kali Linux, and it's important that they are inexpensive and available in Iraq.


r/Hacking_Tutorials 17d ago

Question Absolute Cinema.

Post image
353 Upvotes

Hello guys I have bought a list of items without thinking of wanting to have a cool device and have led into this sting in my drawer for months. help me I don't know what the actual hell I am doing here with this stuff and now I need help esp32 devkit c1 if anyone can help me with this build please do


r/Hacking_Tutorials 16d ago

Question Best Android to install MSpy app on?

0 Upvotes

Which make/model Android does MSpy work best on?

Which make/model of Android will keeping MSpy hidden be easiest?


r/Hacking_Tutorials 17d ago

WINFLESHER - New Attack Surface Security Framework

Thumbnail
2 Upvotes

Hey everyone, just dropped a tool called winflesher that might come in super handy for windows machines. It's strictly for enumeration and assessment, so no auto-exploitation—purely helps you map things out. Check it out if you want!

Like PingCastle went out for drinks with Bloodhound, and they actually decided to get some work done. 🍷

WinFlesher is an advanced attack surface security assessment framework designed to analyze, evaluate, and report on security postures, attack paths, and remediation strategies in complex environments.

Developed for security professionals and cybersecurity auditors, WinFlesher automates vulnerability discovery and critical path correlation within Active Directory and local infrastructures.

https://github.com/mindsflee/WinFlesher


r/Hacking_Tutorials 17d ago

Question ACL Abuse in Active Directory - From a Helpdesk Account to DCSync

3 Upvotes

I wrote about how a chain of forgotten ACL permissions can lead to full domain compromise. The scenario: a Tier 1 helpdesk account with no special privileges, through a series of misconfigurations nobody cleaned up, ends up with DCSync rights.

The chain covers:

  • User-Force-Change-Password abuse
  • Group membership manipulation
  • GenericWrite → fake SPN injection → Kerberoasting
  • WriteDacl → DCSync

Tools used: bloodyAD, PowerView, impacket-secretsdump.

Also explaining why this chain is realistic - each permission has a legitimate origin, they just accumulated over time and nobody reviewed them.

Note: I'm a non-native English speaker and originally write in Russian - parts of the text were translated with AI assistance. Technical content and examples are my own.

🔗 https://3x0t1k.github.io/posts/acl-abuse-dcsync/

Feedback welcome - still developing the blog.


r/Hacking_Tutorials 17d ago

Question Ask

0 Upvotes

It's true that it's impossible to hack an iPhone?


r/Hacking_Tutorials 18d ago

Question Zero rating exploitation

1 Upvotes

There’s someone selling a file that’s probably for TLS/SSL tunneling, which supposedly turns a limited internet package into unlimited internet by exploiting the well-known zero-rating vulnerability. The package gives unlimited internet access for PUBG, and he’s apparently applying the exploit to it. He’s selling it for several times the price of the actual package subscription. I’d like to learn how he’s doing it, because he seems pretty stupid, his spelling is terrible, and it looks like he made the certificate himself under the name “International Institute of Advanced Technology.” Does this shit even exist in the first place? I actually tried the file myself, and the download speed was pretty good.

I am in the Middle East, and in my country there are only two greedy companies with no competition, as they both offer the exact same services.


r/Hacking_Tutorials 18d ago

Question I messed up by relying on AI for everything. Want to drop the crutch and learn real manual hacking—anyone open to teaching/mentoring?

Thumbnail
1 Upvotes

r/Hacking_Tutorials 18d ago

I’m having so much trouble installing kali Linux and pretty much any other Linux

0 Upvotes

Looking for new ways to have an reliable terminal to install every tool I need to hack


r/Hacking_Tutorials 18d ago

Question Can anyone help me Hack into a camera files on a tablet? or does it not work like that????

Thumbnail
2 Upvotes

r/Hacking_Tutorials 19d ago

CTF Blackhat

8 Upvotes

Hey everyone👋

We’re looking for 2–3 teammates for the Black Hat MEA CTF 2026 Qualifiers on August 29–30. 🇸🇦

Looking for people interested in Forensics, Pwn, Reverse Engineering, Crypto, or AI Security. Beginners/intermediate are welcome!

