<?xml version="1.0" encoding="utf-8" ?><rss version="2.0" xmlns:tt="http://teletype.in/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/"><channel><title>BotHub</title><generator>teletype.in</generator><description><![CDATA[BotHub]]></description><image><url>https://img1.teletype.in/files/00/2e/002ea772-a6f0-40b7-9bbd-5fcb85ecbb9f.png</url><title>BotHub</title><link>https://help.bothub.center/</link></image><link>https://help.bothub.center/?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><atom:link rel="self" type="application/rss+xml" href="https://teletype.in/rss/bothub?offset=0"></atom:link><atom:link rel="next" type="application/rss+xml" href="https://teletype.in/rss/bothub?offset=10"></atom:link><atom:link rel="search" type="application/opensearchdescription+xml" title="Teletype" href="https://teletype.in/opensearch.xml"></atom:link><pubDate>Sat, 09 May 2026 05:39:46 GMT</pubDate><lastBuildDate>Sat, 09 May 2026 05:39:46 GMT</lastBuildDate><item><guid isPermaLink="true">https://help.bothub.center/ton_address_en</guid><link>https://help.bothub.center/ton_address_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/ton_address_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Note about TON addresses</title><pubDate>Fri, 08 May 2026 11:21:16 GMT</pubDate><category>English 🇺🇸</category><description><![CDATA[An address on the TON network is a unique identifier required to send and receive cryptocurrency (Toncoin and other coins on the network) and digital assets.]]></description><content:encoded><![CDATA[
  <p id="HzIP">An address on the TON network is a unique identifier required to send and receive cryptocurrency (Toncoin and other coins on the network) and digital assets.</p>
  <h3 id="HHnO">Internal networks</h3>
  <p id="R5ip">As with other blockchain networks, TON has Mainnet and Testnet. They are isolated from each other to prevent users from accidentally sending real coins to a test address or vice versa.</p>
  <ul id="u4nX">
    <li id="1Uz2"><strong>Mainnet</strong> - the main network with real coins.</li>
    <ul id="plxs">
      <li id="olCu">Wallet addresses start with <code>UQ</code> or <code>EQ</code></li>
    </ul>
    <li id="9WxV"><strong>Testnet</strong> - the test network. Coins here have no value.</li>
    <ul id="4YLq">
      <li id="Figk">Wallet addresses start with <code>0Q</code> or <code>kQ</code></li>
    </ul>
  </ul>
  <h3 id="Iakp">Address formats</h3>
  <p id="1MLf">Each TON wallet address has 3 writing variations:</p>
  <ul id="i4Jw">
    <li id="i8wn"><strong>Non-Bounceable</strong> (without Bounce flag)</li>
    <ul id="0nXn">
      <li id="rqqB">Address starts with <code>UQ</code></li>
      <li id="Qv6d">Non-returnable, suitable for transfers between wallets, as well as for working with modern dApps and advanced smart contracts (e.g., Wallet v5)</li>
    </ul>
    <li id="Pkda"><strong>Bounceable</strong></li>
    <ul id="cFSk">
      <li id="jzec">Address starts with <code>EQ</code></li>
      <li id="pQMX">Historically standard format</li>
      <li id="VtPi">Returns the transaction back if the target address does not exist</li>
    </ul>
    <li id="CCGi"><strong>Raw format</strong></li>
    <ul id="rN9J">
      <li id="Bx3G">Raw technical format in hexadecimal representation</li>
      <li id="b8Qv">Structure: <code>workchain:hash</code></li>
    </ul>
  </ul>
  <p id="Ajuu">The Non-Bounceable and Bounceable formats are called <strong>Friendly</strong> formats because they are designed for user convenience. In reality, they are still the same technical format, simply encoded in Base64 with additional definitions.</p>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/ton_address_ru</guid><link>https://help.bothub.center/ton_address_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/ton_address_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Памятка об адресах TON</title><pubDate>Fri, 08 May 2026 11:15:39 GMT</pubDate><category>Русский 🇷🇺</category><description><![CDATA[Адрес в сети TON — это уникальный идентификатор, необходимый для получения и отправки криптовалюты (Toncoin и другие монеты в сети) и цифровых активов.]]></description><content:encoded><![CDATA[
  <p id="1vxS">Адрес в сети TON — это уникальный идентификатор, необходимый для получения и отправки криптовалюты (Toncoin и другие монеты в сети) и цифровых активов.</p>
  <h3 id="NUxC">Внутренние сети</h3>
  <p id="feZo">Как и в других блокчейн-сетях, в TON есть Mainnet и Testnet. Они изолированы друг от друга, чтобы пользователи случайно не отправили реальные монеты на тестовый адрес или наоборот.</p>
  <ul id="bfOI">
    <li id="bZzB"><strong>Mainnet</strong> - основная сеть с реальными монетами.</li>
    <ul id="2EYX">
      <li id="vKaP">адреса кошельков начинаются с <code>UQ</code> или <code>EQ</code></li>
    </ul>
    <li id="5fml"><strong>Testnet</strong> - тестовая сеть. Монеты здесь не имеют ценности.</li>
    <ul id="J2pZ">
      <li id="5ZyD">адреса кошельков начинаются с <code>0Q</code> или <code>kQ</code></li>
    </ul>
  </ul>
  <h3 id="55Bb">Форматы адресов</h3>
  <p id="66LU">Каждый адрес кошелька TON имеет 3 варианта написания:</p>
  <ul id="jdVk">
    <li id="MCOL"><strong>Non-Bounceable</strong> (без Bounce-флага)</li>
    <ul id="0H2G">
      <li id="0zsu">адрес начинается с <code>UQ</code></li>
      <li id="QkkR">невозвратный, подходит для переводов между кошельками, а также для работы с современными dApps и улучшенными смарт-контрактами (например Wallet v5)</li>
    </ul>
  </ul>
  <ul id="6wX5">
    <li id="1R1u"><strong>Bounceable</strong></li>
    <ul id="hT7b">
      <li id="w8YZ">адрес начинается с <code>EQ</code></li>
      <li id="vHiK">исторически стандартный формат</li>
      <li id="ZBHz">возвращает транзакцию обратно, если целевой адрес не существует</li>
    </ul>
    <li id="8biH"><strong>Raw формат</strong></li>
    <ul id="aybJ">
      <li id="uD7m">Сырой технический формат в шестнадцатеричном представлении</li>
      <li id="LT7q">Структура: <code>workchain:hash</code></li>
    </ul>
  </ul>
  <p id="0nrM">Форматы Non-Bounceable и Bounceable называют <strong>Friendly</strong> форматами, поскольку они созданы для удобства пользователя. На деле это всё тот же технический формат, просто закодированный в Base64 с дополнительными определениями.</p>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/affiliate_program_en</guid><link>https://help.bothub.center/affiliate_program_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/affiliate_program_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Affiliate Program Terms</title><pubDate>Tue, 12 Nov 2024 06:11:41 GMT</pubDate><category>English 🇺🇸</category><description><![CDATA[The Project program allows you to earn by attracting new users and creating referral bots. We offer multiple types of rewards and flexible terms to support active income growth.]]></description><content:encoded><![CDATA[
