Brut Security – Telegram
Brut Security
14.6K subscribers
904 photos
72 videos
287 files
958 links
Queries: @wtf_brut
🛃WhatsApp: wa.link/brutsecurity
🈴Training: brutsec.com
📨E-mail: info@brutsec.com
Download Telegram
dON'T fORGET tO gIVE rEACTIONS
25🔥4🫡2🤔1
🚨Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers PHP webshells across large target sets.

https://github.com/ill-deed/CVE-2025-34085-Multi-target
👍64
🚨 CVE-2025-47812: Wing FTP Server Remote Code Execution (RCE) vulnerability

🔥PoC :
https://github.com/4m3rr0r/CVE-2025-47812-poc

👉Dorks:
HUNTER:
http://product.name="Wing FTP Server"
🔥114👍4
😁2813👍3
🚨 New Batch Starting – August 2025 🚨
Brut Practical Web Penetration Testing (bPWP)

We’re back with a fresh batch of our most in-demand training – Brut Practical Web Penetration Testing – starting this August!

🔍 Learn the art of Web Hacking with:
100% Practical Sessions
Bug Bounty Approach
Real-World Lab Scenarios
Lifetime Community Access
Beginner-Friendly with Advanced Techniques

💻 Ideal for aspiring bug bounty hunters, cybersecurity students, and VAPT professionals.

📆 Limited Seats – Enroll Now
🌐
https://brutsec.com/bPWP

📩 For Queries:
Telegram:
@wtf_brut
WhatsApp:
https://wa.link/brutsecurity | +918945971332
Email:
info@brutsec.com
9😢2👍1
AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories.

🚨https://github.com/AggressiveUser/AllForOne
🔥194👍3
Bug Bounty Dorks
https://dorkking.blindf.com/
22👍5
👻SpoofProof helps security professionals detect email domain spoofing vulnerabilities and validate DMARC, SPF, and DKIM configurations, making email security assessments seamless and efficient.

Extension Name: SpoofProof - Domain Spoofing Validation

🔗 BApp Store:
https://portswigger.net/bappstore/a321360c6e114b3dab6f2c67d68c241a

💻 Source Code:
https://github.com/portswigger/spoofproof
12🔥5
Dropping Soon
🔥135
BrutDroid 2.0 is a powerful, Windows-optimized toolkit designed specifically for Android Studio, streamlining the setup of a mobile penetration testing lab. Built to make Android pentesting effortless, it automates emulator creation, rooting, Frida server setup, and Burp Suite certificate installation. With a vibrant new UI and support for custom Frida noscripts, BrutDroid empowers security researchers to focus on testing, not setup. Linux support is coming soon!

https://github.com/Brut-Security/BrutDroid

Don't forget to leave a star :)
31🔥2
Brut Security pinned «Full Walkthrough - https://youtu.be/bDxgilaYcE8»
Forwarded from Bug Bounty POC's
Asset inventory of over 800 public bug bounty programs.
https://github.com/trickest/inventory
8👍6
Another one made it. You still watching reels?
27🗿8🤔4🤝1
CVE-2025-53770: Deserialization of Untrusted Data in Microsoft SharePoint, 9.8 rating 🔥

The most high-profile recent vulnerability allows an attacker to perform RCE on a Microsoft SharePoint server. Hackers are already exploiting it, so be careful!

Search at Netlas.io:
👉 Link: https://nt.ls/Ix8gb
👉 Dork: http.headers.microsoftsharepointteamservices:*

Vendor's advisory: https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
🔥113
2 Seats Left! Enroll Now 😎