Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Cirrusgo - A Fast Tool To Scan SAAS, PAAS App Written In Go
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi86EhCFbOLT-YRbgxWvkf_H9XLy0Bzmk7RoA_a2c45PQ55r8qEXWB5fhnwxpNuxMG4hHDjwR_rTd4up9H-cmVsEI6RGKijUGnS-uV7bmXG0Ni2-jT5agL2vp8yXI1BLG0arI-ZWzbqsk6GcpdttpP3aXHWBJX9ENQuVFoyOcxLXJkdv3wRNQ2Yyh4T/w640-h482/cirrusgo.png A fast tool to scan SAAS,PAAS App written in Go
SAAS App Support :
* salesforce
* contentful (next version)
Note flag -o output not working
install : golang 1.18Ver
Example :
Cirrusgo - A Fast Tool To Scan SAAS, PAAS App Written In Go
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi86EhCFbOLT-YRbgxWvkf_H9XLy0Bzmk7RoA_a2c45PQ55r8qEXWB5fhnwxpNuxMG4hHDjwR_rTd4up9H-cmVsEI6RGKijUGnS-uV7bmXG0Ni2-jT5agL2vp8yXI1BLG0arI-ZWzbqsk6GcpdttpP3aXHWBJX9ENQuVFoyOcxLXJkdv3wRNQ2Yyh4T/w640-h482/cirrusgo.png A fast tool to scan SAAS,PAAS App written in Go
SAAS App Support :
* salesforce
* contentful (next version)
Note flag -o output not working
install : golang 1.18Ver
go install -v github.com/Ph33rr/cirrusgo/cmd/cirrusgo@latest
or
go install -v github.com/Ph33rr/CirrusGo/cmd/cirrusgo@latestHelp: cirrusgo --helpPass custom header to target -proxy, --proxy <urlUse proxy to fuzz -o, --output <fileFile to save results [flags payload] [command: cirrusgo salesforce --payload options] -payload, --payload Generator payload for test manual Default "ObjectList" GetItems -obj set object -page set page -pages set pageSize GetRecord -re set recoder id WritableOBJ -obj set object SearchObj -obj set object -page set page -pages set pageSize AuraContext -fwuid set UID -App set AppName -markup set markup ObjectList no options Dump no options -h, --help Display its help ">______ _ ______
/ ____/(_)_____ _____ __ __ _____ / ____/____
/ / / // ___// ___// / / // ___// / __ / __ \
/ /___ / // / / / / /_/ /(__ )/ /_/ // /_/ /
\____//_//_/ /_/ \__,_//____/ \____/ \____/ v0.0.1
cirrusgo --help
-u, --url <urlDefine single URL to fuzz
-l, --list Show App List
-c, --check only check endpoint
-V, --version Show current version
-h, --help Display its help
[cirrusgo [app] [options] ..]
cirrusgo salesforce --help
-u, --url <urlDefine single URL
-c, --check only check endpoint
-lobj, --listobj pull the object list.
-gobj --getobj pull the object.
-obj --objects set the object name. Default value is "User" object.
Juicy Objects: Case,Account,User,Contact,Document,Cont
entDocument,ContentVersion,ContentBody,CaseComment,Not
e,Employee,Attachment,EmailMessage,CaseExternalDocumen
t,Attachment,Lead,Name,EmailTemplate,EmailMessageRelation
-gre --getrecord pull the Record id.
-re --recordid set the recode id to dump the record
-cw --chkWritable check all Writable objects
-f, --full dump all pages of objects.
