HackTheBox Academy
关闭频道
🔴Learn About #Linux 🔴Learn About #Windows 🔴Learn About #CVE 🔴Learn About #EXPLOIT 🔴Learn About #Vulnerability ✅ADMIN : @NullByte0x1
显示更多3 327
订阅者
无数据24 小时
-207 天
-9330 天
数据加载中...
吸引订阅者
七月 '25
七月 '25
+4
在0个频道中
六月 '25
+12
在0个频道中
Get PRO
五月 '25
+18
在0个频道中
Get PRO
四月 '25
+44
在0个频道中
Get PRO
三月 '25
+102
在0个频道中
Get PRO
二月 '25
+71
在0个频道中
Get PRO
一月 '25
+174
在8个频道中
Get PRO
十二月 '24
+137
在5个频道中
Get PRO
十一月 '24
+79
在2个频道中
Get PRO
十月 '24
+66
在0个频道中
Get PRO
九月 '24
+76
在1个频道中
Get PRO
八月 '24
+115
在0个频道中
Get PRO
七月 '24
+76
在0个频道中
Get PRO
六月 '24
+38
在0个频道中
Get PRO
五月 '24
+6
在0个频道中
Get PRO
四月 '24
+4
在0个频道中
Get PRO
三月 '24
+2
在0个频道中
Get PRO
二月 '240
在0个频道中
Get PRO
一月 '240
在0个频道中
Get PRO
十二月 '23
+1
在0个频道中
Get PRO
十一月 '23
+3
在0个频道中
Get PRO
十月 '23
+7
在0个频道中
Get PRO
九月 '23
+5
在0个频道中
Get PRO
八月 '230
在0个频道中
Get PRO
七月 '23
+3
在0个频道中
Get PRO
六月 '230
在0个频道中
Get PRO
五月 '23
+3
在0个频道中
Get PRO
四月 '23
+2
在0个频道中
Get PRO
三月 '23
+1 005
在0个频道中
Get PRO
二月 '23
+14 132
在0个频道中
Get PRO
一月 '23
+8 648
在0个频道中
Get PRO
十二月 '22
+3 336
在0个频道中
Get PRO
十一月 '22
+15
在0个频道中
Get PRO
十月 '22
+4
在0个频道中
Get PRO
九月 '22
+371
在0个频道中
Get PRO
八月 '22
+763
在0个频道中
Get PRO
七月 '22
+1 051
在0个频道中
Get PRO
六月 '22
+1 306
在0个频道中
Get PRO
五月 '22
+5 721
在0个频道中
Get PRO
四月 '22
+11 502
在0个频道中
| 日期 | 订阅者增长 | 提及 | 频道 | |
| 07 七月 | 0 | |||
| 06 七月 | +1 | |||
| 05 七月 | +1 | |||
| 04 七月 | 0 | |||
| 03 七月 | 0 | |||
| 02 七月 | +1 | |||
| 01 七月 | +1 |
频道帖子
⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️
💠 تست نفوذ را رایگان یاد بگیر .
⭕️ @TryHackBox
📖 کتاب ها و منابع Cyber Security
📚 @LibrarySecOfficial
💠 رودمپ های مختلف از جمله ردتیم بلوتیم تست نفوذ و ...
⭕️ @TryHackBoxOfficial
💠 منابع BlueTeam :
⭕️ @BlueTeamKit
💠 ابزارها و دوره های OSINT
⭕️ @OsintGit
💠 دوره ها و منابع Cyber Security
⭕ @BackupLSO
💠 تمامی منابع Red Team اینجاست!
💠 آموزش توسعه بدافزار (رایگان)
⭕ @RedTeamVillageRTV
💠 منابع CTF و رایت آپ ها و دوره های HackTheBox :
⭕ @PfkCTF
💠 تمامی پکیج های برنامه نویسی و تست نفوذ در اینجا :
⭕ @cypack
💠 دوره های آموزشی - CVE-Exploit
⭕️ @HackTheBox_Academy
💠 برای اضافه شدن در لیست پیام دهید :
🤖 @Unique_exploitbot
⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️
| 2 | ↔️ CVE-2025-2005
❗️ WordPress Front End Users Plugin <= 3.2.32 is vulnerable to Arbitrary File Upload
🖥 Exploit - POC
🔎 FOFA:
body="/wp-content/plugins/front-end-only-users/"
#Ethical_Hacker #Exploit #Microsoft
#CVE #Pentest #Vulnerability
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 631 |
| 3 | ↔️ CVE-2025-24071
❗️ Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
🖥 Exploit - POC
Hunter:
product.name="Windows Server"
FOFA:
product="Microsoft-Windows"
Shodan:
os:"Windows""
#Ethical_Hacker #Exploit #Microsoft
#CVE #Pentest #Vulnerability
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 537 |
| 4 | wstg-v4.2.pdf | 770 |
| 5 | 📌 WSTG
Web Security Testing Guide
#BOOK
#Pentest #Ethical_Hacker
#Hacking #Owasp #WSTG
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 713 |
| 6 | 🔎 Some Google-Dorking To Find Private #BugBounty Programs.
