bugbountygroup | Unsorted

Telegram-канал bugbountygroup - Bug bounty chat

3186

Talk and help about bugbounty

Subscribe to a channel

Bug bounty chat

I am also interested to know

Читать полностью…

Bug bounty chat

after downloading all the files, make sure you analyze them)

Читать полностью…

Bug bounty chat

Hy everyone , I found a .git file on one domain but I don't know how to exploit it . Anyone please help

Читать полностью…

Bug bounty chat

Try to check if there are on linkedin to enumerate more on mail

Читать полностью…

Bug bounty chat

What are the techniques and tips to find the the real Ip

Читать полностью…

Bug bounty chat

Hello
Anyone interested in OSCP training program ?

Читать полностью…

Bug bounty chat

wordlists.assetnote.io
SecLists

Читать полностью…

Bug bounty chat

Which one is the best tools for a directory brute forcing

Читать полностью…

Bug bounty chat

ANY ONE KNOW HOW TO FIX IT

Читать полностью…

Bug bounty chat

Hey am going through the course of Rana khalil and I’ve one doubt the sql injection in which she teach finding column, retrieving data from other tables

These things works in real life scenarios or any other ways to get this work in real life scenario


Anyone can help please?

Читать полностью…

Bug bounty chat

did you check in optional directory?

like /opt/dirsearch

Читать полностью…

Bug bounty chat

Any good tutorial on CBC bit flipping

Читать полностью…

Bug bounty chat

Always keep HIDING THE TRUTH

Читать полностью…

Bug bounty chat

Try adding ' see if it does anything different

Читать полностью…

Bug bounty chat

I am pentesting a website
And it have a login page for workers login
If we type any email id not belongs to its database it will throw an error saying email id not recognised
And it only have a input box to enter email address.and a submit button

And it have a hidden password field
A parameter is passing in post request also named "hidden_pw"

Is any way to expolit

I have tried email ennumeration but it has rate limit implimented .any one help me to understand the purpose of this parameter

Читать полностью…

Bug bounty chat

Ohk thanks will try this

Читать полностью…

Bug bounty chat

There's a high chance you'll get sensitive files

Читать полностью…

Bug bounty chat

https://youtu.be/77YG4xT6j8w

Читать полностью…

Bug bounty chat

https://youtu.be/M0AGrUqL7hk?si=6xDvNlyLvEApFFlC

Читать полностью…

Bug bounty chat

Sometimes I find the real IP but my payload won't execute

Читать полностью…

Bug bounty chat

A lot of times it's false positive

Читать полностью…

Bug bounty chat

Thanks for your reply I need another help could you please suggest me the wordlist for directory and subdomain brute forcing

Читать полностью…

Bug bounty chat

Hi my friends

Has anyone explored the nuclei template? what is the password?

graphite-browser-default-credential

Читать полностью…

Bug bounty chat

As far as I know, this could possibly work good for outdated and poorly maintained systems aka legacy systems (eg: rare E-Commerce site which is built on older platform and older CMS)

Читать полностью…

Bug bounty chat

I will see , thank you 🌹.

Читать полностью…

Bug bounty chat

In Google Cloud Where is the main "Wordlist" of DirSearch !!?

It's not in share or lib or etc .!

Читать полностью…

Bug bounty chat

Any idea on how to exploit CVE-2022–42889?

Читать полностью…

Bug bounty chat

Don't just end the test when u got 200 Ok look for any difference in the response time or application behavior and try to imagine what is happening on the back-end

Читать полностью…

Bug bounty chat

Did you try SQL injection?

Читать полностью…

Bug bounty chat

Anyone want tryhackme voucher or hackthebox DM me

Читать полностью…
Subscribe to a channel