@Hack0Shiv Profile picture

SecShiv

@Hack0Shiv

Learning, Researching, Documenting. https://t.co/1DlZzwwMKn

SecShiv Reposted

The way the mantis pulled the hornet off his back and pinned it 😳


SecShiv Reposted

try this xss pollyglots to bypass waf it will sure help you just use it manully+oneliner commands github.com/0xsobky/HackVa…


Me manually testing and crafting XSS payloads on a target (raw video). Bypass cloudflare and internal filtering, achieving a popup. No tools used. youtu.be/uGW34bFo8dw


Informational, but the target is interesting, i found a few reflections, just tryna make some bs xss payloads to see what happens. If anyone knows RXSS, abusing S3 perms or general collab. Hit my DM. (Reposted from my Linkedin)

Tweet Image 1

This is kinda true ngl..

Tweet Image 1

SecShiv Reposted

okay let me share my journey : 1/11 My tech journey started in an unexpected way. As a taxi driver and economics university student, my only prior tech experience was tweaking settings in Counter-Strike. 🙂

This is unfortunately true. For someone with no prior coding, math, or web3 experience, it is much harder to make a breakthrough in Web3 Security/Dev. The reason why some people achieve good results early on is due to the enormous number of hours they spent on math/coding/web2…



SecShiv Reposted

so finally picsart staff fix this bug now enjoy the amazing poc ❤️ youtu.be/Yf61jB1U04k?si…

Tweet Image 1

Just made a quick YT video on phishing via canarytokens and webhooks. No ngrok localhost, or cloudflare block. 👍 Still learning js, So atm, my uploads will be bit slow and probably won't bug bounty PoC related for now. I'll still give goods on dc tho. youtu.be/bQQl8qK8n30


SecShiv Reposted

JavaScript is the most decent language: - Decent package manager - Decent closure support - Decent fast runtime - Decent type system (with ts) Often, being decent at everything is better than being excellent at a few things and embarrassingly bad at others (Haskell) BTW, Bend is…

Tweet Image 1

SecShiv Reposted

They won, I lost (for now). There was a mass report on my repo, and my account was suspended. Don't worry, I have everything in a softcopy. I will post it soon on a different medium.

I've made my Advanced SQL Injection Techniques repo on GitHub public. Head over to my repo and take a look. I hope you like it. #BugBounty #SQLInjection. github.com/ifconfig-me/SQ…



SecShiv Reposted

so finally wait is over i released my customBsqli tool i hope this will help you all in bbp to find timebased sqli.. github.com/coffinxp/BSQLi


SecShiv Reposted

I'm releasing new version of Subdominator with massive updates of more passive resources than other tools and to install: github.com/RevoltSecuriti… And happy to include @Rsecloud & @fofabot as a passive resources in our tool. #bugbountytips #infosec #bugbounty #hackingtools


SecShiv Reposted

SecShiv Reposted

Android stuff i worked on - Public and updated. github.com/HackShiv/Cyber…


SecShiv Reposted

Dang @defparam's new Lemma project looks nuts.


United States Trends
Loading...

Something went wrong.


Something went wrong.