Pentester world 2.0
Відкрити в Telegram
⚠️ DISCLAIMER :- 𝚃𝙷𝙸𝚂 𝙲𝙷𝙰𝙽𝙽𝙴𝙻 𝙳𝙾𝙴𝚂 𝙽𝙾𝚃 𝙿𝚁𝙾𝙼𝙾𝚃𝙴 𝙰𝙽𝚈 𝙸𝙻𝙻𝙴𝙶𝙰𝙻 𝙰𝙲𝚃𝙸𝚅𝙸𝚃𝙸𝙴𝚂 , 𝙸𝚃𝚂 𝙹𝚄𝚂𝚃 𝙵𝙾𝚁 𝙵𝚄𝙽 𝙰𝙽𝙳 𝙴𝙳𝚄𝙲𝙰𝚃𝙸𝙾𝙽𝙰𝙻 𝙿𝚄𝚁𝙿𝙾𝚂𝙴 😇 Welcome pentester world in this group you
Показати більшеКраїна не вказанаТехнології та додатки75 932
596
Підписники
+724 години
+407 днів
+14430 днів
Архів дописів
PimpMyBurp #7: How HaE Burp Suite extension can help you in your daily hunting
https://blog.yeswehack.com/yeswerhackers/pimpmyburp/pimpmyburp-7-how-hae-burp-suite-extension-help-you-daily-hunting/
XML Security in Java
Java XML security issues and how to address them
https://semgrep.dev/blog/2022/xml-security-in-java
New Belgian legal framework gives safe harbor to ethical hackers and bug bounty hunters
https://blog.intigriti.com/2023/01/19/new-belgian-legal-framework-gives-safe-harbor-to-ethical-hackers-and-bug-bounty-hunters/
Reflected XSS Leads to 3,000$ Bug Bounty Rewards from Microsoft Forms
https://m3ez.medium.com/reflected-xss-leads-to-3-000-bug-bounty-rewards-from-microsoft-forms-efe34fc6b261
How I found XSS on Admin Page without login!
https://sl4x0.medium.com/how-i-found-xss-on-admin-page-without-login-fe165a5f89c2
2022 Microsoft Teams RCE
https://blog.pksecurity.io/2023/01/16/2022-microsoft-teams-rce.html
@cyberboyindia Talks About Pentesting, Smart Contract Audits and Bug Bounties!
https://www.youtube.com/watch?v=BUxonznpws8
The MarkdownTime Vulnerability: How to Avoid This DoS Attack on Business Critical Services
https://www.legitsecurity.com/blog/dos-via-software-supply-chain-innumerable-projects-exposed-to-a-markdown-library-vulnerability
How to Find More Subdomains (Using Permutations)!
https://www.youtube.com/watch?v=NuhiWBGo684
Exploiting Hardcoded Keys to achieve RCE in Yellowfin BI
https://blog.assetnote.io/2023/01/24/yellowfin-auth-bypass-to-rce/
TCP For Hackers: How Does nmap Work? (with @ChrisGreer)
https://www.youtube.com/watch?v=8P2n3t8Xd34
Pycript is a Burp Suite extension that enables users to encrypt and decrypt requests for manual and automated application penetration testing.
https://github.com/Anof-cyber/PyCript
Bypassing a Creation Limit on Free Accounts: A Race Condition Vulnerability in Bug Bounty Program
https://medium.com/@soyelmago/bypassing-a-creation-limit-on-free-accounts-a-race-condition-vulnerability-in-bug-bounty-program-33e69592d36a
Bypassing Cloudflare WAF: XSS via SQL Injection
https://www.ukusormus.com/bypassing-cloudflare-waf-xss-via-sql-injection/
Two Factor Authentication Bypass On Facebook
https://medium.com/pentesternepal/two-factor-authentication-bypass-on-facebook-3f4ac3ea139c
Research | Bypass CSRF Protection w/ XSS
https://sl4x0.medium.com/research-bypass-csrf-protection-w-xss-710faf20000
The Anti-Recon Recon Club (using ReconFTW)
https://www.jhaddix.com/post/the-anti-recon-recon-club-using-reconftw
How to Directory Brute Force Properly
https://www.youtube.com/watch?v=Eai_ZXXqafw
Security Advisory: Remote Command Execution in binwalk
https://onekey.com/blog/security-advisory-remote-command-execution-in-binwalk/
