π¨ New Batch Starting β August 2025 π¨
Brut Practical Web Penetration Testing (bPWP)
Weβre back with a fresh batch of our most in-demand training β Brut Practical Web Penetration Testing β starting this August!
π Learn the art of Web Hacking with:
β 100% Practical Sessions
β Bug Bounty Approach
β Real-World Lab Scenarios
β Lifetime Community Access
β Beginner-Friendly with Advanced Techniques
π» Ideal for aspiring bug bounty hunters, cybersecurity students, and VAPT professionals.
π Limited Seats β Enroll Now
π https://brutsec.com/bPWP
π© For Queries:
Telegram: @wtf_brut
WhatsApp: https://wa.link/brutsecurity |
Email: [email protected]
Brut Practical Web Penetration Testing (bPWP)
Weβre back with a fresh batch of our most in-demand training β Brut Practical Web Penetration Testing β starting this August!
π Learn the art of Web Hacking with:
β 100% Practical Sessions
β Bug Bounty Approach
β Real-World Lab Scenarios
β Lifetime Community Access
β Beginner-Friendly with Advanced Techniques
π» Ideal for aspiring bug bounty hunters, cybersecurity students, and VAPT professionals.
π Limited Seats β Enroll Now
π https://brutsec.com/bPWP
π© For Queries:
Telegram: @wtf_brut
WhatsApp: https://wa.link/brutsecurity |
+918945971332Email: [email protected]
β€9π’2π1
β‘AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories.
π¨https://github.com/AggressiveUser/AllForOne
π¨https://github.com/AggressiveUser/AllForOne
π₯19β€4π3
π»SpoofProof helps security professionals detect email domain spoofing vulnerabilities and validate DMARC, SPF, and DKIM configurations, making email security assessments seamless and efficient.
βExtension Name: SpoofProof - Domain Spoofing Validation
π BApp Store: https://portswigger.net/bappstore/a321360c6e114b3dab6f2c67d68c241a
π» Source Code: https://github.com/portswigger/spoofproof
βExtension Name: SpoofProof - Domain Spoofing Validation
π BApp Store: https://portswigger.net/bappstore/a321360c6e114b3dab6f2c67d68c241a
π» Source Code: https://github.com/portswigger/spoofproof
β€13π₯5
β‘BrutDroid 2.0 is a powerful, Windows-optimized toolkit designed specifically for Android Studio, streamlining the setup of a mobile penetration testing lab. Built to make Android pentesting effortless, it automates emulator creation, rooting, Frida server setup, and Burp Suite certificate installation. With a vibrant new UI and support for custom Frida scripts, BrutDroid empowers security researchers to focus on testing, not setup. Linux support is coming soon!
β https://github.com/Brut-Security/BrutDroid
βDon't forget to leave a star :)
β https://github.com/Brut-Security/BrutDroid
βDon't forget to leave a star :)
β€31π₯2
Full Walkthrough - https://youtu.be/bDxgilaYcE8
YouTube
BrutDroid 2.0 - Automate Android Studio Pentesting with Frida & Burp Suite
π Unleash the power of BrutDroid 2.0, the ultimate Android Studio Pentest Automator! Built for Windows and optimized for Android Studio, this tool automates emulator rooting, Frida server setup, and Burp Suite certificate installation, making mobile pentestingβ¦
β€16π₯1
We are on headlines. Thanks Everyone!
https://esgeeks.com/brutdroid-kit-automatizacion-emuladores-android/
https://esgeeks.com/brutdroid-kit-automatizacion-emuladores-android/
EsGeeks
BrutDroid: Kit de AutomatizaciΓ³n para Emuladores Android Β» EsGeeks
Automatiza pruebas de seguridad en emuladores Android con BrutDroid. Rootea, configura Frida y Burp. Ideal para pentesters y red teamers.
π«‘7β€6
Forwarded from Brut Security 2.0
Asset inventory of over 800 public bug bounty programs.
https://github.com/trickest/inventory
β€8π6
CVE-2025-53770: Deserialization of Untrusted Data in Microsoft SharePoint, 9.8 rating π₯
The most high-profile recent vulnerability allows an attacker to perform RCE on a Microsoft SharePoint server. Hackers are already exploiting it, so be careful!
Search at Netlas.io:
π Link: https://nt.ls/Ix8gb
π Dork: http.headers.microsoftsharepointteamservices:*
Vendor's advisory: https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
The most high-profile recent vulnerability allows an attacker to perform RCE on a Microsoft SharePoint server. Hackers are already exploiting it, so be careful!
Search at Netlas.io:
π Link: https://nt.ls/Ix8gb
π Dork: http.headers.microsoftsharepointteamservices:*
Vendor's advisory: https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
π₯11β€3
Mapperplus is an advanced tool by @silentgh00st that helps find and extract JavaScript sourcemap files from JS files using a headless browser!π€
https://github.com/midoxnet/mapperplus
https://github.com/midoxnet/mapperplus
GitHub
GitHub - midoxnet/mapperplus: MapperPlus facilitates the extraction of source code from a collection of targets that have publiclyβ¦
MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files. - midoxnet/mapperplus
β€10
Forwarded from Brut Security
π¨ New Batch Starting β August 2025 π¨
Brut Practical Web Penetration Testing (bPWP)
Weβre back with a fresh batch of our most in-demand training β Brut Practical Web Penetration Testing β starting this August!
π Learn the art of Web Hacking with:
β 100% Practical Sessions
β Bug Bounty Approach
β Real-World Lab Scenarios
β Lifetime Community Access
β Beginner-Friendly with Advanced Techniques
π» Ideal for aspiring bug bounty hunters, cybersecurity students, and VAPT professionals.
π Limited Seats β Enroll Now
π https://brutsec.com/bPWP
π© For Queries:
Telegram: @wtf_brut
WhatsApp: https://wa.link/brutsecurity |
Email: [email protected]
Brut Practical Web Penetration Testing (bPWP)
Weβre back with a fresh batch of our most in-demand training β Brut Practical Web Penetration Testing β starting this August!
π Learn the art of Web Hacking with:
β 100% Practical Sessions
β Bug Bounty Approach
β Real-World Lab Scenarios
β Lifetime Community Access
β Beginner-Friendly with Advanced Techniques
π» Ideal for aspiring bug bounty hunters, cybersecurity students, and VAPT professionals.
π Limited Seats β Enroll Now
π https://brutsec.com/bPWP
π© For Queries:
Telegram: @wtf_brut
WhatsApp: https://wa.link/brutsecurity |
+918945971332Email: [email protected]
β€5
βChrome and Firefox extension that lists Amazon S3 Buckets while browsing
π¨Features:
Filters S3Buckets
Extract ACL permissions
Download recorded buckets
Manage recorded buckets
Tab-specific bucket recording
β https://github.com/AlecBlance/S3BucketList
π¨Features:
Filters S3Buckets
Extract ACL permissions
Download recorded buckets
Manage recorded buckets
Tab-specific bucket recording
β https://github.com/AlecBlance/S3BucketList
π₯16β€4
βPACU - The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
β https://github.com/RhinoSecurityLabs/pacu
β https://github.com/RhinoSecurityLabs/pacu
β€13π₯8
βCYFARE-Reconner - Advanced Link Reconnaissance Extension For Firefox
β¨ Features
Deep Discovery
Secret Detection
URL Analysis
β https://github.com/CYFARE/CYFARE-Reconner
β¨ Features
Deep Discovery
Secret Detection
URL Analysis
β https://github.com/CYFARE/CYFARE-Reconner
β€12π2