ch
Feedback
ʀᴏᴘꜱx_ʙᴜɢ

ʀᴏᴘꜱx_ʙᴜɢ

前往频道在 Telegram

显示更多
墨西哥1 638未指定类别
2 682
订阅者
+724 小时
+1637 天
+8230 天
帖子存档
SQL injection.pdf5.99 KB

Top RCE reports from HackerOne.pdf3.67 KB

Google Hacking For Penetration Testers.pdf6.44 MB

photo content

2FA Bypass Techniques.pdf0.35 KB

photo content

OWASP Top 10 Guide 2025 - Practical Exploitation Guide

photo content

🔴 KaliGPT + AI for Red Team on Kali Linux 🐉🤖 Main functionalities : 🌟Recognition: discovery of hosts, services, domains,
+1
🔴 KaliGPT + AI for Red Team on Kali Linux 🐉🤖 Main functionalities : 🌟Recognition: discovery of hosts, services, domains, and attack surface. 🌟Enumeration: identification of ports, versions, technologies and configurations. 🌟Vulnerability analysis: search and validation of known vulnerabilities. 🌟Web security: testing of web applications, APIs, authentication, sessions and configurations. 🌟Controlled exploitation: validation of vulnerabilities within an authorized environment. 🌟Post-exploitation: analysis of privileges, persistence and lateral movement in a laboratory. 🌟Active Directory: Enumeration of users, groups, trusted relationships, and insecure configurations. 🌟Wireless: audit of own or authorized Wi-Fi networks. 🌟Password auditing: evaluation of password robustness using legitimately obtained hashes. 🌟Forensic and analysis: inspection of evidence, traffic and artifacts. Reporting: documentation of findings, evidence, impact and recommendations. The idea is not to replace the security professional, but to use AI as a co-pilot to analyze information, automate repetitive tasks and speed up documentation. Official repository: 👉https://github.com/SudoHopeX/KaliGPT The project supports vendors such as Gemini, Ollama, OpenRouter, and OpenAI models, as well as including agent roles for cybersecurity assistance ☕️Don't forget to follow me 👉https://x.com/r0psx_ninja

💠 Burp Suite + Claude AI: Connect Using MCP Server (2025 Setup) 🔗 https://hacklido.com/blog/1051-burp-suite-claude-ai-connect-using-mcp-server-2025-setup

🚨 CVE-2026-18963 - Keycloak < 26.7.2 - Unauthenticated Account Takeover via Reset-Credentials Bypass Nuclei Template - ht
🚨 CVE-2026-18963 - Keycloak < 26.7.2 - Unauthenticated Account Takeover via Reset-Credentials Bypass Nuclei Template - https://github.com/projectdiscovery/nuclei-templates/pull/16995/changes Reference: https://github.com/keycloak/keycloak/issues/51833 #hackwithautomation #bugbounty #keycloak

🔔 Bug Bounty Tip 🕵️ Did you know some exposed Google Maps API keys may also have access to Gemini models? 👀 Try geminiHunt
🔔 Bug Bounty Tip 🕵️ Did you know some exposed Google Maps API keys may also have access to Gemini models? 👀 Try geminiHunter to hunt for exposed Gemini API keys across: * JS/source maps * Wayback snapshots * Android APKs * Web assets It also deduplicates and validates keys, helping you identify which exposed keys are actually usable. 🔗 https://github.com/devploit/geminiHunter

🔥HackTools - The all-in-one RedTeam extension for Web Pentester. ✅https://github.com/LasCC/Hack-Tools

11 new vulnerabilities in WordPress, no CVE assigned yet ❗️ WordPress 7.1.1 security release patches 11 vulnerabilities including stored XSS, path traversal, and other security flaws. Search at Netlas.io: 👉 Link: https://nt.ls/s3kOE 👉 Dork: tag.name:"wordpress"

🔥 ⛓️ Click2Shell is a one-click unauthenticated remote command execution chain (Preauth RCE) affecting every WordPress website. Wordpress rolled out a fix yesterday! The story about how one preview link made WordPress click Install, load an inactive theme's PHP, and hand us RCE is below. ⚠️https://pwn.ai/blog/click2shell

🚨Search for all leaked keys/secrets using one regex! ✅regex: https://gist.github.com/h4x0r-dz/be69c7533075ab0d3f0c9b97f7c93a
🚨Search for all leaked keys/secrets using one regex! ✅regex: https://gist.github.com/h4x0r-dz/be69c7533075ab0d3f0c9b97f7c93a59 #BugBounty #bugbountytip

FOUNDATIONAL & ESSENTIAL COURSES Introduction to Cybersecurity – Cisco Networking Academy 🔗 netacad.com/courses/cybersecurity Cybersecurity Basics – edX 🔗 edx.org/course/cybersecurity-basics Cybersecurity Essentials – Cisco Networking Academy 🔗 netacad.com/courses/cybersecurity-essentials Introduction to Information Security – Great Learning 🔗 mygreatlearning.com/academy CERTIFICATIONS & SPECIALIZED PATHS 5. Certified in Cybersecurity (CC) – ISC2 🔗 isc2.org/Certifications/CC Fortinet Network Security Expert (NSE 1, 2, & 3) – Fortinet Training Institute 🔗 training.fortinet.com Ethical Hacking Essentials (EHE) – EC-Council CodeRed 🔗 codered.eccouncil.org Digital Forensics Essentials (DFE) – EC-Council CodeRed 🔗 codered.eccouncil.org Network Defense Essentials (NDE) – EC-Council CodeRed 🔗 codered.eccouncil.org ETHICAL HACKING & PENETRATION TESTING 10. Introduction to Ethical Hacking – Great Learning 🔗 mygreatlearning.com/academy Penetration Testing: Discovering Vulnerabilities – edX 🔗 edx.org/course/penetration-testing DIGITAL FORENSICS & INVESTIGATION 12. Computer Forensics – edX 🔗 edx.org/course/computer-forensics Cyber Forensics – edX 🔗 edx.org/course/cyber-forensics Introduction to Cybercrime – Simplilearn 🔗 simplilearn.com/free-cybercrime-courses Cybercrime Concepts – Great Learning 🔗 olympus.mygreatlearning.com NETWORK & ENTERPRISE SECURITY 16. Network Security – Great Learning 🔗 olympus.mygreatlearning.com Network Security Foundations – OpenLearn 🔗 open.edu/openlearn Enterprise and Infrastructure Security – Coursera 🔗 coursera.org/learn/enterprise-infrastructure-security Real-Time Cyber Threat Detection and Mitigation – Coursera 🔗 coursera.org/learn/real-time-cyber-threat-detection ADVANCED CONCEPTS 20. Introduction to Dark Web, Anonymity, and Cryptocurrency – EC-Council CodeRed 🔗 codered.eccouncil.org

⛧ PRACTICAL PHISHING COURSE ⛧ Break the Light. Enter the Grid. 👾 Construct a Stealth Phishing Framework 💉 Inject & Execute High‑Impact Campaigns 🔐 Slip Through MFA Barriers 🕳 Ghost Past Spam Filters 🎯 Precision Credential Extraction 🧨 Post‑Breach Exploit Operations 🛡 Blue‑Team Countermeasure Mapping ⚔️ Insights from Real Offensive Scenarios