hacktricks/README.md

119 lines
6.9 KiB
Markdown
Raw Normal View History

2022-04-29 01:27:22 +02:00
---
description: >-
Welcome to the page where you will find each hacking trick/technique/whatever
2022-09-09 15:29:02 +02:00
I have learnt from CTFs, real life apps, reading researches, and news.
2022-04-29 01:27:22 +02:00
---
2022-04-28 18:01:33 +02:00
2022-04-29 01:27:22 +02:00
# HackTricks
2022-04-28 18:01:33 +02:00
2022-04-06 10:57:29 +02:00
![](.gitbook/assets/p.png)
2022-09-09 15:29:02 +02:00
**Welcome to the page where you will find each hacking trick/technique/whatever I have learnt from CTFs, real life apps, reading researches, and news.**
Here you can find a little **introduction:**
2022-05-01 15:25:53 +02:00
## [**Pentesting Methodology**](generic-methodologies-and-resources/pentesting-methodology.md)
Here you will find the **typical flow** that **you should follow when pentesting** one or more **machines**.
2022-09-09 15:29:02 +02:00
**Click on the title to start!**
2022-05-01 14:41:36 +02:00
## Corporate Sponsors
2022-05-01 14:41:36 +02:00
### [STM Cyber](https://www.stmcyber.com)
2021-11-26 02:20:02 +01:00
2023-01-13 18:40:30 +01:00
![](<.gitbook/assets/image (638) (2) (1).png>)
2021-11-26 02:20:02 +01:00
2022-09-09 15:29:02 +02:00
[**STM Cyber**](https://www.stmcyber.com) is a great cybersecurity company whose slogan is **HACK THE UNHACKABLE**. They perform their own research and develop their own hacking tools to **offer several valuable cybersecurity services** like pentesting, Red teams and training.
2021-11-26 13:13:08 +01:00
2022-01-31 15:48:24 +01:00
You can check their **blog** in [**https://blog.stmcyber.com**](https://blog.stmcyber.com)
2021-11-26 02:20:02 +01:00
2021-11-30 17:46:07 +01:00
**STM Cyber** also support cybersecurity open source projects like HackTricks :)
2021-11-26 02:20:02 +01:00
2022-10-25 16:58:43 +02:00
### [RootedCON](https://www.rootedcon.com/)
2022-11-07 11:43:41 +01:00
<figure><img src=".gitbook/assets/image (1) (3).png" alt=""><figcaption></figcaption></figure>
2022-10-25 16:58:43 +02:00
2022-10-25 17:11:08 +02:00
[**RootedCON**](https://www.rootedcon.com) is the most relevant cybersecurity event in **Spain** and one of the most important in **Europe**. With **the mission of promoting technical knowledge**, this congress is a boiling meeting point for technology and cybersecurity professionals in every discipline.
2022-10-25 16:58:43 +02:00
{% embed url="https://www.rootedcon.com/" %}
2022-06-09 10:38:14 +02:00
### [Intigriti](https://www.intigriti.com)
2022-07-21 22:19:28 +02:00
![](.gitbook/assets/i3.png)
2022-06-09 10:38:14 +02:00
**Intigriti** is the **Europe's #1** ethical hacking and **bug bounty platform.**
**Bug bounty tip**: **sign up** for **Intigriti**, a premium **bug bounty platform created by hackers, for hackers**! Join us at [**https://go.intigriti.com/hacktricks**](https://go.intigriti.com/hacktricks) today, and start earning bounties up to **$100,000**!
{% embed url="https://go.intigriti.com/hacktricks" %}
2022-09-08 17:18:29 +02:00
### [Trickest](https://trickest.com/?utm\_campaign=hacktrics\&utm\_medium=banner\&utm\_source=hacktricks)
2022-09-30 12:43:59 +02:00
<figure><img src=".gitbook/assets/image (9) (1) (2).png" alt=""><figcaption></figcaption></figure>
2022-09-08 17:18:29 +02:00
\
2022-10-25 21:47:53 +02:00
Use [**Trickest**](https://trickest.com/?utm\_campaign=hacktrics\&utm\_medium=banner\&utm\_source=hacktricks) to easily build and **automate workflows** powered by the world's **most advanced** community tools.
2022-09-08 17:18:29 +02:00
Get Access Today:
{% embed url="https://trickest.com/?utm_campaign=hacktrics&utm_medium=banner&utm_source=hacktricks" %}
2022-10-27 15:23:12 +02:00
### [HACKENPROOF](https://hackenproof.com/)
2022-10-25 21:47:53 +02:00
2023-01-13 18:40:30 +01:00
<figure><img src=".gitbook/assets/image (5) (1).png" alt=""><figcaption></figcaption></figure>
2022-10-25 21:47:53 +02:00
2022-10-26 16:49:25 +02:00
**HackenProof is home to all crypto bug bounties.**
2022-10-25 21:47:53 +02:00
2022-10-27 15:23:12 +02:00
**Get rewarded without delays**\
2022-11-14 10:58:53 +01:00
HackenProof bounties launch only when their customers deposit the reward budget. You'll get the reward after the bug is verified.
