I just wanted to let you know that i find your channel probably top shelf. I find it really easy to follow have noticed my improvements since ive been learning from you , so thank you
@@NullByteWHT but how to scrape or harvest password list also ? Can you do a tutorial ? Im thinking the password list will def be hashed MD5 or other hash types
@@iransecurityteam3750 use slayer leecher or some sort of thing but this could be private you could crack dbs urself but then its not a breach and you are way beyond osint
Hi Kody I am a big fan. Could you help me with where I can find the config.ini file I am running it on linux I think I need to switch to windows for that ? Also, not able to find the breach compilation db could you please help?
I love the info about these tools but they are usually a pain in the ass to figure out and use when you are on a non windows system and have to figure out which installer to use and why it’s not working. I usually spend about an hour smashing the keyboard, never get things working, then give up with no results. I don’t understand why great programmers can’t make these tools more readily usable and accessible.
Thanks for this tutorial btw i really like what you do and especially how you explain things, could you just make another video about how to use API's cuz I'm a little bit lost 😂
Maybe a dumb question, but it's unclear to me--is it legal to download the breach compilation? There's some discussion on Reddit with folks arguing that it's not legal to store the data since it's stolen, although now that the data are basically public...
hey man ik im no special from your other subscriber but do you think we can set up a video call and u walk me through how to pull ip and send attack to the ip please respond
If you can't figure out how to use the API instead of a breach file (installed locally) yourself, then you may need more knowledge & practice with these tools before you consider doing this yourself.
Null byte. Hey I was involved in the Wattpad breach and I’m really scared. I’ve changed passwords and deleted accounts. I just wanted to know if I can be hunted down? It’s been 4 months. Should I still be scared? Please reply soon. Thanks
For those getting the query.sh file not found, you seem to not have downloaded the db and likely just a text file. I am having a different problem, where the file is giving me a permission denied error. Yes i tried changing the permissions, but nothing.. I am able to run the query.sh manually running "bash query.sh" but not "sh query.sh"
ok so i kind of got passed the permissions problem by editing the h8mail.py script changing: procfd = subprocess.run([query_bin, t.email], stdout=subprocess.PIPE) to: procfd = subprocess.run([query_bin, t.email], executable='/bin/bash', stdout=subprocess.PIPE) but now i get a file not found for each email like so: /media/root/Locust/BreachCompilation/query.sh: jflowers@whitehouse.gov: No such file or directory /media/root/Locust/BreachCompilation/query.sh: jengurl@whitehouse.gov: No such file or directory /media/root/Locust/BreachCompilation/query.sh: countryboy@whitehouse.gov: No such file or directory /media/root/Locust/BreachCompilation/query.sh: johnboy@whitehouse.gov: No such file or directory /media/root/Locust/BreachCompilation/query.sh: alice@anon-server.whitehouse.gov: No such file or directory anyone seeing this?
Hey ^^. Do u know how i can install the magnet file from the DB folder without using some other programss like rtorrent or qbittorent or something like this bcs my rtorrent wont downlaod the file and I cant use the other bcs i use kali as a microsoft application (thx alot)
-lb/--local:'expected one argument ' error is making me mad. Please anyone help me with it. I have downloaded all the breach compilation file which is 45gb or so. I can give you link if you help me with this error
If you are using Homebrew, these are the installation instructions I had to follow: *Installing pip3* pip.pypa.io/en/stable/installing/ *H8mail installation* brew install nodejs git clone github.com/khast3x/h8mail.git cd h8mail pip3 install -r requirements.txt python3 h8mail.py -h
The commands I used: cd Desktop, apt-get install nodejs, git clone github.com/khast3x/h8mail.git, cd h8mail, pip3 install -r requirements.txt. I got an error saying that "pip is configured with locations that require TLS/SSL" after executing that last command I listed. I also ran into an error after executing theHarvester -d theguardian.com -l 1000 -b pgp, it said "invalid source".
I'm extremely late, but to fix the error: *Download the correct BreachCompilation File* (If you already have the correct file, skip this step) Download the file using the magnet link here raidforums.com/Thread-Breach-Compliation-you-know-the-one-Free This file is 44GB, so make sure you have the available disk space *Replace the **query.sh** file* Replace the query.sh text by opening it in a text editor and replacing it with this gist.github.com/nlitsme/6f138e72b328c28520d64d7e03f2d5f9 Hopefully, if all goes well, this should fix the error. Again, I'm late on this, but from my experience this is what caused the error.
Hey maybe you could help me... Iam using Kali-Linux as a Microsoft application on my Win10 Computer. I got 2 RaspberryPi's but my Pc is much faster than the Raspberry Pi's (so iam using it). Do u know how i can download the BrachCompalation without some rTorrent or qBittorrent? Is there a nother way or a better torrent/magnet installer?
