A:\fie
@emenalfCyber Security || Bug Bounty hunter Hobbyist || https://t.co/jWMWOMqg5g || @bugcrowd Research Ambassador || Red-Blue.
Similar User
@uraniumhacker
@saamux
@KN0X55
@princechaddha
@ChevyPicks
@KHIZER_JAVED47
@Wh11teW0lf
@Karel_Origin
@FirewallFiasco
@vulnh0lic
@ShawarkOFFICIAL
@cybervergent
@x1m_martijn
@Splint3r7
@ArbazKiraak
Use of Google dorks and the site operator is a good way to identify vulnerable apps on sites with bounty. The inurl:/OA_HTML to get unpatched instances with XSS or SQLi is one of them as explained the-infosec.com/2018/11/06/ora… #BugBounty #bugbountytip
I am excited to share with you my latest research - "DCOM Upload & Execute" An advanced lateral movement technique to upload and execute custom payloads on remote targets Forget about PSEXEC and dive in! deepinstinct.com/blog/forget-ps… github.com/deepinstinct/D…
Celebrating 15 years of password hacking 💻 🔑, Swiss Army knives (and sometimes even chainsaws or swords) included! 😲 Discover how Google's security teams turn employee farewells into security tests. bughunters.google.com/blog/635526578…
Men only want one thing and it’s disgusting
On Hextree you can find Android application security courses free of charge, thanks to a sponsorship by Google
Since I started web3 security, I've thought about having a single resource to help someone become a security researcher without needing anything else. I realized it could be like a roadmap in book style. I’d be really happy if it’s of any help to you. github.com/tpiliposian/no…
20 years ago we released Grand Theft Auto - San Andreas. The original plan was for the 3 cities to be on separate maps. The player would travel between the cities using trains and planes. (Gta 1 and 2 also had three cities on separate maps) Memory was very tight on the ps2 and…
The year is 2016. I was in my bedroom, staring at the screen. “ZERODIUM Payouts for Mobiles” One zero, two zero, three zero… wtf! The reward could be up to one million US dollars? That’s a one bedroom apartment in Hong Kong, whatever this RCE is, I’m going to learn…
View State, The unpatchable IIS forever day being actively exploited zeroed.tech/blog/viewstate…
For that need, I wrote a quick Python script that will bind to an interface and build subnets file based on incoming packets: gist.github.com/Dfte/9cfeb8789… was very useful lately 👀
Did anyone try RemoteKrbRelay from @CICADA8Research ? It can be found at github.com/CICADA8-Resear…
To quote one of our engineers who read your report "wow, this was a wild read". Amazing find @rebane2001
new blogpost time!! this one's a fun writeup on a vulnerability chain i found across multiple google services that earned me a $4133.70 bounty lots of fun css as usual! i had to recreate a bunch of drive/docs/gmail/youtube UIs c: have fun! lyra.horse/blog/2024/09/u…
A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques. github.com/Escape-Technol… #Pentesting #CyberSecurity #Infosec
Hack and unlock the Amazon Fire HD6 / HD7 (MediaTek MT8135) blog.r0rt1z2.com/hacking-a-2014… #infosec #embedded
This is honestly one of the best pieces of web security research I have read in years blog.orange.tw/2024/08/confus…
Conference presentation slides: Credit Link: github.com/onhexgroup/Con… - Black Hat USA 2024 slides (3-8 August,2024) - REcon 2024 Slides (28-30 Jun,2024) - Offensivecon 2024 (May 10-11,2024 Berlin) - Blackhat Asia 2024 (April 16-19, 2024 Marina Bay Sands / Singapore) - Blackhat…
🚨 LOLRMM Day 1 and 2 update 🚨 🔥 Spec created. Everything validates against it. 🔥 328~ RMM YAML's. Filled with artifacts. We're still working to clean a few things up - dupes, incorrect items added. We're going to need the most ❤️ here from the community. 🔥CSV, JSON API…
Everything you can do legally (or almost) with Flipper Zero. The Ultimate Tamagotchi for Hackers... [ 🔖 Save this for later ]
I’m thrilled to share my latest blog post! This one focuses on the bug hunting process: inspiration, approach, and execution. I also provide a retrospective on how the bug was introduced and analyze the insufficient “patch”. Check it out: securityintelligence.com/x-force/little…
😮😮 Switzerland has ruled that all government software should be open sourced. "Public Money, Public Code." One day 🇰🇪 zdnet.com/article/switze…
United States Trends
- 1. Remy 45 B posts
- 2. $VSG 3.239 posts
- 3. YouTube TV 100 B posts
- 4. $CUTO 7.648 posts
- 5. $LINGO 53,2 B posts
- 6. #Drgreennft N/A
- 7. gracie 17,7 B posts
- 8. Claressa 10,5 B posts
- 9. VECTOR 7.270 posts
- 10. Person of the Year 206 B posts
- 11. NYSE 51,2 B posts
- 12. Eazy 7.396 posts
- 13. YTTV N/A
- 14. #thursdayvibes 5.820 posts
- 15. Hulu 13,4 B posts
- 16. $PHNIX 7.425 posts
- 17. Cable 22,4 B posts
- 18. DirecTV N/A
- 19. #TheGameAwards 19,2 B posts
- 20. #supersoft N/A
Who to follow
-
Uranium238
@uraniumhacker -
Samuel
@saamux -
KNOXSS
@KN0X55 -
pwnmachine 👾
@princechaddha -
ChevyPicks 🏈 🦍 🏀
@ChevyPicks -
Khizer Javed
@KHIZER_JAVED47 -
Wh11teW0lf
@Wh11teW0lf -
Karel Origin
@Karel_Origin -
Mauricio
@FirewallFiasco -
Yogendra Jaiswal
@vulnh0lic -
Shawar Khan
@ShawarkOFFICIAL -
Cybervergent
@cybervergent -
Martijn Baalman (x1m)
@x1m_martijn -
Splint3r7
@Splint3r7 -
Arbaz Hussain
@ArbazKiraak
Something went wrong.
Something went wrong.