  <p id="Hl9N">The Project program allows you to earn by attracting new users and creating referral bots. We offer multiple types of rewards and flexible terms to support active income growth.</p>
  <h2 id="Core-Terms-and-Rewards">Core Terms and Rewards</h2>
  <p id="F0RT"><strong>1. Types of Rewards</strong>:</p>
  <ul id="Cg0R">
    <li id="Grt4"><strong>USDT</strong></li>
    <li id="jZ5F"><strong>OLR</strong> (internal balance)</li>
  </ul>
  <p id="chLn"><strong>2. Earnings</strong>:</p>
  <ul id="KEho">
    <li id="tAbs">You earn <strong>33%</strong> of the spending of users you referred, which is credited to your Affiliate Program balance. Once the <strong>minimum withdrawal amount of $10</strong> is reached, you can withdraw it to your internal balance or in USDT.</li>
    <li id="hO8Z">Withdrawals to the internal balance are processed instantly.</li>
    <li id="sERr">Withdrawals in USDT are processed using the third-party service <a href="https://t.me/xrocket?start=i_bothub" target="_blank">@xrocket</a> (with no fees). The withdrawal request will be processed <strong>within 7 days after submission</strong>.</li>
    <li id="FW7y">The reward is credited for the entire period of each referral&#x27;s activity. The program&#x27;s duration for each referral is three calendar years, after which rewards for that referral will no longer be credited.</li>
  </ul>
  <p id="drMv"><strong>3. Activation of the referral system</strong>:</p>
  <ul id="ugFt">
    <li id="IopG">The system activates once you have attracted <strong>10 users</strong>, each of whom has topped up their balance with <strong>$1 or more</strong>.</li>
    <li id="j7Ae">Users also have the option of instant activation of the Affiliate Program for a fee.</li>
  </ul>
  <p id="Xwoj"><strong>4. Statistics and Motivation</strong>:</p>
  <ul id="KcpX">
    <li id="I0Ds">The “Affiliate Program” section includes a calculation of potential earnings based on the average activity of 100 referred users.</li>
  </ul>
  <p id="ZVXd"><strong>5. Bot Settings and Management</strong>:</p>
  <ul id="erWR">
    <li id="6EXW">The ability to create referral bots with individual settings, including control over scanning regions, tool management, support bot configuration, and more.</li>
    <li id="SHfA">Each bot owner can choose between public or private usage of their bot. In private mode, other users can access the bot only via invitations created in the bot&#x27;s settings.</li>
    <li id="pJl1">The owner of a referral bot bears full and sole responsibility for the distribution and usage of their bot.</li>
  </ul>
  <p id="kxOO"><strong>6. Additional Features</strong>:</p>
  <ul id="8AEF">
    <li id="VjvJ">Users can link their channels to promote their bot.</li>
    <li id="JbrP">Users can upload their own logo, which will be used in HTML reports generated by the referral bot.</li>
    <li id="WI8Y">The Affiliate Program supports scalability and multi-bot functionality, with aggregated statistics across all referrals.</li>
  </ul>
  <p id="1V8p"><strong>7. Personal Link:</strong></p>
  <ul id="qzHA">
    <li id="1By1">Users can purchase a personal link in the &quot;Affiliate Program&quot; section.</li>
    <li id="FzdA">The personal link is provided on a special domain and guarantees access to an up-to-date working mirror of the bot. It is convenient for placement on personal resources to attract referrals.</li>
    <li id="Y0Q9">If the user has referral bots, they are automatically linked to the personal link. When accessed via this link, the system will provide one of the linked referral bots of the user who created the link.</li>
    <li id="crUw">If the user does not have referral bots, the system will provide one of the official bots of the Project and will automatically add the referral code of the user who created the link.</li>
    <li id="Xwzq">Thus, regardless of whether the link owner has a referral bot, the <strong>personal link always functions as a referral link</strong>.</li>
    <li id="hTNv"> If the user has uploaded their logo in the settings of the referral bot, the system will display this logo when accessing the personal link.</li>
  </ul>
  <h2 id="Additional-Terms">Additional Terms</h2>
  <ul id="5hLt">
    <li id="Cysh">The Project reserves the right to amend Affiliate Program terms without prior notice to participants.</li>
    <li id="p0bh">Responsibility for complying with the law and the bot&#x27;s terms of use lies with the user.</li>
  </ul>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/affiliate_program_ru</guid><link>https://help.bothub.center/affiliate_program_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/affiliate_program_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Условия Партнёрской программы</title><pubDate>Tue, 12 Nov 2024 05:19:36 GMT</pubDate><category>Русский 🇷🇺</category><description><![CDATA[Программа Проекта позволяет вам зарабатывать, привлекая новых пользователей и создавая реферальные боты. Мы предлагаем несколько типов вознаграждений и гибкие условия для активного роста дохода.]]></description><content:encoded><![CDATA[
  <p id="edVH">Программа Проекта позволяет вам зарабатывать, привлекая новых пользователей и создавая реферальные боты. Мы предлагаем несколько типов вознаграждений и гибкие условия для активного роста дохода.</p>
  <h2 id="Основные-условия-и-вознаграждения">Основные условия и вознаграждения</h2>
  <p id="KfGJ"><strong>1. Типы вознаграждений</strong>:</p>
  <ul id="yBPR">
    <li id="WN8u"><strong>USDT</strong></li>
    <li id="DSIj"><strong>OLR</strong> (внутренний баланс)</li>
  </ul>
  <p id="qatm"><strong>2. Вознаграждение</strong>:</p>
  <ul id="uLxE">
    <li id="ujm1">Вы зарабатываете <strong>33%</strong> от трат привлечённых вами пользователей, которые зачисляются на баланс Партнёрской программы. По достижению <strong>минимальной суммы вывода $10</strong>, вы можете совершить вывод на внутренний баланс или в USDT.</li>
    <li id="JRyR">Вывод средств на внутренний баланс происходит моментально.</li>
    <li id="Q1wg">Вывод средств в USDT происходит с использованием стороннего сервиса <a href="https://t.me/xrocket?start=i_bothub" target="_blank">@xrocket</a> (без комиссий). Заявка на вывод будет обработана <strong>в течение 7 дней</strong> после создания.</li>
