DevCyberSecurity
1.26K subscribers
230 photos
8 videos
59 files
306 links
"Welcome to DevCyberSecurity! ๐Ÿ›ก

Stay ahead in the ever-evolving world of cybersecurity with our channel. Here, we share valuable insights, latest trends, cutting-edge techniques, and resources tailored for developers and cybersecurity enthusiasts alike
Download Telegram
whatsapp_hacking_qrl:

๐Ÿ”ฐ HACK WHATSAPP WITH QRL JACKING ๐Ÿ”ฐ

๐Ÿ”ฒ QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on โ€œLogin with QR codeโ€ feature as a secure way to login into accounts which aims for hijacking users session by attackers. ๐Ÿ”ฒ


๐Ÿ”ถ Installation ๐Ÿ”ท

apt update && apt install git

apt install python && apt install python3

pip install --upgrade pip

git clone https://github.com/OWASP/QRLJacking.git

cd QRLJacking

cd QRLJacker

chmod +x *

pip install -r requirements.txt

python3 QrlJacker.py

โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”

`โ€ข....


YouTube channel ๐Ÿ‘‰



https://www.youtube.com/channel/UCTscVHNT4BjfsnuG_t9KMOg?sub_confirmation=1
โค2๐Ÿ‘2
Here's the list of bug hunting tools:

1. Burp Suite ๐Ÿ›
2. OWASP ZAP (Zed Attack Proxy) ๐Ÿ›ก
3. Nmap ๐ŸŒ
4. Metasploit ๐Ÿ› 
5. Wireshark ๐Ÿ–ฅ
6. Nikto ๐Ÿ•ต๏ธโ€โ™‚๏ธ
7. SQLMap ๐Ÿ—บ
8. Acunetix ๐Ÿ•ท
9. Nessus ๐Ÿš€
10. OpenVAS ๐Ÿšช
11. BeEF (Browser Exploitation Framework) ๐Ÿ„
12. Shodan ๐Ÿ”
13. Wfuzz ๐ŸŒ€
14. DirBuster ๐Ÿšช
15. XSStrike ๐Ÿ’ฅ
16. SQLMate ๐Ÿค
17. Sublist3r ๐ŸŽฏ
18. Hydra ๐Ÿ
19. Skipfish ๐ŸŸ
20. Recon-ng ๐Ÿ•ต๏ธโ€โ™‚๏ธ
21. Masscan ๐Ÿ›ฐ
22. Wappalyzer ๐Ÿ“Š
23. Gitrob ๐Ÿ•ต๏ธโ€โ™‚๏ธ
24. Gobuster ๐Ÿ”ฆ
25. XSSer ๐Ÿ’ข
26. Joomscan ๐Ÿ•ต๏ธโ€โ™‚๏ธ
27. WPScan ๐Ÿ”
28. EyeWitness ๐Ÿ‘€
29. Fiddler ๐ŸŽป
30. sqlninja ๐Ÿฅท
31. Vega ๐ŸŒŸ
32. Arachni ๐Ÿ•ท
33. DirSearch ๐Ÿ”
34. httrack ๐Ÿƒโ€โ™‚๏ธ
35. CMSmap ๐Ÿ—บ
36. DVWA (Damn Vulnerable Web Application) ๐Ÿ˜ˆ
37. Docker Bench for Security ๐Ÿ‹
38. Amass ๐Ÿ“ˆ
39. WPScan ๐Ÿ”
40. Zed Attack Proxy ๐Ÿ›ก
41. SonarQube ๐Ÿ›ก
42. ClamAV ๐Ÿฆช
43. OSSEC ๐Ÿ”
44. Tripwire ๐Ÿ›ก
45. AIDE (Advanced Intrusion Detection Environment) ๐Ÿ›ก
46. Fail2Ban ๐Ÿšซ
47. Lynis ๐Ÿง
48. Snort ๐Ÿฝ
49. Suricata ๐Ÿฆˆ
50. Security Onion ๐Ÿง…

Happy bug hunting!

https://t.me/DevCyberSecurity
๐Ÿ”ฐ Hydra
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
hackethics138
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
Hydra: Password-cracking tool for brute-force attacks on login systems.
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
Installation:

apt install proot-distro

proot-distro list

proot-distro install ubuntu

proot-distro login ubuntu

apt update

apt upgrade -y

apt install hydra -y

hydra -h
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
Always log in to Ubuntu if you want to use Hydra.

proot-distro login ubuntu

hydra -h
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
Usage:

