#509: AI + Metasploit = Terrifyingly Easy Hacking is here (demo)
David Bombal11 Syys

#509: AI + Metasploit = Terrifyingly Easy Hacking is here (demo)

In this ethical lab demo, David Bombal and Kyle Winters connect Claude (LLM) to Metasploit through an MCP (Model Context Protocol) server to automate real attacks. Watch AI perform recon, generate a risk report, and execute VSFTPD backdoor, EternalBlue (SMBv1), and UnrealIRCD—dropping benign files on Linux and Windows with simple prompts. Educational use only on intentionally vulnerable VMs. Do not attack systems you don’t own or lack permission to test. What you’ll see • How MCP bridges an AI to real tools (Metasploit RPC) • AI-driven scanning + auto security report (services, versions, risks) • Prompted exploits: VSFTPD, EternalBlue, UnrealIRCD • Why this lowers barriers for red teams—and what blue teams should do // Sponsored SEGMENT // Big thanks to Cisco for sponsoring this video. // Kyle Winters SOCIAL // LinkedIn: / kyle-m-winters Cisco Blogs:  https://blogs.cisco.com/author/kylewi... // Websites REFERENCE // MetasploitMCP by GH05TCREW: https://github.com/GH05TCREW/Metasplo... Kareem Iskander's MCP blogs: https://blogs.cisco.com/author/kareem... Cisco U.: https://u.cisco.com?ccid=cisco-u&dtid... // Video REFERENCE // MCP Demo using Pythong: • MCP Demo using Python, AI and a self heali... Brute Force SSH: • Brute Force SSH & Build a Honeypot Now (Hy... Hacking LLMs: • Hacking LLMs Demo and Tutorial (Explore AI... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal YouTube: / @davidbombal Spotify: open.spotify.com/show/3f6k6gE... SoundCloud: / davidbombal Apple Podcast: podcasts.apple.com/us/podcast... // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // Menu // 0:00 - Coming up 0:58 - Disclaimer 01:00 - Introducing Metasploit MCP Server (by GH05TCREW) 03:01 - Metasploit MCP Demo 1 05:12 - Metasploit MCP Demo 2 10:59 - Metasploit MCP Demo 3 16:18 - Metasploit MCP Demo 4 19:15 - Metasploit MCP Demo 5 21:45 - How AI is changing cybersecurity 23:07 - Metasploit MCP Demo 5 continued 26:51 - Metasploit MCP server summary 28:00 - Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only.

Jaksot(500)

#478: Never access the Dark Web without doing this! (Tor and Telegram demos)

#478: Never access the Dark Web without doing this! (Tor and Telegram demos)

A big shoutout to TCM Security for sponsoring this video. Register now to receive a 50% discount on your first month at the TCM Security Academy, potentially making your most significant step toward a career in ethical hacking. Go here: https://davidbombal.wiki/3vQsqWm // Stephen's Sims’ Social // X: https://x.com/Steph3nSims YouTube: / @offbyonesecurity // Stephen's Book (Co-Author) // Gray Hat Hacking Series by various authors: US https://amzn.to/3B1FeIK UK https://amzn.to/3A920AL // Heath Adams’ YouTube Channel // / thecybermentor // YouTube video REFERENCE // Free Exploit development training (beginner and advanced) • How to make Millions $$$ hacking zero... Buffer Overflow Hacking Tutorial (Bypass Passwords): • Buffer Overflow Hacking Tutorial (Byp... Reverse Engineering 101 tutorial with the amazing Stephen Sims!: • Reverse Engineering 101 tutorial with... Hacking Roadmap to Success: • Hacking Roadmap to Success: AMA with ... Real World Windows Pentest Tutorial: • Real World Windows Pentest Tutorial (... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

24 Syys 20241h 20min

#476: New Cybersecurity Certification?

#476: New Cybersecurity Certification?

