Brut Security
14.6K subscribers
909 photos
73 videos
287 files
966 links
โœ…Queries: @wtf_brut
๐Ÿ›ƒWhatsApp: wa.link/brutsecurity
๐ŸˆดTraining: brutsec.com
๐Ÿ“จE-mail: [email protected]
Download Telegram
โค4๐Ÿ‘1๐Ÿ”ฅ1
Brut Security
Methods that no one tells u to find origin ip addresses!!!??? https://forums.cybershieldctf.com/search.php?action=results&sid=3e360b4b477968060184d73068b9f841 #bugbounty #bugbountytips
Usually CI CD integrations are not protected by wafs and reverse proxies, so if you find any small organization's gitlab, jenkin instance etc you'll often find configurations files (from wayback machine, previous commit too +a lot of ways) , they often leak some ip addresses
๐Ÿ”ฅ3โค2๐Ÿ‘1
โšก ffufai is an AI-powered wrapper for the popular web fuzzer ffuf. It automatically suggests file extensions for fuzzing based on the target URL and its headers, using either OpenAI's GPT or Claude AI models.

๐Ÿ”—
https://github.com/jthack/ffufai
๐Ÿ‘9
โค13๐Ÿ—ฟ4
New Beast Added ๐Ÿ˜ฎโ€๐Ÿ’จ
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ6๐Ÿ‘3๐Ÿ—ฟ3โค1
PHP have released new sunglasses ๐Ÿ˜Ž

php.net/sunglasses
๐Ÿ‘7
๐Ÿ‘9๐Ÿ”ฅ6๐Ÿ—ฟ2
๐Ÿ—ฟ9๐Ÿ‘5๐Ÿณ2
Forwarded from Netlas.io
๐Ÿ”ฅ Improved Interaction with Private Scanner ๐Ÿ”ฅ

Netlas 0.25.1 Update was published. IP/Domain information is now sourced from private scans if they are more relevant than general results. Check out the example in the picture! ๐Ÿ‘พ

๐Ÿ‘‰ Read about other changes: https://docs.netlas.io/changelog/
๐Ÿ‘2
โค10๐Ÿ‘1
Worlds fastest unlimited single and bulk subdomain finder! Use desktop!

https://cyfare.net/apps/subfind/
๐Ÿ”ฅ9
https://cspbypass.com

A site where you can search for known CSP bypass gadgets to gain XSS.
โค4
โšกTop Hacking / Cyber Security Related Posts
๐ŸชชBy Daniel Kelley

๐Ÿ”—https://gold-marten-204.notion.site/2d292e0b941146ef858a125bf1cb0eb3
โค5๐Ÿ‘3
CVE-2024-31449 and other: Multiple vulnerabilities in Redis, 4.5 - 8.8 ratingโ—๏ธ

Three fresh vulnerabilities allow an attacker to perform RCE due to errors in the Lua scripting engine or DoS via malformed Access Control List selectors.

Search at Netlas.io:
๐Ÿ‘‰ Link: https://nt.ls/1G7ul
๐Ÿ‘‰ Dork: protocol:redis

Vendor's advisory: https://github.com/redis/redis/security/advisories/GHSA-whxg-wx83-85p5
๐Ÿ‘6โค1
๐ŸŒ Google Dorking Made Easy

Link : https://dorksearch.com/

This Website help you with Google Dorking Try it Now and Give Reactions ๐ŸคŸ

#bugbounty #bugbountytips
๐Ÿ‘1๐Ÿณ1
โ˜„๏ธTechDefence is Hiringโ˜„๏ธ

๐Ÿ“ŒShare Your Resume- +91 78618 86497
(No Calls)
Please open Telegram to view this post
VIEW IN TELEGRAM
SubOwner - This tool is designed to check for subdomain takeovers by resolving the CNAME records and verifying them against known vulnerable services.

๐Ÿ”— https://github.com/ifconfig-me/subowner
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ7โค5