Termux All Command [Telegram Group]
رفتن به کانال در Telegram
Hello This Is Termux All Command Official Telegram Group. Here Share All Kind of Resourses. It is Also backup of Facebook Page Telegram Channel >> https://t.me/termuxcommandfull Facebook Page >> https://www.facebook.com/termux.command.full
نمایش بیشتر1 184
مشترکین
اطلاعاتی وجود ندارد24 ساعت
+147 روز
+4730 روز
آرشیو پست ها
Awesome Curated List Of Bug Bounty Tools : https://medium.com/@chathurangabw/a-curated-list-of-various-bug-bounty-tools-5c5af7e4f301
EnumParameter It is a web enumeration tool designed to assist in bug bounty and web application enumeration tasks. It uses the Wayback Machine service to retrieve historical URLs for a given domain and performs a series of actions on them, such as excluding certain extensions, checking their accessibility, and exporting valid URLs to a file.
This will be a support point in your enumeration phase and in the vulnerability validation process using tools such as nuclei, burpsuite, etc.
link repository: https://lnkd.in/e-tpMQhu
🔰Cross-site Scripting (XSS)🔰
🤞 Cross-site Scripting (XSS) is a client-side code injection attack. The attacker aims to execute malicious scripts in a web browser of the victim by including malicious code in a legitimate web page or web application. The actual attack occurs when the victim visits the web page or web application that executes the malicious code. The web page or web application becomes a vehicle to deliver the malicious script to the user’s browser. Vulnerable vehicles that are commonly used for Cross-site Scripting attacks are forums, message boards, and web pages that allow comments.
🌐 A web page or web application is vulnerable to XSS if it uses unsanitized user input in the output that it generates. This user input must then be parsed by the victim’s browser. XSS attacks are possible in VBScript, ActiveX, Flash, and even CSS. However, they are most common in JavaScript, primarily because JavaScript is fundamental to most browsing experiences.
Top 30 Recon Tools for Ethical Hackers / Pentesters.
Nmap
Shodan
Recon-ng
theHarvester
Maltego
Metasploit Framework
Wireshark
Netcat
dnsrecon
Nikto
Whois
Hping
ReconFTW
THC Hydra
Aircrack-ng
DNSenum
Masscan
Snort
OSINT Framework
SpiderFoot
Wfuzz
DirBuster
Subfinder
OSRFramework
ZAP
CeWL
Fierce
Xplico
BeEF (Browser Exploitation Framework)
Nuclei
Clone Any Website in 5 Simple Steps
1. Install HTTRACKER: Get it from https://www.httrack.com
2. Open the Program: Choose a project name and path.
3. Enter Website URL: Type the URL of the website you want to clone.
4.Choose Download Option: Select “Website Download” from the options.
5. Wait & Done!: Let it complete, and you’ll have the cloned website.
Enjoy cloning your favorite websites effortlessly
🔰 Some Sites Providing Temp .Edu Mail for Free !!
1. edumail.icu
2. etempmail.com
3. 10minutesemail.net
Compare your situation with someone's that is worse. Now yours does not seem so bad after all.
- Haemin Sunim
Canva Pro Team Invites
Team 1 | 500 Seats ✅
https://www.canva.com/brand/join?token=RGwQnBAyI3ykH9Gs2pNaIw&referrer=team-invite
Team 2 | 500 Seats ✅
https://www.canva.com/brand/join?token=-OnEmV1CNY4KzAw1zWhnVQ&referrer=team-invite
Team 3 | 500 Seats ✅
https://www.canva.com/brand/join?token=0w9GubhrTmDMnGpSKUwayA&referrer=team-invite
Team 4 | 500 Seats ✅
https://www.canva.com/brand/join?token=hz77TEBF73Dsn_lnW9DPQQ&referrer=team-invite
Team 5 | 500 Seats ✅
https://www.canva.com/brand/join?token=niOZXa-sCbGByJab-JSfjw&referrer=team-invite
Team 6 | 500 Seats ✅
https://www.canva.com/brand/join?token=LyFSru-gCXj_ABFOyI-n-A&referrer=team-invite
Team 7 | 500 Seats ✅
https://www.canva.com/brand/join?token=pTWZAPJrXzomUj5C9qhzfQ&referrer=team-invite
Team 8 | 500 Seats ✅
https://www.canva.com/brand/join?token=C7gkNVFN2_wzvk1xKjgw7g&referrer=team-invite
Team 9 | 500 Seats ✅
https://www.canva.com/brand/join?token=DawsaCB5PXLDM6kGn31qmg&referrer=team-invite
Team 10 | 500 Seats ✅
https://www.canva.com/brand/join?token=HqFIF9RDzOms3vQtpone4Q&referrer=team-invite
Team 11 | 500 Seats ✅
https://www.canva.com/brand/join?token=oo8gDwEBLDFQW8nuDD_yrg&referrer=team-invite
Team 12 | 500 Seats ✅
https://www.canva.com/brand/join?token=9IjlNZ1GLGpOVXc_KHMdNg&referrer=team-invite
𝐓𝐨𝐩 𝐎𝐒𝐈𝐍𝐓 𝐫𝐞𝐬𝐨𝐮𝐫𝐜𝐞𝐬 𝐭𝐨 𝐡𝐞𝐥𝐩 𝐮𝐧𝐜𝐨𝐯𝐞𝐫 𝐭𝐡𝐨𝐬𝐞 𝐞𝐥𝐮𝐬𝐢𝐯𝐞 𝐞𝐦𝐚𝐢𝐥 𝐚𝐝𝐝𝐫𝐞𝐬𝐬𝐞𝐬]
1)Lookup Emails: https://lookup.email/
2)Hunter.io: https://hunter.io Makes targeted prospecting a breeze.
