Dip mondal
@proffe00cybersecurity Researcher | .--. FINDING some Cool THINGs..
Similar User
@Justin85563950
@mehrab_opi33500
@bubalula_yeee
@mohitchaudhry05
@H4R3L
@zy9ard3
@ChiragSoni404
@H_freaks1
@0xKylm
@GouravDhimanIn1
@peacerealty07
@rafinrahmanchy
@GutemHC
@tnsaudi
@M7moud_mk99
I along with @aszx87410 was recently able to find an interesting case of a DOM based xss in figma.com Sharing the details in this writeup as the bug is fixed now github.com/Sudistark/xss-…
SSRF Parameters 🔥🔥🔥 Worth greppin for 🔥🔥 1.?host= 2.?redirect= 3.?uri= 4.?path= 5.?continue= 6.?url= 7.?window= 8.?next= 9.?data= 10.?image-source= 11.?n= 12.?to= 13.?follow= 14.?u= 15.?go= 16.?fetch= 17.?source= 18.?img-src= #bugbountytips #bugbountytip #bugbounty
Nettacker: Automated Penetration Testing Framework - Open-Source Vulnerability Scanner github.com/OWASP/Nettacker
.
🕸 Website: "Please enter your first name" 😎 You: "jaVasCript:/-//*\/'/"/*/(/ */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()//>\x3e"
Getting a free delivery by singing up from "admin_@glovoapp.com" hackerone.com/reports/1296584
Fuzz.txt 🔥🔥🔥🔥 A list of dangerous files for fuzzing github.com/Bo0oM/fuzz.txt #bugbountytips #bugbountytip #bugbounty
XSS to Read Internal Files #tutorial #security #hacking #android blog.dixitaditya.com/xss-to-read-in…
Best of HTTP Cheat Sheet #infosec #cybersecurity #pentesting #oscp #informationsecurity #hacking #cissp #redteam #technology #DataSecurity #CyberSec #Hackers #tools #bugbountytips #Linux #websecurity #Network #NetworkSecurity #cybersecurityawareness
UNIX/Linux Command Cheat Sheet Credit: fosswire.com #infosec #cybersecurity #pentesting #oscp #informationsecurity #hacking #DataSecurity #CyberSec #Hackers #tools #bugbountytips #Linux #websecurity #Network #NetworkSecurity #cybersecurityawareness
XSS in @IncomeTaxIndia Payload: lookhere');});</script><img src=x onerror=alert('XSS')> 1)the keyword “lookhere” was used to detect all the places the input was reflected 2)The rest is responsible for balancing the payload #infosec #bugbountytips #xss
If you are getting blocked on #WordPress websites when trying to access an endpoint then you can use the parameter “rest_route” to bypass it. https://***.com/blog/wp-json/wp/v2/users BLOCKED https://***.com/blog/?rest_route=/wp/v2/usersOK #bugbountytips #bugbounty #security
Cyber-Bookmarks: a list of bookmarks that contains lists of resources/articles that will help bug bounty hunters with resources that are useful during their bug bounty journey. x0rb3l.github.io/Cyber-Bookmark… #cybersecurity #malware #bugbounty #hacking
United States Trends
- 1. Hunter 2,17 Mn posts
- 2. Cyber Monday 73,8 B posts
- 3. Take Ctrl 1.639 posts
- 4. #GalaxyFold6 N/A
- 5. #GivingTuesday 5.458 posts
- 6. $CUTO 11,3 B posts
- 7. #IDontWantToOverreactBUT 1.759 posts
- 8. Enron 11,2 B posts
- 9. RTFKT 6.089 posts
- 10. Kevin Warren 2.145 posts
- 11. AP Poll 7.376 posts
- 12. Poles 6.962 posts
- 13. Burisma 82,3 B posts
- 14. Thomas Brown 3.171 posts
- 15. Miller Moss 1.133 posts
- 16. #Duolingo365 16,6 B posts
- 17. Tony White 1.667 posts
- 18. #MondayMotivation 19,8 B posts
- 19. Intel 31,1 B posts
- 20. Bloodborne 7.031 posts
Who to follow
-
JustinBmz
@Justin85563950 -
mehrab opi🇧🇩
@mehrab_opi33500 -
Saiful Islam
@bubalula_yeee -
Mohit verma 09 (Modi Ka Parivar)
@mohitchaudhry05 -
Harel
@H4R3L -
zy9ard3
@zy9ard3 -
Chirag 0x22 🇮🇳
@ChiragSoni404 -
sahabalam
@H_freaks1 -
Kylm
@0xKylm -
𝑮𝒐𝒖𝒓𝒂𝒗 𝑫𝒉𝒊𝒎𝒂𝒏 𝑰𝒏𝒔𝒂𝒏
@GouravDhimanIn1 -
𝗣𝗘𝗔𝗖𝗘 𝗥𝗘𝗔𝗟𝗧𝗬
@peacerealty07 -
Rafin Rahman Chy
@rafinrahmanchy -
[email protected]
@GutemHC -
Saudi
@tnsaudi -
Mahmoud 🇵🇸
@M7moud_mk99
Something went wrong.
Something went wrong.