Brut Security
✅DM: @wtf_brut ✅For Ad: https://tlmtr.io/p/2flAsc 🛃WhatsApp: https://wa.link/brutsecurity 🈴Training: https://brutsecurity.com 📨Mail: info@brutsec.com
Ko'proq ko'rsatish📈 Telegram kanali Brut Security analitikasi
Brut Security (@brutsecurity) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 17 083 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 7 407-o'rinni va Hindiston mintaqasida 23 781-o'rinni egallagan.
📊 Auditoriya ko‘rsatkichlari va dinamika
невідомо sanasidan buyon loyiha tez o‘sib, 17 083 obunachiga ega bo‘ldi.
16 Sentabr, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 785 ga, so‘nggi 24 soatda esa 68 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.
- Tasdiqlash holati: Tasdiqlanmagan
- Jalb etish (ER): Auditoriya o‘rtacha 13.61% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 6.51% ini tashkil etuvchi reaksiyalarni to‘playdi.
- Post qamrovi: Har bir post o‘rtacha 2 315 marta ko‘riladi; birinchi sutkada odatda 1 108 ta ko‘rish yig‘iladi.
- Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 6 ta reaksiya keladi.
- Tematik yo‘nalishlar: Kontent hunter, bounty, darkshadow, bypass, hex kabi asosiy mavzularga jamlangan.
📝 Tavsif va kontent siyosati
Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
“✅DM: @wtf_brut
✅For Ad: https://tlmtr.io/p/2flAsc
🛃WhatsApp: https://wa.link/brutsecurity
🈴Training: https://brutsecurity.com
📨Mail: info@brutsec.com”
Yuqori yangilanish chastotasi (oxirgi ma’lumot 17 Sentabr, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.
Ma'lumot yuklanmoqda...
| Sana | Obunachilarni jalb qilish | Esdaliklar | Kanallar | |
| 17 Sentabr | +51 | |||
| 16 Sentabr | +68 | |||
| 15 Sentabr | +99 | |||
| 14 Sentabr | +88 | |||
| 13 Sentabr | +41 | |||
| 12 Sentabr | +32 | |||
| 11 Sentabr | +35 | |||
| 10 Sentabr | +143 | |||
| 09 Sentabr | +63 | |||
| 08 Sentabr | +152 | |||
| 07 Sentabr | +43 | |||
| 06 Sentabr | +6 | |||
| 05 Sentabr | +7 | |||
| 04 Sentabr | +1 | |||
| 03 Sentabr | 0 | |||
| 02 Sentabr | 0 | |||
| 01 Sentabr | 0 |
a → á / other Unicode variants
The interesting case is when:
Database: treats the values as equal
Application: identifies the victim account
SMTP: treats them as different addresses
Example:
victim@gmail.com
victim@gmáil.com
If the application finds the victim's account but sends the password-reset email to the attacker-controlled Unicode address, you may have an account-collision / account-takeover vulnerability.
📣**Test normalization at every stage:**
Input → Validation → Database → Token generation → Email delivery
#BugBounty #IDNHomograph #Punycode #WebSecurity| 2 | 👀On Reaching 17k subscriber giving away 10 each free coupons!
🔔Bug Bounty Guide 2026 https://topmate.io/saumadip/2187710?coupon_code=awaw
🔔Zero To Mobile Pentester https://topmate.io/saumadip/2272794?coupon_code=sada
🔔Brut Offensive Playbook v1 https://topmate.io/saumadip/2054509?coupon_code=dada | 645 |
| 3 | 17K+ strong. One community. One mission. ⚡
Thank you for being part of Brut Security.
Learn. Practice. Hack. Grow.
