b4ckDo0r3d's profile picture. Seurity Researcher.

Med Amine

@b4ckDo0r3d

Seurity Researcher.

Med Amine reposted

🚀 New Video is Live! Ever wondered how hackers use SSH Port Forwarding to access internal services with just one command? 🧠💻 🔐 Master the technique. 🔗 Bypass firewalls. 🕵️ Explore like a pro. 📺 Watch now: youtu.be/U6597_H8Smg #CyberSecurity #EthicalHacking #SSH

NullSecurityX's tweet card. How Hackers Master SSH Port Forwarding: Local Services or Internal...

youtube.com

YouTube

How Hackers Master SSH Port Forwarding: Local Services or Internal...


Med Amine reposted

Advanced Bug Bounty One-Liners 1.Recon Pipeline: Automates subdomain discovery, port scanning, and vulnerability detection: subfinder -d target.com -all | anew subs.txt; shuffledns -d -r resolvers.txt -w wordlist.txt | anew subs.txt; dnsx -l…


Med Amine reposted

🚀 NextSploit: Next.js CVE-2025-29927 Scanner & Exploiter NextSploit is a tool that detects and exploits CVE-2025-29927, a security flaw in Next.js Check it out: github.com/AnonKryptiQuz/… CREDIT:@AnonKryptiQuz #CyberSecurity #Pentesting #NextJS #Exploit #CTF #EthicalHacking


Med Amine reposted

visualize any codebase 👀


Med Amine reposted

# **Awesome Advanced Bug Bounty One-Liners** **For elite recon, subdomain enumeration, LFI, and takeovers. Optimized for speed, signal, and stealth.** --- ## **One-Line Recon Using `pd` Tools** ```bash subfinder -d redacted.com -all | anew subs.txt \ &&…

