Pentester world 2.0
Відкрити в Telegram
⚠️ DISCLAIMER :- 𝚃𝙷𝙸𝚂 𝙲𝙷𝙰𝙽𝙽𝙴𝙻 𝙳𝙾𝙴𝚂 𝙽𝙾𝚃 𝙿𝚁𝙾𝙼𝙾𝚃𝙴 𝙰𝙽𝚈 𝙸𝙻𝙻𝙴𝙶𝙰𝙻 𝙰𝙲𝚃𝙸𝚅𝙸𝚃𝙸𝙴𝚂 , 𝙸𝚃𝚂 𝙹𝚄𝚂𝚃 𝙵𝙾𝚁 𝙵𝚄𝙽 𝙰𝙽𝙳 𝙴𝙳𝚄𝙲𝙰𝚃𝙸𝙾𝙽𝙰𝙻 𝙿𝚄𝚁𝙿𝙾𝚂𝙴 😇 Welcome pentester world in this group you
Показати більшеКраїна не вказанаТехнології та додатки75 932
596
Підписники
+724 години
+407 днів
+14430 днів
Архів дописів
Championing CyberSecurity: Grab's bug bounty programme in 2023
https://engineering.grab.com/cybersec-bug
How I Found SQL Injection worth of $4,000 bounty
https://medium.com/@roberto99/how-i-found-sql-injection-worth-of-4-000-bounty-16ca09cbf8ec
Retro Gaming Vulnerability Research: Warcraft 2
https://research.nccgroup.com/2023/12/19/retro-gaming-vulnerability-research-warcraft-2/
Bypassing Rate Limits via Race Conditions
https://www.youtube.com/watch?v=jzUJtW8rFRs
XSSRF : The Unholy Matrimony of XSS and SSRF
https://medium.com/@naumankh4n/xssrf-the-unholy-matrimony-of-xss-and-ssrf-89f7abfca5b3
MacMaster - MAC Address Changer
http://www.kitploit.com/2023/12/macmaster-mac-address-changer.html
Latest Nuclei Release v3.1.2!
https://github.com/projectdiscovery/nuclei/releases/tag/v3.1.2
One port can be a costly mistake | Attack The Rsync Service in a Private Program
https://medium.com/@sword0x00/one-port-can-be-a-costly-mistake-attack-the-rsync-service-in-a-private-program-cdbf9ecc650d
Google OAuth is broken (sort of) - Truffle Security
https://trufflesecurity.com/blog/google-oauth-is-broken-sort-of/
PII Disclosure Worth $750
https://vijetareigns.medium.com/pii-disclosure-worth-750-758b72e7e8ca
Bug Bounty Etiquette: Our Guide to Polite Hacking (Part Two)
https://blog.projectdiscovery.io/bug-bounty-etiquette-2-what-not-to-do/
Incident Response: Azure Log Analysis
https://www.youtube.com/watch?v=Eb-D0hTf5GQ
GitHub - dub-flow/sessionprobe: SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applications by taking a session token and checking access across a list of URLs, highlighting potential authorization issues.
https://github.com/dub-flow/sessionprobe
Business Logic Vulnerability: Payment bypass
https://medium.com/@vrushabhd/business-logic-vulnerability-payment-bypass-9335bdbdbdf6
Frida Labs: Series of challenges to learn Frida for Android
https://github.com/DERE-ad2001/Frida-Labs
REDACTED EP02: Hacking a Payment Processor (ft Rhynorater)
https://www.youtube.com/watch?v=Favxo01aK50
It’s not a Feature, It’s a Vulnerability
https://blog.solidsnail.com/posts/vscode-shell-integ-rce
GitHub - ax/apk.sh: apk.sh makes reverse engineering Android apps easier, automating some repetitive tasks like pulling, decoding, rebuilding and patching an APK.
https://github.com/ax/apk.sh
