Geekboy

@emgeekboy

Hacker, Co-founder , Ex-Security Analyst / BugBounty Hunter

India
Tilmeldt april 2014

Tweets

Du blokerede @emgeekboy

Er du sikker på, at du vil vise disse Tweets? At vise Tweets vil ikke fjerne blokering af @emgeekboy

  1. Fastgjort tweet
    12. sep. 2021

    If you're wondering why you should create your own templates, check out this 🧵

    Vis denne tråd
    Fortryd
  2. retweetede
    for 7 timer siden

    Did you know that you can use the "markdown-export" flag to export markdown-styled reports of all nuclei findings? Here's a sample report of a recently added template for detecting WebSphere SSRF.

    Fortryd
  3. retweetede
    29. dec. 2021

    I made this tool "objectify-s3" that scans all S3 buckets in your AWS account and finds public/misconfigured objects from all buckets recursively. Check it out. Share if you find it useful.

    Fortryd
  4. retweetede
    28. dec. 2021

    How do you turn a "bad" SSRF into a "good" SSRF? In the post, we detail a multitude of SSRF vulnerabilities, a failed XXE exploit chain and a post-auth RCE affecting Websphere Portal.

    Fortryd
  5. retweetede
    15. dec. 2021

    If you've any questions about our projects/services or want to directly chat with our team. Join our Discord server (with 2000+ members): We talk about automation ideas, troubleshooting, integrations, features, and bugs.

    Fortryd
  6. retweetede
    Fortryd
  7. retweetede
    15. dec. 2021

    Nuclei Templates v8.7.8 release update ✅ 08 New Templates ⭐️ 04 Unique contributors 🎯 Log4j JNDI Templates for VCenter & Solr 🗒 Templates changelog

    Fortryd
  8. retweetede
    15. dec. 2021

    Blocking requests containing '' is a terrible defence, but that doesn't stop people using it. If you're scanning websites that don't have your IP whitelisted, I highly recommend using a private collaborator server:

    Vis denne tråd
    Fortryd
  9. retweetede
    14. dec. 2021
    Fortryd
  10. retweetede
    15. dec. 2021

    Starting from v2.5.4 we've added a hexdump view for binary content, when the -debug flag is used. Both the Hex and ASCII content is highlighted to make debugging more convenient. Using together with the -vv flag, it'll also show an extra "Compact Hex" view.

    Vis denne tråd
    Fortryd
  11. retweetede
    11. dec. 2021
    Fortryd
  12. retweetede
    9. dec. 2021

    from my point of view the most valuable tools for recon stage could be found in they have amazing tools specially nuclei - httpx - naabu - dnsx - subfinder thanks for sharing these great tools 🙏🙏🙏

    Fortryd
  13. retweetede
    7. dec. 2021

    Folks 👋 We are live! 🥳 Join automating workflows with the Framework with & Drop your questions below, and the experts at AppSecEngineer will answer when you log in for the live code

    Fortryd
  14. retweetede
    7. dec. 2021
    Fortryd
  15. retweetede
    4. dec. 2021

    Nuclei Templates v8.6.9 release ✅ 54 New Templates 🌟 22 Unique / 06 New Contributors 🎯 26 New CVE Templates 🗒 Release changelog

    Fortryd
  16. retweetede
    25. nov. 2021
    Fortryd
  17. retweetede
    25. nov. 2021
    Fortryd
  18. retweetede
    18. nov. 2021

    Wanna know if the web app you are building is secure? Here is a tutorial on how to test the security of any web app in 3 min with nuclei, an open-source and developer-friendly app security scanner (👋 )

    Fortryd
  19. retweetede
    9. nov. 2021

    Thank you everyone who participated in , we appreciate your efforts to improve FOSS projects and to make them more valuable for the community through your contributions. 👉 Open source is changing the world 👈

    hacktoberfest
    Fortryd
  20. retweetede
    5. nov. 2021

    Find GoCD vulnerabilities using 1. GoCD Arbitrary File Read 2. GoCD Server Configuration 3. GoCD Encryption Key 4. GoCD Unauthenticated Dashboard 5. GoCD Admin Login Reference: Check it out at

    Fortryd
  21. retweetede
    30. okt. 2021

    Really enjoyed geeking out over today. Can’t believe i hadn’t taken a more serious look at it before. I feel that it would be super useful for ’s work in . Super useful for automated regression tests and exploratory tests 🤖🚀

    Fortryd

Indlæsning ser ud til at tage noget tid.

Twitter kan være overbelastet eller have en midlertidig forstyrrelse. Prøv igen, eller se flere oplysninger på Twitter Status.

    Du vil måske også kunne lide

    ·