Reversal X Mods (бесплатные премиум-приложения для Android)
2.4K subscribers
583 photos
66 videos
132 files
336 links
Anything worth while.

Share and support us @reversemoda
Download Telegram
I connected 😒Claude to Burp Suite 🪰and asked it to find vulnerabilities for me.

So l've been playing around with this MCP extension for Burp, it lets Claude interact with Burp directly. Read proxy history, send requests, use Repeater, push to Intruder, the works.

I set up OWASP Juice Shop, crawled the entire application first to capture as many endpoints as possible in Burp's proxy history. Once the crawl was done, I just asked Claude to go through all the burp http traffic and list me all the interesting endpoints.
🚀🚀🚀
It came back with SQLi, XSS, information disclosure, IDOR, and business logic flaws, with exact endpoints, payloads, and severity ratings. You can see the full findings in the screenshot.
The part that surprised me I didn't tell it what the app does. I didn't point it to specific endpoints. It just read the HTTP history and connected the dots itself.

🎯Setup takes less than 2 minutes:

✔️Step 1: Open Burp Suite → Extensions tab → BApp Store
→ Install "MCP Server"

✔️Step 2: Go to the MCP tab in Burp → make sure the server is enabled

✔️Step 3: Click "Install to Claude Desktop", it auto-configures everything

✔️Step 4: Restart Claude Desktop

✔️Step 5: Start prompting, Claude now has full access to your Burp proxy history

This doesn't replace manual testing but the recon-to-findings speed is something else. Try this on your next bug bounty target.

📇 Hack Storage
2
In 2000, a ⌨️computer science student from the Philippines had his thesis rejected.

Onel de Guzman had proposed building a program to steal internet passwords so users could get free access. His professors rejected it, writing that it was illegal.👎👎

He built it anyway.

On May 4, 2000, the program was released through an email with the subject “ILOVEYOU” ✖️and an attachment disguised as a text file.

💌When opened, it:
• copied itself to the system
• sent the same email to all contacts
• overwrote files and stole passwords

Within hours, it spread across Asia, Europe, and North America.

Companies like Microsoft and Ford Motor Company shut down email systems. Government networks, including the Pentagon, were affected.

Estimated damage: $5.5–$15 billion.😨

De Guzman was identified as the creator.

He was never charged — because the Philippines had no cybercrime laws covering it at the time.

💥 Hack Storage
3😎2
WOW: YouTube has reached a deal with FIFA to broadcast World Cup games live!
2
❗️ Apple accidentally shipped Claude[.]md files in the Apple Support app update (v5.13).

For context, Claude[.]md is the instruction file Anthropic's Claude Code uses to understand a project's structure, conventions, and developer guidance. They typically live in source repos and are not meant to ship inside production apps.

Source: aaronp613
4
☣️ Do not visit. Any other site with fresh domain registrations and no license from Ghana or customer support. Run!
🔥2
Some have customer support also. Often they target Telegram Tipsters.

What to look out for.

1. If the said team or clubs can only be found on their betting site after they sent you booking code or link. Then it's fake
👏2
🔭🔭🔭🔭🔭🔭🔭🔭🔭🔭🔭
🪀 Taurus Shield users 🪀
🔭🔭🔭🔭🔭🔭🔭🔭🔭🔭🔭


Please stop DMing me daily asking for tutorials and step-by-step guides on how to use the tools. I build and maintain Taurus Shield with other different apps and projects — that's already a full-time job on its own. I can't also be making videos, writing guides, and doing 1-on-1 teaching sessions on top of that.


If u are a beginner kindly check YouTube, Search telegram groups & channels, there are free video tutorials covering everything related to reverse engineering.

I add usage info inside the app itself. That's the extent of my support for how-to questions.



To the 30+ people hitting my DM every day asking for tutorials — please stop. I won't be responding to those messages going forward.
.If u spam my DM u take block as well.


🦠 If there are bugs and u wants to draw my attention in fixing fine.. 🦠
🔥7👍1💯1
Media is too big
VIEW IN TELEGRAM
🏜🏜🏜🏜🏜🏜🏜🏜🏜
➽: 𝗧𝗮𝘂𝗿𝘂𝘀 𝗦𝗵𝗶𝗲𝗹𝗱 :➽
🏜🏜🏜🏜🏜🏜🏜🏜🏜

⚙️ 𝗔𝗱𝗱𝗲𝗱 𝟯 𝗧𝗼𝗼𝗹𝘀 ⚙️

🪀 𝗧𝗢𝗢𝗟𝗦 𝗙𝗘𝗔𝗧𝗨𝗥𝗘𝗦 🪀

├ 𝗜𝗜𝟮𝗖𝗣𝗣 𝗗𝘂𝗺𝗽𝗲𝗿

Zip libil2cpp.so + global-metadata.dat, Cloud runs Il2CppDumper & dump.cs, script.json, ida.py, ghidra.py & offsets.json..Interest-scored methods surface the best patch targets. Select, configure & apply ARM64 patches straight into libil2cpp.sofully inbuilt , no extra tools needed. Perfect for modding Unity games to unlock coins, keys, gems & more.

├ 𝗖𝗼𝗰𝗼𝘀𝟮𝗱-𝘅 𝗔𝗻𝗮𝗹𝘆𝘀𝗲𝗿

Cloud engine auto-detects game type (Native C++ / Lua / JS). Native: full ELF symbol dump with interest scores. Lua & JS: script variable scan & extraction. Browse, select & patch entirely inbuilt, Perfect for modding Cocos2d-x games to unlock coins, keys, gems & more.

└ 𝗦𝗺𝗮𝗹𝗶 𝘁𝗼 𝗥𝗲𝗴𝗲𝘅

Convert any Smali bytecode snippet into a regex search pattern. Strips .line noise, wildcards registers & hex constants automatically.


🕹 Released By :

逆转 X 模组

🔗 Share To Support Us:

🔥1231👏1
🦠🍟🌭 React for more...
8🔥4🥰2❤‍🔥1😁1
🔥POWER SEARCH ENGINES🔍👇

🌐shodan.io — Servers
🧠google.com — Dorks
📡wigle.net — WiFi Networks
🧾grep.app — Code Search
⚠️app.binaryedge — Threat Intelligence
🖥 onyphe.io — Servers
⚙️viz.greynoise.io — Threat Intelligence
🌎censys.io — Servers
📧 hunter.io — Email Addresses
🔎fofa.info — Threat Intelligence

🌐zoomeye.org — Threat Intelligence
💥 leakix.net — Threat Intelligence
🧩intelx.io — OSINT
😵app.netlas.io — Attack Surface
👨‍💻searchcode.com — Code Search
🔗urlscan.io — Threat Intelligence
🔖publicwww.com — Code Search
⚙️fullhunt.io — Attack Surface
🚨socradar.io — Threat Intelligence
⚔️ binaryedge.io — Attack Surface

🧱ivre.rocks — Servers
🛡crt.sh — Certificate Search
🐞vulners.com — Vulnerabilities
🌊pulsedive.com — Threat Intelligence

Hack Storage
3