Exposed Slack Webhooks
by Vee - Friday July 26, 2024 at 01:29 PM
#1
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

GBH. dont think this considered "leak" since they are exposed.

Hello. Today i go share exposed webhooks that i managed two find by scraping PSBDMP. At end of my signed message you find just slack webhook URLs and RAR dumps from where webhooks where found.
Take these slack webhooks with a grain salt. when checked if they were still up they display "invalid_payload"
only way to check is to send a curl, or a python request,
curl -X POST -H 'Content-type: application/json' --data '{"text":""}' https://hooks.slack.com/services/SOME_FU...ID_I_THINK
if hookd will return a "no_text" or "missing_text_or_fallback_or_attachments" or "no_team" it mean that webhook is still active. sending empty text does not notify a company or owners of webhook.
"no_service" or "no_active_hooks" = dead webhook.
"invalid_payload" and "invalid_token" means its active.

here is link to there shitty webhook documenation
https://api.slack.com/messaging/webhooks

enjoi!@!
-----BEGIN PGP SIGNATURE-----
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=JWD0
-----END PGP SIGNATURE-----


Slack webhook urls:
Hidden Content
You must register or login to view this content.


Raw PSBDMP dumps:
Hidden Content
You must register or login to view this content.


credits are high to prevent leechers, "cybersec experts" and feds fucking lurking.
EDIT: fuck it. removed credits since they can be searched anyways. enojy
PGP info| https://sebsauvage.net/paste/?64a8f3aac0...5ISu4/ZSw=
All posts/replies will be signed.
Reply
#2
Thank you for sharing this dude!
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Advertising telegram in stealer logs
Reply
#3
Thanks for sharing!
Reply
#4
how was ur experience with PSBDMP's API? i've had a bit of trouble with it so far.
Reply
#5
(08-22-2024, 11:16 AM)JMilMan93 Wrote: how was ur experience with PSBDMP's API? i've had a bit of trouble with it so far.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

really easy tbh. what you having trouble with?

-----BEGIN PGP SIGNATURE-----
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=vqs6
-----END PGP SIGNATURE-----
PGP info| https://sebsauvage.net/paste/?64a8f3aac0...5ISu4/ZSw=
All posts/replies will be signed.
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Russian Iveco reseller php exposed Johnny 2 1,250 12-26-2024, 05:14 PM
Last Post: pratiksha69
  German company with ecommerce phpmyadmin exposed Johnny 28 3,141 12-01-2024, 07:31 PM
Last Post: daddu3202

Forum Jump:


 Users browsing this thread: 1 Guest(s)