Root Access Club
الذهاب إلى القناة على Telegram
RootAccessClub 💎 Security knowledge & research 🔎 Understanding systems, not abusing them ⛔️ ⚠️ Educational purposes only
إظهار المزيدلم يتم تحديد البلدالفئة غير محددة
289
المشتركون
+224 ساعات
+147 أيام
+3030 أيام
جاري تحميل البيانات...
القنوات المماثلة
لا توجد بيانات
هل تواجه مشاكل؟ يرجى تحديث الصفحة أو الاتصال بمدير الدعم الخاص بنا.
سحابة العلامات
لا توجد بيانات
هل تواجه مشاكل؟ يرجى تحديث الصفحة أو الاتصال بمدير الدعم الخاص بنا.
الإشارات الواردة والصادرة
---
---
---
---
---
---
جذب المشتركين
أكتوبر '26أكتوبر '26
أكتوبر '26
+15
في 1 قنوات
سبتمبر '26
+23
في 0 قنوات
Get PRO
أغسطس '26
+76
في 3 قنوات
Get PRO
يوليو '260
في 2 قنوات
Get PRO
يونيو '26
+81
في 1 قنوات
Get PRO
مايو '260
في 1 قنوات
Get PRO
أبريل '26
+87
في 1 قنوات
Get PRO
مارس '260
في 0 قنوات
Get PRO
فبراير '26
+9
في 3 قنوات
Get PRO
يناير '260
في 0 قنوات
Get PRO
ديسمبر '25
+7
في 1 قنوات
| التاريخ | نمو المشتركين | الإشارات | القنوات | |
| 08 أكتوبر | +1 | |||
| 07 أكتوبر | +2 | |||
| 06 أكتوبر | +1 | |||
| 05 أكتوبر | +2 | |||
| 04 أكتوبر | +2 | |||
| 03 أكتوبر | +6 | |||
| 02 أكتوبر | +1 | |||
| 01 أكتوبر | 0 |
منشورات القناة
Open redirects filter bypass payloads 💥
---->\/evil.com
---->\/\/evil.com
---->\\evil.com
----//evil.com
---->//theirsite@evil.com
---->////evil.com
----//google%E3%80%82com
---->//%2F/evil.com
---->////evil.com
---->/%2F/yoururl.com
@RootAccessClub
| 2 | SubZer0 👀❄️ | 327 |
| 3 | Path Traversal Bypasses ⚡️
Null Byte Injection
../../../etc/./passwd%00.png
Stripped Dot-Dot-Slash
..././..././..././e../tc..//pas../swd
Multi-Stage Decoding
..%2%35%32F..%2%35%32F..%2%35%32Fetc%2%35%32F/passwd
Truncation Appending (4096 bytes)
../../../etc/./passwd/././././././
⭐️ @RootAccessClub | 126 |
| 4 | Relapse – PS5 Jailbreak Exploit 🎮
A new exploit chain called Relapse has been released, targeting PS5 firmware versions 7.00 through 13.60 🎯
🔹 WebKit Exploit
🔹 Kernel Exploit
🔹 Execution of unofficial payloads
🔹 Support for payloads such as kstuff and etaHEN
When successfully executed, Relapse can enable a Jailbreak environment and allow execution of unofficial code and payloads on the PS5 💥
⚠️ Check your console's firmware version before attempting anything
GitHub 🔗
@RootAccessCLUB | 137 |
| 5 | AutoPWN Suite ⚡️
An automated penetration testing framework designed to streamline reconnaissance, vulnerability discovery, and security testing ✨
• Nmap-based network & service enumeration
• CVE & vulnerability discovery
• Automated exploit searching
• Web vulnerability testing
• Directory enumeration
• Web UI + REST API
• Scan scheduling & automation
• Email / Webhook notifications
• Optional evasion techniques
GitHub 🔗
🌪 @RootAccessClub | 143 |
| 6 | Prompt Injection in the Wild 💉
A look at real world In Page Prompt Injection attacks, where malicious instructions are hidden inside web content and processed by AI systems
Link 🔗
@RootAccessClub | 169 |
| 7 | CVE-2026-87902 – WordPress Core – PHP Template Path Traversal 🧩
Nuclei Template ⚙
⚠️ Authorized security testing, education, and defensive research only
⚡️@RootAccessClub | 168 |
| 8 | CVE-2026-87902 🪤
PoC for CVE-2026-87902 – unauthenticated path traversal in WordPress page-template resolution (local PHP inclusion, conditional RCE) with a pinned vulnerable lab
GitHub 🔗
⚠️ Authorized security testing, education, and defensive research only
💎 @RootAccessClub | 169 |
| 9 | CVE-2026-87902 🧪
WordPress unauthenticated LFI → conditional RCE 💉
Github 📎
⚠️ Authorized security testing, education, and defensive research only
💠 @RootAccessClub | 171 |
| 10 | WordPress Critical RCE 🚨
CVE-2026-87902 | CVSS 9.2
