Brut Security
17.3K subscribers
1.12K photos
96 videos
360 files
1.21K links
DM: @wtf_brut
For Ad: https://tlmtr.io/p/2flAsc
🛃WhatsApp: https://wa.link/brutsecurity
🈴Training: https://brutsecurity.com
📨Mail: info@brutsec.com
Download Telegram
🚨 CVE-2026-18963 - Keycloak < 26.7.2 - Unauthenticated Account Takeover via Reset-Credentials Bypass

Nuclei Template - https://github.com/projectdiscovery/nuclei-templates/pull/16995/changes

Reference: https://github.com/keycloak/keycloak/issues/51833

#hackwithautomation #bugbounty #keycloak
🔥73
🚨Google Bug Bounty Dorks Generator

- juicy extensions
-open redirects
- code leaks
- cloud storages
- file upload endpoints and more.
13👍1
Penetration-List

A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. Includes payloads, dorks, fuzzing materials, and offers in-depth theory sections. Visit our Medium profile for more information.

https://github.com/AlbusSec/Penetration-List

#cybersecurity #infosec #pentesting #redteam #bugbounty
8
5 Free Coupons for Zero To Mobile Pentester
6🔥1
🚨Bug Bounty Tip: Test Newline Injection in JSON Parameters

When testing API endpoints, don’t assume parameters like email accept only a single value.

For password-reset functionality, try newline injection:

{
"action": "reset-password",
"email": "accA@mail.com\naccB@mail.com"
}


If the backend fails to properly validate or sanitize the parameter, it may interpret both email addresses as separate recipients and send the password-reset link to both accounts.

This can indicate a parameter parsing / input validation flaw and, depending on the application logic and impact, potentially lead to account-related security issues.

Things to test:
\n and \r\n separators
• Multiple values in the same parameter
• JSON arrays vs. strings
• Duplicate JSON keys
• URL-encoded newline characters
• Different API content types

Always test only on systems you’re authorized to assess.

#BugBounty #BugBountyTips #API #APISecurity #WebSecurity #Pentesting #CyberSecurity
12👍5🔥1👏1🤝1
Please open Telegram to view this post
VIEW IN TELEGRAM
7🔥3👏1
APKLeaks

Scanning APK file for URIs, endpoints & secrets.

https://github.com/dwisiswant0/apkleaks

#pentesting #infosec #bugbounty
10🤝2🔥1
Please open Telegram to view this post
VIEW IN TELEGRAM
9🔥4🗿4
Please open Telegram to view this post
VIEW IN TELEGRAM
10🔥5🤣3👍1
17K+ strong. One community. One mission. ⚡️

Thank you for being part of Brut Security.

Learn. Practice. Hack. Grow.

Here’s to the next milestone. ❤️‍🔥

🔥 https://brutsecurity.com
☄️ https://wa.link/brutsecurity

#BrutSecurity #17K #CyberSecurity #EthicalHacking
Please open Telegram to view this post
VIEW IN TELEGRAM
🔥93👏1
⚠️ Bug Bounty Tip: IDN Homograph → Account Collision

Don’t only test Unicode domains. Test Unicode in email/username fields too.

Try lookalike characters such as:

aá / other Unicode variants

The interesting case is when:

Database: treats the values as equal
Application: identifies the victim account
SMTP: treats them as different addresses

Example:

victim@gmail.com
victim@gmáil.com

If the application finds the victim's account but sends the password-reset email to the attacker-controlled Unicode address, you may have an account-collision / account-takeover vulnerability.

📣**Test normalization at every stage:**
Input → Validation → Database → Token generation → Email delivery

#BugBounty #IDNHomograph #Punycode #WebSecurity
Please open Telegram to view this post
VIEW IN TELEGRAM
7🔥3🤝2🗿1
🚨Nice tricks to bypass 403/401.
#BugBounty #bugbountytips
9👍2
🚨Search for all leaked keys/secrets using one regex!

regex: https://gist.github.com/h4x0r-dz/be69c7533075ab0d3f0c9b97f7c93a59

#BugBounty #bugbountytip
🤨63🔥3🗿1
This media is not supported in your browser
VIEW IN TELEGRAM
🔥 ⛓️ Click2Shell is a one-click unauthenticated remote command execution chain (Preauth RCE) affecting every WordPress website. Wordpress rolled out a fix yesterday! The story about how one preview link made WordPress click Install, load an inactive theme's PHP, and hand us RCE is below.

⚠️https://pwn.ai/blog/click2shell
Please open Telegram to view this post
VIEW IN TELEGRAM
🔥4😱21👏1
Brut Security
🔥 ⛓️ Click2Shell is a one-click unauthenticated remote command execution chain (Preauth RCE) affecting every WordPress website. Wordpress rolled out a fix yesterday! The story about how one preview link made WordPress click Install, load an inactive theme's…
11 new vulnerabilities in WordPress, no CVE assigned yet ❗️

WordPress 7.1.1 security release patches 11 vulnerabilities including stored XSS, path traversal, and other security flaws.

Search at Netlas.io:
👉 Link: https://nt.ls/s3kOE
👉 Dork: tag.name:"wordpress"
4