--dump
-H, --header
Pass custom header to target
-proxy, --proxy <urlUse proxy to fuzz
-o, --output <fileFile to save results
[flags payload]
[command: cirrusgo salesforce --payload options]
-payload, --payload Generator payload for test manual Default "ObjectList"
GetItems -obj set object
-page set page
-pages set pageSize
GetRecord -re set recoder id
WritableOBJ -obj set object
SearchObj -obj set object
-page set page
-pages set pageSize
AuraContext -fwuid set UID
-App set AppName
-markup set markup
ObjectList no options
Dump no options
-h, --help Display its help Example :
cirrusgo salesforce -u https://loclhost -gobjdump: cirrusgo salesforce -u https://localhost/ -fcheck Writable Objects: cirusgo salesforce -u https://localhost/ -cwDownload CirrusgoWhat is the fastest way to get into bug bounty hunting with zero experience ?
https://medium.com/@satyampathania14/what-is-the-fastest-way-to-get-into-bug-bounty-hunting-with-zero-experience-ea6c748910b7?source=rss------bug_bounty-5
https://medium.com/@satyampathania14/what-is-the-fastest-way-to-get-into-bug-bounty-hunting-with-zero-experience-ea6c748910b7?source=rss------bug_bounty-5
author :- Satyam pathaniaContinue reading on Medium » (https://medium.com/@satyampathania14/what-is-the-fastest-way-to-get-into-bug-bounty-hunting-with-zero-experience-ea6c748910b7?source=rss------bug_bounty-5)
Moonbeam Team släpper en brådskande säkerhetspatch för felet med trunkning av heltal
https://medium.com/@MoonbeamiSverige/moonbeam-team-sl%C3%A4pper-en-br%C3%A5dskande-s%C3%A4kerhetspatch-f%C3%B6r-felet-med-trunkning-av-heltal-63f97d7bc068?source=rss------bug_bounty-5
https://medium.com/@MoonbeamiSverige/moonbeam-team-sl%C3%A4pper-en-br%C3%A5dskande-s%C3%A4kerhetspatch-f%C3%B6r-felet-med-trunkning-av-heltal-63f97d7bc068?source=rss------bug_bounty-5
Moonbeam Team släpper en brådskande säkerhetspatch för felet med trunkning av heltal
Aug 1, 2022Continue reading on Medium »
Read more...
Aug 1, 2022Continue reading on Medium »
Read more...
Certified Ethical Hacking V11 & Counter Measures By Pentester Club
Pentester Club Pvt Ltd CEH certification training course provides you the hands-on training required to master the techniques hackers use…Continue reading on Medium »
Read more...
Pentester Club Pvt Ltd CEH certification training course provides you the hands-on training required to master the techniques hackers use…Continue reading on Medium »
Read more...
what is footprinting in hacking || types of footprinting || Pentester Club
Footprinting is an ethical hacking technique used to gather as much data as possible about a specific targeted computer system, an…Continue reading on Medium »
Read more...
Footprinting is an ethical hacking technique used to gather as much data as possible about a specific targeted computer system, an…Continue reading on Medium »
Read more...
SS7 Practical Video From Pentester Club
Signaling System 7 (SS7) is an architecture for performing out-of-band signaling in support of the call-establishment, billing, routing…Continue reading on Medium »
Read more...
Signaling System 7 (SS7) is an architecture for performing out-of-band signaling in support of the call-establishment, billing, routing…Continue reading on Medium »
Read more...
Finding SQL Injection Manually
SQL injection is a code injection technique used to hack websites, attack data applications, destroy databases by inserting malicious SQL…Continue reading on Medium »
Read more...
SQL injection is a code injection technique used to hack websites, attack data applications, destroy databases by inserting malicious SQL…Continue reading on Medium »
Read more...
Protection Strategies Sql Injection
SQL injections are one of the most utilized web attack vectors used with the goal of retrieving sensitive data from organizations.Continue reading on Medium »
Read more...
SQL injections are one of the most utilized web attack vectors used with the goal of retrieving sensitive data from organizations.Continue reading on Medium »
Read more...
DBMS Detection Of Sql Injection
In this article, we will learn about DBMS Injection.Continue reading on Medium »
Read more...
In this article, we will learn about DBMS Injection.Continue reading on Medium »
Read more...
Authentication Bypass
When performing a penetration test of an application, tests against the authentication mechanism are always an important check. While a…Continue reading on Medium »
Read more...
When performing a penetration test of an application, tests against the authentication mechanism are always an important check. While a…Continue reading on Medium »
Read more...
hacking: security in practice
How to tell which continent/zone Amazon is hosting a web application?
