Pentester world 2.0
Kanalga Telegramβda oβtish
β οΈ DISCLAIMER :- ππ·πΈπ π²π·π°π½π½π΄π» π³πΎπ΄π π½πΎπ πΏππΎπΌπΎππ΄ π°π½π πΈπ»π»π΄πΆπ°π» π°π²ππΈπ πΈππΈπ΄π , πΈππ πΉπππ π΅πΎπ π΅ππ½ π°π½π³ π΄π³ππ²π°ππΈπΎπ½π°π» πΏπππΏπΎππ΄ π Welcome pentester world in this group you
Ko'proq ko'rsatishMamlakat belgilanmaganTexnologiyalar & Aralashmalar75 932
596
Obunachilar
+724 soatlar
+407 kun
+14430 kun
Postlar arxiv
Callisto - An Intelligent Binary Vulnerability Analysis Tool
https://github.com/JetP1ane/Callisto
Admin Panel Bypass without the credentials
https://medium.com/@sayim0x3105/admin-panel-bypass-without-the-credentials-e867eee7c81b
DNS Analyzer - Finding DNS vulnerabilities with Burp Suite
https://sec-consult.com/blog/detail/dns-analyzer-finding-dns-vulnerabilities-with-burp-suite/
Exploiting Exposed Tokens and API Keys: Edition 2023
https://adityashende17.medium.com/exploiting-exposed-tokens-and-api-keys-edition-2023-e894a3af7dcd
ParaForge is a simple Burp Suite extension to extract the paramters and endpoints from the request to create custom wordlist for fuzzing and enumeration.
https://github.com/Anof-cyber/ParaForge
CVE-2023-26258 β Remote Code Execution in ArcServe UDP Backup
https://www.mdsec.co.uk/2023/06/cve-2023-26258-remote-code-execution-in-arcserve-udp-backup/
Find authentication (authn) and authorization (authz) security bugs in web application routes.
https://github.com/mschwager/route-detect
Reversing Citrix Gateway for XSS
https://blog.assetnote.io/2023/06/29/binary-reversing-citrix-xss/
Advisory: Citrix Gateway Open Redirect and XSS (CVE-2023-24488)
https://blog.assetnote.io/2023/06/29/citrix-xss-advisory/
Gmail client-side encryption: A deep dive
http://security.googleblog.com/2023/06/gmail-client-side-encryption-deep-dive.html
Find GraphQL API vulnerabilities, with Burp Suite Professional
https://portswigger.net/blog/find-graphql-api-vulnerabilities-with-burp-suite-professional
GraphQL Portswigger Challenges Writeups
https://axon-xerox.medium.com/graphql-portswigger-challenges-writeups-4ed15c832483
ππππΌπππππππππ₯
It is an open source OSINT framework that automatically collects information about every page you visit, creating a knowledge base that you can analyze with Jupyter Notebooks and an extensible set of web applications...
Link π:-
https://github.com/elehcimd/stratosphere
#osint #webint
π4π-ππ€π€π‘π¨ π²
Open source toolkit for scraping, OSINT and more
Link π:-
https://github.com/V1li/H4X-Tools
#osint #scraping
πΌππππππ πππππ π¦
A curated list of amazingly awesome open source intelligence tools and resources
Link π:-
https://github.com/r3p3r/jivoi-awesome-osint
#osint_resources
πππππππ π
Web scraping and finding usernames as automation scripts written in python
Link π:-
https://github.com/syamsv/Pyosint
#Osint #Search #Social_Media #username
πππ€πππππ§ππ£πππ§ π
It is an online tool that allows you to overlay images on locations and combine multiple maps into one. Very comfortably
Link π:-
https://www.georeferencer.com/
#geoint #geolocation_osint
ππππππ-πππΌππΎπππ πΏ
A custom Google search (to bypass some limitations on google and VPNs)
Link π:-
https://github.com/AssassinUKG/googleSearcher
#dorking #google_search
How a Visualization and Monitoring Platform Can Expose Your Organizationβs Data and File System to Attackers
https://hadess.io/grafana-attack-surface/
