Network Security Channel
Open in Telegram
⭕️Start Channel From 2017⭕️ ✅ Security Operation Center (SOC) ✅ Bug Bounty ✅ Vulnerability ✅ Pentest ✅ Hardening ✅ Linux ✅ Reasearch ✅ Security Network ✅ Security Researcher ✅ DevSecOps ✅ Blue Team ✅ Red Team
Show more2 790
Subscribers
+324 hours
+127 days
+4830 days
Posts Archive
🔖Extract domains from a list of subdomains or URLs. :
cat subdomainslist.txt | while read line; do python -c "import tldextract;domain = tldextract.extract('$line');extracted=str(domain.domain)+'.'+str(domain.suffix);print(extracted) if domain.domain != '' and extracted[-1] != '.' else False"; done
If you know a better way to extract domains from a list of subdomains, please comment below👇🏻
#BugBounty #BugBountyTools
— Share & Support Us —
@Engineer_Computerرسیدگی کنید
در کاتالوگ KEV درج شده است
CVE-2023-29357
شیر پوینت
https://thehackernews.com/2024/01/act-now-cisa-flags-active-exploitation.html
@Engineer_Computer
آخرین قربانی حملات SQL Injection و XSS
https://www.bleepingcomputer.com/news/security/hackers-steal-data-of-2-million-in-sql-injection-xss-attacks/
@Engineer_Computer
Bypassing Wi-Fi Encryption by Manipulating Transmit Queues.
https://www.usenix.org/system/files/usenixsecurity23-schepers.pdf
@Engineer_Computer
Zero-Day (via CVE-2023-45866): Exploiting Zero-click Android Bluetooth vulnerability to inject keystrokes without pairing.
https://www.mobile-hacker.com/2024/01/23/exploiting-0-click-android-bluetooth-vulnerability-to-inject-keystrokes-without-pairing/
@Engineer_Computer
JSON Smuggling: A far-fetched intrusion detection evasion technique
https://grimminck.medium.com/json-smuggling-a-far-fetched-intrusion-detection-evasion-technique-51ed8f5ee05f
@Engineer_Computer
Reverse engineering of Android Phoenix RAT
Analysis: https://cryptax.medium.com/reverse-engineering-of-android-phoenix-b59693c03bd3
Phoenix overview: https://cryptax.medium.com/android-phoenix-authors-claims-sample-identification-and-trends-f199cbc9901d
@Engineer_Computer
239 - Public Private Android Keys and Docker Escapes
https://dayzerosec.com/podcast/239.html
@Engineer_Computer
GitHub - xnl-h4ck3r/waymore: Find way more from the Wayback Machine!
https://github.com/xnl-h4ck3r/waymore
@Engineer_Computer
Commercial spyware companies are behind most zero-day exploits - discovered by Google
Blog: https://blog.google/threat-analysis-group/commercial-surveillance-vendors-google-tag-report/
PDF: https://storage.googleapis.com/gweb-uniblog-publish-prod/documents/Buying_Spying_-_Insights_into_Commercial_Surveillance_Vendors_-_TAG_report.pdf
@Engineer_Computer
در کانادا فلیپر زیرو به دلیل اینکه ممکنه در سرقت ماشین استفاده بشه ممنوع میشه
https://www.canada.ca/en/public-safety-canada/news/2024/02/government-of-canada-hosts-national-summit-on-combatting-auto-theft.html
@Engineer_Computer
#رایتاپ جامع و عالی در مورد نحوه ایجاد یک منبع #recon برای باگ بانتی با استفاده از Flask،MongoDB، REST Api و ChatGPT
#PartOne
https://medium.com/@aliraah/creating-a-recon-database-with-flask-mongodb-rest-api-and-chatgpt-part-one-77ec3fd3b914
#PartTwo
https://medium.com/@aliraah/creating-a-recon-database-with-flask-mongodb-rest-api-and-chatgpt-part-two-468405eb3520
#PartThree
https://medium.com/@aliraah/creating-a-recon-database-with-flask-mongodb-rest-api-and-chatgpt-part-three-cee1633de873
#WriteUp
#Recon
#BugBountyTips
@Engineer_Computer
خصوصیاتی در اکتیو دایرکتوری که دستکاری در آنها خطرناک است همراه با ابزارهایی نمونه برای دستکاری آن خصوصیات
@Engineer_Computer
وقتی c2 server های Empire دچار آسیب پذیری RCE میشوند!
اینجاست که هکر هک میشود.
**آسیب پذیری و PoC آن در ۱۵ فوریه منتشر میگردد. منتظر باشید
***نسخه ۵.۹.۳ ماقبل
@Engineer_Computer
https://github.com/BC-SECURITY/Empire/tree/main
شروع ثبت نام کاندیداهای هیات مدیره سازمان امنیت اطلاعات غیر انتفاعی ISC2
@Engineer_Computer
https://www.abstractscorecard.com/cfp/submit/login.asp?eventkey=isaxlkcm
Available now! Telegram Research 2025 — the year's key insights 