We have a supplier who is supposed to be hosting our SaaS application on Amazon Europe due to data privacy etc. However, we have a suspicion they are hosting it in the US. Are there any online tools which when given a URL can determine the host location?
submitted by /u/erolbrown
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How to tell which continent/zone Amazon is hosting a web application?
We have a supplier who is supposed to be hosting our SaaS application on Amazon Europe due to data privacy etc. However, we have a suspicion they are hosting it in the US. Are there any online tools which when given a URL can determine the host location?
submitted by /u/erolbrown
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How to tell which continent/zone Amazon is hosting a web application?
We have a supplier who is supposed to be hosting our SaaS application on Amazon Europe due to data privacy etc. However, we have a suspicion they...
Certified Ethical Hacking V11 & Counter Measures By Pentester Club
https://medium.com/@pentesterclubpvtltd/certified-ethical-hacking-v11-counter-measures-by-pentester-club-26d661238b76?source=rss------bug_bounty-5
Pentester Club Pvt Ltd CEH certification training course provides you the hands-on training required to master the techniques hackers use…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/certified-ethical-hacking-v11-counter-measures-by-pentester-club-26d661238b76?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@pentesterclubpvtltd/certified-ethical-hacking-v11-counter-measures-by-pentester-club-26d661238b76?source=rss------bug_bounty-5
Pentester Club Pvt Ltd CEH certification training course provides you the hands-on training required to master the techniques hackers use…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/certified-ethical-hacking-v11-counter-measures-by-pentester-club-26d661238b76?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
Certified Ethical Hacking V11 & Counter Measures By Pentester Club
Pentester Club Pvt Ltd CEH certification training course provides you the hands-on training required to master the techniques hackers use…
what is footprinting in hacking || types of footprinting || Pentester Club
https://medium.com/@pentesterclubpvtltd/what-is-footprinting-in-hacking-types-of-footprinting-pentester-club-95e3592ed2fa?source=rss------bug_bounty-5
Footprinting is an ethical hacking technique used to gather as much data as possible about a specific targeted computer system, an…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/what-is-footprinting-in-hacking-types-of-footprinting-pentester-club-95e3592ed2fa?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@pentesterclubpvtltd/what-is-footprinting-in-hacking-types-of-footprinting-pentester-club-95e3592ed2fa?source=rss------bug_bounty-5
Footprinting is an ethical hacking technique used to gather as much data as possible about a specific targeted computer system, an…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/what-is-footprinting-in-hacking-types-of-footprinting-pentester-club-95e3592ed2fa?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
what is footprinting in hacking || types of footprinting || Pentester Club
Footprinting is an ethical hacking technique used to gather as much data as possible about a specific targeted computer system, an…
SS7 Practical Video From Pentester Club
https://medium.com/@pentesterclubpvtltd/ss7-practical-video-from-pentester-club-800a72df6b9c?source=rss------bug_bounty-5
Signaling System 7 (SS7) is an architecture for performing out-of-band signaling in support of the call-establishment, billing, routing…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/ss7-practical-video-from-pentester-club-800a72df6b9c?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@pentesterclubpvtltd/ss7-practical-video-from-pentester-club-800a72df6b9c?source=rss------bug_bounty-5
Signaling System 7 (SS7) is an architecture for performing out-of-band signaling in support of the call-establishment, billing, routing…Continue reading on Medium » (https://medium.com/@pentesterclubpvtltd/ss7-practical-video-from-pentester-club-800a72df6b9c?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
SS7 Practical Video From Pentester Club
Signaling System 7 (SS7) is an architecture for performing out-of-band signaling in support of the call-establishment, billing, routing…
The Instacart Bug Bounty Program - How We Work with White Hat Hackers to Secure Instacart
Authors: James Cha, Vickie Li, Shashank Mirji, and Frank FilhoContinue reading on tech-at-instacart »
Read more...
Authors: James Cha, Vickie Li, Shashank Mirji, and Frank FilhoContinue reading on tech-at-instacart »
Read more...