3)Anthropic: https://www.anthropic.com
4)CEO Email Finder:https://ceoemail.com
5)dehashed.com: https://dehashed.com
6)EmailHippo: https://emailhippo.com
7)Crunchbase: https://lnkd.in/gEfY4mE9
8)Data.world harvests relevant profiles from LinkedIn. - https://data.world/
9)Zoomeye indexes Shodan's crawl data for customized research. - https://www.zoomeye.org/
10)PIpl searches public records from various sources globally. - https://pipl.com/
11)Phonenumberinfo profiles US contact details by number. - https://lnkd.in/grsZRQUS
12)ThatsThem aggregates social profiles into a searchable card. - https://thatsthem.com/
13)Fullcontact appends additional details to enriched cards. - https://lnkd.in/gB-HaaJ3
14)namechk validates names against common typos & variations. - https://namechk.com/
15)Whitepages provides public records and social connections. - https://lnkd.in/gjRNp_es
16)Spokeo identifies unknown numbers and enhances profiles. - https://www.spokeo.com/
17)Sherrod Brown focuses on US political emails and contacts. - https://lnkd.in/gFsumgXa
18)80,000 Hours highlights career researchers’ emails and bios. - https://80000hours.org/
19)TLSBlazer checks public-facing web servers for open contacts. - https://lnkd.in/g_VVPCtS
20)Viewdns uncovers domain records like WHOISs for more clues. - https://viewdns.info/
21)Recos searches Chinese social profiles like WeChat and Weibo. - https://app.recos.cn/
22)Politiwookie dredges political donations for contact mining. - https://politiwookie.org/
23)Gravitywell indexes deep & surface web pages for search. - https://lnkd.in/ganQ7q6m
24)Foca collects photos & social profiles from major platforms. - https://lnkd.in/gs8jFrwW
25)Sherlock finds social media profiles through name, email, phone. - https://lnkd.in/gt2h7_4p
26)OSINTComb runs 20+ tools w/ API for streamlined workflows. - https://osintcombine.com/
Find xss with this automation of the following work :
1. subfinder -d indeed.com -o indeed.txt //Find Subdomains
2. httpx -l subdomains.txt -o httpx.txt // Live Subdomains
3. echo "indeed.com" | gau --threads 5 >> Enpoints.txt // Find Endpoints
4. cat httpx.txt | katana -jc >> Enpoints.txt // Find More Endpoints
5. cat Enpoints.txt | uro >> Endpoints_F.txt // Remove Duplicates
6. cat Endpoints_F.txt | gf xss >> XSS.txt // Filter Endpoints for XSS
7. cat XSS.txt | Gxss -p khXSS -o XSS_Ref.txt // Find reflected Parameters
8. dalfox file XSS_Ref.txt -o Vulnerable_XSS.txt // Find XSS
Script : https://github.com/dirtycoder0124/xss
Quick Archive․org viewer
A very simple online tool that will save you time looking at old versions of a page.
Just enter a link, wait a while and see how the page looked like in different years. Especially useful for researching social network profiles.
https://cybdetective.com/webarchiveviewer/
This is one of the best Wordlists to use during Bug Bounty Hunting
https://lnkd.in/g3GVhP3z
Who have premium user in telegram. Comment in below. I need Help!
🔍 Excited to share a new tool I've developed for web security enthusiasts: entrypoint_enum.py 🕵️♂️
Ever found yourself frustrated by missing entry points in a web challenge or project? I certainly have!
Recently, while working on a web challenge, I stumbled upon a hidden entry point that held the key to the vulnerability I was hunting for. The link was there all along, but it wasn't immediately obvious.
To prevent this from happening again, I decided to develop a script that automates the process of identifying entry points in a web project.
With entrypoint_enum.py, you simply provide the URL of the project, along with any optional parameters such as cookies or excluded links (e.g., logout URLs). The script then crawls through the project, listing all the links discovered along the way, as well as any JavaScript files present in the project.
Check it out on my github page: https://lnkd.in/enQT4a_D 🚀
I hope it proves helpful in your web security endeavors! 💻🔒
#WebSecurity #Cybersecurity #Tool #EntryPointEnum #GitHub #Automation #InfoSec #BugBounty #PenTesting
اکنون در دسترس! پژوهش تلگرام ۲۰۲۵ — مهمترین بینشهای سال 
