Brut Security
14.6K subscribers
909 photos
73 videos
287 files
966 links
βœ…Queries: @wtf_brut
πŸ›ƒWhatsApp: wa.link/brutsecurity
🈴Training: brutsec.com
πŸ“¨E-mail: [email protected]
Download Telegram
Happy Diwali to the Brut Security Community!

Wishing everyone a joyful and prosperous Diwali! May this festival of lights bring happiness, success, and new learning opportunities to all.

Whether you’re celebrating or just enjoying the festive spirit, let's continue to shine brightly together as a global community. Here’s to knowledge, growth, and unity!

Stay safe, stay inspired, and Happy Diwali! πŸͺ”
1❀15πŸ‘2
CVE-2024-50550: Privilege Escalation in LiteSpeed Cache WP Plugin, 8.1 rating πŸ”₯

Weak security hash verification vulnerability allows an attacker to gain administrative privileges.

Search at Netlas.io:
πŸ‘‰ Link: https://nt.ls/A60iV
πŸ‘‰ Dork: http.body:"plugins/litespeed-cache"

Read more: https://patchstack.com/articles/rare-case-of-privilege-escalation-patched-in-litespeed-cache-plugin/
πŸ‘3
Best Motivation Tip Ever
1❀25πŸ‘2πŸ”₯1
Brut Security
Best Motivation Tip Ever
But Our Bro is Killing It πŸ˜‚πŸ˜‚ Happy Diwali and πŸŽƒ
πŸ—Ώ12πŸ”₯5πŸ‘1🐳1
CVE-2024-49768: Race Condition in Waitress Python server, 9.1 rating πŸ”₯

Due to an error, the server can process a request even if the connection should have been closed.

Search at Netlas.io:
πŸ‘‰ Link: https://nt.ls/VYS9t
πŸ‘‰ Dork: http.headers.server:"waitress"

Vendor's advisory: https://github.com/Pylons/waitress/security/advisories/GHSA-9298-4cf8-g4wj
πŸ‘2πŸ—Ώ2
Setup and host your own blind XSS and SSRF testing tool for free https://github.com/Rahim7X/Argus.git
2πŸ”₯9πŸ‘2
πŸ—Ώ18πŸ”₯7🐳2❀1
πŸ—‘οΈ List of Websites Giving Free RDP/VPS πŸ–₯️

πŸ”Ή
sadd.io 🌐
πŸ”Έ
vpswala.org πŸš€
πŸ”Ή
ihor.ru πŸ’»
πŸ”Έ
gratisvps.net 🌍
πŸ”Ή
ionos.com βš™οΈ
πŸ”Έ
vultr.com ☁️
πŸ”Ή
skysilk.com 🌈
πŸ”Έ
yellowcircle.net πŸ”†
πŸ”Ή
apponfly.com/en πŸ“²
πŸ”Έ
cloudsigma.com πŸ”’
πŸ”Ή
ezywatch.com/freevps πŸ•ΉοΈ
πŸ”Έ
digitalocean.com 🐳
πŸ”Ή
ctl.io/free-trial πŸ”—
πŸ”Έ
developer.rackspace.com πŸ› οΈ
πŸ”Ή
my.letscloud.io/sign-up ✨
πŸ”Έ
ohosti.com/vpshosting.php πŸ”‹
πŸ”Ή
neuprime.com/l_vds3.php πŸ–₯️

πŸ”” Note: Some websites may require πŸ’³ credit card verification for trial access.
πŸ‘13
Find sensitive files using Wayback

waybackurls 123.com | grep - -color -E "1.xls | \\.tar.gz | \\.bak | \\.xml | \\.xlsx | \\.json | \\.rar | \\.pdf | \\.sql | \\.doc | \\.docx | \\.pptx | \\.txt | \\.zip | \\.tgz | \\.7z"


#bugbountytip #bugbounty #bugbountytips
1πŸ‘13❀4πŸ”₯3
a XSS payload with Alert Obfuscation, for bypass Regex filter

