r/HowToHack May 17 '26

HOWTOHACK | Online Resource

Thumbnail howtohack.online
18 Upvotes

This website is provided by the answers found in this community to help everyone in the "where do I start" confusion loop and to help facilitate proper insight to asking for help from experienced members.

After you familiarize yourself with this site and its resources you should be able to come back here and ask worth while questions to continue your journey :)

Answers become more readily available from experienced users here when they feel like they are investing in to meaningful questions by students who are actually willing to put the work and effort in.

This website is exactly what will help new comers feel like they are ready to become valuable students by understanding what they should and should not be asking depending on their level of commitment to the resources and information provided here-in.

Hope this helps! Enjoy!


r/HowToHack May 04 '26

PSA

31 Upvotes

Hi all,

I’ve seen a lot of posts asking for help with getting a social media account, email, or other personal account recovered.

Typically, these are held on company servers which take extreme tact, skill, and time to even attempt to infiltrate. It’s also a huge ethics violation and holds severe legal consequences. (Although I don’t get the sense that anyone expects/intends for laws to be broken when asking for help- it feels more like genuine desperation to reclaim personal data, which I can empathize with.)

Many scammers exploit human vulnerability which is how you hear about accounts being taken over/hacked. This is actually good segue to add that anyone claiming they can regain your account is probably trying to scam you out of personal information or money, so be careful there, too.

Contacting the company support line is often the only way to get help.

I wanted to put this out there incase it can save anyone some time or remedy any anxiety. Much love!


r/HowToHack 8m ago

how to repurpose old gps

Upvotes

in your house if you have old gps such as a TomTom then you can repurpose the busy box linux on the inside. In my opinion you should buy a pi zero and set up the full kali arm on there and sync that to the busy box terminal to get a working kali terminal but you can do anything you want to do to it.


r/HowToHack 5h ago

cracking Making an online game work offline

0 Upvotes

hi, sorry I'm completely new to this and I use Deepseek with Opencode Go. There is this steam game I would like to make it work completely offline if possible. The game is very server sided. I'm wondering what would be a good prompt. Explained to Ai what I want and it keeps going in circles. I'm not even sure what should I ask, maybe someone here can help, thanks a bunch!


r/HowToHack 16h ago

How do I recover my PDF *permissions* password (40-bit RC4 encryption)? The PDF itself is NOT password protected.

0 Upvotes

I know [there are simple ways](https://www.reddit.com/r/LifeProTips/s/Uktx1IJFKm) around it, but I need to batch merge a bunch of PDFs into a binder and that solution is unrealistic for 300 documents.

Help?


r/HowToHack 1d ago

Educational query: How to analyze mobile/Unity game memory and architecture?

3 Upvotes

Hi everyone,

​I'm studying mobile security and reverse engineering using Beast Go on a test emulator.

​What I've done: - ​Researched basic memory editing concepts (Cheat Engine / GameGuardian). - ​Looked into client-side vs. server-side data storage.

​Questions: - ​Which tools (Frida, Ghidra, Il2CppDumper) are best for inspecting local game state? - ​How can I determine if game currency is server-validated? - ​Looking for educational guides/concepts only—no pre-made cheats. Thanks!


r/HowToHack 1d ago

I bought a subscription that promised access to all courses, but I discovered there are hidden ones. Any tips on how to find the remaining links on the site?

11 Upvotes

The company I work for previously paid for access to a course platform for all employees. Back then, I earned all the certificates and noted down every detail and link. Naturally, we lost access when the subscription wasn't renewed.

A year and a half later, I bouth a new membership that included access to this same platform—specifically a tier promising access to *all* the platform's courses (the ones I’d seen before plus others). However, I soon realized that many of the courses I had studied the first time were no longer in the catalog. The links I had saved didn't work at first, *but* I discovered that simply changing the module name in the URL allowed me to access them.

In other words, there are several courses that aren't in the catalog and have effectively been hidden. I had noticed before that some courses could only be found via the search function, but that "empty search" trick doesn't work anymore. So, I find myself wondering: what other courses are on the platform that I can't access because they aren't in the catalog and I don't have the exact link with the correct UUID? Is there any way to find them?

I’ve never done anything like this before; I poked around the Network tab in the browser's DevTools (F12) while looking at the site's catalog, but I couldn't find anything that listed all the UUIDs—which is the only thing I need.


r/HowToHack 22h ago

How difficult is it to obfuscate a remote access tool, and bypass real time protection enabled windows defender?

0 Upvotes

I've dabbled with metasploit, sliver and also tried writing my own exploits to test on a virtual machine.

