Brut Security – Telegram
Brut Security
14.7K subscribers
914 photos
73 videos
287 files
970 links
Queries: @wtf_brut
🛃WhatsApp: wa.link/brutsecurity
🈴Training: brutsec.com
📨E-mail: info@brutsec.com
Download Telegram
3 million dollars Methodology Santiago Lopez.pdf
469.9 KB
$3 million dollars Methodology! [Santiago Lopez]
4😭3👍1
LucasFaudman_apkscan_Scan_for_secrets,_endpoints,_and_other_sensitive.mov
3.7 MB
🫡APKscan - Scan for secrets, endpoints, and other sensitive data after decompiling and deobfuscating Android files. (.apk, .xapk, .dex, .jar, .class, .smali, .zip, .aar, .arsc, .aab, .jadx.kts).

🚀Download - https://github.com/LucasFaudman/apkscan

#bugbounty #bugbountytips
Please open Telegram to view this post
VIEW IN TELEGRAM
🔥8
🚨 Depix 👉 It is a free and open-source tool used for image steganography, specifically for extracting hidden data from images.

🔗Download :
https://github.com/spipm/Depix

#bugbounty #bugbountytips
2🔥2
Discover more subdomains during your recon by extracting subdomains from TLS certificates. Integrate Cero into your recon automation for better results.

https://github.com/glebarez/cero
🔥5👍2
PostgreSQL Injection via CAST:

'=(SELECT CAST(user AS int) FROM users)='

💡 DB errors w/o useful info? Try this payload ☝️
🥰5
Mastering Online Cameras Searching 📹

Intrigued by global events? Live cameras offer a solution. Millions of Internet-connected devices worldwide provide real-time views of live events, like public gatherings and conflicts💥

IoT search engines, Google dorking, and niche websites: learn how to search online cameras around the world 🔎

👉 Read now:
https://netlas.io/blog/find_online_cameras/

Sign Up Now on @netlas- https://app.netlas.io/ref/9cc61538/
Please open Telegram to view this post
VIEW IN TELEGRAM
2👍2
🚀CRLFsuite - CRLF injection scanner 🚀
👉 The most powerful CRLF injection (HTTP Response Splitting) scanner.
🔗 Download :
https://github.com/Raghavd3v/CRLFsuite
🔥6
This media is not supported in your browser
VIEW IN TELEGRAM
💯Success in bug bounty isn't about luck—it's about persistence. Every failure is a lesson, and every attempt brings you closer to the win.
Please open Telegram to view this post
VIEW IN TELEGRAM
👍147
Brut Security pinned Deleted message
🚀Found a subdomain running on Symfony debug mode.
👾Tip: Use EOS (https://github.com/synacktiv/eos) to get PHP variables and a lot more.

#BugBounty #bugbountytips #vulnerability
Please open Telegram to view this post
VIEW IN TELEGRAM
1
Advanced XSS.pdf
370.6 KB
SQLi Techniques.zip
5.6 MB
👍63
🔥22😁5👍41🗿1
Add 'app/config/config.local.neon' to the wordlist, and maybe you will get juicy data.

By:
@NoRed0x

#bugbountytips #bugbountytip
👌52👍1
👾Trying to find Origin IP check out this tool created by @mmrecon to find IP behind WAF: https://github.com/mmarting/unwaf

#bugbountytips
Please open Telegram to view this post
VIEW IN TELEGRAM
👍41🔥1