Been playing with a new Ghoulsight idea โ it opens Chrome, you browse normally, and it tests everything in the background. Tried it on https://t.co/VkqnRwRrwO. Feels satisfying.
Still tinkering. Would you actually use this for XSS hunting? Or too much?
Honestly the cybersecurity community feels selfish sometimes. Everyone wants free tools free scripts and free help. But when they learn something valuable they keep it to themselves. Only a few people genuinely help others and most just take and disappear
most people in infosec community is cowards, they do not have the corage to speak about the recent Iran USA Israel war US & Israel just killed the Supreme Leader, bombed Tehran oil depots & refineries, thousands dead, missiles flying everywhere, cyber ops going wild in the shadowsโฆ but nah, better tweet about how AI can find 0days
As-Salamu Alaykum,
For Ramadan, Iโm offering FREE 5-day access to GhoulSight, my web-based XSS scanner, as a gift to the security community.
Visit: http://207.180.192.215/
Create an account
DM your username + email for approval
Authorized testing only.
Ramadan Kareem.
Ghoulsight
An XSS scanner built with Golang, currently in development.
Smart detection system with zero false positives.
Accurate results, real findings only.
#ractiurd
WAF Bypass Discovered - Akamai & Cloudflare
A fresh technique has been spotted that successfully bypasses WAFs like Akamai and Cloudflare.
#infosec#Cybersecurity#bugbountytip