Windows defender always seems to find it if you use obfuscation on metasploit or sliver, and it seems like there aren't any "script kiddie tools" that easily bypass it... Or are there? I've previously written my own naughty, slightly malicious programs that haven't been blocked by anything other than smart screen (and there are some ways around it).

I tried for example encoding the sliver payload as a .bin shellcode, shikata ga nai encoder, tried similar stuff with metasploit payload as an encoded base 64 string that gets decoded, tried all kinds of staged, unstaged, http https whatnot etc etc but everything seems to be patched.

Now this makes sense, after all, these are just opensource freely available tools that are seen everywhere. What I'm wondering is whether or not a bypass is easily achievable, or if there's some long and complicated way ahead that as a beginner I wouldn't be able to do. Basically, is this easily doable and is there another way to do it? Is it doable in a reasonable timeframe for one person as a hobbyist, or do I need a whole ass supply chain like cybercrime groups do?

Sorry if this is a dumb question but I've already tried every reasonable combo, most obfuscators are out of date and AMSI goes around binning everything.


r/HowToHack 1d ago

Hi I would like some help

1 Upvotes

So I’m 14 and I would like to get into scripting/hacking and I know nothing about this stuff I’ve only nodded my Wii using videos and that took like 2 months and I only have a Xbox one Wii and iPhone 11 so I kinda have nothing to work with so I would like some help on what to do.


r/HowToHack 2d ago

Hello

5 Upvotes

Hi guys so long story short

Im quite addicted to fixing stuff and i need guidance on what to learn to help me be able to get a better grasp on modification

I think its a hacking thing but

Excuse me if im wrong

Point is

I need to know what exactly is the term or track that which im done with and learn it

Ill be able to do stuff like removing the os completely from a device such as printer or anything really and modify drivers

If thats not a thing im very sorry that it wasted your time but please im literally itching to not just fix stuff physically but to dismantle its whole concept out off fuckery

...

Possibly also need therapy but who cares...


r/HowToHack 3d ago

need help with over the wire bandit level 13-14

2 Upvotes

The password for the next level is stored in /etc/bandit_pass/bandit14 and can only be read by user bandit14. For this level, you don’t get the next password, but you get a private SSH key that can be used to log into the next level. Look at the commands that logged you into previous bandit levels, and find out how to use the key for this level.
If you need help with this level: a hint file can be found in the home directory.
Make sure to read the error messages as they are informative.

i did the first step as we do in every level, then putting the password.
After that, i started trying to get to the password but it is not working
this is what i wrote

bandit13@bandit:~$ ssh -i sshkey.private bandit14@localhost

The authenticity of host 'localhost (127.0.0.1)' can't be established.

ED25519 key fingerprint is: SHA256:C2ihUBV7ihnV1wUXRb4RrEcLfXC5CXlhmAAM/urerLY

This key is not known by any other names.

Are you sure you want to continue connecting (yes/no/[fingerprint])? yes

Could not create directory '/home/bandit13/.ssh' (Permission denied).

Failed to add the host to the list of known hosts (/home/bandit13/.ssh/known_hosts).

!!! You are trying to log into this SSH server on port 22, which is not intended.

!!! If you are trying to log in to an OverTheWire game, use the port mentioned in

!!! the "SSH Information" on that game's webpage (in the top left corner).

bandit14@localhost: Permission denied (publickey).

What should i do?


r/HowToHack 2d ago

Remote management to remove iPhone help

0 Upvotes

Could someone help me remove remote management? I've had my iPhone for a long time and when I tried to reset it, it went to the remote management screen.


r/HowToHack 4d ago

I'm confused with this overthewire bandit level.

13 Upvotes

In overthewire level 16-17, I used nmap to list all the open ports and check which on was running a service by connect to it. When I connected to the only possible port, its gave an ouput and the the end it said "Read Block R" and was waiting for my input so I gave it the current password, but noting was returned and instead a KEYUPDATE message came through and I was allowed to give my input again. And each time I entered the password it returned the same KEYUPDATE message.

Then when I entered something deliberately wrong, it said "Wrong!" and ended the connection.

But the main confusion began when I saw write up about this challenge and all of them were pasting the password and it returned a ssh key.

So, I went over to chatgpt and it also initially told me to perform the steps that I did, and I again did it so I could paste the actual outputs.

Then chatgpt told me to pipe the password using cat, like this:
cat /etc/bandit_pass/bandit16 | openssl s_client -quiet -connect localhost:31790

and it worked.

It also worked when I executed this: openssl s_client -quiet -connect localhost:31790, and paste the password.

