• 🌙 Community Spirit

    Ramadan Mubarak! To honor this month, Crax has paused NSFW categories. Wishing you peace and growth!

Github trends & tools (1 Viewer)

Currently reading:
 Github trends & tools (1 Viewer)

Recently searched:

AztecPo

Member
LV
2
Joined
May 20, 2023
Threads
55
Likes
11
Awards
7
Credits
3,060©
Cash
0$
🔑 Automated decryption tool based on natural language processing and artificial intelligence

📝Efficient collection of subdomains using template permutations

⚙️ Firefox extension to improve DOM XSS search

🔐Account capture by bypassing SSO authentication using the login function without a password

⌨️ Traversing WAF through a large number of characters

⚙️ BurpSuite extension for API audit
API Kit is an open source extension, which is a set of tools for detecting, scanning and auditing APIs. It has an active and passive mode.

📰 Information Security Resources

▫️ SSRF on Facebook (https://medium.com/@win3zz/how-i-made-31500-by-submitting-a-bug-to-facebook-d31bb046e204 )

▫️ Deleting any Video or Reel on Facebook (https://bugreader.com/social/write-ups-general-delete-any-video-or-reel-on-facebook-11-250--100965 ?fbclid=IwAR16bED_J9-xqmnVq98jSp-JIyrCAhtfnns7gsdMGpFpEVZKr6VL7tVPebA)
And IDOR again. Perhaps one of the most insidious vulnerabilities of modern web applications, which, often, can be detected only by manual testing and careful study of the available functionality.

▫️ Account capture and bypass two-factor authentication in Facebook (https://medium.com/@yaala/account-takeover-and-two-factor-authentication-bypass-de56ed41d7f9 )
And again Facebook, but now, a vulnerability found when analyzing the basic functionality of the endpoints of a mobile application. A simple step-by-step change of parameters from false to true can lead to unexpected findings.

▫️ mkpath (https://github.com/trickest/mkpath )
A tool that allows you to create custom wordlists for a given list of words. It can be useful during directory brutalization.

▫️ Dorks for Shodan and Censys ( )
A selection of repositories on github with useful dorks for Shodan and Censys

▫️ OWASP Vulnerable App (https://github.com/SasanLabs/VulnerableApp )
good platform for studying common vulnerabilities on the web.
 

Create an account or login to comment

You must be a member in order to leave a comment

Create account

Create an account on our community. It's easy!

Log in

Already have an account? Log in here.

Tips
Recently searched:

Similar threads

Users who are viewing this thread

Top Bottom