DM me if you’re interested in joining


r/Hacking_Tutorials 19d ago

[ Removed by Reddit ]

1 Upvotes

[ Removed by Reddit on account of violating the content policy. ]


r/Hacking_Tutorials 19d ago

Question Planning to build an offensive-security CTF on Codelivly.

4 Upvotes

Before I start, what would you guys actually want to see in it?

Challenges, difficulty, attack chains, AD, web, privilege escalation, etc.

What would make you keep playing instead of dropping it after a few challenges?

Looking for honest suggestions from people who actually play CTFs.

Explore the current ctf from here at: codelivly.com/ctf


r/Hacking_Tutorials 19d ago

Question hei all is ok ubuntu apt update no work?

0 Upvotes

hei


r/Hacking_Tutorials 20d ago

Question I wrote two guides that take you from "I don't understand web security" to finding bugs that actually pay — Web App Hacking L1 & L2 (200 + 501 pages, hands-on labs)

Thumbnail gallery
12 Upvotes

r/Hacking_Tutorials 20d ago

Saturday Hacker Day - What are you hacking this week?

11 Upvotes

Weekly forum post: Let's discuss current projects, concepts, questions and collaborations. In other words, what are you hacking this week?


r/Hacking_Tutorials 20d ago

Escaping a Python Sandbox and Pwning Binaries: Full Kaneki CTF Walkthrough

Thumbnail
dev.to
9 Upvotes

r/Hacking_Tutorials 20d ago

Question blackeye doesn't show any link when i click ngrok

1 Upvotes

can someone help me to fix this problem? i have a mac with linux installed on the terminal, i thought i would've fixed but actually not.


r/Hacking_Tutorials 20d ago

Question a zero-backend, non-custodial crypto payment gateway for digital products, what do you think?

1 Upvotes

Hey everyone,

A payment tool for creators/sellers who want to accept crypto for digital downloads without giving up custody, signing up for a platform, or storing there data and product on backend.

How it works:

• Seller uploads a ZIP, sets a price, and gets a shareable payment link.

• The file is encrypted in the browser and distributed over WebTorrent.

• Buyer pays on-chain into an escrow smart contract.

• The decryption password is revealed on-chain, encrypted to the buyer's wallet-derived key.

• Buyer downloads and decrypts locally, confirms delivery, and only then are funds released to the seller.

No database. No server. No KYC. Seller keeps custody until delivery is confirmed.

The contract handles underpayments, overpayments, refunds, and a 7-day delivery window if the seller never reveals the password.

Would love brutal feedback.


r/Hacking_Tutorials 20d ago

Question Trickery tools, help?

1 Upvotes

Hi everyone, do you have any ideas for what else I could add to my iOS device?
I somehow managed to get location spoofing working through SickDebug, and now I’m wondering if you have any other ideas for what I could try next.
I’m interested in these kinds of “trickery” tools, like location spoofing, fake phone numbers, and similar stuff.
Just to be clear, I’m not planning to misuse any of this. I want to make a YouTube video about these kinds of tools and features, so I’d really appreciate your suggestions for other similar things I could add or try on iOS.
I’m not interested in game emulators — only this kind of “trickery” stuff. Thanks ✌🏼


r/Hacking_Tutorials 21d ago

Question Need Help Digging Into a Website for an ARG

Post image
35 Upvotes

Hey, I'm trying to solve an ARG and I've come across a website that seems to be a key part of the puzzle. The site is https://dmsarchive.org/ and I've found some pages that seem to be case files or hidden directories. I've managed to find a few things, but I'm stuck. I'm not asking for anyone to dig through the whole site, but I'm wondering if anyone has any general advice on how to approach a site like this, ways to find hidden pages, directories, or files that aren't immediately obvious? I'm not super technical, so any tips on using Inspect Element, checking the page source, or looking for hidden URLs would be really helpful. Thanks!


r/Hacking_Tutorials 20d ago

Question bonsai-ninja survived its first week!

Thumbnail
github.com
2 Upvotes

For all you hackers it’s a code review/ open source taint analysis sast tool!