Brut Security
15.2K subscribers
968 photos
76 videos
292 files
1.01K links
βœ…DM: @wtf_brut
πŸ›ƒWhatsApp: https://wa.link/brutsecurity
🈴Training: https://brutsecurity.com
πŸ“¨Mail: info@brutsec.com
Download Telegram
10 Hours Left Only!!! Join Nowβ˜„οΈβ˜„οΈ
https://nas.io/brutsecurity/challenges/breaking-oauth-4-days-challenge
Please open Telegram to view this post
VIEW IN TELEGRAM
🍾4
Try something like "Β© [COMPANY]. All rights reserved." to find new root domains!
πŸ‘9
CVE-2024-33533, -33535, -33536: Multiple vulns in Zimbra, 5.4 - 7.5 rating❗️

The vulnerabilities could allow an attacker to perform path traversal or create XSS injection, which could compromise sensitive data.

Search at Netlas.io:
πŸ‘‰ Link: https://nt.ls/0aGwL
πŸ‘‰ Dork: http.favicon.hash_sha256:1afd891aacc433e75265e3ddc9cb4fc63b88259977811384426c535037711637 OR \*.banner:"Zimbra"

Vendor's advisory: https://wiki.zimbra.com/wiki/Zimbra_Releases/10.0.8#Security_Fixes
πŸ‘4❀2
πŸ‘2
😐Hello Everyone 😐

🚬It's been a long time & I hope everyone is well. I have not posted anything from past few days. Let me know what you're looking for in the comments.

πŸ—’If you're looking for course enrollments, do DM here- Whatsapp
Please open Telegram to view this post
VIEW IN TELEGRAM
β˜„οΈUse Burpsuite like Pro by @daffainfo

⚑️Match and Replace Feature which is not known by many hunters or doesn't use it at all.

πŸ”—https://github.com/daffainfo/match-replace-burp
Please open Telegram to view this post
VIEW IN TELEGRAM
πŸ”₯12❀6⚑1πŸ‘1
Please open Telegram to view this post
VIEW IN TELEGRAM
😍2⚑1πŸ”₯1
Brut Security pinned Β«πŸ’₯A collection of awesome one-liner scripts especially for bug bountyπŸ’₯ πŸ”—https://github.com/dwisiswant0/awesome-oneliner-bugbountyΒ»
Please open Telegram to view this post
VIEW IN TELEGRAM
⚑2
Brut Security pinned Β«πŸ”ˆExposed Pinata API Key Nuclei Template πŸ“Žhttps://raw.githubusercontent.com/karkis3c/bugbounty/main/nuclei-templates/info-disclosure/pinata-keys-exposed.yamlΒ»
β˜„οΈCollection of Links, Write-ups, Blog posts and Papers related to Cybersecurity, Reverse engineering and Exploitationβ˜„οΈ

πŸ”–https://github.com/0xor0ne/awesome-list/blob/main/topics/cybersec.md
Please open Telegram to view this post
VIEW IN TELEGRAM
❀3πŸ—Ώ2😱1
πŸ‘6❀1
What makes you hacker?🀨
Please open Telegram to view this post
VIEW IN TELEGRAM
Add the folder 'home/000~ROOT~000/' to your wordlist, and you might discover some juicy data. Enjoy!"
😭7πŸ‘5πŸ”₯5🀣2❀1
πŸ”Top 10 Shodan Dorks

πŸ”–#infosec #cybersecurity #hacking #pentesting #security
πŸ‘3πŸ‘1
β˜„οΈIf you have access to jenkins dashboard, use below Script Console cmd for pocβ˜„οΈ
def passwdFile = new File("/etc/passwd")
println passwdFile.text
Please open Telegram to view this post
VIEW IN TELEGRAM
❀9⚑6πŸ”₯2πŸ‘1
prv8_nuclei_templates.zip
3.9 MB
⚑ 6000+ Private Nuclei Templates ⚑
❀‍πŸ”₯28🀣5πŸ‘Œ2❀1⚑1πŸ”₯1🀝1
CVE-2024-8073: Command Injection in Hillstone Networks Firewalls, 9.8 rating πŸ”₯

The freshest vulnerability in Hillstone WAFs allows an attacker to perform RCE due to incorrect input validation.

Search at Netlas.io:
πŸ‘‰ Link: https://nt.ls/YZWqU
πŸ‘‰ Dork: http.title:"Hillstone Networks"

Vendor's advisory: https://www.hillstonenet.com.cn/security-notification/2024/08/21/mlzrld-2/
πŸ”₯5πŸ‘2🀣1