Sec Note
Will Valid for a week https://t.me/+_wabY9aYJio0MmNk
This group is built for practical, hands-on work in offensive and defensive security. It focuses on real-world activities such as bypass techniques, security research, tool development, red teaming and blue teaming, reverse engineering, and other related technical operations.
Members are expected to stay strictly on-topic and maintain a professional standard of discussion. Only relevant technical conversations are allowed, and all participation should be aligned with active work in these areas.
If you are involved in this kind of work and want a focused environment for serious discussion, you are welcome to join.
Members are expected to stay strictly on-topic and maintain a professional standard of discussion. Only relevant technical conversations are allowed, and all participation should be aligned with active work in these areas.
If you are involved in this kind of work and want a focused environment for serious discussion, you are welcome to join.
🔥6👾3👍2
Modern Web Application Content Discovery
#web
When testing web applications, discovering what functionality is available is key to finding vulnerabilities. Ideally you want to find as many application pages as possible. You can do this by using web‑crawling or spidering tools to uncover indexed pages, as well as employing forced‑browsing techniques. When doing forced browsing you are looking for pages that are not indexed on the site but still available. Forced-browsing is more useful when the applications user interface (UI) is limited, but even on applications with a large UI, forced-browsing can return webpages that would otherwise not be known.
Recently, I got this question:
"I found a URL that is returning a default homepage, but it has no links or navigation. How do I find out if the application has functionality?”
So, I figured I would write up a quick guide on how I find content in modern web applications.
#web
👾4
APT Organization Research Yearbook (2026 Edition) - Chinese
If it possible for you to translate please dm us
🔥6
Sec Note
Will Valid for a week https://t.me/+_wabY9aYJio0MmNk
Looks like I revoked the link by mistake. Here's a new one.
😁3👾3
2026_06_x33fcon_Bring_Your_Own_Everything_The_Final_Approach.pdf
35.3 MB
2026_06_x33fcon_Bring_Your_Own_Everything_-_The_Final_Approach.pdf
🔥6
Forwarded from SecLog (Redteam)
Malware - The Misunderstood Industry.pdf
237.5 KB
Malware - The Misunderstood Industry.pdf
🔥7
SecLog
Malware - The Misunderstood Industry.pdf
This article said everything I had been telling my buddies
👍3🔥1
Forwarded from Malware, Cats and Cryptography
bsidesprishtina-cocomelonc-2026.pdf
10 MB
BSides Prishtina 2026 slides.
Full PoC code will be published in my blog soon. Enjoy!
#conference #hacking #malware #math #physics #programming #threatintel #cybersecurity #research
Full PoC code will be published in my blog soon. Enjoy!
#conference #hacking #malware #math #physics #programming #threatintel #cybersecurity #research
🔥10