A critical unauthenticated path traversal vulnerability in WordPress Core can, under specific conditions, lead to Remote Code Execution (RCE) through page-template resolution 💣
Affected versions span 4.7 → 7.1.1 🦠
🛡️ Fix: Update to the latest patched WordPress release for your branch
GitHub 🔗
@RootAccessClub | 174 |
| 11 | Osintgram 👥
An open-source OSINT framework for Instagram reconnaissance and information gathering 🔎
Key Features:
• Profile & content analysis
• Followers / Following analysis
• Hashtag & location searches
• Media and metadata analysis
• Account comparison
• Interactive Web UI
• AI-assisted mode with local Ollama support
• JSON & HTML report generation
GitHub 🔗
⚠️ Use responsibly and only with data you are authorized to investigate
💎 @RootAccessClub | 170 |
| 12 | CVE-2026-21858 + CVE-2025-68613 - n8n Full Chain 💥
Unauthenticated Arbitrary File Read → Admin Token Forge → Sandbox Bypass → RCE 🌪
CVSS : 10.0 + 9.9 (Critical) ⚠️
Fixed : 1.121.0 (AFR) / 1.120.4+ (RCE) ✅
Github 🌐
@RootAccessClub | 162 |
| 13 | Legion — Automated Network Pentesting 🛡️
Legion is a GUI based network penetration testing framework built to automate reconnaissance, scanning, service enumeration, and vulnerability discovery
Nmap, Nikto, WhatWeb, Hydra, SMBenum 🔎
CVE & vulnerability mapping 🧩
Automated scanning & enumeration ⚙️
Github 🔗
📡 @RootAccessClub | 182 |
| 14 | OWASP Amass 🔎
An open source framework for network mapping and attack surface discovery
• Subdomain & DNS enumeration
• OSINT-based asset discovery
• Infrastructure mapping
• External attack surface analysis
Built by OWASP, Amass is a solid reconnaissance tool for security researchers and bug bounty hunters ⭐️
GitHub 🔗
💎 @RootAccessClub | 167 |
| 15 | CVE-2026-12793 – JetFormBuilder WordPress Plugin 🆘
Critical vulnerability (CVSS 9.8) ⚠️
Affects versions ≤ 3.6.2
Unauthenticated privilege escalation
Fixed in version 3.6.2.1 and later ✅
Attack Flow :
1⃣ Detect JetFormBuilder + version ≤ 3.6.2 (readme.txt)
2⃣ Discover form ID from public pages (data-form-id, /register/, etc.)
4⃣ POST to referer page with ?jet_form_builder_submit=submit&method=ajax
4⃣ Register User action runs → new WP user created
If you're using this plugin, update immediately ‼️
GitHub ⛓💥
@RootAccessClub | 167 |
| 16 | XSS Labs🔬
An intentionally vulnerable lab environment for practicing XSS across different contexts, including Reflected, Stored, DOM-based, and JavaScript based XSS
A practical resource for learning how XSS works and how to mitigate it 🕷️
Github 🧪
⚡️ @RootAccessClub | 161 |
| 17 | Claude Red 🌪
Offensive security skills for Claude a collection of "SKILL.md" files designed to turn Claude into a more context aware red team assistant
Covers areas like web security, AD, cloud, recon, exploit development, EDR evasion, and more ⭐️
GitHub 🔗
🛡️@RootAccessClub | 188 |
| 18 | knife – A reverse engineer's toolkit in Rust 🔪
Parse, triage, disassemble, and audit PE, ELF, and Mach-O from one small binary. Static only: it reads the bytes on disk and never runs the target 🎯
GitHub 🌐
© @RootAccessClub | 169 |
| 19 | PSAITO – New PS5 WebKit Research ToolExperimental toolkit for PS5
firmware 9.00 – 13.60.Browser only exploit that gives memory read/write + syscall primitives inside the WebKit process ✨
Research only ⚠️
GitHub 🔗
🥇@RootAccessClub | 160 |
| 20 | 🦠 Stuxnet
A new GitHub project provides an educational reconstruction of the infamous Stuxnet worm, based on years of reverse engineering research into the original 2010 samples 🔬
The project explores components such as rootkits, privilege escalation, Step7/S7 hooks, propagation mechanisms, and PLC-related functionality ⚙️💻
🧪 Intended for malware analysis, security research, and academic study
GitHub 🔗
💎 @RootAccessClub | 205 |