TheMsterDoctor1's tweet image. # **Awesome Advanced Bug Bounty One-Liners**  

**For elite recon, subdomain enumeration, LFI, and takeovers. Optimized for speed, signal, and stealth.**  

---

## **One-Line Recon Using `pd` Tools**
```bash
subfinder -d redacted.com -all | anew subs.txt \
&&…

Med Amine reposted

I released a tool for bug bounty hunters! Just one click to download and clean subdomains from all HackerOne platforms using @pdiscoveryio Chaos Github : github.com/MuhammadWaseem… #BugBounty #ProjectDiscovery

wgujjer11's tweet image. I released a tool for bug bounty hunters!  Just one click to download and clean subdomains from all HackerOne platforms using @pdiscoveryio  Chaos

Github : github.com/MuhammadWaseem…

#BugBounty #ProjectDiscovery

Med Amine reposted

Binary ML automation tools I developed about a year ago back in the langchain era: AutoGDB: github.com/Protosec-Resea… BinaryChat: github.com/Protosec-Resea…


Med Amine reposted

🐈‍⬛ Netcat for Pentesters: A Comprehensive Guide 🚀 Netcat, dubbed the "Swiss Army knife" of networking, is a versatile tool for debugging, scanning, and exploitation. Ethical hackers, pentesters, or sysadmins can use it for network analysis, backdoors, and file transfers.

_0b1d1's tweet image. 🐈‍⬛ Netcat for Pentesters: A Comprehensive Guide 🚀

Netcat, dubbed the "Swiss Army knife" of networking, is a versatile tool for debugging, scanning, and exploitation. Ethical hackers, pentesters, or sysadmins can use it for network analysis, backdoors, and file transfers.
_0b1d1's tweet image. 🐈‍⬛ Netcat for Pentesters: A Comprehensive Guide 🚀

Netcat, dubbed the "Swiss Army knife" of networking, is a versatile tool for debugging, scanning, and exploitation. Ethical hackers, pentesters, or sysadmins can use it for network analysis, backdoors, and file transfers.
_0b1d1's tweet image. 🐈‍⬛ Netcat for Pentesters: A Comprehensive Guide 🚀

Netcat, dubbed the "Swiss Army knife" of networking, is a versatile tool for debugging, scanning, and exploitation. Ethical hackers, pentesters, or sysadmins can use it for network analysis, backdoors, and file transfers.
_0b1d1's tweet image. 🐈‍⬛ Netcat for Pentesters: A Comprehensive Guide 🚀

Netcat, dubbed the "Swiss Army knife" of networking, is a versatile tool for debugging, scanning, and exploitation. Ethical hackers, pentesters, or sysadmins can use it for network analysis, backdoors, and file transfers.

Med Amine reposted

ffuf -w subdomains.txt:SUB -w payloads/backup_files_only.txt:FILE -u https://SUB/FILE -mc 200 -rate 50 -fs 0 -c -x http://localip:8080 payload:github.com/coffinxp/paylo…

/backup.tar.gz

krishnsec's tweet image. /backup.tar.gz


Med Amine reposted

I added a GUI file explorer to Loki C2! It’s not winning any design awards, but it works surprisingly well. The Loki C2 client is built with Electron. I got the explorer up and running in just a few hours—AI is killer for web dev tasks.


Med Amine reposted

Incoming Burp AI sneak peek 👀 🤫 Next up, we have AI-generated recorded login sequences… #BurpAI #BurpSuite


Med Amine reposted

🛠️ 𝗥𝗲𝗽𝗼 - 𝗚𝗮𝗺𝗲 𝗼𝗳 𝗔𝗰𝘁𝗶𝘃𝗲 𝗗𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 ℹ️ GOAD is a pentest active directory LAB project. This lab aims to give pentesters a vulnerable AD environment ready to use to practice usual attack techniques. buff.ly/3QsIDHX #Active Directory

david_das_neves's tweet image. 🛠️ 𝗥𝗲𝗽𝗼 - 𝗚𝗮𝗺𝗲 𝗼𝗳 𝗔𝗰𝘁𝗶𝘃𝗲 𝗗𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 

ℹ️ GOAD is a pentest active directory LAB project. This lab aims to give pentesters a vulnerable AD environment ready to use to practice usual attack techniques.

buff.ly/3QsIDHX 

#Active Directory
david_das_neves's tweet image. 🛠️ 𝗥𝗲𝗽𝗼 - 𝗚𝗮𝗺𝗲 𝗼𝗳 𝗔𝗰𝘁𝗶𝘃𝗲 𝗗𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 

ℹ️ GOAD is a pentest active directory LAB project. This lab aims to give pentesters a vulnerable AD environment ready to use to practice usual attack techniques.

buff.ly/3QsIDHX 

#Active Directory
david_das_neves's tweet image. 🛠️ 𝗥𝗲𝗽𝗼 - 𝗚𝗮𝗺𝗲 𝗼𝗳 𝗔𝗰𝘁𝗶𝘃𝗲 𝗗𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 

ℹ️ GOAD is a pentest active directory LAB project. This lab aims to give pentesters a vulnerable AD environment ready to use to practice usual attack techniques.

buff.ly/3QsIDHX 

#Active Directory

Med Amine reposted

Just launched CTF Search with 24k+ CTF writeups, covering everything from web exploitation to reverse engineering. Check it out! ctfsearch.hackmap.win

sarperavci's tweet image. Just launched CTF Search with 24k+ CTF writeups, covering everything from web exploitation to reverse engineering. Check it out!

ctfsearch.hackmap.win

Med Amine reposted

🚨Alert🚨 CVE-2025-22146 (CVSS 9.1): Critical Sentry Vulnerability Allowed Account Takeovers 📊 174k+ Services are found on the hunter.how yearly. 🔗Hunter Link:hunter.how/list?searchVal… 👇Query HUNTER : product.name="Sentry Error Monitoring" FOFA :…

HunterMapping's tweet image. 🚨Alert🚨 CVE-2025-22146 (CVSS 9.1): Critical Sentry Vulnerability Allowed Account Takeovers
📊 174k+ Services are found on the hunter.how yearly.
🔗Hunter Link:hunter.how/list?searchVal…
👇Query
HUNTER : product.name="Sentry Error Monitoring"
FOFA :…

Med Amine reposted

🚨Alert🚨 CVE-2024-12084(CVSS 9.8) : Heap overflow that could lead to remote code execution 📊 52M+ Services are found on the hunter.how yearly. 🔗Hunter Link:hunter.how/list?searchVal… 👇Query HUNTER : product.name="rsync" FOFA : product="rsync" SHODAN :…

HunterMapping's tweet image. 🚨Alert🚨 CVE-2024-12084(CVSS 9.8) : Heap overflow that could lead to remote code execution
📊 52M+ Services are found on the hunter.how yearly.
🔗Hunter Link:hunter.how/list?searchVal…
👇Query
HUNTER : product.name="rsync"
FOFA : product="rsync"
SHODAN :…

Med Amine reposted

gitxray - multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more. Gitxray (short for Git X-Ray) is a multifaceted security tool designed for use on GitHub repositories. It can serve many purposes, including OSINT and…

bountywriteups's tweet image. gitxray - multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.

Gitxray (short for Git X-Ray) is a multifaceted security tool designed for use on GitHub repositories. It can serve many purposes, including OSINT and…
bountywriteups's tweet image. gitxray - multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.

Gitxray (short for Git X-Ray) is a multifaceted security tool designed for use on GitHub repositories. It can serve many purposes, including OSINT and…

Med Amine reposted

WayBackup Finder This Python script fetches URLs from the Wayback Machine and filters them based on specified file extensions. It also checks if archived snapshots are available for each URL and saves the filtered URLs to files. github.com/anmolksachan/W…

bountywriteups's tweet image. WayBackup Finder

This Python script fetches URLs from the Wayback Machine and filters them based on specified file extensions. It also checks if archived snapshots are available for each URL and saves the filtered URLs to files.

github.com/anmolksachan/W…

Loading...

Something went wrong.


Something went wrong.