A huge thanks to OFFSec for sponsoring this video - get your $100 discount using my link (valid until 31 August 2024): https://davidbombal.wiki/oscc Want to win the free place? (T&C's apply) Enter here: https://gleam.io/BS3FT/offsec-oscc-gi... //Jeremy’s Socials// Website: https://jeremyharbinger.com/ X: https://x.com/JeremyHarbinger LinkedIn: / jeremy-miller-b6816987 //OffSec’s Socials// X: https://x.com/offsectraining Spotify: https://podcasters.spotify.com/pod/sh... // OffSec’s OSCC link // OSCC: https://davidbombal.wiki/oscc // YouTube video Reference // Dark Side of AI: • The real world truth about AI Hacking // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Coming Up 00:46 - Sponsored Section 01:08 - Introducing Sec-100 04:11 - The Structure of Sec-100 06:43 - Crowdstrike Failure 08:20 - Style of Sec-100 Exam 11:08 - Finding your Place in Cybersecurity 13:23 - Learning General Skills 14:35 - Can I Start with SEC-100? 15:55 - Breaking Down the Course Material 18:45 - No Prior Cyber Skills Needed 21:24 - Can I Get a Job with SEC-100? 22:38 - The Length and Structure of the Exam 24:16 - Can I Retake the Exam 25:17 - Jobs to get with SEC-100 27:55 - AI in SEC-100 30:24 - Hands-On Learning 31:37 - SEC-100 Price and Giveaways 32:15 - Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #kalilinx #hacker #cybersecurity

14 Elo 202432min

#477: How they use Bluetooth to target your car

#477: How they use Bluetooth to target your car

Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: https://Brilliant.org/DavidBombal // Occupy The Web Books // Linux Basics for Hackers: US: https://amzn.to/3wqukgC UK: https://amzn.to/43PHFev Getting Started Becoming a Master Hacker US: https://amzn.to/4bmGqX2 UK: https://amzn.to/43JG2iA Network Basics for hackers: US: https://amzn.to/3yeYVyb UK: https://amzn.to/4aInbGK // OTW Discount // Use the code BOMBAL to get a 20% discount off anything from OTW's website: https://hackers-arise.net/ // Occupy The Web SOCIAL // X: / three_cube Website: https://hackers-arise.net/ // YouTube videos REFERENCE // Flipper Zero: Hottest Hacking Device!: • Flipper Zero: Hottest Hacking Device? Flipper Zero short: • Flipper Zero vs Android Phones, iPhon... Android Bluetooth Hacking: • Android Bluetooth Hacking Hack like Mr Robot // Wifi, Bluetooth and Scada Hacking: • Hack like Mr Robot // WiFi, Bluetooth... // Playlists REFERENCE // Linux Basics for Hackers: • Linux for Hackers Tutorial (And Free ... Mr Robot: • Hack like Mr Robot // WiFi, Bluetooth... Hackers Arise / Occupy the Web Hacks: • Hacking Tools (with demos) that you n... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Intro 00:58 - Brilliant sponsored segment 03:12 - Disclaimer 03:14 - OTW books 03:50 - Theft with Bluetooth // How radio signals are vulnerable 09:56 - Scanning for Bluetooth signals 11:27 - Bluetooth scanning with Kali demo 19:58 - Bluetooth adapters 21:57 - Bluetooth scanning with Kali demo continued 23:25 - Protecting your device // Where stolen phones go 27:40 - Bluetooth scanning with DragonOS demo 31:39 - Illegal to use jammers 33:18 - Bluetooth scanning with DragonOS demo continued 38:43 - Bluetooth scanning summary 39:16 - How thieves locate your device 40:16 - Arising dangers of Bluetooth scanning 42:20 - Special discount on hackers-arise.com // OTW classes 43:27 - Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #android #iphone #bluetooth