-site:hackerone.com "hackerone.com" "private" ext:txt
"private, invite-only bug bounty program," -site:bugcrowd.com -site:hackerone.com
"may still submit a security bug" "private"
"private" "partnered with HackerOne" "submit" -site:hackerone.com
-site:bugcrowd.com "bugcrowd" "private" ext:txt -site:github.com -site:githubusercontent.com -site:crawler.ninja
"Help us get an idea of what this vulnerability is about" "vulnerability disclosure" -site:bugcrowd.com -site:hackerone.com -site:intigriti.com -site:yeswehack.com
"Help us get an idea of what this vulnerability is about" "bounty" -site:bugcrowd.com -site:hackerone.com -site:intigriti.com -site:yeswehack.com | 728 |
| 7 | 🎆🎆🎆🎆🎆🎆🎆🎆🎆🎆🎆🎆
سال جدید بر تمام ایرانیان دنیا مبارک باد
با آرزوی آزادی از چنگال رژیم جمهوری تروریست اسلامی
Happy New Year to all Iranians around the world
With wishes for freedom from the clutches of the terrorist Islamic Republic regime | 502 |
| 8 | سال جدید بر تمام ایرانیان دنیا مبارک باد
با آرزوی آزادی از چنگال رژیم جمهوری تروریست اسلامی
Happy New Year to all Iranians around the world
With wishes for freedom from the clutches of the terrorist Islamic Republic regime | 1 |
| 9 | ⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️
💠 تست نفوذ را رایگان یاد بگیر .
⭕️ @TryHackBox
📖 کتاب ها و منابع Cyber Security
📚 @LibrarySecOfficial
💠 رودمپ های مختلف از جمله ردتیم بلوتیم تست نفوذ و ...
⭕️ @TryHackBoxOfficial
💠 منابع BlueTeam :
⭕️ @BlueTeamKit
💠 ابزارها و دوره های OSINT
⭕️ @OsintGit
💠 برگزاری دوره های امنیت سایبری
⭕️ @kasraone_com
💠 تمامی منابع Red Team اینجاست!
💠 آموزش توسعه بدافزار (رایگان)
⭕️ @RedTeamVillageRTV
💠 منابع CTF و رایت آپ ها و دوره های HackTheBox :
⭕️ @PfkCTF
🐍 مینی آموزش های امنیت :
🪽 @qp_learn
💠 دوره های آموزشی - CVE-Exploit
⭕️ @HackTheBox_Academy
💠 تست نفوذ وب
⭕️ @GitBook_s
💠 برای اضافه شدن در لیست پیام دهید :
🤖 @Delaram_Najafii
⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️ | 134 |
| 10 | 🔠 Jsmon
⭐️ JavaScript Change Monitoring Tool for BugBounty
💫 Features:
💜 Keep Track of endpoints - check them in a configurable interval
💜 when endpoints change - send a notification via Telegram
🖥 GitHub
#Web #Tools #BugBounty
#Pentest #Ethical_Hacker
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 818 |
| 11 | ⭐️BYPASS File Extension Whitelists. | 847 |
| 12 | I Need 1 Person To Purches 1$ For Me For AWS Registration During My Country Is Under U.S.A Sanction And i Cant Do It My Self
Just 1$
Instead, I Iill Give Him My Personal BugBounty Method To Easily Find XSS , Include My Private python Script And my private nuclei template.
With This Method You Can Easiliy Find XSS On Any Website If Vulnerability Exist.
If You Are Okey,, Send Message To Me
TNX
@NullByte0x1 | 126 |
| 13 | ⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️
💠 تست نفوذ را رایگان یاد بگیر .
⭕️ @TryHackBox
📖 کتاب ها و منابع Cyber Security
📚 @LibrarySecOfficial
💠 رودمپ های مختلف از جمله ردتیم بلوتیم تست نفوذ و ...
⭕️ @TryHackBoxOfficial
💠 منابع BlueTeam :
⭕️ @BlueTeamKit
💠 ابزارها و دوره های OSINT
⭕️ @OsintGit
💠 برگزاری دوره های امنیت سایبری
⭕️ @kasraone_com
💠 تمامی منابع Red Team اینجاست!
