en
Feedback
Hacking Vidhya

Hacking Vidhya

Closed channel

We Talk about : Hacking , CTFs , Pentesting , Red & Blue Team etc. Not Allowed: Selling, Carding, Cracking Crypto.

Show more
676
Subscribers
+124 hours
-17 days
+1530 days
Posts Archive
private_bugbounty_programs.csv0.31 KB

org:att org:att AND "att.com" org:att AND "att.com" path:*.json org:att AND "att.com" path:*.yaml org:att "sk_live_" org:att "pk_live_" org:att AWS_ACCESS_SECRET_KEY org:att "sk-" "openai" org:att filename:/ .env org:att path:/ Dockerfile org:att path:**/settings.py org:"att" ("jwt_secret" OR "JWT_SECRET")

+2
Learning Bash Shell Scripting.zip8.30 KB

CORS Misconfiguration On FacebookLeads to Non-Sensitive Exposure https://about.fb.com/wp-json

Site: tring.co.in Bug: IDOR( Insecure Direct Object Refrence) Severity: high Poc: https://www.tring.co.in/order/track-booking?booking-id=Special_Pay_596522 Note: change the numeric value like 596523 to 596422 or any vale #bugBounty, #ASR827

Simple testing on the login page can reveal easy vulnerabilities. Try these default credentials. (I received 3 bounties for this.) email1:test@comp.com pass1: test@comp.com email2:support@comp.com pass2:support@comp.com email3:sales@comp.com pass3:sales@comp.com email4:admin@comp.com pass4: admin@comp.com email5: company@comp.com pass5: company@comp.com I've noticed that many companies forget to remove test emails or default credentials from their backend systems. #bugbountytips #hacking #BugBounty

Repost from Hacking Vidhya
🚨 HACKING VIDHYA PRIVATE COMMUNITY IS HERE! 🚨 Want to learn Web Application Pentesting properly with complete resources, guidance, private methodologies, and community support? šŸ”„ Join our exclusive Private Telegram Community and get access to: šŸ”Complete Web Application Pentesting Resources šŸ”– Structured Courses & Learning Roadmaps šŸ¤– AI-Powered Pentesting Techniques šŸ’° Guidance on how to start earning in your starting phase Mobile Application Pentesting & Security šŸŽÆAdvanced & Private Methodologies šŸ’¼ Cybersecurity Job & Career Guidance šŸ¤ Direct Community Support šŸ‘¾ Some content will be available in recorded video format, while selected topics and practical discussions will be conducted through LIVE VC Sessions. šŸ”„ This isn't just another course — it's a private community designed to help you learn practical cybersecurity skills, grow your knowledge, and build your career. šŸ’°Entry Price: ₹3,000 per person āš ļø LIMITED SEATS — Once the seats are filled, registrations will be closed! šŸ‘‡ DON'T WAIT UNTIL IT'S TOO LATE! āœ‰ļø DM @sttexo RIGHT NOW to secure your seat. šŸš€ SERIOUS LEARNERS ONLY! šŸ”„ Learn • Practice • Grow • Build Your Career šŸ”„ — Hacking Vidhya ::āœļø

AI-Red Team Analyst [AI-RTA] 2026.8 šŸ¤–Contents: āš«ļø Build a security foundation in AI/ML, GenAI, and LLMs. āš«ļø Understand AI attack surfaces and offensive techniques. āš«ļø Gain hands-on experience through practical labs. āš«ļø Explore industry frameworks like MITRE ATLAS, OWASP Top 10 for LLMs, and notable AI security case studies. āš«ļø Develop practical AI red teaming skills to identify, assess, and validate security risks in AI applications.

+2
Enterprise Lateral Movement Specialist [CELMS].zip932.01 MB

Enterprise Lateral Movement Specialist [CELMS] šŸ¤‘Content : 🟣Understand attacker strategies for moving within networks. 🟣Sim
Enterprise Lateral Movement Specialist [CELMS] šŸ¤‘Content : 🟣Understand attacker strategies for moving within networks. 🟣Simulate a local lab to practice lateral movement techniques. 🟣Gain proficiency in exploiting authentication mechanisms. 🟣Comprehend and utilize remote management protocols. 🟣Develop skills for simulating real-world attacks. 🟣Prepare for roles such as cybersecurity analyst, penetration tester etc.

How a $12,000 Bounty Was Earned via Broken Logic in Payment Webhooks