Hacking Vidhya
Kanalga Telegramāda oātish
We Talk about : Hacking , CTFs , Pentesting , Red & Blue Team etc. Not Allowed: Selling, Carding, Cracking Crypto.
Ko'proq ko'rsatish385
Obunachilar
Ma'lumot yo'q24 soatlar
+37 kun
+2230 kun
Postlar arxiv
{{end}} {{template \"T1\"}}\n\nš This works because:\nš Go templates treat {{define}} and {{template}} as dynamic blocks.\nā”ļø You can inject arbitrary template logic including script tags.\nšø Useful in misconfigured custom template rendering engines.\n\nš” Why it matters:\nStored XSS via SSTI can lead to session hijacking, data exfiltration, or even account takeover.","datePublished":"2026-04-12T07:11:02Z","dateModified":"2026-04-12T07:11:02Z","author":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"publisher":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":87},{"@type":"InteractionCounter","interactionType":"https://schema.org/LikeAction","userInteractionCount":1},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":1}]}},{"@type":"ListItem","position":18,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/980","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/980","mainEntityOfPage":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/980","headline":"come vc anyone know about facebook ads https://t.me/Hacking_Vidhya?livestream=64c2d81213eaf33140","articleBody":"come vc anyone know about facebook ads \n\n\n\nhttps://t.me/Hacking_Vidhya?livestream=64c2d81213eaf33140","datePublished":"2026-04-11T16:54:16Z","dateModified":"2026-04-11T16:54:16Z","author":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"publisher":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":85}]}},{"@type":"ListItem","position":19,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/978","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/978","mainEntityOfPage":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/978","headline":"Next.js + WAF Bypass + SXSS via Cookie Reordering Attack Summary: Youāre dealing with: š A Next.js app Two reā¦","articleBody":"Next.js + WAF Bypass + SXSS via Cookie Reordering\n\nAttack Summary:\nYouāre dealing with:\n\nš A Next.js app\n\nTwo reflected cookies in pageProps\nA WAF blocking your initial attempts\n\nš§Ŗ Observations:\nš§Ø Single payload ā 403 Forbidden\n\nš§Ø Split payload across two cookies ā Still 403\n\nš§Ø Reorder the cookie fragments ā 200 OK ā
\n\nReversing the order bypasses the WAF inspection logic \n\nNow chain it with:\n\nCVE-2024-46982 (Elixir Stale SSR template injection)\n https://github.com/masch1/CVE-2024-46982\n\nā”ļø This allows CP (Client-side Prototype Pollution) ā Stored XSS (SXSS) in Next.js apps.\n\nExploit Flow:\nĀ Ā Ā š Bypass WAF via cookie reordering\nĀ Ā Ā š Inject CP payload using stale Elixir template vuln\nĀ Ā Ā š Achieve SXSS across all visiting users!\n\nMitigation Tips:\nĀ Ā Ā ā
Sanitize cookie inputs server-side\nĀ Ā Ā ā
Audit template engines for unsafe parsing\nĀ Ā Ā ā
Patch Elixir if in stack (see CVE-2024-46982)\n\n#bugbounty #nextjs #xss #sxss #wafbypass #infosec #cybersecurity #cve2024_46982","datePublished":"2026-04-11T07:11:02Z","dateModified":"2026-04-11T07:11:02Z","author":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"publisher":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":85},{"@type":"InteractionCounter","interactionType":"https://schema.org/LikeAction","userInteractionCount":1}]}},{"@type":"ListItem","position":20,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/977","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/977","mainEntityOfPage":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya/posts/977","headline":"āļø Top 15 Vulnerability Scanners š¹Nuclei - https://github.com/projectdiscovery/nuclei š¹Sn1per - https://githuā¦","articleBody":"āļø Top 15 Vulnerability Scanners\n\nš¹Nuclei - https://github.com/projectdiscovery/nuclei\nš¹Sn1per - https://github.com/1N3/Sn1per\nš¹Metasploit - Framework - https://github.com/rapid7/metasploit-framework\nš¹Nikto - https://github.com/sullo/nikto\nš¹Arachni - https://github.com/Arachni/arachni\nš¹Jaeles - https://github.com/jaeles-project/jaeles\nš¹Retire.js - https://github.com/retirejs/retire.js/\nš¹Osmedeus - https://github.com/j3ssie/osmedeus\nš¹Getsploit - https://github.com/vulnersCom/getsploit\nš¹Flan - https://github.com/google-research/FLAN\nš¹Findsploit - https://github.com/1N3/findsploit\nš¹Blackwidow - https://github.com/1N3/BlackWidow\nš¹Backslash-powered-scanner - https://github.com/PortSwigger/backslash-powered-scanner\nš¹Eagle - https://github.com/BitTheByte/Eagle\nš¹Cariddi - https://github.com/edoardottt/cariddi\n\nš #infosec #cybersecurity #pentesting #security","datePublished":"2026-04-11T04:48:16Z","dateModified":"2026-04-11T04:48:16Z","author":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"publisher":{"@type":"Organization","name":"Hacking Vidhya","url":"https://telemetr.io/uz/channels/2519648356-hacking_vidhya","image":"https://img.tlmtr.io/c/2KwbDC/6105187671170205456?ty=x"},"image":["https://n3.tlmtr.cc/p/_e5a1B6s-cirYh276j7Ppak4C7QefX6cmcffKweZgYfQ?ty=l"],"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":96},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":5}]}}]}



#MLSecOps
#Whitepaper
"System Card: Claude Mythos Preview", April 8 2026.
