AdvPhishing – This Is Advance Phishing Tool! OTP PHISHING

KitPloit - PenTest Tools!-- This Is Advance Phishing Tool! OTP PHISHING SPECIAL OTP BYPASS VIDEO WORKED Social Media Hack Link Installation Termux https://www.youtube.com/watch?v=LO3hX1lLBjI Whatsapp OTP https://www.youtube.com/watch?v=pyB63ym3QYs Google OTP https://www.youtube.com/watch?v=MhSb4My1lZo Paytm OTP https://www.youtube.com/watch?v=3TB_sISTw9U Instagram OTP https://www.youtube.com/watch?v=VmkV1rrw2-w Phone Pay OTP https://www.youtube.com/watch?v=ZgaoLubKBBo Telegram OTP https://www.youtube.com/watch?v=BhGyGkIDhO0 TECHNIQUE When victim enter his credentials, you need to go to original website … Continue reading AdvPhishing – This Is Advance Phishing Tool! OTP PHISHING

Leveraging LFI to RCE in a website with +20000 users

InfoSec Write-ups - Medium-- Hello researchers and bug hunters! Recently I found an interesting attack vector which I would like to share with you. Without losing time, let’s jump into it.Visiting the website (port 443), we see this webpage:/index.phpFinding LFI vulnerabilityLet’s browse through the website to see if we can find any interesting endpoint. Clicking to Contact … Continue reading Leveraging LFI to RCE in a website with +20000 users

Timewarrior – Commandline Time Reporting

KitPloit - PenTest Tools!-- Timewarrior is a time tracking utility that offers simple stopwatch features as well as sophisticated calendar-based backfill, along with flexible reporting. It is a portable, well supported and very active Open Source project.Installing From Package Thanks to the community, there are binary packages available here. Building Timewarrior Building Timewarrior yourself requires … Continue reading Timewarrior – Commandline Time Reporting

Hack the Box — Blackfield

InfoSec Write-ups - Medium-- Hack the Box — Blackfieldhttps://www.hackthebox.eu/home/machines/profile/255Blackfield is a 40-point machine from Hack the Box which requires you to exploit mistakes done after a recent computer forensic investigation recently done on the machine. The files left valuable information about the machine, usually extracted when doing computer forensics, which includes a dump of LSASS. Gaining access … Continue reading Hack the Box — Blackfield

Asnap – Tool To Render Recon Phase Easier By Providing Updated Data About Which Companies Owns Which Ipv4 Or Ipv6 Addresses

KitPloit - PenTest Tools!-- Asnap aims to render recon phase easier by providing regularly updated data about which companies owns which ipv4 or ipv6 addresses and allows the user to automate initial port and service scanning. █████╗ ███████╗███╗ ██╗ █████╗ ██████╗ ██╔══██╗██╔════╝████╗ ██║██╔══██╗██╔══██╗ ███████║███████╗██╔██╗ ██║███████║██████╔╝ ██╔══██║╚════██║██║╚═█╗██║██╔══██║██╔═══╝ ██║ ██║███████║██║ ╚████║██║ ██║██║ ╚═╝ ╚═╝╚══════╝╚═╝ ╚═══╝╚═╝ ╚═╝╚═╝ Author … Continue reading Asnap – Tool To Render Recon Phase Easier By Providing Updated Data About Which Companies Owns Which Ipv4 Or Ipv6 Addresses

Pentester Lab Pro Subscription Giveaway

InfoSec Write-ups - Medium-- InfoSec Writeups’ first collaboration with PentesterLabHello folks!We are super excited to announce that Infosec Write-ups is conducting its first-ever competition in collaboration with PentesterLab — the biggest and best online resource that makes learning web hacking easier!The winners will receive 1-month PentesterLab Pro Lab Coupons, using which they can access all the pro labs … Continue reading Pentester Lab Pro Subscription Giveaway

uriDeep – Unicode Encoding Attacks With Machine Learning

KitPloit - PenTest Tools!-- Unicode encoding attacks with machine learning. Tool based on machine learning to create amazing fake domains using confusables. Some domains can deceive IDN policies (Chrome & Firefox). I created the best (big) dictionary of confusables using neural networks. It is used in the tool and it can be download from: https://github.com/mindcrypt/uriDeep/blob/master/data/deepDiccConfusables.txtContinue reading uriDeep – Unicode Encoding Attacks With Machine Learning