Brut Security
14.8K subscribers
938 photos
73 videos
287 files
983 links
βœ…Queries: @wtf_brut
πŸ›ƒWhatsApp: wa.link/brutsecurity
🈴Training: brutsec.com
πŸ“¨E-mail: [email protected]
Download Telegram
Sometimes Excel files could contain PII leaks, so use this Google dork:
site:target\.com inurl:'xlsx'
OR
site:target\.com inurl:'xls'
❀18πŸ‘7πŸ”₯4
Bug_Bounty_Career.pdf
997.6 KB
πŸ”₯10πŸ‘2
Guide-CEH-Practical-Master.pdf
248.2 KB
πŸ”₯3πŸ‘1
Mastering Burp Suite Pro, 100% hands-on
πŸ‘8πŸ‘¨β€πŸ’»1
Brut Security pinned Deleted message
CyberSecurity_Roadmap.pdf
408.6 KB
❀2πŸ‘1πŸ”₯1
IOT_Security_Guide.pdf
3.1 MB
❀5πŸ”₯2πŸ‘1
A quick way to find "all" paths for Next.js websites:

console.log(__BUILD_MANIFEST.sortedPages)
πŸ”₯4πŸ‘3
Automating SSRF using Autorepeater πŸ”’

In this window of Auto-Repeater, we can specify some regex to find urls. In this case, I'll use this regex.

πŸ‘‰ https?:\/\/(www\.)?[-a-zA-Z0–9@:%._\+~#=]{1,256}\.[a-zA-Z0–9()]{1,6}\b([-a-zA-Z0–9()@:%_\+.~#?&//=]*)
πŸ‘9❀4πŸ”₯4