1/5
#bugbounty #bugbountytips #bugbountytools #recon #hacking #CyberSecurity
1/5
#bugbounty #bugbountytips #bugbountytools #recon #hacking #CyberSecurity
We need to conduct a certificate search on the IP ranges of cloud providers such as Amazon, Digital Ocean, Google, and Microsoft. 1/3
We need to conduct a certificate search on the IP ranges of cloud providers such as Amazon, Digital Ocean, Google, and Microsoft. 1/3
github.com/0xCD4/SSL-by...
github.com/0xCD4/SSL-by...
go.bsky.app/GD7hKPX
go.bsky.app/GD7hKPX
Github: github.com/Spix0r/robof...
Github: github.com/Spix0r/robof...
Check out the writeup below:
jorianwoltjer.com/blog/p/ctf/x...
Check out the writeup below:
jorianwoltjer.com/blog/p/ctf/x...
What is a robots.txt file?
The robots.txt file is designed to restrict web crawlers from accessing certain parts of a website. However, it often inadvertently reveals sensitive directories that the site owner prefers to keep unindexed.
1/3
What is a robots.txt file?
The robots.txt file is designed to restrict web crawlers from accessing certain parts of a website. However, it often inadvertently reveals sensitive directories that the site owner prefers to keep unindexed.
1/3
Join to be among the first to access the latest cybersecurity write-ups!
Source Code: github.com/Spix0r/write...
Join to be among the first to access the latest cybersecurity write-ups!
Source Code: github.com/Spix0r/write...
I case you missed it:
I've created cspbypass.com
A site where you can search for known CSP bypass gadgets to gain XSS.
It already contains a bunch of useful gadgets with contributions from your favourite hackers.
If you have some CSP bypasses to share, feel free to contribute!
I case you missed it:
I've created cspbypass.com
A site where you can search for known CSP bypass gadgets to gain XSS.
It already contains a bunch of useful gadgets with contributions from your favourite hackers.
If you have some CSP bypasses to share, feel free to contribute!
Shazzer - A shared online fuzzer
shazzer.co.uk
Hackvertor - Web security conversion tool
hackvertor.co.uk
Shazzer - A shared online fuzzer
shazzer.co.uk
Hackvertor - Web security conversion tool
hackvertor.co.uk
github.com/Spix0r/cloud...
github.com/Spix0r/cloud...
Luckily, I later worked with and for "the other side" and it changed my mind 🤯
I hope young people reading it will avoid taking years to understand the complexities of fixing bugs in a timely manner 🤞
Luckily, I later worked with and for "the other side" and it changed my mind 🤯
I hope young people reading it will avoid taking years to understand the complexities of fixing bugs in a timely manner 🤞
Did you know you can use Hackvertor tags inside custom tags? This also works with globally declared variables!
Example set a global in a request:
<@set_var(true)>1337<@/set_var>
Custom JS tag:
output = convert("<
@get_var
/>")
Now that's power 💪
Did you know you can use Hackvertor tags inside custom tags? This also works with globally declared variables!
Example set a global in a request:
<@set_var(true)>1337<@/set_var>
Custom JS tag:
output = convert("<
@get_var
/>")
Now that's power 💪
github.com/N1ckDunn/SOS...
github.com/N1ckDunn/SOS...
#bugbounty #bugbountytools #cybersecurity
#bugbounty #bugbountytools #cybersecurity