    <li id="WGL5">Вознаграждение начисляется за весь период активности каждого реферала. Срок действия программы для каждого реферала составляет три календарных года, по истечении которых начисления за реферала перестанут поступать.</li>
  </ul>
  <p id="J53p"><strong>3. Активация реферальной системы</strong>:</p>
  <ul id="tkNZ">
    <li id="h9AR">Система активируется при достижении <strong>10 привлечённых пользователей</strong>, каждый из которых пополнил баланс на <strong>$1 и более</strong>.</li>
    <li id="n9su">Пользователи также имеют возможность мгновенной активации Партнёрской программы на платной основе.</li>
  </ul>
  <p id="5gL4"><strong>4. Статистика и мотивация</strong>:</p>
  <ul id="lqnV">
    <li id="B73q">В разделе &quot;Партнёрская программа&quot; доступен расчёт потенциальной выгоды на основе среднего дохода от 100 привлечённых пользователей.</li>
  </ul>
  <p id="POt7"><strong>5. Настройки и управление ботом</strong>:</p>
  <ul id="kw5h">
    <li id="XUO1">Возможность создания реферальных ботов с индивидуальными настройками, включающими контроль регионов сканирования, управление инструментами, настройку бота технической поддержки и другими.</li>
    <li id="iLEZ">Каждый владелец бота может выбрать между открытым или приватным использованием своего бота. В приватном режиме другие пользователи могут получить доступ боту только по приглашениям, которые создаются в настройках бота.</li>
    <li id="z0UF">Владелец реферального бота несёт единоличную и всю ответственность за распространение и использование своего бота.</li>
  </ul>
  <p id="wJGb"><strong>6. Дополнительные возможности</strong>:</p>
  <ul id="xnNt">
    <li id="NPLG">Пользователи могут привязывать свой канал для продвижения бота.</li>
    <li id="6aG5">Пользователи могут загружать свой логотип, который будет использоваться в html отчётах, получаемых в реферальном боте.</li>
    <li id="fs92">Партнёрская программа поддерживает масштабируемость и многоботность с общей статистикой приглашений.</li>
  </ul>
  <p id="Yv1m"><strong>7. Персональная ссылка</strong>:</p>
  <ul id="vUdI">
    <li id="ChL7">Пользователи могут приобрести персональную ссылку в разделе &quot;Партнёрская программа&quot;.</li>
    <li id="06Nf">Персональная ссылка предоставляется на специальном домене и дает возможность гарантировано получать актуальное рабочее зеркало бота. Ссылку удобно использовать для размещения на своих ресурсах с целью привлечения рефералов.</li>
    <li id="3o1y">При наличии реферальных ботов у пользователя, они автоматически привязываются к персональной ссылке, то есть при переходе по такой ссылке, система выдаст один из привязанных реферальных ботов пользователя, создавшего ссылку.</li>
    <li id="weyf">При отсутствии реферальных ботов у владельца ссылки, система выдаст один из официальных ботов Проекта, а также автоматически добавит к ссылке реферальный код пользователя, создавшего ссылку.</li>
    <li id="3O5W">Таким образом, вне зависимости от наличия или отсутствия реферального бота у владельца ссылки, <strong>персональная ссылка всегда работает, как реферальная</strong>.</li>
    <li id="YSH9">Если пользователь загрузил свой логотип в настройках реферального бота, то при переходе по персональной ссылке, система будет отображать этот логотип.</li>
  </ul>
  <h2 id="Прочие-Условия">Прочие Условия</h2>
  <ul id="Xu6k">
    <li id="Hueb">Проект оставляет за собой право изменять условия Партнёрской программы без уведомления участников.</li>
    <li id="DeWP">Ответственность за соблюдение закона и правил использования бота возлагается на пользователя.</li>
  </ul>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/faq_en</guid><link>https://help.bothub.center/faq_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/faq_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Frequently Asked Questions</title><pubDate>Sat, 09 Nov 2024 06:03:44 GMT</pubDate><category>English 🇺🇸</category><description><![CDATA[Let's review frequently asked questions and provide answers to them:]]></description><content:encoded><![CDATA[
  <blockquote id="UZoa">Let&#x27;s review frequently asked questions and provide answers to them:</blockquote>
  <p id="66g6"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="hkVB"><strong>Question:</strong> What is 💎 #OLR and how can I obtain them?</p>
  </section>
  <p id="TrRN"><strong>Answer:</strong> #OLR tokens are the internal currency used for paying for your requests within the bot. You can top up your account in the &quot;Profile =&gt; Account Top-up&quot; section. The current exchange rate is available there as well.</p>
  <p id="0tfS"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="8TDq"><strong>Question:</strong> Can I use the bot without a plan?</p>
  </section>
  <p id="PPaA"><strong>Answer:</strong> Yes, you can. However, there are certain limitations as described on the &quot;<a href="https://help.bothub.center/plans_limits_en" target="_blank">Plans and Limits</a>&quot; page.</p>
  <p id="15Gw"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="v0oy"><strong>Question:</strong> What is the daily usage limit for tools?</p>
  </section>
  <p id="s3mn"><strong>Answer:</strong> The daily limit is a restriction on the number of requests per day for users without a plan.</p>
  <p id="rkgK"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="77Cp"><strong>Question:</strong> Can I withdraw money?</p>
  </section>
  <p id="y238"><strong>Answer:</strong> Our system does not provide for withdrawals, except for withdrawals from the affiliate program balance.</p>
  <p id="f82R"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="vQKC"><strong>Question:</strong> Can I cancel a plan purchase and get the #OLR back on my balance?</p>
  </section>
  <p id="uhk8"><strong>Answer:</strong> You can cancel the purchase or renewal of the plan through technical support, but only on the same day as the operation and provided that you have not made any requests in the <strong>free tools</strong> after this operation.</p>
  <p id="CT8I"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="l2qF"><strong>Question:</strong> Why doesn&#x27;t the bot allow me to search for information by a number from a different country?</p>
  </section>
  <p id="kVXp"><strong>Answer:</strong> The use of tools related to such search features is available to users from the same country, in accordance with Project&#x27;s internal policy.</p>
