@Phantasm_Lab – Telegram
@Phantasm_Lab
2.56K subscribers
712 photos
34 videos
671 files
2.71K links
- Red x Blue Security
- Bug Bounty 💷 💵
- Exploitable tools
- Programming Languages
- Malware Analysis

🇺🇸 🇧🇷 🇪🇸

since 2017 ©


Parceiros:
@TIdaDepressaoOficial @acervoprivado @ReneGadesx @G4t3w4y
Download Telegram
What Is Bug Bounty Hunting?

Bug bounty hunting is being paid to find vulnerabilities in software, websites, and web applications. The security teams at major companies don’t have enough time or manpower to squash all the bugs they have, so they reach out to private contractors for help. Basically, you use your tools to break things (or break into things), write up a vulnerability report to the company who’s issued the bounty, then get paid. Some hackers make tens of thousands of dollars a year on the side just hunting bugs.

https://lifehacker.com/how-to-earn-money-as-a-bug-bounty-hunter-1797946520

🕴🏽 @Phantasm_Lab
Please open Telegram to view this post
VIEW IN TELEGRAM
Please open Telegram to view this post
VIEW IN TELEGRAM
Please open Telegram to view this post
VIEW IN TELEGRAM
advanced-penetration-testing.pdf
psychoPATH

psychoPATH - hunting file uploads & LFI in the dark. This tool is a highly configurable payload generator detecting LFI & web root file uploads. Involves advanced path traversal evasive techniques, dynamic web root list generation, output encoding, site map-searching payload generator, LFI mode, nix & windows support, single byte generator. Now …`

https://github.com/ewilded/psychoPATH

🕴🏽 @Phantasm_Lab
Retos de Cross-site noscripting - XSS

XSS.GAME es un sitio Web de entrenamiento en donde aprenderás a encontrar y explotar errores XSS.

Es patrocinado por el gigante Google y no tiene costo. Una buena alternativa para aprovechar esos momentos libres durante la noche.

https://xss-game.appspot.com/
Teorias de Mr. Robot (Parte VI): Ressurreição

Focando na 3ª Temporada, o último vídeo das Teorias de Mr. Robot do ano explora temas de paternidade, a revolução individual de Elliot e Mr. Robot e Perspectiva.

https://www.youtube.com/watch?v=pfdcWcFdqxY&t=638s

🕴🏽 @Phantasm_Lab
Web Penetration Testing with Burp and the CO2 Extension

Portswigger’s Burp Suite is a very popular and flexible intercepting proxy tool among web application penetration testers. During this training session I will provide an overview of Burp Suite and how it can be extended to perform functions that are not directly available in the tool. The session will continue with a detailed explanation and demonstration of my Burp CO2 extension suite, using targets in the Samurai Web Testing Framework (Samurai WTF) distribution. Attendees may choose to follow along in their own Samurai WTF VM or just sit back and watch the show. Most CO2 modules will run in both the Free and Professional editions of Burp Suite.

https://www.youtube.com/watch?v=ez9KSqlYoWU

🕴🏽 @Phantasm_Lab
How a Hacker Fired a Locked Smart Gun with $15 of Magnets

The Armatix iP1 pistol and its RFID watch, are sold as one of the most secure firearm systems available. But a hacker, who goes by ‘Plore’, has found flaws in the Armatix that entirely defeat its security measures.

https://www.wired.com/video/how-a-hacker-fired-a-locked-smart-gun-with-15-of-magnets/

🕴🏽 @Phantasm_Lab