./hydra -l admin -p password ftp://localhost/

./hydra -L adminlist.txt -p test ftp://localhost/ 

hydra -l admin -P passwords.txt ftp://localhost/

hydra -L logins.txt -P passwords.txt ftp://localhost/

In Hydra, lowercase (-L) for usernames, uppercase (-p) for wordlists. Example:
hydra -L login.txt -p adminlogin ftp://example/
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
  โ™ฅ๏ธ  Telegram Channel - โ™ฅ๏ธ

https://t.me/DevCyberSecurity
How To Make Fud Metasploit Payload; 2023 Method

Today We are Going To Learn How To Make Full Undetected Payload of metasploit payload, and we will try to bypass Antivirus So, First we need to create Metasploit payload then we will make fud. read more

โšœ๏ธCovered in contents
1. Why we need to make fud?
2. Why hackers make fud malware
3. Antivirus bypass
4. Easy Steps
5. Available Free Requirements
6. Demo Practically Video available

๐Ÿ™ Learn Now
https://www.xploitpoison.com/2022/11/make-fud-metasploit-payload.html

โค๏ธ Created by โค๏ธ -:

https://t.me/DevCyberSecurity
ุงุฏุงุฉ ุงุฎุชุฑุงู‚ ูƒุงู…ูŠุฑุฉ ุงูŠ ู‡ุงุชู ุจุงู„ุทุฑูŠู‚ุฉ ุงู„ุตุญูŠุญุฉ ุนุจุฑ ุงุฏุงุฉ WishFish ุนู„ูŠ ุชุทุจูŠู‚ Termux

โ€ข ู„ุชุซุจูŠุช ุงู„ุงุฏุงุฉ โค๏ธโœจ

apt update

apt upgrade

apt install php

apt install wget

apt install openssh

git clone https://github.com/kinghacker0/WishFish

โ€ข ู„ูุชุญ ุงู„ุงุฏุงุฉ โค๏ธโœจ

cd Wishfish

bash wishfish.sh
๐Ÿ”–#SEARCH ENGINES FOR PENTESTERS

01. shodan.io โ€”> (Server , Vulnerabilities)
02. google.com โ€”> (Dorks)
03. wigle.net โ€”> (Wifi Networks)
04. grep.app โ€”> (Codes Search)
05. app.binaryedge.io โ€”> (Threat Intelligence)
06. onyphe.io โ€”> (Server)
07. viz.greynoise.io โ€”> (Threat Intelligence)
08. censys.io โ€”> (Server)
09. hunter.io โ€”> (Email Addresses)
10. fofa.info โ€”> (Threat Intelligence)
11. zoomeye.org โ€”> (Threat Intelligence)
12. leakix.net โ€”> (Threat Intelligence)
13. intelx.io โ€”> (OSINT)
14. app.netlas.io โ€”> (Attack Surface)
15. searchcode.com โ€”> (Code Search)
16. urlscan.io โ€”> (Threat Intelligence)
17. publicwww.com โ€”> (Code Search)
18. fullhunt.io โ€”> (Attack Surface)
19. socradar.io โ€”> (Threat Intelligence)
20. binaryedge.io โ€”> (Attack Surface)
21. ivre.rocks โ€”> (Server)
22. crt.sh โ€”> (Certificate Search)
23. vulners.com โ€”> (Vulnerabilities)
24. pulsedive.com โ€”> (Threat Intelligence)

โ€” Share & Support Us โ€”

https://t.me/DevCyberSecurity
๐Ÿ”ฅ1
Email & Username OSINT have many crossovers due to the methodology of say, using the first part of an email as an username. It is fair to say that this is a lucrative business and some resources start of as free but then bring in a payment structure. Some of the below may need you to sign up for a free account, some platforms offer a free trial. Don't forget Google advanced searching is another option, websites can be searched by simply manipulating the URL structure to include the username in the domain. Also don't forget to manipulate the username itself, replace O with a 0 for example.



๐Ÿ‘‰https://github.com/cqcore/Email-Username-OSINT?tab=readme-ov-file
๐Ÿ‘1
How many people think that I should launch a digital forensics course on my channel?
Anonymous Poll
93%
Yes
7%
NO
๐Ÿ‘4
Guys 2 June se New Ethical Hacking ka Batch Start Hone Jaa rha hai
Course ka Duration 4 Moths ka Rahega
Aur Course ki Prize only 4999 Only
Mon-Friday
Jisko bhi Join Krna Hai Wo Is Whatsup Group ko Join Kre....


https://chat.whatsapp.com/H6ke8dtfw7J2GFwUdUEJVq
๐Ÿ‘3