2022-10-25 21:47:53 +02:00
2022-10-27 15:23:12 +02:00
**Get experience in web3 pentesting**\
2022-11-14 10:58:53 +01:00
Blockchain protocols and smart contracts are the new Internet! Master web3 security at its rising days.
2022-10-25 21:47:53 +02:00
2022-10-27 15:23:12 +02:00
**Become the web3 hacker legend**\
2022-11-14 10:58:53 +01:00
Gain reputation points with each verified bug and conquer the top of the weekly leaderboard.
2022-10-25 21:47:53 +02:00
2022-11-07 11:43:41 +01:00
[**Sign up on HackenProof**](https://hackenproof.com/register?referral\_code=i\_E6M25i\_Um9gB56o-XsIA) to start earning from your hacks!
2022-10-25 21:47:53 +02:00
2023-02-14 12:23:00 +01:00
{% embed url="https://twitter.com/intent/follow?original_referer=https%3A%2F%2Fwww.hackenproof.com%2F&screen_name=hackenproof" %}
2022-10-25 21:47:53 +02:00
2022-10-05 23:51:12 +02:00
### [WebSec](https://websec.nl/)
2022-09-21 15:24:22 +02:00
<figure><img src=".gitbook/assets/logo.svg" alt=""><figcaption></figcaption></figure>
2022-09-28 16:34:57 +02:00
[**WebSec**](https://websec.nl) is a professional cybersecurity company based in **Amsterdam** which helps **protecting** businesses **all over the world** against the latest cybersecurity threats by providing **offensive-security services** with a **modern** approach.
2022-09-21 15:24:22 +02:00
WebSec is an **all-in-one security company** which means they do it all; Pentesting, **Security** Audits, Awareness Trainings, Phishing Campagnes, Code Review, Exploit Development, Security Experts Outsourcing and much more.
2022-09-21 17:30:42 +02:00
Another cool thing about WebSec is that unlike the industry average WebSec is **very confident in their skills**, to such an extent that they **guarantee the best quality results**, it states on their website "**If we can't hack it, You don't pay it!**". For more info take a look at their [**website**](https://websec.nl/en/) and [**blog**](https://websec.nl/blog/)!
2022-09-21 15:24:22 +02:00
In addition to the above WebSec is also a **committed supporter of HackTricks.**
{% embed url="https://www.youtube.com/watch?v=Zq2JycGDCPM" %}
2023-01-13 18:40:30 +01:00
### [SYN CUBES](https://www.syncubes.com/)
<figure><img src=".gitbook/assets/image (10) (2).png" alt=""><figcaption></figcaption></figure>
**Security Skills as a Service** platform bridges the current skill set gap by combining **global offensive security talent with smart automation**, providing real-time data you need to make informed decisions.
{% embed url="https://www.syncubes.com/" %}
2022-05-01 14:41:36 +02:00
## License
2021-10-04 13:09:20 +02:00
2022-09-28 20:54:27 +02:00
**Copyright © Carlos Polop 2022. Except where otherwise specified (the external information copied into the book belongs to the original authors), the text on** [**HACK TRICKS**](https://github.com/carlospolop/hacktricks) **by Carlos Polop is licensed under the**[ **Attribution-NonCommercial 4.0 International (CC BY-NC 4.0)**](https://creativecommons.org/licenses/by-nc/4.0/)**.**\
**If you want to use it with commercial purposes, contact me.**
2022-04-28 18:01:33 +02:00
<details>
2022-12-11 20:30:44 +01:00
<summary><a href="https://www.twitch.tv/hacktricks_live/schedule"><strong>🎙️ HackTricks LIVE Twitch</strong></a> <strong>Wednesdays 5.30pm (UTC) 🎙️ -</strong> <a href="https://www.youtube.com/@hacktricks_LIVE"><strong>🎥 Youtube 🎥</strong></a></summary>
2022-04-28 18:01:33 +02:00
2022-09-09 13:57:02 +02:00
* Do you work in a **cybersecurity company**? Do you want to see your **company advertised in HackTricks**? or do you want to have access to the **latest version of the PEASS or download HackTricks in PDF**? Check the [**SUBSCRIPTION PLANS**](https://github.com/sponsors/carlospolop)!
* Discover [**The PEASS Family**](https://opensea.io/collection/the-peass-family), our collection of exclusive [**NFTs**](https://opensea.io/collection/the-peass-family)
* Get the [**official PEASS & HackTricks swag**](https://peass.creator-spring.com)
* **Join the** [**💬**](https://emojipedia.org/speech-balloon/) [**Discord group**](https://discord.gg/hRep4RUj7f) or the [**telegram group**](https://t.me/peass) or **follow** me on **Twitter** [**🐦**](https://github.com/carlospolop/hacktricks/tree/7af18b62b3bdc423e11444677a6a73d4043511e9/\[https:/emojipedia.org/bird/README.md)[**@carlospolopm**](https://twitter.com/carlospolopm)**.**
2022-12-11 20:30:44 +01:00
* **Share your hacking tricks by submitting PRs to the** [**hacktricks repo**](https://github.com/carlospolop/hacktricks) **and** [**hacktricks-cloud repo**](https://github.com/carlospolop/hacktricks-cloud).
2022-04-28 18:01:33 +02:00
</details>