Could not fetch URL pypi.org/simple/h8mail/: There was a problem confirming the ssl certificate: HTTPSConnectionPool(host='pypi.org', port=443): Max retries exceeded with url: /simple/h8mail/ (Caused by SSLError("Can't connect to HTTPS URL because the SSL module is not available.")) - skipping ERROR: Could not find a version that satisfies the requirement h8mail (from versions: none) ERROR: No matching distribution found for h8mail
On Kali Pi anyway I used: Inserted external USB Right clicked Icon Permissions Permanently mounted with access Added the path to downloads ie: #~/media/usb/password_download at the end
for those of you who aren't too familiar familiar with kali you can try this... 'haveibeenpwned DOT com/' via standard browser - [tells you if an account is pwnd] OR 'pwndb2am4tzkvold DOT onion/' via TOR browser - [not only tells you if an account is pwnd but also lists passwords of said account(s)]
no it aint, i have no idea as to why,im a noob so simple answers,please :-) but every thing else i have used works or i have got to work with parrot @@PSNCopy
I just wanted to let you know that i find your channel probably top shelf. I find it really easy to follow have noticed my improvements since ive been learning from you , so thank you
Thanks Betti Cropper! We really do put in a lot of hard work.
These videos are really the backbone of people getting into and learning cybersecurity
You inspired me to change careers, tinker in cyber security, and finally have a soc role, thank you Kody!
Sadly they haven’t uploaded in like 4 years :(
My man Tom didn't deserve this
Did you see that man's passwords? He had some demons.
@@NullByteWHT Did you really attack the guardian on youtube?
@@SinanAkkoyun leemao
@@NullByteWHT but how to scrape or harvest password list also ?
Can you do a tutorial ?
Im thinking the password list will def be hashed MD5 or other hash types
@@iransecurityteam3750 use slayer leecher or some sort of thing but this could be private you could crack dbs urself but then its not a breach and you are way beyond osint
Awesome video @nullbyte!!! appreciate your work.........!!!!
Privacy is of the utmost importance to me, which is why I am in the Utopia ecosystem. Here I found anonymous communication and much more.
I LOVE your tutorials. thankyou kody.
MY MAN DOESN'T BLINK
@Null Byte thank you ive learned so much from your videos
Bruh...! You are just awesome. Respect++ Your content is just truly magnificent everytime..
Keep up the great work, your works are awesome.
The above name on the Channel possesses the fastest andstrongest in hacking and recovering skills. Just got mine fixed
Immaculate tutorial, thank you!
What does immaculate mean lol😂
@@joelrobert4539 i dont know ......
Congratulations excellent job Cody
if it say's pip3 command not found you need to install it by
apt install python3-pip
@@Badkuipeend Not if your in root
Badkuipeend I don't want to type out apt-get, also, apt has a nice interface that apt-get doesn't.
@@maxdeb6551 can’t he just go “sudo su” then try again?
@@67hutch The person i responded to deleted their comment
@@maxdeb6551 oh
11:45 PEople be keeping "SEX" as password BRUH
can you share a link of the breach compilation
Hi Kody I am a big fan. Could you help me with where I can find the config.ini file I am running it on linux I think I need to switch to windows for that ? Also, not able to find the breach compilation db could you please help?
I keep getting the same error. query.sh no such file or directory ??? And where did you get the breach list from ?
Did you ever find this out? :)
Same problem here
Where can I get this breach compilation file??
this
@@helpme2999 Help me
reddit
I love the info about these tools but they are usually a pain in the ass to figure out and use when you are on a non windows system and have to figure out which installer to use and why it’s not working. I usually spend about an hour smashing the keyboard, never get things working, then give up with no results. I don’t understand why great programmers can’t make these tools more readily usable and accessible.
Thank you very much for your content.
The above name on the Channel possesses the fastest andstrongest in hacking and recovering skills. Just got mine fixed
what is the name of the tool you use to connect your smartphone to the computer at the beginning of the video
I have a breach compilation file that is about 9 gigabytes. Not sure if I downloaded the right one or not
Does this work for other languages like lets say it's French or Spanish emails and passwords or would it be different databases
where can I find this list? asking for a friend that is doing research.....
Nice info bro!
Niiice content keep em coming love took you find more , more ,MORE! Please
Dude, you are awesome!
I appreciate all of your hard work! Side note whats the song playing in the background shazam didn't pick it up lol
top shelf content, good Sir
Does it include the collection#1 troy hunt has talk about recently ?
Thanks for this tutorial btw i really like what you do and especially how you explain things, could you just make another video about how to use API's cuz I'm a little bit lost 😂
How did you get it to list the passwords
Maybe a dumb question, but it's unclear to me--is it legal to download the breach compilation? There's some discussion on Reddit with folks arguing that it's not legal to store the data since it's stolen, although now that the data are basically public...
idk, but no comments and likes in 5 years? lemme change that
Any idea why a certain email address would return the error: Warning: Breach compilation list index out of range? All others work fine...