<img src="X" onerror=top[8680439..toString(30)](1337)>

<script>top[8680439..toString(30)](1337)</script>


#infosec #cybersec #bugbountytip
❀11πŸ‘6
Reduce Noise in Burp Suite with This Simple Trick! πŸ”₯

πŸ’‘ Just add the following patterns in Burp Suite under Proxy > Options > TLS Pass Through:


.*\.google\.com

.*\.gstatic\.com

.*\.googleapis\.com

.*\.pki\.goog

.*\.mozilla\..*

If you have any other filters to do share, drop it on comments!
1❀15πŸ‘9
πŸ”–Search for leaked Api keys on πŸ“±github

⬇️Azure open AI
AZURE_OPENAI_API_KEY /[a-f0-9]{32}$/


⬇️Jira token
/ATATT3[a-zA-Z0-9_\-+=]{184,195}$/


#CyberSecurity #BugBounty #infosec #BugBountyTools #pentest #bugbountytips
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ‘4❀1
🐳10
❀6πŸ‘1
Check for Subdomain Takeover Vulnerabilities

This enumerates subdomains and checks if they resolve. Subdomains that return NXDOMAIN may be vulnerable to takeover if they point to external services.

subfinder -d target.com -silent | while read sub; do host $sub; done | grep "NXDOMAIN"


Replace nasa.gov with your target.
πŸ‘12πŸ—Ώ6
β˜„οΈ Level Up Your Hacking Skills with Hack The Box Pro Labs! β˜„οΈ

Hey everyone!
πŸ”₯ If you're looking to take your hacking journey to the next level, Hack The Box just expanded its Pro Labs with 8 new Mini Pro Labs! These advanced labs offer realistic, enterprise-level challenges that dive deep into red teaming, network exploitation, and more.

πŸ’₯ And here’s the best part – you can now get 25% off the Pro Labs Bundle annual subscription until the end of November! Just use my affiliate link to sign up and support the channel: https://hacktheboxltd.sjv.io/YRDZKJ

βœ”οΈ Why go Pro?
- Access challenging, real-world environments to hone your skills.- Tackle new labs like Odyssey and Ascension as they roll out.
- Join a community of dedicated hackers pushing their skills to new heights.

πŸ–₯ Get your Pro Labs Bundle now and make the most of this limited-time discount! ✏️ Sign Up Here

Let’s hack and learn together!
πŸ”₯β–ΆοΈπŸ“Œ #HackTheBox #ProLabs #Cybersecurity
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ‘3❀2πŸ”₯1
β˜„οΈBug Bounty Tip: Finding Confidential Documents Fastβ˜„οΈ

1.Use Katana to scan for document URLs:
katana -u subdomainsList -em pdf,docx | tee endpointsPDF_DOC

2. Filter for potentially unredacted files:
grep -i 'redacted.*\.pdf$' endpointsPDF_DOC | sed -E 's/[-_]?redacted//gi' | sort -u | httpx -mc 200 -sc


This script finds document URLs with "redacted" in the name, strips it out, and checks if the unredacted version is accessible.

Admins often leave these unredacted files online by mistake, making them a high-medium (P3) severity finding for bug bounty programs.
Please open Telegram to view this post
VIEW IN TELEGRAM
1❀14πŸ‘5
🚨CVE-2024-51482: A 10/10 Severity Vulnerability Exposes ZoneMinder’s SQL Databases

πŸ‘‡Dorks
HUNTER:/product.name="ZoneMinder"
SHODAN: http.favicon.hash:-1218152116
FOFA: app="ZoneMinder"

πŸ“°Refer: https://securityonline.info/zoneminders-cve-2024-51482-a-10-10-severity-vulnerability-exposes-sql-databases/

#ZoneMinder #SQL #hunterhow #infosec #infosecurity #OSINT #Vulnerability
2πŸ‘7❀2
If you’re new to malware development, this playlist is a solid introduction! It covers:
β€’ Native API
β€’ A quick refresher on processes, threads, and handles
β€’ Syscalls

Check it out here:
YouTube Playlist
πŸ”₯9