Bug bounty Tips
رفتن به کانال در Telegram
🛡️ Cybersecurity enthusiast | 💻 Helping secure the digital world | 🌐 Web App Tester | 🕵️♂️ OSINT Specialist Admin: @laazy_hack3r
نمایش بیشتر5 812
مشترکین
+824 ساعت
+657 روز
+39030 روز
آرشیو پست ها
5 815
Malware reverse engineering for beginners.
Part 1: https://intezer.com/blog/malware-analysis/malware-reverse-engineering-beginners/
Part 2: https://intezer.com/blog/incident-response/malware-reverse-engineering-for-beginners-part-2/
5 815
Ethical Hacking Masterclass
Contains every single thing you need to know from zero level to advanced. It's very comprehensive.
Size: 56.1 GB
Link: https://drive.google.com/drive/folders/1mZwaNmPJB6OcGf-lSejIvbU8y2YxjDt4
5 815
🖥 SQLMC - SQL Injection Massive Checker
▪install : pip3 install sqlmc
@linuxkalii
5 815
Auth. Bypass In (Un)Limited Scenarios - Progress MOVEit Transfer (CVE-2024-5806)
CVSS: 9.1 (CRITICAL) Improper Authentication vulnerability in Progress MOVEit Transfer (SFTP module) can lead to Authentication Bypass.
Exploit: https://github.com/watchtowrlabs/watchTowr-vs-progress-moveit_CVE-2024-5806
This issue affects MOVEit Transfer:
from 2023.0.0 before 2023.0.11,
from 2023.1.0 before 2023.1.6,
from 2024.0.0 before 2024.0.2.
Query:
Hunter: /product.name="MOVEit Transfer"
FOFA: app="Progress-MOVEit"
SHODAN: product:"MOVEit Transfer"
5 815
What is Hound?
Hound is a tool that can remotely capture the exact GPS coordinates of a target device using a PHP server, and can also grab basic information about the system and ISP. This tool can be very helpful in information gathering. you can get following information of the target device
Longitude
Latitude
Device Model
Operating System
Number of CPU Cores
Screen Resolution
User agent
Public IP Address
Browser Name
ISP Information
Features
The tool offers a wide range of features and functionality, including:
Capture Exact GPS Location
Automated Data Collection
User-friendly Interface
This Tool Tested On :
Kali Linux
Windows(WSL)
Termux
MacOS
Ubuntu
Parrot Sec OS
Installing and requirements
This tool require PHP for webserver, wget & unzip for download and extract cloudflare. First run following command on your terminal
apt-get -y install php unzip git wget
Installing (Kali Linux/Termux):
git clone https://github.com/techchipnet/hound
cd hound
bash hound.sh
5 815
Web Hacking Tip: - jhaddix
When using ffuf change the user agent string as the default one "Fuzz Faster U Fool" is commonly blocked.
-H "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"5 815
IF YOU DON.T HAVE money, SELL YOUR CROSS SITE SCRIPTING: https://medium.com/@1daytosee/if-you-don-t-have-money-sell-your-cross-site-scripting-dc4b6bdd046f?source=rss------bug_bounty-5
5 815
What is prototype pollution?: https://cyberw1ng.medium.com/what-is-prototype-pollution-76694f0db76a?source=rss------bug_bounty-5
5 815
Web App Sec RECON — Black Box Foundations and TTPs: https://medium.com/cyberpower-telenoia/web-app-sec-recon-black-box-foundations-and-ttps-4bf095b7c004?source=rss------bug_bounty-5
5 815
Unlocking the Future of Web Security with the #IBRAHIMXSS Tool: https://ibrahimxss.medium.com/unlocking-the-future-of-web-security-with-the-ibrahimxss-tool-a33843cdc259?source=rss------bug_bounty-5
5 815
A Place for Cybersecurity and Bug Bounty Content Creators to Shine: https://medium.com/@turvsec/a-place-for-cybersecurity-and-bug-bounty-content-creators-to-shine-fa0096ce2559?source=rss------bug_bounty-5
5 815
Mastering Bug Bounty: Tips and Strategies for Success: https://medium.com/@cyber_catz/mastering-bug-bounty-tips-and-strategies-for-success-df27b24f2009?source=rss------bug_bounty-5
5 815
5 815
How ChatGPT Turned Me into a Hacker: https://medium.com/@jonathanmondaut/how-chatgpt-turned-me-into-a-hacker-7469d5b43026?source=rss------bug_bounty-5
اکنون در دسترس! پژوهش تلگرام ۲۰۲۵ — مهمترین بینشهای سال 
