Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Identifying subdomains more reliably by checking DNS status codes and empty nodesContinue reading on SSE Blog » (https://medium.com/sse-blog/enhancing-subdomain-enumeration-ents-and-noerror-69a0479b7a3d?source=rss------bug_bounty-5)
sql injection
https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/

<!-- SC_OFF -->Hello, someone can explain to me how a prepared statement prevent on sql injection i dont really understand well <!-- SC_ON --> submitted by /u/Objective_Fruit_5995 (https://www.reddit.com/user/Objective_Fruit_5995)
[link] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/) [comments] (https://www.reddit.com/r/Pentesting/comments/wkx6ad/sql_injection/)
Hi everyone! This is my first write-up, pardon me for any mistakes. I’ll share my tip with everyone how I was able to bypass a 403…Continue reading on Medium » (https://medium.com/@engrdrayc/403-forbidden-bypass-leading-to-admin-endpoint-access-b696a36665ed?source=rss------bug_bounty-5)
403 Forbidden Bypass Leading to Admin Endpoint Access.

Hi everyone! This is my first write-up, pardon me for any mistakes. I’ll share my tip with everyone how I was able to bypass a 403…Continue reading on Medium »
Read more...
Email Confirmation bypass at Instagram

This story is all about a logical vulnerability which helped me in Bypassing the email confirmation process and adding any arbitrary…Continue reading on Medium »
Read more...
Pentesting Course recommendation
https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/

Looking for recommendations on formal Pentesting courses, either instructor led in person or online. I am completing my development plan for the next 12 months and looking at the best courses for beginners. I have done the EC-Council Ethical Hacker course which I enjoyed and see they do a Pentesting one also. submitted by /u/cb24nz (https://www.reddit.com/user/cb24nz)
[link] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/) [comments] (https://www.reddit.com/r/Pentesting/comments/wl5k9s/pentesting_course_recommendation/)

___________________________
@hacking_Attack
@Hacking_Video
Defeat the HttpOnly flag to achieve Account Takeover | RXSS

Hello folks, I’m Mohamed Tarek aka Timooon at Bugcrowd and HackerOne, In this write up I will explain how I get the victim’s session when…Continue reading on Medium »
Read more...