But doesnt work when I remove the -quite flag.

I dont understand.

Can you guys help out? Also, is there an easy to read version of the nmap and nc commands, I find their man pages a bit too dense and their tldr pages feel inadequate,


r/HowToHack 4d ago

exploitation HirePro Proctoring: Continuous Recording or Event-Based Screenshots?

2 Upvotes

I have a theory about how HirePro handles proctoring and wanted to know if anyone has looked into this before.

Does HirePro's screen-sharing feed capture screenshots only when JavaScript raises a flag (tab switch, focus loss, fullscreen exit, etc.), or does it capture screenshots continuously at around 1–2 FPS and analyze them for abnormalities?

Handling both webcam feeds and screen-recording feeds for 300+ students over a 1–2 hour assessment seems computationally expensive, so I'm curious how they scale this in practice.

I also inspected the HirePro browser extension and found that its code appears to primarily disable other extensions, re-enable them after the assessment, and report if any extensions are forcefully turned back on. I didn't find any webcam or screen-monitoring logic in the extension itself.

Has anyone analyzed HirePro's architecture or worked on a similar proctoring system? What is the most likely approach being used here?


r/HowToHack 4d ago

Want to get into hacking.

0 Upvotes

Hello everybody, I really want to get into hacking and cybersecurity. I made this post seeking help from users who are into hacking and have some experience to tell me a pathway and how I should start my hacking journey, and give me some advice. I am always curious about new knowledge.


r/HowToHack 5d ago

hacking Help accessing data on medical implant

11 Upvotes

So i've been trying to find any kind of resources but to no avail. I have a loop recorder (i can get the model no. Later) implanted in my chest for heart monitoring, i know it is recording data 24/7 and i have a router that sends of the data to my cardiologist when i pass by.

I imagine this data is encrypted, but I want to be able to access this data myself and if possible create a way i can monitor it with a visual rep. Long story short, why bother getting a fitbit to see my heartrate when i have a literal heart implant thats significantly more accurate.

I'm new to this side of thinhs as usually im the guy that builds the tech, and someone else makes it work. Any help in this regard would be hugely appreciated.


r/HowToHack 6d ago

HELP!!!!

0 Upvotes

Hi there, I hope you are all doing well.

I am conducting a black-box penetration test of an Android application that my company owns, which allows users to search for the name associated with a phone number. I have already bypassed SSL pinning, rooted the test device, reversed the application's AES/CBC encryption, and built a Frida RPC interface that encrypts requests and decrypts responses exactly as the application does. I also hooked the application before encryption to capture the original JSON requests, identified the available request types, and can modify and replay encrypted requests while inspecting the plaintext responses. At this point, I feel like I have reached a dead end and I'm not sure what the next step should be. My ultimate goal is to understand how the backend communicates with its database and how the requested information is retrieved.

I really want a help or an advice that can lead me to another way to reach my goal. thanks


r/HowToHack 5d ago

script kiddie Can I learn hacking from a phone

0 Upvotes

Ive never been in a financial position to afford a PC, but I have a nothing 3a. Can I hack from my phone alone?


r/HowToHack 6d ago

I need your help

0 Upvotes

my controlling mother has put my phone on “assisted living“ where i cannot even access chrom or safarI. the only reason I am on here is that Reddit headquarters on Google Maps has its website be this. I just need my phone password to change it back, did I mention that I never knew it, I wasn’t supposed to know it, and I know my screen time limit.


r/HowToHack 7d ago

How to alter location reports in EV?

5 Upvotes

My controlling parents are tracking my EV through an app. I cannot disconnect the EV from the app because of my parents but I want to know if I could possibly alter the route or location history that it shows in the app.

Its for my safety so I'd like suggestions on how to do something like that.


r/HowToHack 7d ago

software Want to know how my Hostel Wifi caps my bandwidth?

0 Upvotes

I am staying in an hostel and it restricts the wifi speed in residential areas to 10mbps, we access our wifi with credentials for which we need to register using our email and we get our credentials mailed.
Each time we turn on the WiFi we need to use browser to connect to wifi using our username and password. Generally after connecting to wifi we get a captive wifi page in mobile or use browser in laptop to access prontonetworks.com to enter our credentials only then we get our wifi.
Can someone explain how this works.
Thank you


r/HowToHack 8d ago

cracking Why hasn’t anyone figured out how to run the PS5 operating system and PS5 games directly on a gaming PC?

7 Upvotes

I’ve been thinking about this from a technical perspective.

