0:00 - Introduction
0:17 - Hunting Subdomains Part 1
5:54 - Hunting Subdomains Part 2
10:46 - Identifying Website Technologies
17:57 - Gathering Information w/ Burp Suite
26:49 - Google Fu
32:24 - Utilizing Social Media
38:05 - Installing Kioptrix
44:28 - Scanning w/ Nmap
1:04:16 - Enumerating HTTP/HTTPS Part 1
1:19:22 - Enumerating HTTP/HTTPS Part 2
1:34:35 - Enumerating SMB
1:48:59 - Enumerating SSH
1:53:11 - Researching Potential Vulnerabilities
2:08:05 - Our Notes So Far
2:11:15 - Scanning w/ Nessus Part 1
2:21:54 - Scanning w/ Nessus Part 2
2:28:07 - Reverse Shells vs Bind Shells
2:35:12 - Staged vs Non-Staged Payloads
2:38:37 - Gaining Root w/ Metasploit
2:46:21 - Manual Exploitation
2:59:06 - Brute Force Attacks
3:07:00 - Credential Stuffing & Password Spraying
3:21:07 - Our Notes, Revisited
3:24:56 - Downloading Our Materials
3:30:17 - Buffer Overflows Explained
3:34:29 - Spiking
3:44:46 - Fuzzing
3:50:59 - Finding the Offset
3:56:22 - Overwriting the EIP
3:59:51 - Finding Bad Characters
4:07:46 - Finding the Right Module
4:16:16 - Generating Shellcode and Gaining Root
4:22:16 - Python3 and More
4:36:01 - Capstone Introduction
4:41:47 - Setting up Blue
4:45:48 - Blue Walkthrough
5:02:53 - Academy Setup
5:05:22 - Academy Walkthrough
5:49:46 - Dev Walkthrough
6:15:10 - Butler Walkthrough
6:51:33 - Blackpearl Walkthrough
7:15:08 - Conclusion
Full Course: https://academy.tcm-sec.com/p/practic...
All Course Resources/Links: https://github.com/Gr1mmie/Practical-...
A shout out to all those involved with helping out on this course:
Alek - Creating "Academy", "Dev", and "Black Pearl" Capstone machines and a Discord Admin.
Dewalt, Yaseen, Likith, and Tuk - The five star support team.
Dwight - Discord Admin and awesome hacker.
Grimmie - Creation of SumRecon, lover of cookies, and a Discord Admin.
Joe Helle - Creating the "Blue" Capstone machine and the PNPT foothold. The OG support staff and a Discord Admin.
Lian - The OG Discord Admin with French Bulldogs I'd like to steal.
Rumham - Discord Admin, lover of rum and hams, and overall great guy.
*We are a participant in the Amazon Services LLC Associates Program, an affiliate advertising program designed to provide a means for us to earn fees by linking to Amazon.com and affiliated sites.
This is a one-time notice about a free service on steem.
There are communities that help support the little guy 😊, you might like ours, we join forces with lots of other small accounts to help each other grow!
Finally a good curation trail that helps its users achieve rapid growth, its fun on a bun! check it out. https://anentrypoint.github.io/school-of-minnows-landing/
A note on other bots warnings:
It's come to our attention that some of the people on this network (keys-defender run guityparties, and bots run by pfunk) have been attacking our advertorial notices by calling it a scam/fraud.
We have contacted the owners of those systems, we've shared our complete source code and processes, and explained that we've been running for longer that they have, and have been trusted by large subsets of users troughout, expressed all of our processes, which are simple, free, opensource and legitimate, and beneficial the blockchain and its users.
After doing lots of research and speaking to many other developers on this network, it's become clear that they use these false policing services to demote other projects in order to promote their own paid upvote scams and vote-abuse systems where they demote anything thats not designed to upvote their friends.
We respect their right to communicate what they want to, even if its false,however our project is highly respected, as well as open source, its already been audited by many users and its easy to confirm that there is no risk in using it.
Both our enrollment system and upvote bot is open source and whitelisted by MalwareBytes, accepted by Github, and we've serviced thousands of users since 2017, our bot is free and will only ever vote on your behalf if your idle reaches 100%.
We respect our users freedom, enrollement as well as unenrollment from our system is done directly on the blockchain and you do not need our services to join/leave.
Bot source: https://github.com/AnEntrypoint/school-of-minnows
Landing page source: https://github.com/AnEntrypoint/school-of-minnows-landing
School of minnows is FREE OPEN SOURCE software, we run the bot on our own resources and maintain it for free, if you have any questions about the platform, the quickest way to make contact is directly contacting the lead developer on discord: moonshine#6211 if you want to add a friend directly, or on the entrypoint discord: https://discord.gg/NED33mNpms
We are always active and happy to answer any questions you may have.
Downvoting a post can decrease pending rewards and make it less visible. Common reasons:
Submit