Peligr0 Reposted

La mejor forma de conseguir las cosas.

Tweet Image 1

Peligr0 Reposted

Bug Bounty Tips: Here's how you can escalate XSS Issues to an Account Takeover💸 Have you Identified a XSS Issue? Don't be too quick to report it with alert(1) or alert(document.cookie) for a Medium payout. Here's how you can escalate XSS Issues to an ATO for much higher…

Tweet Image 1

Peligr0 Reposted

Pones "Asesor Online" en el buscador de Instagram y la cantidad de perfiles truchos es increible. @instagram ponete las pilas y bloquealos! #phishing #estafas

Tweet Image 1

Peligr0 Reposted

⚠️Fast Google Dorks Scan⚠️collects all the possible Google dorks search combinations & to find the information about the specific web-site: common admin panels, the widespread file types & path traversal #OSINT #CTI #Clearnet #DarkWeb #DarkWebInformer #Cybercrime #Cybersecurity

Tweet Image 2

Peligr0 Reposted

Perdón por la catarsis, pero mi vida era tranquila y feliz hasta hoy martes, gracias al Banco @Santander_Ar, el peor del país por lejos Cuando lean lo que me hicieron hoy, no lo podrán creer Abro hilo...

Tweet Image 1

Peligr0 Reposted

Bug Bounty Tips: Thing you must try if you encounter a phone number verification mechanism on a web application. I was working on a web application that forces new suspicious accounts to verify their phone number and learned how to use a phone number on multiple accounts.


Peligr0 Reposted

100 web vulnerabilities, categorized into various types: Injection Vulnerabilities: 1. SQL Injection (SQLi) 2. Cross-Site Scripting (XSS) 3. Cross-Site Request Forgery (CSRF) 4. Remote Code Execution (RCE) 5. Command Injection 6. XML Injection 7. LDAP Injection 8. XPath…


Peligr0 Reposted

Human 1 - sqlmap 0: defeating automation through manual exploitation hackcommander.github.io/posts/2024/03/…


Peligr0 Reposted

#nuclei Js-analyse template is updated now! The new update include extraction of : -S3 buckets. -Private keys. -Github-Personal-Access-Token. -Github-OAuth-Access-Token. -Ajax request in JavaScript could led to find more backend requests . Best regards github.com/ayadim/Nuclei-…

Big updates are coming to nuclei template "js-analyse" to extract more creds,api keys,private keys (SSH) also it will extract S3 bucket from javascript files.

Tweet Image 1


Peligr0 Reposted

Desde la Provincia de Salta cedsa.edu.ar/tecnicatura-on…

Tweet Image 1

United States Trends
Loading...

Something went wrong.


Something went wrong.