Skip to content

  • About Us
  • Contact
  • Disclaimer
  • Home
  • Linux Kernel Exploitation: Know Your Attack Surface — HackerXone
    Linux

    Linux Kernel Exploitation: Know Your Attack Surface

    ByHackerXone Team September 18, 2026

    CVE-2024-1086 showed that a single kernel bug can hand attackers full root — fast. Before you can defend or research Linux kernel vulnerabilities, you need to map exactly what the kernel exposes to user-space. This post walks through real commands to enumerate syscall interfaces, eBPF exposure, and io_uring attack surface on a live system.

    Read More Linux Kernel Exploitation: Know Your Attack SurfaceContinue

  • Deepfake Fraud in Enterprise: Detection & Prevention — HackerXone
    AI Security

    Deepfake Fraud in Enterprise: Detection & Prevention

    ByHackerXone Team September 17, 2026

    A $25 million deepfake wire fraud in 2025 exposed how few enterprises have any detection layer between a synthetic video call and a bank transfer. This guide walks through voice similarity scoring, SIEM correlation queries, and four prevention controls you can implement this week.

    Read More Deepfake Fraud in Enterprise: Detection & PreventionContinue

  • Binary Exploitation CTF Challenges: Step-by-Step — HackerXone
    CTF

    Binary Exploitation CTF Challenges: Step-by-Step

    ByHackerXone Team September 16, 2026

    Slow enumeration beats fast fuzzing every time in binary exploitation CTF challenges. This guide walks from checksec recon to a working pwntools exploit — with real commands and real output at every step.

    Read More Binary Exploitation CTF Challenges: Step-by-StepContinue

  • Metasploit Framework: Beginner to Advanced Guide — HackerXone
    Security Tools

    Metasploit Framework: Beginner to Advanced Guide

    ByHackerXone Team September 15, 2026

    Metasploit is the exploitation framework behind real-world penetration tests — not just a beginner sandbox. Walk through a complete workflow: finding modules, landing a Meterpreter session, and escalating privileges with post-exploitation modules.

    Read More Metasploit Framework: Beginner to Advanced GuideContinue

  • Malware Reverse Engineering with Ghidra: Beginner Guide — HackerXone
    Malware

    Malware Reverse Engineering with Ghidra: Beginner Guide

    ByHackerXone Team September 14, 2026

    Analysts who loaded AsyncRAT payloads into Ghidra found the C2 address and persistence logic in under 20 minutes — without running a single line of malware. This beginner guide walks you through real decompiler output, from unpacking a UPX binary to identifying beacon functions and registry persistence.

    Read More Malware Reverse Engineering with Ghidra: Beginner GuideContinue

  • Web App Pentest Methodology 2026: A Practical Guide — HackerXone
    Exploits

    Web App Pentest Methodology 2026: A Practical Guide

    ByHackerXone Team September 13, 2026

    A Fortune 500 breach in early 2026 started with a single exposed .env file and a weak JWT secret. This guide walks through the exact recon, exploitation, and chaining techniques modern pentesters use — complete with real commands and tool output.

    Read More Web App Pentest Methodology 2026: A Practical GuideContinue

  • Kerberoasting to Domain Admin: Step-by-Step — HackerXone
    Microsoft

    Kerberoasting to Domain Admin: Step-by-Step

    ByHackerXone Team September 12, 2026

    Kerberoasting lets any domain user crack service account passwords offline — no special privileges needed. Walk through the full attack chain from SPN enumeration to Domain Admin with real commands and output, then lock it down before someone else runs these same steps against your environment.

    Read More Kerberoasting to Domain Admin: Step-by-StepContinue

  • Hardening Linux Servers: The Complete 2026 Checklist — HackerXone
    Linux

    Hardening Linux Servers: The Complete 2026 Checklist

    ByHackerXone Team September 11, 2026

    SSH misconfigurations, unmonitored privilege escalation, and permissive kernel defaults put Linux servers at risk every day. This 2026 checklist gives you real commands and actual output to lock them down — starting in the next five minutes.

    Read More Hardening Linux Servers: The Complete 2026 ChecklistContinue

  • Prompt Injection Attacks: Real Examples & How to Stop Them — HackerXone
    AI Security

    Prompt Injection Attacks: Real Examples & How to Stop Them

    ByHackerXone Team September 10, 2026

    Prompt injection is the SQL injection of AI apps — and most teams are shipping it unmitigated. Walk through two real attack scenarios with tool output, understand what attackers do with a successful injection, and learn the layered defenses that actually hold.

    Read More Prompt Injection Attacks: Real Examples & How to Stop ThemContinue

  • CTF Web Challenge Walkthrough: Methodology & Tools — HackerXone
    CTF

    CTF Web Challenge Walkthrough: Methodology & Tools

    ByHackerXone Team September 9, 2026

    Most CTF teams lose web challenges not because they lack skill, but because they skip structured recon. This walkthrough shows a repeatable methodology — real commands, real tool output — that took one team from zero to flag in forty minutes.

    Read More CTF Web Challenge Walkthrough: Methodology & ToolsContinue

  • Nmap Mastery: Advanced Scanning for Pentesters — HackerXone
    Security Tools

    Nmap Mastery: Advanced Scanning for Pentesters

    ByHackerXone Team September 8, 2026

    Default Nmap scans get you caught and leave findings on the table. Learn the advanced techniques — stealthy SYN scans, NSE vulnerability scripts, and segmented-network host discovery — that working pentesters actually rely on, with real commands and output you can run today.

    Read More Nmap Mastery: Advanced Scanning for PentestersContinue

  • Ransomware Anatomy: How Modern Attacks Work End to End — HackerXone
    Malware

    Ransomware Anatomy: How Modern Attacks Work End to End

    ByHackerXone Team September 7, 2026

    From phishing email to 340 encrypted endpoints in under 20 minutes — that’s the modern ransomware timeline. This post walks through each stage with real command output and tells you exactly where defenders can break the chain.

    Read More Ransomware Anatomy: How Modern Attacks Work End to EndContinue

Page navigation

1 2 3 … 8 Next PageNext

Active Directory AI security binary exploitation BloodHound buffer overflow Bug Bounty Credential Attacks CTF digital forensics encryption exploit development GDB Ghidra incident-response Kerberoasting Linux linux security LLM Security malware malware-analysis metasploit nmap OWASP penetration testing Pentesting Persistence phishing privilege escalation prompt injection ransomware reconnaissance Red Team red teaming reverse engineering security tools Server Hardening social engineering SQL injection SSH sysadmin threat-hunting threat-intelligence Threat Detection Web Security Windows Security

© 2026 HackerXone

Scroll to top
  • About Us
  • Contact
  • Disclaimer
  • Home