Brut Security
15.1K subscribers
964 photos
76 videos
292 files
1.01K links
โœ…DM: @wtf_brut
๐Ÿ›ƒWhatsApp: https://wa.link/brutsecurity
๐ŸˆดTraining: https://brutsecurity.com
๐Ÿ“จMail: info@brutsec.com
Download Telegram
๐Ÿ˜ฎ๐Ÿ˜ฎ๐Ÿ˜ฎ Fresh BB Target - https://t.me/brutsecurity_poc/269
Please open Telegram to view this post
VIEW IN TELEGRAM
โค3
Hey Hunterโ€™s,
DarkShadow is here back again, dropping a another RCE methd!

Remote Code Execution - js framework

process.mainModule.require('child_process').execSync('id').toString()

THIS IS A VERY EFFECTIVE PAYLOAD FOR RCE IN JS FRAMEWORK, so when you test any js based webapp don't forget to apply it

#bugbountytips #rce
๐Ÿ”ฅ4
๐Ÿ–ค Hackersโ€™ Valentineโ€™s Day be likeโ€ฆ ๐Ÿ’ป

Love is temporary,
But bug bounty is permanent.

๐Ÿ”ฅ !SO STAY HACKED! ๐Ÿ”ฅ
โค8
โค๏ธ This Valentineโ€™s Day, We Hit 100,000 Views

On February 14, we crossed 100,000 total views on the Brut Security YouTube channel.

๐Ÿš€While the world celebrates love, we celebrate commitment. Commitment to learning. Commitment to discipline. Commitment to mastering cybersecurity the right way.

๐Ÿ˜ˆThank you to everyone who watched, supported, and grew with us.
If you are new here, welcome to a community built on real skills and real mindset.

๐Ÿ“นVisit the channel. Start learning. Keep building.
Please open Telegram to view this post
VIEW IN TELEGRAM
2โค9๐Ÿ”ฅ1๐Ÿ‘1
๐Ÿšจ403 Bypass Payloads โš™๏ธ
โœ…https://github.com/nazmul-ethi/Bypass-Four03
๐Ÿ”ฅ9โค2๐Ÿค2
Forwarded from โธ™๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹๊ ‹ Moonfoxes ๐Ÿ’€
โšก๏ธ Using the best brute-force script of 2026 โšก๏ธ
The results come very quickly! ๐Ÿ”ฅ

DM @Mm_fit

Channel https://t.me/cve0day
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ4โค1๐Ÿ‘1
๐Ÿ”ฅURILoot is a browser extension designed for Bug Bounty Hunters and Pentesters. Makes fetching uris easy from various sources.

โš ๏ธhttps://github.com/rsingh0x/URILoot
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘3
๐Ÿ”ฅ BB TIP: Automate Secret Hunting Like a Pro
Manual hunting is slow. Automation scales.

Instead of randomly browsing subdomains, pipe your recon properly:

subfinder -d target.com -silent | httpx -silent | gau | grep -Ei "\.env|config|backup"


What this really means is:

โ€ข subfinder โ†’ enumerate subdomains
โ€ข httpx โ†’ filter alive hosts
โ€ข gau โ†’ pull historical URLs
โ€ข grep โ†’ hunt for juicy patterns like .env, config, backup

Youโ€™re basically combining live assets + historical endpoints + pattern filtering in one clean chain.

This approach often reveals:

Exposed environment files
Backup endpoints
Forgotten config files
Hidden OpenID configurations
JS config leaks

Most hunters stop at subdomain enumeration. Smart hunters pivot into URL discovery and pattern extraction.

Automation doesnโ€™t replace thinking. It multiplies it.

Test responsibly. Stay within scope. Move fast, think slow.
โค14๐Ÿ‘1
๐Ÿš€ SILENTCHAIN Pro v1.1.0 Powered by deepseek-v3.1:671b (via Ollama cloud)

Target scanned: http://aspnet.testinvicti.com

Results:
โ€ข Total findings: 151
โ€ข Verified: 20
โ€ข Breakdown: 16 High / 37 Medium / 63 Low / 35 Info

Scan time: 19 minutes
AI requests: 137
Tokens used: 138K

OWASP Top 10 coverage + passive LLM-powered analysis for Burp Suite

๐Ÿ‘‰ https://silentchain.ai
๐Ÿ‘7โค4
Brut Security pinned Deleted message
๐ŸšจGrafana scanner with all public CVEs that collected in one script to make grafana testing easier.

๐Ÿซกhttps://github.com/Zierax/Grafana-Final-Scanner
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿซก4
Don't forget to drop likes, it keeps motivate us to put such contents. Thanks Everyone ๐Ÿ˜ฎ
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘14โค4
Autonomous Multi-Agent Based Red Team Testing Service, AI hacker.

- http://github.com/PurpleAILAB/Decepticon
โค7๐Ÿ˜4๐Ÿ‘1
Brut Security pinned Deleted message
๐ŸคฉBug Bounty Recon Methodology
๐ŸซกLink: https://github.com/Maniesh-Neupane/BugBounty-Recon-Methodology
Please open Telegram to view this post
VIEW IN TELEGRAM
1โค17
#AD

๐Ÿ›ก Nxploited | Cybersecurity & CVEs

๐Ÿšจ Latest Vulnerabilities: CVEs 2025 | 2026 โ€” Free โœ…
๐Ÿ”ฅ Timely updates on Critical / High severity CVEs
๐Ÿง  Clear technical breakdowns: root cause + impact
๐Ÿงช PoCs - Python (Mass Exploit )
โšก๏ธ 0-Days
๐Ÿ“Œ Additional content available on YouTube and GitHub

๐Ÿ“ฒ Telegram: https://t.me/KNxploited

๐ŸŽฅ YouTube: https://www.youtube.com/@Nxploited

๐Ÿ’ป GitHub (130+ free ready-to-use exploits): https://github.com/Nxploited/

#AD
๐Ÿ”ฅ6โค3๐Ÿค”1๐Ÿ—ฟ1
Forwarded from Brut Security (Mr Brut)
Bug Bounty Beginner's.pdf
187.9 KB
Roadmap for Bug Bounty
โค4๐Ÿ”ฅ1