Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
I just redesign the website to give a clearer purpose and improve the code to offer more functionality, here it is the result…Continue reading on Medium » (https://medium.com/@bugbountydegen/smartauditor-ai-and-new-chatgpt-bot-for-audits-a8361ec7f52d?source=rss------bug_bounty-5)
This lab demonstrates DOM-based client-side cookie manipulation.Continue reading on Medium » (https://cyberw1ng.medium.com/27-5-lab-dom-based-cookie-manipulation-b939af57ef06?source=rss------bug_bounty-5)
SmartAuditor.AI and new ChatGPT bot for audits

I just redesign the website to give a clearer purpose and improve the code to offer more functionality, here it is the result…Continue reading on Medium »
Read more...
Another Easy P4?

Hello Everyone, welcome back to another series of easy P4 vulnerabilities accepted on Platform and VDP which people aren't aware of.Continue reading on Medium »
Read more...
Hello Everyone, welcome back to another series of easy P4 vulnerabilities accepted on Platform and VDP which people aren't aware of.Continue reading on Medium » (https://medium.com/@anonymoustriager/another-easy-p4-ceaa67ef7e52?source=rss------bug_bounty-5)
The Nexus Repository Manager, a crucial tool for managing, storing, and distributing development artifacts, has recently been found to…Continue reading on Medium » (https://codewithvamp.medium.com/cve-2024-4956-unauthenticated-path-traversal-in-nexus-repository-manager-3-b4e811ad7e37?source=rss------bug_bounty-5)
CVE-2024–4956: UNAUTHENTICATED PATH TRAVERSAL IN NEXUS REPOSITORY MANAGER 3

The Nexus Repository Manager, a crucial tool for managing, storing, and distributing development artifacts, has recently been found to…Continue reading on Medium »
Read more...
Can you guys test my API for any security flaws?
https://www.reddit.com/r/Pentesting/comments/1d8zj0k/can_you_guys_test_my_api_for_any_security_flaws/

<!-- SC_OFF -->Hey Guys,
i developed a little API to generate Inspect URLs and Gencodes for Counter Strike. (not important) I wanted to ask you guys if you can test the Endpoint and check if everything is fine.
I learned everything myself and used only pure PHP and SQL, so it might not be the best. You can use the Bearer Token "global-test-key" which has a limit of 10 Requests per Minute and 2000 per Day. You can find more Details about the API here (http://cs2gen.it/api/docs) <!-- SC_ON --> submitted by /u/Crafted_Mecke (https://www.reddit.com/user/Crafted_Mecke)
[link] (https://www.reddit.com/r/Pentesting/comments/1d8zj0k/can_you_guys_test_my_api_for_any_security_flaws/) [comments] (https://www.reddit.com/r/Pentesting/comments/1d8zj0k/can_you_guys_test_my_api_for_any_security_flaws/)