🌟 Welcome to RootSecX! 🌟

πŸ‘¨β€πŸ’» Hey there! I’m Nikhil, your go-to guide for Cybersecurity, Ethical Hacking, and Tech, explained in the simplest way possible. This channel is dedicated to making hacking and cybersecurity accessible to everyone, especially beginners.

πŸš€ What We Do?

Ethical Hacking & Penetration Testing
Cybersecurity Tips & Tricks
Bug Bounty & CTF Challenges
AI-Powered Cybersecurity Learning
πŸ” Why RootSecX?
We simplify complex tech concepts in Hindi, breaking down barriers so anyone can learn, grow, and secure the digital world.

🎯 Who Am I?
A Cybersecurity & Ethical Hacking Expert with a B.Tech in CSE and M.Tech in Cybersecurity from Jawaharlal Nehru University, with hands-on experience in Python, C/C++, and security tools.

🌐 Join Us & Secure the Future! πŸš€


RootSecX

🌐 Exploring the #Dark #Web: Insights and Security Measures


In today's world, where #anonymity and #security are often at odds, the #darkweb remains a fascinating yet misunderstood topic. My latest #blog dives deep into:

πŸ”’ How dark web #websites operate.
πŸ›‘οΈ #Advanced security measures to ensure #anonymity.
🌐 The #technologies that #power the #TOR #network.
πŸ“š Lessons from real-world tracking cases.

Whether you're a #cybersecurity enthusiast, a #developer, or just curious about the #hidden side of the #internet, this blog offers valuable insights into the strategies and #technologies that #protect #online #privacy.

Check it out here: Ultimate Guide to Building an Untraceable Dark Web Website nikhilkum1r.medium.com/ultimate-guide-to-building-…

Would love to hear your thoughts and insights! Let's discuss how we can better understand and navigate the complex world of cybersecurity.

#Cybersecurity #DarkWeb #Technology #OnlineAnonymity #TOR

1 year ago | [YT] | 2

RootSecX

πŸš€ New Blog Alert: Exploring Packet Sniffing & Spoofing!πŸš€

Check out my latest blog where I dive into essential network security techniques! Learn about:

1. Packet Sniffing: Understand how to capture and analyze network packets.
2. Using Scapy: A simple guide to installing and creating sniffers.
3. ICMP Spoofing: Step-by-step instructions to spoof ICMP packets.
4. Practical Applications: Explore real-world use cases and ethical considerations.

Whether you're a cybersecurity enthusiast or a beginner, this blog is for you! πŸŒπŸ” nikhilkum1r.medium.com/exploring-packet-sniffing-a…

1 year ago | [YT] | 3

RootSecX

🚨 Cybersecurity Essentials for Every Business! 🚨

I just published a detailed article on how #businesses can protect their #data from growing #cyber #threats. Learn the core principles of cybersecurity, including the #CIA #Triad ( #Confidentiality, #Integrity, #Availability ), and get practical advice on #assessing #risks, setting up #security #policies, and ensuring data #safety with #backup #plans.

πŸ‘‰ Read the full guide here: nikhilkum1r.medium.com/comprehensive-cybersecurity…

#Cybersecurity #DataProtection #BusinessSafety #RiskManagement #StaySecure

1 year ago | [YT] | 2

RootSecX

πŸš€ Compromising a Joomla CMS Account: Privilege Escalation Walkthrough πŸ”’

I just completed a detailed walkthrough on exploiting a Joomla CMS account using SQL Injection, cracking password hashes, and escalating privileges via a `yum` vulnerability. Here’s a quick overview:

1. Initial Scan: Conducted a Nmap scan to identify open ports.
2. SQL Injection: Exploited a known vulnerability in Joomla 3.7.0, retrieving user information and hashed passwords.
3. Password Cracking: Cracked the password for the "Super User" accountβ€”Username: Jonah, Password: `spiderman123`.
4. Admin Access: Logged into the Joomla admin panel and uploaded a PHP reverse shell.
5. Shell Access: Triggered the reverse shell, gaining access as the β€œApache” user.
6. Privilege Escalation: Explored the configuration file, obtained credentials, and switched to the user β€œjjameson.”
7. Gaining Root Access: Leveraged a `yum` vulnerability to create a malicious plugin, escalating privileges to root.

Want to dive deeper? Check out my full guide here: Compromising Joomla Walkthrough
nikhilkum1r.medium.com/compromising-a-joomla-cms-a…



Stay secure and happy hacking! πŸ•΅οΈβ€β™‚οΈπŸ’»

1 year ago | [YT] | 1

RootSecX

πŸš€Pwned1 Walkthrough: Root Access via FTP and Docker! πŸ”’

I just completed the "Pwned1" box and documented the entire process, focusing on reconnaissance, enumeration, exploitation, and privilege escalation. Here's a quick rundown:

1. Initial Scanning: Used Nmap to find open ports (21, 22, 80) and gathered info about the services running.
2. Web Enumeration: Discovered hidden directories with Gobuster, revealing clues and FTP credentials.
3. FTP Login: Retrieved the SSH private key ("id_rsa") and a note with user info.
4. SSH Access: Logged in as β€œAriana” using the private key and stabilized the shell.
5. Privilege Escalation: Exploited Docker to gain root access and navigated to retrieve the flags.

Want to see the full details? Check out my guide here: Pwned1 Walkthrough
nikhilkum1r.medium.com/pwned1-walkthrough-proving-…



Happy hacking! πŸ•΅οΈβ€β™‚οΈπŸ’»

1 year ago | [YT] | 1

RootSecX

πŸš€ So Simple CTF Challenge Walkthrough! πŸ”

I recently tackled the "So Simple" CTF challenge on OffSec, and I documented my journey from initial reconnaissance to privilege escalation.

In my latest article, I cover:
- Network scanning using Nmap πŸ–₯️
- Directory enumeration with Gobuster πŸ“‚
- WordPress enumeration with WPScan πŸ”‘
- Exploiting vulnerabilities for a reverse shell πŸ’»
- Privilege escalation to root access πŸš€

Check out the full breakdown of my process here: So Simple CTF Challenge Walkthrough:- medium.com/@nikhilkum1r/so-simple-ctf-challenge-a-…



Happy hacking! πŸ•΅οΈβ€β™‚οΈπŸ’‘

1 year ago | [YT] | 2