  <p id="eJYN"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="CkL5"><strong>Question:</strong> I wanted to find a leaked password, I see a leak but no password. Is this normal?</p>
  </section>
  <p id="JhP9"><strong>Answer:</strong> Not all leaks contain passwords, so sometimes you might get results indicating a leak but without a password. This is beyond our control.</p>
  <p id="QhDk"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="L10F"><strong>Question:</strong> How can I know the cost of a request in a specific tool?</p>
  </section>
  <p id="oCYf"><strong>Answer:</strong> When accessing any tool through the category menu or quick access, you will see a page describing the tool, the cost of the request, and a &quot;Start&quot; button.</p>
  <p id="UQEI"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="l8IC"><strong>Question:</strong> I made a payment, but my balance wasn’t credited. What should I do?</p>
  </section>
  <p id="t14l"><strong>Answer:</strong> Contact the support team.</p>
  <p id="sBkz"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="VTO7"><strong>Question:</strong> A task has been running for an hour, is this normal?</p>
  </section>
  <p id="T3Uc"><strong>Answer:</strong> For tools like &quot;Site Search,&quot; &quot;Website Vulnerability Scanning,&quot; and some others, longer task execution times are normal. You will receive the results upon completion.</p>
  <p id="8Ovj"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="PJ6r"><strong>Question:</strong> How can I disable the plan&#x27;s auto-renewal?</p>
  </section>
  <p id="z18O"><strong>Answer:</strong> You can disable the plan&#x27;s auto-renewal using the command <strong>/plan_renew</strong></p>
  <p id="t1Y7"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="JLcx"><strong>Question:</strong> I made a request and received the message &quot;An unexpected error occurred.&quot; How can I get back the spent OLR?</p>
  </section>
  <p id="WMDH"><strong>Answer:</strong> If an error occurs during a request, the bot will display an error message and no OLR will be deducted. If an error occurs after some time in a running task, the task is canceled and OLR is automatically refunded. You can view the statistics in the Profile =&gt; Operation history.</p>
  <p id="2R2N"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="9MZW"><strong>Question:</strong> Why were my OLR deducted when entering a phone number?</p>
  </section>
  <p id="AQhq"><strong>Answer:</strong> Auto-launch of tools is enabled in your account. Therefore, after entering a phone number, the &quot;Phone Number Search&quot; tool is automatically activated, deducting OLR from your balance. You can disable auto-launch of tools in the &quot;Profile&quot; section.</p>
  <p id="gMRO"></p>
  <blockquote id="49XN">The list will be updated as questions come in.</blockquote>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/faq_ru</guid><link>https://help.bothub.center/faq_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/faq_ru?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Часто задаваемые вопросы</title><pubDate>Fri, 08 Nov 2024 10:48:25 GMT</pubDate><category>Русский 🇷🇺</category><description><![CDATA[Рассмотрим часто задаваемые вопросы и дадим на них ответы:]]></description><content:encoded><![CDATA[
  <blockquote id="kC2t">Рассмотрим часто задаваемые вопросы и дадим на них ответы:</blockquote>
  <p id="GNdy"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="0G2C"><strong>Вопрос:</strong> Что такое 💎 #OLR и как их получить?</p>
  </section>
  <p id="bzWa"><strong>Ответ:</strong> Токены #OLR - внутренняя валюта, с помощью которой вы оплачиваете запросы. Пополнить счет вы можете в разделе Профиль =&gt; Пополнение счета. Там же вы найдете актуальный курс.</p>
  <p id="fBDd"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="TdXB"><strong>Вопрос:</strong> Можно ли пользоваться ботом без тарифа?</p>
  </section>
  <p id="XOoF"><strong>Ответ:</strong> Да, можно. Но с определенными ограничениями, описанными на странице &quot;<a href="https://help.bothub.center/plans_limits_ru" target="_blank">Тарифы и лимиты</a>&quot;.</p>
  <p id="4T5Z"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="aCYQ"><strong>Вопрос:</strong> Что такое суточный лимит в инструментах?</p>
  </section>
  <p id="Xbq4"><strong>Ответ:</strong> Суточный лимит - это ограничение по количеству запросов в день для пользователей без тарифного плана.</p>
  <p id="Uv78"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="emqy"><strong>Вопрос:</strong> Могу ли я вывести деньги назад?</p>
  </section>
  <p id="3zzJ"><strong>Ответ:</strong> В нашей системе не предусмотрен вывод средств, за исключением вывода с баланса партнёрской программы.</p>
  <p id="lsEF"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="CWeO"><strong>Вопрос:</strong> Можно ли отменить покупку тарифа и вернуть #OLR на баланс?</p>
  </section>
  <p id="Vedh"><strong>Ответ:</strong> Покупку или продление тарифа можно отменить через техническую поддержку, но только в день совершения этой операции и при условии, что после этой операции вы не сделали ни единого запроса в <strong>бесплатных</strong> инструментах.</p>
  <p id="pdsT"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="2YUV"><strong>Вопрос:</strong> Почему бот не дает возможности искать информацию по номеру из другой страны?</p>
  </section>
  <p id="YZMK"><strong>Ответ:</strong> Использование инструментов, связанных с подобным поиском информации, доступно пользователям с одной и той же страны, согласно внутренней политике Проекта.</p>
  <p id="SmCU"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="HAeT"><strong>Вопрос:</strong> Хотел найти пароль в утечке, в результатах есть утечка, но нет пароля. Это нормально?</p>
  </section>
  <p id="Kmwp"><strong>Ответ:</strong> Не во всех утечках есть пароли, поэтому иногда вы можете получить результаты с указанием утечки, но без пароля. Это зависит не от нас.</p>
  <p id="wIyy"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="oSy7"><strong>Вопрос:</strong> Как узнать, сколько стоит запрос в каком-либо инструменте?</p>
  </section>
  <p id="BeCF"><strong>Ответ:</strong> При переходе в какой-либо инструмент через меню категорий или быстрый доступ, вы увидите страницу с описанием инструмента, стоимостью запроса и кнопкой &quot;Начать&quot;.</p>
  <p id="7QGa"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="4gEN"><strong>Вопрос:</strong> Совершил оплату, но баланс не был пополнен, что делать?</p>
  </section>
  <p id="rCiV"><strong>Ответ:</strong> Обратитесь в службу поддержки.</p>