12 Elo 202444min

#475: Real World OSINT and Cyber Threat Intelligence Tips and Tricks

#475: Real World OSINT and Cyber Threat Intelligence Tips and Tricks

Big thank you to Brilliant for sponsoring this video! To try Brilliant for free (for 30 days) and to get a 20% discount, visit: https://Brilliant.org/davidbombal // Gary Ruddell’s SOCIALS // Twitter / X: https://x.com/thegaryruddell LinkedIn: / thegaryruddell YouTube: / @thegaryruddell Newsletter: https://www.switchfire.co/newsletter Instagram: / thegaryruddell // YouTube Playlist REFERENCE // Three Minute Thursday: • My FREE Cyber Threat Intelligence Not... // YouTube video REFERENCE // Top 10 Free OSINT Tools: • Top 10 FREE OSINT tools (with demos) ... // David SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MY STUFF // https://www.amazon.com/shop/davidbombal // MENU // 00:00 - Coming up 01:00 - Sponsored Section 02:59 - Intro 04:51 - Gary Ruddell’s background 07:29 - How Gary got into the cyber space 09:28 - Advice to transition from military to civilian 11:27 - Military skills 12:58 - How Gary got into the cyber space 17:42 - IppSec & Hack the box 20:50 - How long did it take you? 22:26 - Career path in 2024 26:56 - Gary Ruddell’s Socials and channel 32:00 - Gary’s vision 37:57 - Day to day 42:27 - 3 minute Thursday 44:35 - Story time, lost leads 48:50 - Using Maltego 50:19 - Using Chat GPT 52:05 - Tips To Pass The OSCP First Time 54:34 - How to Better Protect Yourself 01:01:05 - A new take on Email 01:03:10 - Bank Security 01:06:03 - Exploits in VPN software 01:07:22 - Law Firm Email Hacked 01:08:40 - Advice to Stay Sane in Today's World 01:11:44 - Conclusion 01:11:49 - Outro Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #osint #cyber #privacy

8 Elo 20241h 11min

#474: The real world truth about AI Hacking

#474: The real world truth about AI Hacking

Big Thank You to Cisco for sponsoring my trip to Cisco Live and this video! // Omar’s SOCIALS // LinkedIn: / santosomar X: https://x.com/santosomar Cisco Blogs: https://blogs.cisco.com/author/omarsa... Website: https://omarsantos.io/ // Books by Omar REFERENCE // The AI Revolution in Networking, CyberSecurity, and Emerging Technologies, Edition 1: US: https://amzn.to/3xHFaPT UK: https://amzn.to/3VN5zDP Beyond the Algorithm: US: https://amzn.to/3W85fkw UK: https://amzn.to/3VJcbDg // Specific Blog ARTICLES // https://blogs.cisco.com/security/enha... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Intro 00:49 - Omar Santos' books 02:59 - AI used for cyber attacks 06:14 - AI used in OSINT 07:14 - The rise of cyber attacks 09:13 - Hackers using AI 11:34 - Opportunities in cybersecurity with AI 18:52 - "It's like the wild west" // AI being accessible 23:16 - Privacy amidst AI 25:18 - Google's Secure AI Framework (SAIF) 27:48 - How to get into AI 31:25 - Constitutional AI 33:09 - Roadmap to learn AI 37:23 - Cisco AI certification 39:46 - Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #cybersecurity #ai #artificialintelligence

