Web appOpen in Telegram
BBrut Security

Brut Security

✅ High trust
@brutsecurity · channel · Tech · indexed since 2026-05-25
17 637subscribers
3 023average post reach
17.1%ER — reach to subscribers
53posts in 30 days
Brut Security
Video
AQM8JBcUui4qhOcrly7Hs8_jg2OCFy8aKVHUyH2dU568_8WdUzocGq7UXbym · 483 KB · click to show
😔
9 · 4.1K ·
B
Photo
click to show
The new RCE exploit is 100% effective; it has already generated 48 shells in just 10 minutes. ⚡ It involves 5 combined exploits affecting over 900,000 sites. 🎯 Affecting +970k websites DM me to buy  👉 @Mm_fit Channel: https://t.me/fox_security_cve #AD
9 · 3.5K ·
B
Brut Security
Photo
click to show
🔔 Bug Bounty Tip 🕵️ Did you know some exposed Google Maps API keys may also have access to Gemini models? 👀 Try geminiHunter to hunt for exposed Gemini API keys across: * JS/source maps * Wayback snapshots * Android APKs * Web assets It also deduplicates and validates keys, helping you identify which exposed keys are actually usable. 🔗 https://github.com/devploit/geminiHunter
50 · 3.7K ·
Brut Security
Photo
click to show
CVE-2026-88804: Unauthenticated update of public UI settings leading to stored XSS in Rancher, 9.4 Rating 🔥 An unauthenticated attacker can plant malicious content that runs in the browser of anyone visiting the Rancher login page. This can leak the local administrator bootstrap password or hijack an active admin session, leading to complete control of the Rancher installation and its managed downstream clusters. Search at Netlas.io: 👉 Link: https://nt.ls/dtxM5 👉 Dork: http.favicon.hash_sha256:2d7adbc74e7c8941927d04e702acbff577d219fef8617c8c3014d34ae395525b OR http.body:"<title>Rancher</title>" OR http.unknown_headers.key:"x_api_cattle_auth" Vendor's advisory: https://github.com/rancher/rancher/security/advisories/GHSA-992f-xh8r-jg2f
18 · 3.8K ·
Photo
click to show
/etc/passwd ==> WAF restriction? Use these: /e?c/?asswd /e*c/*asswd /??c/?asswd /??c/?assw? Doesn't work always, just give it a try. 🎯 #bugbountytip #bugbountytips #bugbounty
42 · 2.9K ·
Brut Security
GIF
349913560-4f0ff4fd-9fb4-453f-92a2-f12f41714edd.gif · 4.4 MB · click to show
🚨SploitScan - A sophisticated #cybersecurity utility designed to provide detailed information on vulnerabilities and associated proof-of-concept (PoC) exploits. ✅https://github.com/xaitax/SploitScan #pentesting #redteam #bugbounty
52 · 3.6K ·
B
Link
click to show
A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab. Built for disciplined, ethical hunting. https://github.com/DevCop95/bugbounty-lab101
54 · 3K ·
B
Brut Security
🚨 Critical pre-auth RCE in Citrix NetScaler ADC and NetScaler Gateway (CVE-2026-88771) Critical Vulnerability Alert! Citrix NetScaler ADC and NetScaler Gateway is affected by CVE-2026-88771. 🔍 Identify Targets via ZoomEye: Search Dork: app="Citrix NetScaler" Exposure: 239.2k instances identified globally. ZoomEye Search Link: 👉 https://www.zoomeye.ai/searchResult?q=YXBwPSJDaXRyaXggTmV0U2NhbGVyIg%3D%3D #Infosec #CyberSecurity #ZoomEye
21 · 2.6K ·
Brut Security
Photo
click to show
Exploit • Auto Sh3lls in MAGENTO 🟦 Modes 💥 ✅ Detect (default) fingerprint Magento + version, classify VULN/ASSUMED. ✅ Exploit (--exploit) run the full chain, execute --code (or default id), verify via a fresh canary file written by the injected PHP. 🔥 Affecting +1kk Websites Magento Cms DM  👉 @Mm_fit Channel: https://t.me/fox_security_cve #AD
12 · 2.5K ·
B
Brut Security
🚨 CVE-2026-102489: Zammad Unauthenticated Remote Code Execution Exploited Zero-Day Critical Vulnerability Alert! Zammad (Zammad GmbH) is affected by CVE-2026-102489. 🔍 Identify Targets via ZoomEye: Search Dork: app="Zammad" Exposure: 12k instances identified globally. ZoomEye Search Link: 👉 https://www.zoomeye.ai/searchResult?q=YXBwPSJaYW1tYWQi #ZoomEye #CyberSecurity #Zammad #CVE2026102489 #RCE #ZeroDay
18 · 2.1K ·
B
Brut Security
Photo
click to show
CVE-2026-63292 and others: Multiple vulnerabilities in Apache HTTP Server, up to 9.8 rating ‍🔥 Apache Software Foundation disclosed 20 new vulnerabilities. The most severe can lead to RCE, arbitrary code execution via stack-based buffer overflow, and DoS/potential RCE via use-after-free. Memory corruption, privilege escalation, and info disclosure bugs were also patched. Search at Netlas.io: 👉 Link: https://nt.ls/fFMkT 👉 Dork: tag.name:"apache" Vendor's advisory: https://httpd.apache.org/security/vulnerabilities_24.html
23 · 1.8K ·
B
Brut Security
🚨 WatchGuard Firebox fingerd Pre-Authentication Stack Overflow (CVE-2026-81433) Allows Remote Code Execution Critical Vulnerability Alert! WatchGuard Fireware OS (Firebox) is affected by CVE-2026-81433. 🔍 Identify Targets via ZoomEye: Search Dork: title="WatchGuard" Exposure: 105.5k instances identified globally. ZoomEye Search Link: 👉 https://www.zoomeye.ai/searchResult?q=dGl0bGU9IldhdGNoR3VhcmQi #CVE202681433 #WatchGuard #Firebox #FirewareOS #RCE #CyberSecurity
8 · 814 ·

An open public feed from the search index ChatCrawler — “Google for public Telegram”; refreshed as the venue is crawled. Times are UTC.

Public content only, official Telegram API. About · FAQ · What we do not do · Remove a page · Catalog · Search · How we count