Skip to main content

Posts

Confused with SSH Port Forwarding?

This is one of the confusing topics for me but now I have completely understood. There are lots of blog posts on this with different perspectives and now I am also adding my perspective too. Hope this will help you to understand the concept. What is a port? Port is a virtual interface in the operating system that is used for sending and receiving TCP/UDP packets from the same system or another system. Applications interact by using a port number like SSH port 22. What is port forwarding? In simple language, port forwarding means redirecting the TCP packets from one IP address and port number to another IP address and port number. Example:  Let's assume you have a system in your house behind the router. No public IP address is assigned to your system directly. Now you want to access that system from another network by using SSH. How will you do that? Solution:  You do the port forwarding in your router, where you map the router port to your system port and IP address, in this scenar

How to add a custom filter in the Detect-Secrets (Yelp)code for build

Hello everyone, I am sharing a small change that I did in the detect-secrets tool which is my client's requirement. My client wants to use the “custom filter” in the Detect-Secrets but also wants, that no other option will be added while using it. Example: detect-secrets scan --filter custom_filter.py::is_invalid_secret The reason to add the filter code in the tool code, so that anybody in the company, directly can use it without remembering any options and the path of the filter file like in the above example. What is the filter in Detect-Secrets? The filter is something that you don’t want to scan at the time of repo scan by  detect-secrets . Like your organization use “AppID = dasdsfdsfsdfsf”, so for “ Detect-secrets ” this is secret but for your organization, it’s a normal value. So if you want fewer false-positive results then we use the filters. How to add filter code in code and build the detect secret? Step1:  Clone the “ Detect-Secrets ” tool repo. git clone  https://githu

CCTV /Webcam Users! Pay Attention!

  Hello Everyone, my name is Rishabh Sharma. I am a cybersecurity consultant. People who are in the cybersecurity domain have crazy minds. They want to use this skill to know more about things that normal people don’t know. They feel it is a power on the internet. In my college days, I was also curious to know how keyloggers, RAT, etc work and to get the information from other systems. I tried and was successful, I had started receiving the desktop screenshot and you know how it feels when you are just a learner and you hacked someone’s random system on the internet. Woohoo…. It was an awesome feeling but I know, it was wrong. The story that I have shared with you is to inform you that don’t click on random links, don’t download random stuff which you are not aware of, use a firewall and antivirus tools, etc. CCTV /Webcam Users! Pay Attention! Nowadays, people are installing many CCTV cameras in their houses, private rooms, offices, private places, etc for security purposes and monitor