Where did you get the database from??
Tell me too please
Been searching for a while now, wasnt able to find the breached database..can someone please help?
Im after the same thing
hey man ik im no special from your other subscriber but do you think we can set up a video call and u walk me through how to pull ip and send attack to the ip please respond
thanks very much for the good content :D
Can u do a video where it's used with the API instead of just locally
If you can't figure out how to use the API instead of a breach file (installed locally) yourself, then you may need more knowledge & practice with these tools before you consider doing this yourself.
You need paid services
@@mplserin asking for help is the step to learning , that kid is trying to get hep cause he is not smart and experience like you , go easy on kids
Where do you get the BreachCompilation? I ran the command on Kali and it said it doesn’t exist
The above name on the Channel possesses the fastest andstrongest in hacking and recovering skills. Just got mine fixed
you're the best
I have a question if you’d respond itll be great, instead of kali Linux, would it be ok if I used parrot security
How do you get the breach compilation downloaded on kali linux?
can i see if a hacker is in my computer with programs that show all the devices that are in your network like who is on my wifi?
How would you just search a single email address?
Finally I got solution through the above details his
service is fast and effective thanks Anom6000hack for the good work.
which device are you using??
I download today the git but now is different from your tutorial.......can you write down here the new installation?
Null byte. Hey I was involved in the Wattpad breach and I’m really scared. I’ve changed passwords and deleted accounts. I just wanted to know if I can be hunted down? It’s been 4 months. Should I still be scared? Please reply soon. Thanks
Nope since you changed your passwords. If your old password is related to your secret questions than you should change it.
@@amoyzegh ok thanks so much. Can someone steal my identity with the info stolen?
@@rumilol2989 Nope since they don't have access to your accounts (because you changed the passwords)
@@amoyzegh I think they have my birthdate I’m not sure I think I put in a fake one tho I don’t actually remember and my full names
@@amoyzegh I deleted the email linked and made a new one and used a new one for all my social media’s. I’ve changed tho passwords too.
Which version of Kali Linux?
For those getting the query.sh file not found, you seem to not have downloaded the db and likely just a text file. I am having a different problem, where the file is giving me a permission denied error. Yes i tried changing the permissions, but nothing.. I am able to run the query.sh manually running "bash query.sh" but not "sh query.sh"
ok so i kind of got passed the permissions problem by editing the h8mail.py script changing:
procfd = subprocess.run([query_bin, t.email], stdout=subprocess.PIPE)
to:
procfd = subprocess.run([query_bin, t.email], executable='/bin/bash', stdout=subprocess.PIPE)
but now i get a file not found for each email like so:
/media/root/Locust/BreachCompilation/query.sh: jflowers@whitehouse.gov: No such file or directory
/media/root/Locust/BreachCompilation/query.sh: jengurl@whitehouse.gov: No such file or directory
/media/root/Locust/BreachCompilation/query.sh: countryboy@whitehouse.gov: No such file or directory
/media/root/Locust/BreachCompilation/query.sh: johnboy@whitehouse.gov: No such file or directory
/media/root/Locust/BreachCompilation/query.sh: alice@anon-server.whitehouse.gov: No such file or directory
anyone seeing this?
Hey ^^. Do u know how i can install the magnet file from the DB folder without using some other programss like rtorrent or qbittorent or something like this bcs my rtorrent wont downlaod the file and I cant use the other bcs i use kali as a microsoft application (thx alot)
Did you ever get this fixed?@@eliddell1
@moneymon007 Just wait a little bit and surely your question will be answered lol.
# 8......keep them coming......
-lb/--local:'expected one argument ' error is making me mad. Please anyone help me with it. I have downloaded all the breach compilation file which is 45gb or so. I can give you link if you help me with this error
github.com/khast3x/h8mail
Check out the new documentation... It is much simpler now.
Not sure why but pip3 always give problems in kali. Is the package not properly maintained?
Can you search by password? I mean the other way around. Thanks.
Does this work on any distros or only kali?
Kali is based on Ubuntu, so yes.
@@7kclouds319 What about Arch?
@@jamesh3639 That might work if you have Python3 installed. As well as pip.
which program is this
Great now I can make a brute force list with this too for hydra
With the new and updated h8mail were u install through pip3, h8mail doesn't work for me for some reason. Idk how to fix it
If you are using Homebrew, these are the installation instructions I had to follow:
*Installing pip3*
pip.pypa.io/en/stable/installing/
*H8mail installation*
brew install nodejs
git clone github.com/khast3x/h8mail.git
cd h8mail
pip3 install -r requirements.txt
python3 h8mail.py -h
How do I fix the error where it says cannot contact HIBP with CF bypass
what is the terminal he is usin. he never explains in his video he just goes to it
Hi, for me it's not working. I am using windows 10. Should I install Bash Script UNIX for my system?