💠 آموزش توسعه بدافزار (رایگان)
⭕️ @RedTeamVillageRTV
💠 منابع CTF و رایت آپ ها و دوره های HackTheBox :
⭕️ @PfkCTF
💠 دوره های آموزشی - CVE-Exploit
⭕️ @HackTheBox_Academy
💠 آموزش و علم کامپیوتر و هک وب
⭕️ @qp_learn
💠 برای اضافه شدن در لیست پیام دهید :
🤖 @Unique_exploitbot | 142 |
| 14 | 🖥 XSS BYPASS
Think You Want To Execute This:
javascript:alert(origin)
But In The Server Side, "javascript:" Is Filtered,
What We Can Do now?
FUZZ:
1. Open Your Browser Console,
In This Code You Are Fuzzing This
javascript[FUZZ]:
2. Run This Command
log = [];
let anchor = document.createElement('a');
for (let i = 0; i <= 0x10ffff; i++) {
anchor.href = `javascript${String.fromCodePoint(i)}:`;
if (anchor.protocol === 'javascript:') {
log.push(i);
}
}
3. now call log, Response Will Be This
Array(4) [ 9, 10, 13, 58 ]
4. It Will Give You Some Decimal Number
5. Turn This Decimal To HEX and Turn Your HEX To Url_Encode,
In Our Case It Will Turn To This:
Dec ==> HEX ==> Url_Encode
9 ==> 09 ==> %09
10 ==> 0A ==> %0A
13 ==> 0D ==> %0D
10. Now Put You Results On The Your JavaScript Code:
javascript%09:alert(origin)
javascript%0A :alert(origin)
javascript%0D:alert(origin)
*. By Luck, You Can Bypass Filtering,
!! You Can Also Fuzz Like This By Changing The Code That I gave You, You Have More Chance
[FUZZ]javascript:
javas[FUZZ]cript: | 1 005 |
| 15 | 🟢 𝗣𝗮𝘆𝗹𝗼𝗮𝗱 𝗪𝗶𝘇𝗮𝗿𝗱
An advanced AI assistant utilizing GPT language models to interpret and generate cybersecurity payloads
🔗 payload-wizard.vercel.app | 818 |
| 16 | ↔️ CVE-2025-1302
❗️ Versions of the package jsonpath-plus before 10.3.0 are vulnerable to Remote Code Execution (RCE) due to improper input sanitization. An attacker can execute aribitrary code on the system by exploiting the unsafe default usage of eval='safe' mode
🖥 Exploit - POC
#Ethical_Hacker #Exploit #RCE
#CVE #Pentest #Vulnerability
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 797 |
| 17 | 🔎 Search for Default Passwords !
pip3 install defaultcreds-cheat-sheet | 712 |
| 18 | Add This Path To Your WordList For Directory Fuzzing.
By Luck, You Will Find Interesting Stuff
templates/processed/syslog-tcp-forward.conf
templates/processed/config.ini
#BugBounty #Fuzz #Ethical_Hacker
#Recon #Osint #Tricks #Linux
➖➖➖➖➖➖➖➖➖
🌐 @HackTheBox_Academy
🌐 @HackTheBox_Security | 773 |
| 19 | ⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️
💠 تست نفوذ را رایگان یاد بگیر .
⭕️ @TryHackBox
📖 کتاب ها و منابع Cyber Security
📚 @LibrarySecOfficial
💠 رودمپ های مختلف از جمله ردتیم بلوتیم تست نفوذ و ...
⭕️ @TryHackBoxOfficial
💠 منابع BlueTeam :
⭕️ @BlueTeamKit
💠 ابزارها و دوره های OSINT
⭕️ @OsintGit
🪽آموزش امنیت وب
🪽@qp_learn
💠 برگزاری دوره های امنیت سایبری
⭕ @kasraone_com
💠 تمامی منابع Red Team اینجاست!
💠 آموزش توسعه بدافزار (رایگان)
⭕ @RedTeamVillageRTV
💠 منابع CTF و رایت آپ ها و دوره های HackTheBox :
⭕ @PfkCTF
💠 تست نفوذ وب
⭕ @GitBook
💠 دوره های آموزشی - CVE-Exploit
⭕️ @HackTheBox_Academy
💠 برای اضافه شدن در لیست پیام دهید :
🤖 @Unique_exploitbot
⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️⚜️ | 123 |
| 20 | 没有文字... | 1 |
