💬 Security Professionals:
What vulnerability do you most commonly discover using #BurpSuite during #VAPT?
1️⃣ IDOR/BOLA
2️⃣ XSS
3️⃣ Auth flaws
4️⃣ API misconfigurations
🧠 Most real vulnerabilities hide behind requests, sessions & APIs.
#CyberSecurity#AppSec
How many people missed Bitcoin when it came out ? 😐
Pi is a new digital currency developed by Stanford PhDs, with over 55 million members worldwide. To claim your Pi, follow this link https://t.co/wY99XjqUWf and use my username (SatyaKayala) as your invitation code.
#Pi#MinePi
NucleiFuzzer v1.0.1
1. Added multiple domain support with -f option
2. The Paramspider output of each domain is appended into a single file and passed to the Nuclei tool
3. Make sure to follow the below syntax:
nf -d https://t.co/ixwEINgKKl
nf -f asset.txt
#NucleiFuzzer#Nuclei
NucleiFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications
Link: https://t.co/53rEaWbYWX
#NucleiFuzzer#Nuclei#Fuzzer#Paramspider
Did you know you can use nuclei to scan all the IP's associated with the dns record of a host? 😱
⌨️ Use the -scan-all-ips option!
#Nuclei101#Hackwithautomation
HTTP Fuzzing Example SSTI Template 🚀
⚛️ Craft tailored HTTP requests to uncover common web vulnerabilities like SQLi, SSRF, SSTI, and more.
No prior knowledge of the target needed! 😱
Head to our docs for more info 👇
🔗 https://t.co/I4C4C4JVfs
Stop using complex commands and bash functions and start using config files 😎
Here's everything you need to know about nuclei config files! 👇
#Nuclei101#Hackwithautomation#nucleifoundation
https://t.co/2KooqieMFR
How to hack web applications in 2023: Part 1 🚀
💻 Types of web apps
⚙️ Setting up for testing
🪲 RCE
🐞 SQLi
🐛 XXE
🪳 Insecure Deserialization
🐜 XSS
And that's just Part 1! 😱 👇 #hacking#pentesting#bugbounty
https://t.co/uHIDJu0if2
SQLiDetector – Python Script That Helps Detect SQL injection By Sending Requests With 14 Payloads & Checks for 152 Regex Patterns
https://t.co/BlzzjRoY7e #infosec#netsec#pentest#cybersecurity#bugbounty