ar
Feedback
Technical Devang

Technical Devang

الذهاب إلى القناة على Telegram

🚩 Channel was restricted by Telegram

إظهار المزيد
لا توجد بيانات
المشتركون
لا توجد بيانات24 ساعات
+37 أيام
-430 أيام
أرشيف المشاركات
IDCrawl Search social media profiles by username: Instagram, Twitter, Facebook, YouTube etc (results with profile pics and additional data) + email addresses https://www.idcrawl.com/username-search

CVE-2025-5777 (CitrixBleed 2) - Critical memory leak vulnerability affecting Citrix NetScaler ADC and Gateway devices. PoC: https://github.com/win3zz/CVE-2025-5777

FBack - A lightning-fast CLI tool for generating target-specific wordlists to fuzz backup files Github: https://github.com/Spix0r/fback

RCE through Path Traversal https://jineeshak.github.io/posts/Chaining-Directory-Traversal-and-CSV-Parser-Abuse-for-RCE-in-Django/: 1. Security engineer by day While testing a web application as part of a bug bounty program, I uncovered a critical RCE vulnerability by chaining directory traversal with a subtle CSV parsing abuse. 2. The exploit chain involved a combination of directory traversal and subtle abuse of how the application used the pandas CSV parser, ultimately allowing me to overwrite the wsgi.py file and execute arbitrary code server-side. 3. The traceback included a path like: This nested layout is exactly what you get when a Django app is created using django-admin startproject backend — where the outer backend/ is the project root and the inner one holds settings, wsgi.py, and other core files.

Attack.Proxy.Cookbook.pdf27.19 MB

Link. https://avatarapi.com/ This tool reveals the profile picture and name associated with an email address. No sign-up is necessary to use this site. Link. https://castrickclues.com/ The free version of this website provides information about the owner’s name, profile picture, Google reviews, Google ID, and Skype username associated with an email. No sign-up is required on this site. Link. https://epieos.com/ The free version of Epieos provides access to a profile picture, name, Skype account details, data breaches, and checks for social networks or websites linked to an email address. Sign-up is required for this site. Link. https://scamsearch.io/ This open-source database allows you to check if an email has been involved in scam activities. No sign-up is required to access this database. Link. https://osint.rocks/ The Holehe tool verifies if an email is registered on platforms like Twitter, Flickr, Instagram, and others. It gathers information from sites that use a “forgot password” feature. No sign-up is needed to use this tool. You can find additional information in the tool’s GitHub repository.

■■■■□ Cable – A Post-Exploitation Toolkit For Active Directory Reconnaissance & Exploitation. 🔡🔡🔡🔡🔡https://cybersecuritynews.com/cable-active-directory-toolkit/

CVE-2024-43468: ConfigMgr/SCCM 2403 Unauth SQLi to RCE PATCHED: Oct 8, 2024 Exploit: https://github.com/synacktiv/CVE-2024-43468

SSL-bypass: Root Detection & SSL Bypass Script - It utilizes Frida's powerful JavaScript injection capabilities to bypass both root detection and SSL certificate pinning in Android applications. https://github.com/0xCD4/SSL-bypass

GpxExpeditor 3D Sattelite View gpxeditor.co.uk/map

Wishing you all a very Happy 76th Republic Day!

SearchPof Google CSE to quick search profiles in: Facebook Twitter Instagram YouTube Pinterest Snapchat https://searchpof.com/