CMS Bot Updates
445 subscribers
15 photos
11 videos
7 links
All updates info from BOT CMS, stay tuned
Download Telegram
Channel created
Update new modules for bypasslogin,
bot will automatically crawler the page form, then inject
if success will take screenshot the dashboard to validate.
Media is too big
VIEW IN TELEGRAM
Our bot telegram is FREE but limited access,
even you not used subscription, you still possible do scan by click the adds,
or if u not want to have limit access you can subscription.

for 1 month $10 or 7 days $3

for more detail, you can chat directly with @CMSAssistant_bot
👍3
Our bot is already update new module for GraphQL
check this out . . .
3
New update BOT for 2 modules:
1. SSRF (Server-side request forgery is a web security vulnerability that allows an attacker to cause the server-side application to make requests to an unintended location. In a typical SSRF attack, the attacker might cause the server to make a connection to internal-only services within the organization's infrastructure.)
- this module cover with blind ssrf

2. Open Redirect
this bug allows a user to control a redirect or forward to another URL. If the app does not validate untrusted user input, an attacker could supply a URL that redirects an unsuspecting victim from a legitimate domain to an attacker’s phishing site.
3
Our Bot modules now can scan magento bug,
also we update some modules with new CVE

stay tune, with new more update soon.
🥰3
Our bot now support for Brute forcing JWT Weak Signing Key
in these case, if attacker know the secret key will is able to create the valid JWT token then is possible to
escalated bug Insecure Direct Object Reference (IDOR) by manipulate the JWT payload.

as you can see, the sample JWT the payload are cracked also you can changed the role as admin
or you can manipulate the id.
👍2
We present you our new search engine service lynpawz
Lynpawz is an advanced cyber security search engine,it's dedicated to mapping the cyberspace
also able to scaning vulnerable especially web based with possibility CVE.

https://lynpwn.com

for more detail, you can chat directly with @CMSAssistant_bot
5
We want survey for payment method, what you're prefer ?
Anonymous Poll
39%
Crypto
18%
Paypal
18%
Credit Card
25%
Qris
We Launch the portscan feature also with common wordlist to crack the service. ( will checked login services such as Mysql,Postrgre,Redis,Mongodb,Ftp,Ssh)
🤩31
Media is too big
VIEW IN TELEGRAM
Testing using the Lynpawz engine to find specific services, then scanning with CMS Bot
👏4🔥1
Media is too big
VIEW IN TELEGRAM
Testing SQL injection with new modules , more fast and efficient
2
This media is not supported in your browser
VIEW IN TELEGRAM
We build new modules for CVE , this modules loaded 1500 new CVE with range year 2023- 2024 mostly LFI & RCE. (The module will always be updated)

You can chat directly with @CMSAssistant_bot
👍2🔥2
Media is too big
VIEW IN TELEGRAM
Our Security Search Engine lynpwn (lynpwn.com)
has new updates , such as :
1. Update the UI & style
2. Display CVE for each host
3. Add 404 page

soon, we will add a new feature to a single / list scan in our search engine .So stay tune 😄
👍4