Here’s to the next milestone. 🖤
#BrutSecurity #17K #CyberSecurity #EthicalHacking | 672 |
| 4 | Matn yo'q... | 1 419 |
| 5 | Matn yo'q... | 1 608 |
| 6 | https://t.me/boost/brutsecurity | 1 713 |
| 7 | APKLeaks
Scanning APK file for URIs, endpoints & secrets.
https://github.com/dwisiswant0/apkleaks
#pentesting #infosec #bugbounty | 1 760 |
| 8 | 5️⃣FREE COUPONS
https://topmate.io/saumadip/2187710?coupon_code=awex | 1 828 |
| 9 | 🚨All about bug bounty
🔥https://github.com/daffainfo/AllAboutBugBounty | 1 705 |
| 10 | 🚨Bug Bounty Tip: Test Newline Injection in JSON Parameters
When testing API endpoints, don’t assume parameters like email accept only a single value.
For password-reset functionality, try newline injection:
{
"action": "reset-password",
"email": "accA@mail.com\naccB@mail.com"
}
If the backend fails to properly validate or sanitize the parameter, it may interpret both email addresses as separate recipients and send the password-reset link to both accounts.
This can indicate a parameter parsing / input validation flaw and, depending on the application logic and impact, potentially lead to account-related security issues.
Things to test:
• \n and \r\n separators
• Multiple values in the same parameter
• JSON arrays vs. strings
• Duplicate JSON keys
• URL-encoded newline characters
• Different API content types
Always test only on systems you’re authorized to assess.
#BugBounty #BugBountyTips #API #APISecurity #WebSecurity #Pentesting #CyberSecurity | 2 438 |
| 11 | 5 Free Coupons for Zero To Mobile Pentester | 1 778 |
| 12 | Penetration-List
A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. Includes payloads, dorks, fuzzing materials, and offers in-depth theory sections. Visit our Medium profile for more information.
https://github.com/AlbusSec/Penetration-List
#cybersecurity #infosec #pentesting #redteam #bugbounty | 2 376 |
| 13 | I'll be selling a new exploit here soon! 🔥
For sale only! 🤑
Affecting over +970k websites 🎯
DM @Mm_fit
Channel: https://t.me/cve0day | 1 733 |
| 14 | 🚨Google Bug Bounty Dorks Generator
- juicy extensions
-open redirects
- code leaks
- cloud storages
- file upload endpoints and more. | 2 250 |
| 15 | 🚨 CVE-2026-18963 - Keycloak < 26.7.2 - Unauthenticated Account Takeover via Reset-Credentials Bypass
Nuclei Template - https://github.com/projectdiscovery/nuclei-templates/pull/16995/changes
Reference: https://github.com/keycloak/keycloak/issues/51833
#hackwithautomation #bugbounty #keycloak | 2 439 |
| 16 | Matn yo'q... | 2 444 |
| 17 | 🚀 Level up your hacking skills on Hack The Box!
Get instant access to live, hands-on cybersecurity challenges. Hack vulnerable virtual machines, solve realistic security puzzles, and practice your skills at your own pace. Perfect for beginners and pros alike. | 2 701 |
| 18 | CVE-2026-67401: SQL Injection Vulnerability in cPanel, 9.9 Rating 🔥
A vulnerability in cPanel's EmailTrack component allows an authenticated attacker with mail-related privileges to create arbitrary files on the server via SQL injection. This may lead to code execution as the root user, giving the attacker full control of the server.
Search at Netlas.io:
👉 Link: https://nt.ls/dIEpd
👉 Dork: http.title:cpanel OR http.headers.set_cookie:"cprelogin" OR http.headers.set_cookie:"cpsession"
Vendor's advisory:
https://support.cpanel.net/hc/en-us/articles/43187903921559-Security-CVE-2026-67401-SQL-Injection-Vulnerability-in-cPanel-s-EmailTrack-Functionality-September-8-2026 | 2 434 |
| 19 | 5 free coupons https://topmate.io/saumadip/2272794?coupon_code=tokitoki | 2 442 |
| 20 | Search for all leaked keys/secrets using one regex!
regex: https://gist.github.com/h4x0r-dz/be69c7533075ab0d3f0c9b97f7c93a59
#BugBounty #bugbountytip | 2 891 |