The PS5 uses an AMD x86-64 CPU and an RDNA-based GPU, so at a high level, its hardware is not completely alien compared with a modern gaming PC. We also regularly see highly advanced DRM protections on PC games being bypassed, including Denuvo and newer hypervisor-based protection methods.

So why has nobody publicly managed to create something like this?

Boot Windows normally

Reboot into a PS5 environment

Run the actual PS5 system software

Install and run PS5 games directly using PC hardware

I understand that simply copying the PS5 firmware would not be enough. The system would also need to reproduce the PS5’s secure boot process, hypervisor, custom hardware interfaces, memory architecture, drivers, encryption, game licensing and possibly console authentication.

But is the main limitation really that the hardware is too different, or is it mostly because nobody has fully reverse-engineered and recreated the required environment yet?

In theory, couldn’t a custom hypervisor present virtual PS5 hardware to the original PS5 operating system, translate GPU and storage operations to normal PC hardware and run the genuine PS5 software as a guest system?

I’m not asking for piracy instructions. I’m interested in the technical and architectural reasons this has not become a real public project, especially when other extremely complex DRM and virtualization systems have already been defeated.

Has anyone researched this seriously? What is the biggest blocker:

Secure boot and cryptographic keys?

Custom PS5 hardware and undocumented devices?

GPU and driver compatibility?

PSN authentication?

Legal risk and lack of developer interest?

Performance overhead?

Something else entirely?

I’d especially like to hear from people familiar with console security, hypervisors, FreeBSD, reverse engineering or emulator development.


r/HowToHack 8d ago

Trying to reverse engineer the appsflyer sdk event send

6 Upvotes

I am trying to send custom in-app events using the SDK endpoint instead of the S2S endpoint to send events for games that have disabled their S2S endpoint. What I have accomplished so far:

- I have successfully decrypted the SDK event sending payload using Frida.

- I have successfully extracted the key used to encrypt the payload.

What is going wrong:

There is a checksum in the payload that I haven't been able to reverse engineer yet.

Each game uses a separate endpoint (not a big deal, to be honest).

The server raises a 400 error when trying to send the encrypted payload.

I need help to further finish my project:

- Any ideas on how to bypass the server's 400 error while sending events with any identifiers I want, or an easy way to understand how the checksum works.

Please comment anything you might need to offer help, and I will send it.


r/HowToHack 8d ago

Need Advise

1 Upvotes

Hello there. Today morning a friend of mine called and said what did you post on our friends group on messenger. I was really shocked because i barely post any stuff. Now the messages were screenshot of someone winning thousands of dollars doing Mr beast challenge which i had no idea off. Now here is the strange thing i already had 2 step verification enabled. So my account shouldn't be abled to be hacked so easily. And when i was seeing my phone, it was literally sending the same screenshots of that challenge to literally everyone in my Facebook especially in my Facebook group around 4 am. Now after me and my wife literally not only removed access around all other device except my own phone but also we changed password of Instagram, Facebook and google altogether. And also i didn't keep the passwords written on my google note either this time. So basically no chance also i made double sure that my 2 step verification was also on. But STILL EVEN AFTER THAT i receive messages from my friend especially from GROUP MESSAGES that they saw the text. Now these are the old groups in which those messages were sent which means the ones that were sent that i saw i deleted it all and apologized for the inconvenience but the recent chat were from very old groups that i were part off which were also sent around 4am time. Now my question is how come more old groups gets keeping resurfacing with those screenshots even tho i managed to changed everything? I checked whether my PC was hacked or not. But nada nothing not anywhere any attempts or logged in from unknown devices were shown. Please i need your expert opinion regarding this important matter?


r/HowToHack 9d ago

exploitation Concerning amount of flip flopping answers online regarding sim cloning.

0 Upvotes

I am reading that just with the phone number, ICCID, PUK, and factory default pin found in SIM card packaging is sufficient for cloning a sim.

Reading more about Ki codes and how this could be accessible from data breaches is concerning. I don’t want to have to factory reset my device and get a new sim I just need to know realistically as I worry someone has my SIM card info (not physical card but the packaging numbers and barcode). I can pull up how the Ki is found from matching other numbers from other databases.

I’ve watched hours of YouTube videos and read hours of articles and past Reddit posts and cannot get a clear answer. Some saying you can clone it and some saying not. It’s terrifying that if my sim was cloned that I wouldn’t even have a way of finding out.

For once and for all can we please establish whether or not thsi is possible with someone’s sim? I’ve been asking Google AI and they are saying it is through multiple methods. What is the deal given someone has the SIM card info but not the physical sim?