AGENTZ SECURITY!
Open in Telegram
481
Subscribers
No data24 hours
+27 days
+1430 days
Posts Archive
⚡Google Dorks - Cloud Storage: site:http://s3.amazonaws.com "target[.]com" site:http://blob.core.windows.net "target[.]com" site:http://googleapis.com "target[.]com" site:http://drive.google.com "target[.]com"
👉Find buckets and sensitive data.
Combine:
site:http://s3.amazonaws.com | site:http://blob.core.windows.net | site:http://googleapis.com | site:http://drive.google.com "target[.]com"
Add something to narrow the results: "confidential” “privileged" “not for public release”
✅ Credit- Mike Takahashi
⚡️LazyXss - Cross site scriptiong Testing Automation Tool v1.2
✅Link: github.com/iamunixtz/LazyXss
💻 All About Bug Bounty - Updated!
🔥https://github.com/daffainfo/AllAboutBugBounty
#BugBounty #bugbountytips
OAuth 2.0 Authentication Misconfiguration
https://shellmates.medium.com/oauth-2-0-authentication-misconfiguration-dcb811062f1d
⛓ Easily Identify SSRF on a Website Using a Single Command*
This approach leverages a combination of powerful tools:
- Findomain: Gathers all subdomains related to the target site.
- Httpx: Verifies the accessibility of these domains.
- Getallurls (gau): Extracts URLs from sources like AlienVault OTX, Wayback Machine, and Common Crawl.
- Qsreplace: Substitutes query string values in URLs with a user-specified value.
Steps:
1. Install the mentioned tools.
2. Run the following command:
findomain -t DOMAIN -q | httpx -silent -threads 1000 | gau | grep "=" | qsreplace your.burpcollaborator.net
Replace your.burpcollaborator.net with your server or Burp Collaborator address.
This method streamlines the search for SSRF vulnerabilities effectively.
#bugbounty #web #ssrf #cybersecurity #bugbountytips
Credit: Aman Dara💠 Malware Source Codes
💠 Android
💠 Engine
💠 Java
💠 JavaScript
💠 Legacy Windows
💠 Libs
💠 Linux
💠 Msdos
💠 MacOs
💠 Php
💠 Panel
💠 Perl
💠 Phising pages
💠 Point of scales
💠 Python
💠 Ruby
💠 Win32
SQLite Essentials From Novice to Expert
Language : English
Download link
https://mega.nz/file/XcwBRSjS#LX3DO3BkZfm-Z8zgdXGTRKHfeHCpnJHlNBBWGq9HE5Y
✅ This is a whole set of doxxing tools.
✅ 5 sets of passports.
✅ Over 50,000,000 data in total.
✅ 300,000 conscripts.
✅ Safety manuals.
@Qk1TxT - extreme-privacy-what-it-takes-to-disappear-5th-edition-michael-bazzell.pdf