  <p id="CquQ"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="ClaU"><strong>Вопрос:</strong> Задача выполняется уже целый час, это нормально?</p>
  </section>
  <p id="OpCr"><strong>Ответ:</strong> Для инструментов &quot;Поиск на сайте&quot;, &quot;Сканирование сайта на уязвимости&quot; и некоторых других, длительное выполнение задачи является нормой. По завершению задачи вы получите результат.</p>
  <p id="uTcC"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="imkG"><strong>Вопрос:</strong> Как отключить автопродление тарифа?</p>
  </section>
  <p id="RLeZ"><strong>Ответ:</strong> Вы можете отключить автоматическое продление тарифа с помощью команды <strong>/plan_renew</strong></p>
  <p id="sFH6"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="Nxty"><strong>Вопрос:</strong> Сделал запрос и получил сообщение &quot;Возникла непредвиденная ошибка&quot;, как вернуть потраченные OLR?</p>
  </section>
  <p id="pF6O"><strong>Ответ:</strong> Если во время запроса возникает ошибка, бот выдает сообщение об этом и списание OLR не производится. Если же ошибка возникла через какое-то время в уже запущенной задаче, то задача отменяется и автоматически производится возврат OLR. Статистику вы можете увидеть в разделе Профиль =&gt; История операций.</p>
  <p id="iOpI"></p>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <p id="inAB"><strong>Вопрос:</strong> Почему у меня списались OLR при вводе номера телефона?</p>
  </section>
  <p id="c71f"><strong>Ответ:</strong> У вас включен автозапуск инструментов, поэтому после ввода номера телефона автоматически запускается инструмент &quot;Поиск по номеру телефона&quot;, который списывает OLR с вашего баланса. Вы можете отключить автозапуск инструментов в разделе &quot;Профиль&quot;.</p>
  <p id="GY4R"></p>
  <blockquote id="69re">Список будет обновляться по мере поступления вопросов.</blockquote>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/plans_limits_en</guid><link>https://help.bothub.center/plans_limits_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/plans_limits_en?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Plans and Limits</title><pubDate>Fri, 08 Nov 2024 10:26:52 GMT</pubDate><category>English 🇺🇸</category><description><![CDATA[Plans and Limits]]></description><content:encoded><![CDATA[
  <h3 id="General-Information:">General Information:</h3>
  <ul id="wVOP">
    <li id="HhW8">The internal currency used for transactions within the<a href="https://bothub.center/get/" target="_blank">Project bot</a> is the <strong>OLR </strong>token. You can always find the current exchange rate in the<strong> &quot;Profile =&gt; Account Replenishment&quot;</strong> section when choosing any payment method;</li>
    <li id="crc3">To use the bot, you need <strong>to fund your account</strong> as queries in the tools are paid with <strong>OLR </strong>tokens;</li>
    <li id="mYXy">The cost of a query for each tool is <strong>individual </strong>and is specified in the tool&#x27;s description;</li>
    <li id="L361">Most of the bot&#x27;s tools can be used without a tariff plan, however, in this case, <strong>certain limitations apply</strong> (see below);</li>
    <li id="HS9Y">Some tools are not available for use without <strong>an active tariff plan.</strong></li>
  </ul>
  <h3 id="Limits:">Limits:</h3>
  <ul id="C8k3">
    <li id="nK8w">Users <strong>without an active tariff plan</strong> cannot use the following tools: Host Vulnerability Scanning, Website Vulnerability Scanning, Site Document Search, Link De-anonymization, Anonymous Email, Retrieve TG User Phone Number, and TG User Status Tracking.</li>
    <li id="0inW">For users <strong>without an active tariff plan</strong>, many available tools have a <strong>daily limit</strong> set. You can find the current value in the description of such tools, for example: <strong>Daily Limit: 4</strong>. This means that you have 4 available requests remaining for this tool today. If there is <u>no daily limit specified</u> in the description of a particular tool, it means there is <strong>no limit for that tool</strong>.</li>
    <li id="LqeH">Users with an active subscription plan can access the tools included in their selected package without spending OLR. The complete list of available tools for each plan can be found in the &quot;Plans&quot; section of the bot.</li>
    <li id="kRxD">For certain tools, <strong>individual limits</strong> are set depending on the tariff plan:</li>
    <ul id="bFcL">
      <li id="KlTi"><strong>Website Search:</strong></li>
      <ul id="Nyge">
        <li id="vDUV">Without a plan: parsing depth of <strong>1000 pages;</strong></li>
        <li id="dRsh">With a plan: parsing depth of<strong> 5000 pages;</strong></li>
      </ul>
    </ul>
  </ul>
  <ul id="iZAR">
    <ul id="jHZo">
      <li id="fytq"><strong>Search by CVE and country, Search by port and country, Search by country, RDP and camera scanner:</strong></li>
      <ul id="SbLz">
        <li id="v76Q">Without a plan: access to <strong>100 </strong>records from the database;</li>
        <li id="ln9C">With a plan: access to <strong>1000 </strong>records from the database;</li>
      </ul>
    </ul>
  </ul>
  <ul id="H8ET">
    <ul id="nRqd">
      <li id="Zmk5"><strong>Password by email, Email by username, Email by password, Email by password hash, Email by domain, Password by username, Password by phone number, Username by password, Phone number by password:</strong></li>
      <ul id="uqoP">
        <li id="c7q5">Without a plan: up to <strong>100 </strong>results available;</li>
        <li id="QUds">With a plan: up to <strong>1000 </strong>results available;</li>
      </ul>
    </ul>
  </ul>
  <hr />
  <h3 id="Plans:">Plans:</h3>
  <p id="K3rp"><strong>You can find the cost of our plans in the /menu under &quot;Plans&quot;.</strong></p>
  <p id="khuF">Our tariff plans are designed to meet various needs and specializations in the field of information security:</p>
  <ul id="bMv8">
    <li id="TzGT">1️⃣ <strong>«Freelancer» plan</strong> - The perfect choice for beginners and those looking to get acquainted with the basics of working in information security. It includes a basic set of tools for network resource analysis and monitoring.</li>
    <li id="3bd1">2️⃣ <strong>«Leak Explorer» plan</strong> - Tailored for specialists engaged in data leak research and cyber intelligence. It includes tools for analyzing and tracking potential leaks.</li>
    <li id="SESl">3️⃣ <strong>«Pentest» plan</strong> - Ideally suited for professionals in pentesting and information security. Contains tools for in-depth analysis and penetration testing.</li>
