https://medium.com/@kumawatabhijeet2002/mastering-xss-cross-site-scripting-attacks-a-comprehensive-guide-to-become-professional-bug-6251058c576e
check out this blog it is to the point ๐
@AfroSec
check out this blog it is to the point ๐
@AfroSec
Medium
๐ Mastering XSS (Cross-Site Scripting) Attacks: A Comprehensive Guide to become Professional Bug Bounty Hunter
Hello, everyone! ๐
๐2
hey fam
i got u something today especially If you're into blue teaming, this site is perfect for you!
It has incredible contentโcheck it out and enjoy the journey ahead!
letsdefend.io
@AfroSec
i got u something today especially If you're into blue teaming, this site is perfect for you!
It has incredible contentโcheck it out and enjoy the journey ahead!
letsdefend.io
@AfroSec
๐2
#Advent_Of_Cyber
One down! ๐ช๐๐
it was pretty easy and straightforward. The downloaded ZIP file contained two files. One was a Windows shortcut file designed to download malicious malware from a remote serverโin this case, GitHub. This malware was intended to harvest sensitive information. ๐๐
@AfroSec
One down! ๐ช๐๐
it was pretty easy and straightforward. The downloaded ZIP file contained two files. One was a Windows shortcut file designed to download malicious malware from a remote serverโin this case, GitHub. This malware was intended to harvest sensitive information. ๐๐
@AfroSec
๐3๐ฅ1
"if you are CEO of a company and you are dumb enough to leave your login info on posted note on your desk it is not a hack it is barely social-engineering" ๐ : author Gilfoyle
https://youtu.be/Qm7k1CPFkIc?si=VB6U5tx9M2tLYTCL
@AfroSec
https://youtu.be/Qm7k1CPFkIc?si=VB6U5tx9M2tLYTCL
@AfroSec
YouTube
How to Get Someone's Password
It's inevitable that a criminal will make you the target. And one thing they may try to do is steal your password. This video demonstrates the many possible ways they may be able to get your password. Some might be your fault (like clicking a bad link), someโฆ
Forwarded from BePractical
While i have shared a lot of my bug bounty success story with you all, let me share story of my failures!
You know, When i was starting bug bounty hunting, I was unable to report a valid vulnerability for 6 month straight! Every report that i submitted got marked as informative, not applicable and duplicate! At that time, i was very demotivated, stressed and depressed. I was thinking, "Maybe bug bounty is not my thing" but suddenly, I started questioning myself:
1. Didn't i wanted to learn cyber security because it is my passion?
2. Am i only focusing on reporting vulnerabilities instead of improving my skills?
By asking these questions, I understand one thing: I need to switch my focus on learning, improving and hacking instead of getting demotivated because i was not getting any rewards! And eventually, I was able to get that first vulnerability and now i can easily say that i am the better version of myself than before!
You know, When i was starting bug bounty hunting, I was unable to report a valid vulnerability for 6 month straight! Every report that i submitted got marked as informative, not applicable and duplicate! At that time, i was very demotivated, stressed and depressed. I was thinking, "Maybe bug bounty is not my thing" but suddenly, I started questioning myself:
1. Didn't i wanted to learn cyber security because it is my passion?
2. Am i only focusing on reporting vulnerabilities instead of improving my skills?
By asking these questions, I understand one thing: I need to switch my focus on learning, improving and hacking instead of getting demotivated because i was not getting any rewards! And eventually, I was able to get that first vulnerability and now i can easily say that i am the better version of myself than before!
Day 5 - Done! ๐
it was all about the XXE vulnerability in web apps. It was super fun! If you want to dive deeper into this vuln, I recommend checking out the XXE room on TryHackMe, as well as resources like PortSwigger and PwnFunction's YouTube video [vid ].
I skipped Day 4 and Day 6 because my internet was like shit, but hopefully, Iโll catch up tomorrow!
@AfroSec
it was all about the XXE vulnerability in web apps. It was super fun! If you want to dive deeper into this vuln, I recommend checking out the XXE room on TryHackMe, as well as resources like PortSwigger and PwnFunction's YouTube video [vid ].
I skipped Day 4 and Day 6 because my internet was like shit, but hopefully, Iโll catch up tomorrow!