8 Elo 202440min

#473: How to be Invisible Online using Expert OSINT techniques

#473: How to be Invisible Online using Expert OSINT techniques

Big shoutout to KASM for sponsoring this video. KASM workspaces supports the OSINT Community Efforts by providing the following products: Kasm Community Edition: https://kasmweb.com/community-edition Kasm Cloud OSINT: https://kasmweb.com/cloud-personal Kasm Workspaces OSINT Platform for Professionals/: https://kasmweb.com/osint Kasm Infrastructure/Apps for OSINT Collection: https://registry.kasmweb.com/1.0/ // MJ Banias’ SOCIALS // LinkedIn: / mjbanias Cloak and Dagger Podcast (Spotify): https://open.spotify.com/show/6mT8zDM... The Debrief: https://thedebrief.org/podcasts/ Instagram: / mjbanias X: https://x.com/mjbanias Website: https://www.bullshithunting.com/ // Ritu Gill’ SOCIALS // LinkedIn: / ritugill-osinttechniques OSINT Techniques website: https://www.osinttechniques.com/ Instagram: https://www.osinttechniques.com/ X: https://x.com/osinttechniques YouTube: / @forensicosint Forensic OSINT website: https://www.forensicosint.com/ TikTok: / osint.techniques // Rae Baker’s SOCIALS // Website: https://www.raebaker.net/ LinkedIn: linkedin.com/in/raebakerosint X: https://x.com/wondersmith_rae // Eliot Higgins’ SOCIALS // Bellingcat website: https://www.bellingcat.com/author/eli... X: https://x.com/eliothiggins // Books // The UFO People: A Curious Culture by MJ Banias: USA: https://amzn.to/3xP5Jme UK: https://amzn.to/4cOrzoK Deep Dive: Exploring the Real-world Value of Open Source Intelligence by Rae Baker and Micah Hoffman: USA: https://amzn.to/3xFN9gv UK: https://amzn.to/3zJSy6z We Are Bellingcat: Global Crime, Online Sleuths, and the Bold Future of News by Eliot Higgins: USA: https://amzn.to/3RXNa64 UK: https://amzn.to/4cvYP4B // YouTube video REFERENCE // Top 10 FREE OSINT tools (with demos): • Top 10 FREE OSINT tools (with demos) ... Deep Dive OSINT: • Deep Dive OSINT (Hacking, Shodan and ... Best Hacking Python Book: • Best Hacking Python Book? She Hacked Me: • She hacked me! // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Coming up 00:41 - Sponsored Section: KASM Workspaces demo 06:26 - Intro 06:46 - MJ’s Journey in OSINT 11:14 - Starting an OSINT Company 11:55 - Teaching Background 12:34 - Years in OSINT 13:19 - Advice for People Starting Out 15:44 - What It Means to Do OSINT 16:54 - Recommended Tools for OSINT 19:03 - Meet Ritu Gil 19:09 - Characteristics of a Good OSINT Investigator 20:03 - Knowing When to Give Up 20:43 - Soft Skills vs Technical Skills 22:17 - Ritu’s Advice on How to Get Started 23:24 - Are There Jobs in OSINT? 24:39 - Forensic OSINT Demo 26:41 - Tinder Vulnerabilities 30:51 - Next Guest Intro 32:04 - Rae Baker 32:33 - Tools Rae Uses 34:11 - From Graphic Design to OSINT 37:56 - Volunteering to Learn 39:10 - Next Guest Intro 40:10 - Eliot Higgins 40:19 - Eliot’s Background into OSINT 41:44 - Bellingcat 44:27 - No Degree Needed to Start 45:37 - Useful Tools to Use 47:19 - Advice for People Starting Out 48:36 - Communities to Join 51:50 - Recommended Books 53:03 - How MJ Got the Job 55:53 - MJ Shares an OSINT Story 01:02:44 - Importance of a Team 01:08:15 - Conclusion 01:10:34 - Outro Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only.

8 Elo 20241h 10min

#472: Hacking Roadmap to Success: AMA with The Cyber Mentor and FREE training!

#472: Hacking Roadmap to Success: AMA with The Cyber Mentor and FREE training!