    <li id="KWWV">4️⃣ <strong>«Parser» plan</strong> - Designed for professionals dealing with large volumes of data, including SMM specialists and analysts. It contains tools for efficient parsing and metadata analysis</li>
    <li id="nAnt">5️⃣ <strong>«Social Engineering» plan</strong> - Perfectly suited for specialists in social engineering and cyber intelligence. It includes tools for analyzing social behavior, deanonymization, and information gathering on social networks.</li>
    <li id="aGyB">6️⃣ <strong>«Leak Engineering» plan</strong> - Combines the capabilities of the <strong>«Social Engineering»</strong> and <strong>«Leak Explorer»</strong> plans, providing a comprehensive toolkit for specialists in social engineering and data leak analysis. Ideal for professionals requiring advanced features in both areas.</li>
    <li id="K6Bz">7️⃣ <strong>«Deluxe» plan</strong> - Full access to all features and tools of the Project. Recommended for experts needing a comprehensive approach and maximum flexibility in resource utilization.</li>
  </ul>
  <section style="background-color:hsl(hsl(199, 50%, var(--autocolor-background-lightness, 95%)), 85%, 85%);">
    <blockquote id="sp2L">To disable automatic plan renewal, use the command /plan_renew</blockquote>
  </section>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/SecurityAuditOfWiFi</guid><link>https://help.bothub.center/SecurityAuditOfWiFi?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/SecurityAuditOfWiFi?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Security audit of Wi-Fi using Wifite2 and Project bot  </title><pubDate>Mon, 11 Mar 2024 11:56:25 GMT</pubDate><media:content medium="image" url="https://img1.teletype.in/files/cc/e7/cce71d66-8a68-4293-ab46-4a24c713ede9.png"></media:content><category>English 🇺🇸</category><description><![CDATA[<img src="https://telegra.ph/file/a6c9f82fef83b7f552417.png"></img>In this material, we will examine the process of Wi-Fi network security analysis, with a focus on the use of tools such as Wifite2 and Project bot, aiming to enhance users' awareness. We will provide a real example and conduct its analysis.]]></description><content:encoded><![CDATA[
  <figure id="Unx6" class="m_retina">
    <img src="https://telegra.ph/file/a6c9f82fef83b7f552417.png" width="683.5" />
  </figure>
  <p id="fx4l">In this material, we will examine the process of Wi-Fi network security analysis, with a focus on the use of tools such as Wifite2 and <a href="https://bothub.center" target="_blank">Project bot</a>, aiming to enhance users&#x27; awareness. We will provide a real example and conduct its analysis.</p>
  <blockquote id="Vr6h">🛡️ Disclaimer: This material is provided solely for informational purposes and represents a fictional example developed by an independent editor. The information is not intended for use in privacy violations, illegal activities, or any other unethical actions. We strongly recommend respecting the privacy of others and using the skills and tools responsibly and in accordance with the laws of your country.</blockquote>
  <hr />
  <p id="kcLN">WPS Protocol Check:</p>
  <p id="hCAV">Before conducting a password security analysis, it&#x27;s worth checking the possibility of connecting to a Wi-Fi network using the WPS protocol. Within this bot, we can perform a request based on the MAC address and attempt to obtain the PIN code (similar examples were presented in the previous publication).</p>
  <figure id="KAjV" class="m_retina">
    <img src="https://telegra.ph/file/d256ed241b1f7adcbd1d7.png" width="606.5" />
  </figure>
  <p id="OaAN">When we encounter a situation where we can&#x27;t obtain the necessary data, we move on to the next method...</p>
  <h4 id="Wordlist-Generation:">Wordlist Generation:</h4>
  <p id="MQaM">Creating a wordlist starts with defining the goal. Let&#x27;s assume we have an access point and we need to guess its password. Now the question arises – how can we do this most effectively and conveniently? Tools like Wifite2 and the <a href="https://bothub.center" target="_blank">Project bot</a> can help us with this.</p>
  <p id="z8Nu">For efficient password guessing, it&#x27;s essential to use an up-to-date wordlist that is tailored to the specific goal. This means that passwords should be generated based on available information about the target, considering known security factors.</p>
  <p id="WKde">For instance, many people use their phone numbers, birthdates, names, and other personal information as passwords for their home access points. Often, such information can be sourced from publicly available data. When we have such target-specific data, we can use it to generate passwords.</p>
  <figure id="j55P" class="m_original">
    <img src="https://telegra.ph/file/b8b4403798ad11f2848a5.png" width="369" />
  </figure>
  <figure id="2BWv" class="m_original">
    <img src="https://telegra.ph/file/e0aceac83d21bd4e60c3d.png" width="293" />
  </figure>
  <figure id="xslX" class="m_original">
    <img src="https://telegra.ph/file/d0c57b94833cd590da0c5.png" width="560" />
  </figure>
  <p id="m9fr">The generated file</p>
  <figure id="c8WS" class="m_original">
    <img src="https://telegra.ph/file/84eef7bbc0a95561c8ee4.png" width="544" />
  </figure>
  <p id="5NBY">After launching Kali Linux, enter the following command to use the generated wordlist:</p>
  <p id="4aIS">Help:</p>
  <pre id="x4AR">./Wifite.py --help 
</pre>
  <p id="DigR">This command will allow you to get help on using the Wifite.py tool, providing you with the necessary information about available options and functionality.</p>
  <figure id="RK3o" class="m_retina">
    <img src="https://telegra.ph/file/4d34c8ceff08e7c058efb.png" width="512" />
  </figure>
  <p id="Ig7l">Command (the file was renamed beforehand):</p>
  <pre id="GLBE">./Wifite.py --kill --dict pass.txt
</pre>
  <figure id="PASP" class="m_original">
    <img src="https://telegra.ph/file/e312c852ab5206afd9287.png" width="440" />
  </figure>
  <p id="xAki">Next, from the list, select the desired WiFi network and stop the scanning by pressing the CTRL + C key combination:</p>
  <figure id="RdPf" class="m_original">
    <img src="https://telegra.ph/file/38b6803772d15437b268e.jpg" width="502" />
  </figure>
  <p id="CrnK">After the setup is complete, the network security audit will be automatically initiated. In case of successful password detection, the program will provide a corresponding notification in the terminal.</p>
  <h4 id="Vulnerable-Router-Search:">Vulnerable Router Search:</h4>
