AGENTZ SECURITY!
Open in Telegram
481
Subscribers
No data24 hours
+27 days
+1430 days
Posts Archive
The Complete Prompt Engineering for AI Bootcamp (2025)
π 4.5 - 60752 votes π° Original Price: $54.99 FREE
Learn practical coding skills for working professionally with AI, including GPT-4, Stable Diffusion, and GitHub Copilot.Taught By: Mike Taylor, James Phoenix
PEN 210 Videos + PDF
Original Credits : Tamarisk
PEN-210 OSWP 2023 by Tamrisk
https://mega.nz/folder/c6kSDTTK#XUNK9V0Hz_XH9Zq-Ayn6kgVMware vCenter Server RCE + PrivEsc
β CVE-2024-37079
β CVE-2024-37080
β CVE-2024-37081
Nuclei Template (PoC):
π https://gist.github.com/tothi/0ff034b254aca527c3a1283ff854592a
CVEploiter v1.0.0.0
Advanced software to exploit cve-2024 vulnerabilities.
CVE-2024-25600 - Wordpress - Bricks < Remote Code Execution [RCE]
CVE-2024-1210 - Wordpress - LearnDash LMS < Sensitive Information Exposure [SIE]
CVE-2024-21644 - pyLoad - Flask Config < Access Control [AC]
CVE-2024-0713 - Monitorr Services Configuration - Spawn Webshell [SW]
Enjoy;
Some ways to find company admin panels
1. Using Google Dorks:
site: target.com inurl: admin | administrator | adm | login | l0gin | wp-login intitle: "login" "admin" site: target.com intitle: "index of / admin" site: target.com inurl: admin intitle: admin intext: admin2. Using httpx and a wordlist:
httpx -l hosts.txt -paths /root/admin-login.txt -threads 100 -random-agent -x GET, POST -tech-detect -status-code -follow-redirects -title -content-length
```shell
httpx -l hosts.txt-ports 80,443,8009,8080,8081,8090,8180,8443 -paths /root/admin-login.txt -threads 100 -random-agent -x GET, POST -tech-detect -status- code -follow-redirects -title -content-length
3. Using Repos: https://github.com/the-c0d3r/admin-finder https://github.com/RedVirus0/Admin-Finder https://github.com/mIcHyAmRaNe/okadminfinder3 https://github.com/penucuriCode/findlogin https://github.com/fnk0c/cangibrina 4. Using search engines: Sh0dan:ssl.cert.subject.cn:"company.com "http.title:" admin " ssl: "company.com" http.title: "admin" ssl.cert.subject.cn:"company.com "admin ssl: "company.com" admin
Fofa:cert = "company.com" && title = "admin" cert.subject = "company" && title = "admin" cert = "company.com" && body = "admin" cert.subject = "company" && body = "admin"
ZoomEye:ssl: company.com + title: "admin" ssl: company.com + admin
Censys (IPv4):(services.tls.certificates.leaf_data.issuer.common_name: company.com) AND services.http.response.html_title: admin (services.tls.certificates.leaf_data.issuer.common_name: company.com) AND services.http.response.body: admin
`crlfuzz Tool : A fast tool to scan CRLF vulnerability written in Go
Link : https://github.com/dwisiswant0/crlfuzz.git
How To Setup :
git clone https://github.com/dwisiswant0/crlfuzz.git
cd crlfuzz/cmd/crlfuzz
go install main.go
go build main.go
mv main /bin/crlfuzz
crlfuzz -h
Usage :
#For One Url crlfuzz -u "http://target.com"Or
#For List Of Websites And Save crlfuzz -l urls.txt -o results.txt
HOST : durbanvilleeyeclinic.co.za
PHP : 5.6.40
IP Server : 41.76.208.245
HDD Total : 911.69 GB
Free : 480.76 GB [430.93 GB]
Doamin Web : durbanvilleeyeclinic.co.za
MySQL : ON
CURL : ON
Sistem Operasi : Linux platinumseed.dedicated.co.za 3.10.0-1160.71.1.el7.x86_64 #1 SMP Tue Jun 28 15:37:28 UTC 2022 x86_64