A big shoutout to TCM Security for sponsoring this video. Register now to receive a 50% discount on your first month at the TCM Security Academy, potentially making your most significant step toward a career in ethical hacking. Go here: https://davidbombal.wiki/3vQsqWm // FREE Training // Ethical Hacking in 15 Hours - 2023 Edition - Learn to Hack! (Part 1): • Ethical Hacking in 15 Hours - 2023 Ed... Ethical Hacking in 12 Hours - Full Course - Learn to Hack: • Ethical Hacking in 12 Hours - Full Co... Open-Source Intelligence (OSINT) in 5 Hours - Full Course - Learn OSINT: • Open-Source Intelligence (OSINT) in 5... // TCM Security SOCIAL// LinkedIn : / tcm-security-inc Twitter : / tcmsecurity YouTube (The Cyber Mentor): / thecybermentor Discord: / discord Instagram: / tcmsecurity Facebook: / tcmsecure TikTok: / tcmsecurity Academy Website: https://academy.tcm-sec.com/ TCM Certifications: https://certifications.tcm-sec.com/ Discord: / discord Website: https://tcm-sec.com/ Breach Point Website: https://breachpoint.com/ // Heath Adam’s SOCIAL // LinkedIn: / heathadams // YouTube Video REFERENCE // Real World Windows Pentest Tutorial (Demos of 5 Active Directory Hacks): • Real World Windows Pentest Tutorial (... My Entrepreneurial Journey – Episode 1: • My Entrepreneurial Journey - Episode ... // Books REFERENCE // They ask you Answer by Marcus Sheridan: US: https://amzn.to/4eVDFyv UK: https://amzn.to/45NKRIO 12 Months to $1 Million by Ryan Daniel Moran: US: https://amzn.to/3VLFwwY UK: https://amzn.to/4cEMOtb // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Coming up 00:32 - Introduction 01:08 - Certifications in TCM 06:06 - Exploring TCM Offerings 08:04 - Advanced Courses in TCM 09:29 - Red Team vs. Blue Team 10:14 - Video Learning vs. Reading 10:51 - Cloud Penetration Testing 12:06 - Hacking Certifications Roadmap 15:55 - Preparation Before PNPT 16:46 - Career Prospects with PNPT 17:31 - Degree vs. Certificate Requirements 19:37 - Job Opportunities without Certificates 21:21 - CCNA vs. Network+ 22:30 - Red Team Certificates for Blue Teaming 23:07 - Essential Skills for Penetration Testers 24:20 - Job Search Advice 27:09 - Relevance of Previous Job Skills 28:04 - Programming Skills Requirement 30:04 - AI in Cybersecurity 32:11 - Starting a Career in Cybersecurity 33:05 - Heath Adams' Journey 37:17 - Changing Your Life 38:25 - Achieving Work-Life Balance 41:01 - Job Opportunities in Cybersecurity 44:20 - Getting Started in Cybersecurity 45:24 - Entrepreneurial Journey 50:39 - Advice from Heath Adams 53:07 - Starting a Penetration Testing Company 54:36 - Importance of Social Media 55:25 - Courses on Starting a Cyber Business 56:24 - More Advice from Heath Adams 59:23 - Pricing Your Services 01:01:18 - Continuous Learning 01:03:07 - Realities of Cybersecurity 01:05:24 - Remote vs. In-Person Work 01:08:13 - Studying, Burnout, and Motivation 01:10:58 - Competing with Yourself 01:12:51 - Recommended Tools 01:15:38 - Debunking Cyber Myths 01:18:38 - How to Get in Touch 01:20:38 - Outro Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #cybersecurity #hack #hacker

8 Elo 20241h 21min

#471: Hack your water and electricity! Myth or Reality?

#471: Hack your water and electricity! Myth or Reality?

Big Thank You to Cisco for sponsoring my trip to Cisco Live and this video! // Joe Marshall’s SOCIALS // X: https://x.com/immortanjo3 LinkedIn: / joeics Cisco Blogs: https://blogs.cisco.com/author/joemar... Cisco Talos: https://www.talosintelligence.com/ // Webpages REFERENCE // https://blog.talosintelligence.com/pr... https://edition.cnn.com/2023/11/21/po... https://blog.talosintelligence.com/ho... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only.

25 Kesä 202423min