// Claude Mythos Preview - new LLM from Anthropic. In particular, it has demonstrated powerful cybersecurity skills, which can be used for both defensive purposes (finding and fixing vulnerabilities in software code) and offensive purposes (designing sophisticated ways to exploit those vulnerabilities)
https://github.com/BlackSnufkin/BYOVD
BYOVD is a collection of PoCs demonstrating how vulnerable drivers can be exploited to disable AV/EDR solutions.
Most beginners donāt fail at bug bounty because itās ātoo hard.ā
They fail because they jump between tools, watch random tutorials, and call that learning.
No structure = no results.
You donāt need more tools. You need a path.
Something that shows: what to learn ā what to practice ā how to actually find bugs.
Thatās where these come in:
* https://resources.codelivly.com/product/bug-bounty-beginner-editions/
* https://resources.codelivly.com/product/the-ultimate-bug-bounty-starter-pack/
Theyāre not theory dumps. Itās the stuff you actually useārecon, XSS, SQLi, reportingāstep by step.
If youāre tired of ālearningā but not earning, this might fix that.
Check it out if it clicks.
RLSpoofer: A Lightweight Evaluator for LLM Watermark Spoofing Resilience, Apr. 2026.
MarkLLM An Open-Source Toolkit for LLM Watermarking
PMark Towards Robust and Distortion-free Semantic-level Watermarking With Multiple Channel Constraints
Open-Source Toolkit for LLM Watermarking
#offensivesecurity #tools #llm #mlsecops
Telegram OSINT (part of OSINT Master Toolkit by zhetikal77)
Guides
Tools lists
Search engines
Channels directories
https://cyberz7.github.io/Ghostint-Tools/
#socmint
Fuzz for directories without killing the host:
cat subdomains.txt | while read -r host;do bash http://fuzy,sh $host;done
#bugbounty #bugbountytips #cybersecurity #bugbountytip
š New Tool Drop: CypherBypass403 šMost people stop at 403 Forbidden ā We go deeper š š https://github.com/CypherBinu/CypherBypass403 ā” Automate 403 bypass ā” Find hidden endpoints š§Ŗ Includes practice lab Perfect for Bug Bounty hunters & pentesters š„ š¦ Follow on X for more: https://x.com/CypherBinu #BugBounty #CyberSecurity #EthicalHacking #Pentesting #InfoSec
@Hacktsuki @HacktsukiCommunity
š„ SSTI in Go Templates = Stored XSS?
If you come across SSTI (Server-Side Template Injection) in a Go (Golang) application, donāt stop at just proving injection ā go for impact!
Try this payload to bypass HTML sanitization and achieve XSS :
{{define "T1"}}{{end}} {{template "T1"}}
š This works because:
š Go templates treat {{define}} and {{template}} as dynamic blocks.
ā”ļø You can inject arbitrary template logic including script tags.
šø Useful in misconfigured custom template rendering engines.
š” Why it matters:
Stored XSS via SSTI can lead to session hijacking, data exfiltration, or even account takeover.
come vc anyone know about facebook ads
https://t.me/Hacking_Vidhya?livestream=64c2d81213eaf33140
Next.js + WAF Bypass + SXSS via Cookie Reordering
Attack Summary:
Youāre dealing with:
š A Next.js app
Two reflected cookies in pageProps
A WAF blocking your initial attempts
š§Ŗ Observations:
š§Ø Single payload ā 403 Forbidden
š§Ø Split payload across two cookies ā Still 403
š§Ø Reorder the cookie fragments ā 200 OK ā
Reversing the order bypasses the WAF inspection logic
Now chain it with:
CVE-2024-46982 (Elixir Stale SSR template injection)
https://github.com/masch1/CVE-2024-46982
ā”ļø This allows CP (Client-side Prototype Pollution) ā Stored XSS (SXSS) in Next.js apps.
Exploit Flow:
š Bypass WAF via cookie reordering
š Inject CP payload using stale Elixir template vuln
š Achieve SXSS across all visiting users!
Mitigation Tips:
ā
Sanitize cookie inputs server-side
ā
Audit template engines for unsafe parsing
ā
Patch Elixir if in stack (see CVE-2024-46982)
#bugbounty #nextjs #xss #sxss #wafbypass #infosec #cybersecurity #cve2024_46982
āļø Top 15 Vulnerability Scanners
š¹Nuclei - https://github.com/projectdiscovery/nuclei
š¹Sn1per - https://github.com/1N3/Sn1per
š¹Metasploit - Framework - https://github.com/rapid7/metasploit-framework
š¹Nikto - https://github.com/sullo/nikto
š¹Arachni - https://github.com/Arachni/arachni
š¹Jaeles - https://github.com/jaeles-project/jaeles
š¹Retire.js - https://github.com/retirejs/retire.js/
š¹Osmedeus - https://github.com/j3ssie/osmedeus
š¹Getsploit - https://github.com/vulnersCom/getsploit
š¹Flan - https://github.com/google-research/FLAN
š¹Findsploit - https://github.com/1N3/findsploit
š¹Blackwidow - https://github.com/1N3/BlackWidow
š¹Backslash-powered-scanner - https://github.com/PortSwigger/backslash-powered-scanner
š¹Eagle - https://github.com/BitTheByte/Eagle
š¹Cariddi - https://github.com/edoardottt/cariddi
š #infosec #cybersecurity #pentesting #security