  <p id="gMwv">As an additional feature of the bot, we can mention the ability to search for vulnerable devices, including routers. This feature allows detecting devices that may be susceptible to certain vulnerabilities, providing information for further analysis and taking appropriate security measures.</p>
  <figure id="V3Ra" class="m_original">
    <img src="https://telegra.ph/file/30bd4a765fe60791cd274.png" width="377" />
  </figure>
  <p id="FyCJ">Google Dorks can help identify relevant queries for routers.</p>
  <figure id="5nUO" class="m_original">
    <img src="https://telegra.ph/file/70ae306f32c0f9549f634.png" width="297" />
  </figure>
  <figure id="93O8" class="m_original">
    <img src="https://telegra.ph/file/d443fb15389af6cb97c53.png" width="591" />
  </figure>
  <p id="crHY">Similarly, you can search for vulnerable servers, cameras, and so on using this information. However, we do not advise using this information for malicious purposes.</p>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/ParsingWebsitesThrough</guid><link>https://help.bothub.center/ParsingWebsitesThrough?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/ParsingWebsitesThrough?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Parsing websites through Telegram </title><pubDate>Mon, 11 Mar 2024 11:54:48 GMT</pubDate><media:content medium="image" url="https://img3.teletype.in/files/68/57/68575cc4-0899-446c-af89-cb6142791100.png"></media:content><category>English 🇺🇸</category><description><![CDATA[<img src="https://telegra.ph/file/e9f622867042122855cb6.png"></img>In today's world, it's often crucial to quickly gather information from a website, but the question arises - how to do it?]]></description><content:encoded><![CDATA[
  <p id="k8Tz">In today&#x27;s world, it&#x27;s often crucial to quickly gather information from a website, but the question arises - how to do it?</p>
  <p id="Z5xI">This is where the <a href="https://bothub.center" target="_blank">Project bot</a> comes to your aid, which has an extensive range of functionalities in the field of information security testing.</p>
  <p id="Ybth">It offers features like scanning websites for vulnerabilities, searching and collecting information, and much more. However, we will focus on data collection in this context.</p>
  <h4 id="How-to-Start:">How to Start:</h4>
  <p id="YPQk">You can launch the bot using this link or simply go to Telegram and search for the bot:</p>
  <figure id="9pMB" class="m_retina">
    <img src="https://telegra.ph/file/e9f622867042122855cb6.png" width="640" />
  </figure>
  <p id="JQ9u">Launch the bot and complete the authentication process. After that, you will see a list of categories available:</p>
  <figure id="dzX2" class="m_original">
    <img src="https://telegra.ph/file/b653c189b0ba37e0fe08f.png" width="382" />
  </figure>
  <p id="Il9i">Let&#x27;s choose &quot;Information Gathering and Metadata&quot; and then &quot;Website Search&quot;:</p>
  <figure id="nmlP" class="m_retina">
    <img src="https://telegra.ph/file/74967ac7c91fb2a374d92.png" width="640" />
  </figure>
  <p id="p1rn">For example, I will provide a link to my website and see what data the bot will gather:</p>
  <figure id="OvLm" class="m_retina">
    <img src="https://telegra.ph/file/6e354f48eb72c2cc9f16a.png" width="640" />
  </figure>
  <p id="5hfN">In the end, we have 3 files. We skip the first 2 since there are no emails or phone numbers on my website, but social media links are available.</p>
  <figure id="sePW" class="m_retina">
    <img src="https://telegra.ph/file/3a090f03adb49a41553d5.png" width="640" />
  </figure>
  <hr />
  <h4 id="Parsing.-Link-Extractor:">Parsing. Link Extractor:</h4>
  <p id="pxbW">Similarly, we can use the link extractor. As we know, Wikipedia pages usually contain a lot of different links, and manually collecting them would be difficult. Let&#x27;s send the link to the bot, and it will do it all for us.</p>
  <figure id="NkWp" class="m_retina">
    <img src="https://telegra.ph/file/7058f4fd77cce549401a4.png" width="640" />
  </figure>
  <p id="KVS4">We open the file and see the result:</p>
  <figure id="hpJD" class="m_retina">
    <img src="https://telegra.ph/file/a804a6f69739680c01e89.png" width="640" />
  </figure>
  <hr />
  <h4 id="Conclusion:">Conclusion:</h4>
  <p id="R0EA">There are numerous ways to use this bot. Its main advantage is the ability to quickly check your resource for security without spending excessive amounts on specialists.</p>
  <p id="iavO">Here are a few more materials on using the bot:</p>
  <p id="flx9">◾ <a href="https://help.bothub.center/DeanonAPedophile" target="_blank">Deanonymizing a pedophile via link</a></p>
  <p id="MbL6">◾ <a href="https://help.bothub.center/NegligenceOfWebsite" target="_blank">Website security audit</a></p>
  <p id="FK39">Enjoy reading and goodbye to all!</p>

]]></content:encoded></item><item><guid isPermaLink="true">https://help.bothub.center/NegligenceOfWebsite</guid><link>https://help.bothub.center/NegligenceOfWebsite?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub</link><comments>https://help.bothub.center/NegligenceOfWebsite?utm_source=teletype&amp;utm_medium=feed_rss&amp;utm_campaign=bothub#comments</comments><dc:creator>bothub</dc:creator><title>Negligence of website owners </title><pubDate>Mon, 11 Mar 2024 11:50:52 GMT</pubDate><media:content medium="image" url="https://img3.teletype.in/files/28/27/282744c6-4187-4a44-ad02-5602e2319219.png"></media:content><category>English 🇺🇸</category><description><![CDATA[<img src="https://telegra.ph/file/9cff57aff94a9b2eb333d.png"></img>In the 21st century, many people have their own websites or blogs. Nowadays, creating a website doesn't necessarily require special knowledge in the field, as there are website builders and platforms that can set up a website on hosting within a minute. Websites are also often ordered &quot;turnkey,&quot; and website owners may not have a clear understanding of how everything works, simply using the admin panel of the website's platform.]]></description><content:encoded><![CDATA[
  <p id="0FMr">In the 21st century, many people have their own websites or blogs. Nowadays, creating a website doesn&#x27;t necessarily require special knowledge in the field, as there are website builders and platforms that can set up a website on hosting within a minute. Websites are also often ordered &quot;turnkey,&quot; and website owners may not have a clear understanding of how everything works, simply using the admin panel of the website&#x27;s platform.</p>