Do you have date breach link?.
How can I use the Breach compilation API, if I don't want to download that huge file
Did you get it??
@@mgazyani Did you get it?
R. Nope.
What’s the name of the laptop. Looking to upgrade mine
The commands I used: cd Desktop, apt-get install nodejs, git clone github.com/khast3x/h8mail.git, cd h8mail, pip3 install -r requirements.txt. I got an error saying that "pip is configured with locations that require TLS/SSL" after executing that last command I listed. I also ran into an error after executing theHarvester -d theguardian.com -l 1000 -b pgp, it said "invalid source".
Awesomeeeeeeee!!!! Thanks
i keep getting a query.sh error......... otherwise tool works without the -bc option
I'm extremely late, but to fix the error:
*Download the correct BreachCompilation File*
(If you already have the correct file, skip this step)
Download the file using the magnet link here raidforums.com/Thread-Breach-Compliation-you-know-the-one-Free
This file is 44GB, so make sure you have the available disk space
*Replace the **query.sh** file*
Replace the query.sh text by opening it in a text editor and replacing it with this gist.github.com/nlitsme/6f138e72b328c28520d64d7e03f2d5f9
Hopefully, if all goes well, this should fix the error.
Again, I'm late on this, but from my experience this is what caused the error.
yo where is the breach compilation u found
Does it work on windows ?
could someone link me the breach compilation
can you use a wordlist instead of the breach Compilation???
4yrs later....yes
can i use ubuntu for this or does it have to be keli ?
Ubuntu should work.
do I use in cmd or powershell
Need to use Linux Kali is the best dis for this.....
wow very nice
How download that breache ??
Has the list really been cleaned up or does it still contain 50%+ duplicates as it is usually the case?
It's been cleaned and organized
Hey maybe you could help me... Iam using Kali-Linux as a Microsoft application on my Win10 Computer. I got 2 RaspberryPi's but my Pc is much faster than the Raspberry Pi's (so iam using it). Do u know how i can download the BrachCompalation without some rTorrent or qBittorrent? Is there a nother way or a better torrent/magnet installer?
First of all tell me please from where did you downloaded the breach compilation torrent
Can someone tell me if this really worked? And how much gigabyte do l need to download the file
Does that count as a blink?
wdym blink?
How do you run Linux kali in Windsose 10 pls answer
virtual machine
Dual boot!
im still amazed that its FOURTY FOUR GIGS OMG
were can i install the breach Compilation
Did you get it??
Ye did you get it?
I think you leaked my leak hahahaha
Is this better than Cr3dOv3r?
Could not fetch URL pypi.org/simple/h8mail/: There was a problem confirming the ssl certificate: HTTPSConnectionPool(host='pypi.org', port=443): Max retries exceeded with url: /simple/h8mail/ (Caused by SSLError("Can't connect to HTTPS URL because the SSL module is not available.")) - skipping
ERROR: Could not find a version that satisfies the requirement h8mail (from versions: none)
ERROR: No matching distribution found for h8mail
How did you manage to use an external hard drive, in order to save to local space?
On Kali Pi anyway I used:
Inserted external USB
Right clicked Icon
Permissions
Permanently mounted with access
Added the path to downloads ie:
#~/media/usb/password_download at the end
I,m from Indonesian
Not all heros wear capes guys.
Haha 🤓
for those of you who aren't too familiar familiar with kali you can try this...
'haveibeenpwned DOT com/' via standard browser - [tells you if an account is pwnd]
OR
'pwndb2am4tzkvold DOT onion/' via TOR browser - [not only tells you if an account is pwnd but also lists passwords of said account(s)]
hey I just want to knew if its still working
Yes!
How do you do this on windows
you don't
no such file or directory....pip3 install -r requirements.txt
just run pip3 install h8mail
You can find the docs here if you have any other issues. github.com/khast3x/h8mail
Mine worked with python -m pip install h8mail
I've also installed it on my android phone.
can you make a video about TempleOS? or give your opinion on it?
buddy where is the breached file that i can download
Your kidding right
Why do you live show the passwords of these journalists? Are they a fake result?
not working on parrot sec
* not working on YOUR parrot sec
no it aint, i have no idea as to why,im a noob so simple answers,please :-) but every thing else i have used works or i have got to work with parrot @@PSNCopy
pip 3 ? not 'pip' alone :-) thanks very much ...
if any one cannot get h8mail to work try instead using pwnedornot at
github.com/thewhiteh4t/pwnedOrNot
(instructions are at the website)
pgp is invalid source for me.
Actually it's not setup on. Your system