@AfroSec
๐1
Forwarded from แฏค CONTENT ZONE แฏค (ะะตะท ะฒะพะถะดั) (๐๐ก๐ ๐๐ฅ๐ฉ๐ก๐๐๐๐)
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ฅ4
You ever have one of those moments where you just stop and think, "Wow, how did I not know this?" ๐
Well, today I realized something obvious: TOR isnโt just nameโitโs actually an abbreviation for "The Onion Router!" ๐คฏ All this time, I thought it was just a catchy title. Silly me, right?
And to make things even better,i barely remember what WiFi stands for... ๐ค Guess I need to dig into that next.
@AfroSec
Well, today I realized something obvious: TOR isnโt just nameโitโs actually an abbreviation for "The Onion Router!" ๐คฏ All this time, I thought it was just a catchy title. Silly me, right?
And to make things even better,i barely remember what WiFi stands for... ๐ค Guess I need to dig into that next.
@AfroSec
๐4
Forwarded from Mira
Collection of resources to learn cyber-security, and pentest in general
https://github.com/Nickyie/Cybersecurity-Resources
https://github.com/Nickyie/Cybersecurity-Resources
End of Time
K-391 & Alan Walker & Ahrix
Back in high school, I was totally hooked on EDM. ๐ง๐ฅ I couldnโt get enough of artists like Alan Walker, Martin Garrix, Marshmello, Avicii, and more.
I was that guy who spammed our Telegram group with songs from these legends. ๐ My classmates had no escapeโEDM vibes were everywhere.after two years, and guess what? I just stumbled upon that same group and all the songs I shared back then
Listening to them now, it feels so freshโ Itโs such a vibe to remember about the good old days before AASTU ๐. Nostalgia hits differently when it comes with beats, drops, and memories! ๐บ
and this song is one of'em .
Whatโs your throwback from high school? wanna drop it in the comment section ?
@AfroSec
I was that guy who spammed our Telegram group with songs from these legends. ๐ My classmates had no escapeโEDM vibes were everywhere.after two years, and guess what? I just stumbled upon that same group and all the songs I shared back then
Listening to them now, it feels so freshโ Itโs such a vibe to remember about the good old days before AASTU ๐. Nostalgia hits differently when it comes with beats, drops, and memories! ๐บ
and this song is one of'em .
Whatโs your throwback from high school? wanna drop it in the comment section ?
@AfroSec
๐ฅ4
Forwarded from Luna's pathway๐ค (Luna)
Hello,I need your attention for a second!
One of our own, Daniel Basazinew, a talented software engineer and an incredible human being, is facing a life-threatening challenge. Daniel has been diagnosed with End-Stage Renal Disease (ESRD), and both of his kidneys have failed. He urgently needs a kidney transplant, but the cost of the procedure abroad is $40,000.
Daniel has always been there for others, mentoring, helping, and inspiring those around him. Now, it's our turn to help him in his time of need.
Here's how you can support:
Donate via GoFundMe: https://www.gofundme.com/f/urgent-support-daniels-kidney-transplant
Local Donations (Ethiopia):
Commercial Bank of Ethiopia: 1000259462774 (Daniel Basazinew)
Telebirr: 0941219026 (Zinash)
Share the campaign with your networks to spread the word.
Let's rally together to save Danielโs life. Every little bit countsโthank you for your support!
content credit : Nahom Abera
One of our own, Daniel Basazinew, a talented software engineer and an incredible human being, is facing a life-threatening challenge. Daniel has been diagnosed with End-Stage Renal Disease (ESRD), and both of his kidneys have failed. He urgently needs a kidney transplant, but the cost of the procedure abroad is $40,000.
Daniel has always been there for others, mentoring, helping, and inspiring those around him. Now, it's our turn to help him in his time of need.
Here's how you can support:
Donate via GoFundMe: https://www.gofundme.com/f/urgent-support-daniels-kidney-transplant
Local Donations (Ethiopia):
Commercial Bank of Ethiopia: 1000259462774 (Daniel Basazinew)
Telebirr: 0941219026 (Zinash)
Share the campaign with your networks to spread the word.
Let's rally together to save Danielโs life. Every little bit countsโthank you for your support!
content credit : Nahom Abera
โค2