  <figure id="hRKg" class="m_original">
    <img src="https://telegra.ph/file/9cff57aff94a9b2eb333d.png" width="505" />
  </figure>
  <blockquote id="EuH3">🛡️ Disclaimer: This material is provided solely for informational purposes and represents a fictional example developed by an independent editor. The information is not intended for use in privacy violations, illegal activities, or any other unethical actions. We strongly recommend respecting the privacy of others and using the skills and tools responsibly and in accordance with the laws of your country.</blockquote>
  <p id="R8NK">Unfortunately, even some web developers ignore basic security principles. Today, we will examine in detail one such case.</p>
  <p id="tRqF">For the example, we have chosen an English-language website built on the WordPress platform. We utilized the tools of the <a href="https://bothub.center" target="_blank">Project bot</a>, specifically the &quot;Vulnerability and Exploit Search&quot; functionality, to conduct a basic vulnerability assessment.</p>
  <figure id="TRWk" class="m_original">
    <img src="https://telegra.ph/file/52d2d90c148c457672a94.png" width="303" />
  </figure>
  <p id="Sr9O">In the response, we obtained information indicating that the website is using a vulnerable version of jQuery. You know what&#x27;s great about the bot? When it detects vulnerabilities, it automatically searches for suitable exploits. If it finds any, it presents a ready-to-use command in the results, which you can copy with just one click and use to obtain the exploit.</p>
  <figure id="Thsg" class="m_original">
    <img src="https://telegra.ph/file/bc57bbca6f14ef8344293.png" width="409" />
  </figure>
  <p id="2574">As a result, using one of the provided exploits, it can be inferred that the outdated version of jQuery on the website is vulnerable to XSS (Cross-Site Scripting) vulnerabilities.</p>
  <figure id="mtSr" class="m_original">
    <img src="https://telegra.ph/file/1c718c6a097bf1d0983d0.jpg" width="474" />
  </figure>
  <p id="oBSw">Next, let&#x27;s take a look at the results of a full website vulnerability scan:</p>
  <figure id="bmnJ" class="m_original">
    <img src="https://telegra.ph/file/ce1efb43d378b8fde6dfa.png" width="317" />
    <figcaption>OR ENTER WORD &quot;SCAN&quot; IN THE BOT</figcaption>
  </figure>
  <p id="nhWB">Inside the tool, let&#x27;s select WordPress, as it&#x27;s known that the website operates on this platform (this can easily be determined by viewing the page source code in a browser).</p>
  <p id="0FEC">After waiting for the scan results, it&#x27;s evident that this website is a &quot;swiss cheese&quot; in terms of vulnerabilities:</p>
  <figure id="dWeD" class="m_retina">
    <img src="https://telegra.ph/file/773301a57a0f4d78bb1b7.jpg" width="931" />
  </figure>
  <p id="OPZw">By selecting one of the detected CVEs and inputting the command into <a href="https://bothub.center" target="_blank">Project bot</a>, we obtain an exploit for executing SQL injection on the website:</p>
  <figure id="Gv7M" class="m_original">
    <img src="https://telegra.ph/file/b7099a4a2c75482da6167.jpg" width="475" />
  </figure>
  <p id="tDZI">If the website owner doesn&#x27;t update the engine, templates, and plugins to their latest versions in a timely manner, it can lead to serious security issues with the website.</p>
  <blockquote id="4iAt">We strongly recommend avoiding such mistakes and checking your websites using the Project bot!</blockquote>
  <h4 id="But-that&#x27;s-not-all!">But that&#x27;s not all!</h4>
  <p id="tD3e">It might seem like the website is vulnerable, and that&#x27;s already clear. But you can conduct another check using the following tool from the same category:</p>
  <figure id="awVp" class="m_original">
    <img src="https://telegra.ph/file/fc064a25a29030ebc59c6.png" width="279" />
  </figure>
  <p id="SNLF">Which provided the following results:</p>
  <figure id="YCDu" class="m_original">
    <img src="https://telegra.ph/file/fe494161c628a49c6c591.png" width="491" />
  </figure>
  <p id="Rx9m">By the third line, it can be immediately understood that posts on the website are being made at least under the username &quot;<strong>admin</strong>&quot;. However, the most interesting part was in the &quot;<strong>Directory traversal</strong>&quot; section. Clicking on the link revealed the following:</p>
  <figure id="xqN1" class="m_original">
    <img src="https://telegra.ph/file/8aeaf87a39724a086d5e5.png" width="487" />
  </figure>
  <p id="7rNQ">A complete copy of the website&#x27;s files was found in the downloaded zip archive.</p>
  <figure id="F2Mz" class="m_original">
    <img src="https://telegra.ph/file/2ee56f7a10f5a74722057.png" width="569" />
  </figure>
  <p id="HiNa">The standard WordPress configuration file contains the database connection information and the salts used by the engine.</p>
  <figure id="J2VV" class="m_original">
    <img src="https://telegra.ph/file/4fc15a4505b314761feb8.png" width="666" />
  </figure>
  <figure id="RsDQ" class="m_original">
    <img src="https://telegra.ph/file/eb002c76b23b54d54975a.jpg" width="667" />
  </figure>
  <p id="RHIc">In addition to this, the archive contains templates and plugins used on the site.</p>
  <p id="lxuA">In the open SQL database dump, there is one user of the site,<strong> &quot;admin,&quot; and their email.</strong></p>
  <figure id="shkV" class="m_original">
    <img src="https://telegra.ph/file/29108461bff7874239f7c.png" width="820" />
  </figure>
  <p id="Eg8q">Knowing the email, you can try to retrieve their passwords using specialized tools from the <strong>&quot;Data Leak Search&quot;</strong> category.</p>
  <figure id="WO6X" class="m_original">
    <img src="https://telegra.ph/file/090103439a30c88afcd58.png" width="227" />
  </figure>
  <figure id="nXuw" class="m_original">
    <img src="https://telegra.ph/file/f7a276b2f3ed49b3b8ebb.png" width="421" />
  </figure>
  <p id="iLVr">Friends, we strongly recommend you to carefully maintain the software versions on your servers, as well as the versions of your website&#x27;s engines, plugins, templates, and libraries to avoid exposing them to the risk of hacking. Also, always forbid directory listing on your website. For example, in Apache, you can solve this by adding just one line to your .htaccess file: Options -Indexes</p>
  <p id="gwKG">Use <a href="https://bothub.center" target="_blank">Project bot</a> to detect vulnerabilities and other issues on your resources!</p>

]]></content:encoded></item></channel></rss>