Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Discovering a Stored XSS Vulnerability on a Bug Bounty Program

Hello AppSec folks, I hope everyone is doing great! This is Anmol, also known as Nishachar or Asmodeus. Let’s dive straight into my recent…Continue reading on Medium »
Read more...
How To Stay Ahead of 99% of Bug Bounty Hunters

The bug bounty ecosystem has exploded in recent years, providing security researchers, ethical hackers, and cybersecurity enthusiasts with…Continue reading on Medium »
Read more...
Pentesting and Ethical Hacking
https://www.reddit.com/r/Pentesting/comments/1fbr2pd/pentesting_and_ethical_hacking/

<!-- SC_OFF -->I am currently pursuing a course on SOC
I would like to improve my skills on Pentesting/Hacking also
Can i get to know the resources that can be used for free.
Any youtube playlist or free textbooks or anything for starting <!-- SC_ON --> submitted by /u/Fragrant-Sympathy244 (https://www.reddit.com/user/Fragrant-Sympathy244)
[link] (https://www.reddit.com/r/Pentesting/comments/1fbr2pd/pentesting_and_ethical_hacking/) [comments] (https://www.reddit.com/r/Pentesting/comments/1fbr2pd/pentesting_and_ethical_hacking/)
My recon methodology for hunting CVE-2021–42063 led to discovering an RXSS vulnerability in the…

If you’re new to this writeup, I suggest you read part 1 where I shared some valuable info about my recon and other processes.Continue reading on Medium »
Read more...
Day 30of 30 Day — 30 Vulnerabilities | Cross-Site Request Forgery (CSRF)

Day 30: Mastering Account Takeover through CSRF Token Reuse — Essential Tricks & Techniques Based on Personal Experience and Valuable POCsContinue reading on Medium »
Read more...
The Weak Link in Two-Factor Authentication: Exploiting Reusable OTPs

During a recent penetration test, I was tasked with evaluating the authentication security of an application. These tests are always…Continue reading on Medium »
Read more...
Question
https://www.reddit.com/r/Pentesting/comments/1fbwupx/question/

<!-- SC_OFF -->Ok I don't have a degree and iam bout to take a bunch of free courses for pentesting what are my chances of landing a job <!-- SC_ON --> submitted by /u/Zealousideal_Ease_78 (https://www.reddit.com/user/Zealousideal_Ease_78)
[link] (https://www.reddit.com/r/Pentesting/comments/1fbwupx/question/) [comments] (https://www.reddit.com/r/Pentesting/comments/1fbwupx/question/)
OWASP top 10 A08:Software and Data Integrity Failures

In modern software development, ensuring the integrity of software and data has become a major challenge due to the prevalence of rapid…Continue reading on Medium »
Read more...
If you’re new to this writeup, I suggest you read part 1 where I shared some valuable info about my recon and other processes.Continue reading on Medium » (https://medium.com/@karthithehacker/my-recon-methodology-for-hunting-cve-2021-42063-led-to-discovering-an-rxss-vulnerability-in-the-27a7aa435fd3?source=rss------bug_bounty-5)
Day 30: Mastering Account Takeover through CSRF Token Reuse — Essential Tricks & Techniques Based on Personal Experience and Valuable POCsContinue reading on Medium » (https://medium.com/@kumawatabhijeet2002/day-30of-30-day-30-vulnerabilities-cross-site-request-forgery-csrf-062ff53c5efd?source=rss------bug_bounty-5)