@ramirezVII Profile picture

Donato Scaramuzzo

@ramirezVII

Senior Penetration Tester & AI Explorer - #AI #NoCode

Similar User
invisiblebyte photo

@invisiblebyte

theMiddle photo

@AndreaTheMiddle

Raffaele Sabato photo

@syrion89

sbox photo

@sbox90

TS-WAY 🇮🇹 photo

@TS_WAY_SRL

MrB0LTv2 (தமிழ்) photo

@MrB0LTv2

Sql3t0 photo

@sqleto

Aryan Rupala photo

@Aryan_2808

Mario Zagaria photo

@mariozagaria

antonio ierano photo

@antonioierano

Prince Samuel photo

@prince7007

Binay Chaudhary photo

@binay_cdry

Pinned

📌 My Top Burp Suite Extension 1. Autorize 2. JS Miner 3. Param Miner 4. Reshaper (just discovered) 5. 403 Bypasser 6. HTTP Request Smuggler 7. Wsdler 8. Backslash Powered Scanner #pentesting #cybersecurity #burpsuite #BugBounty


Donato Scaramuzzo Reposted

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter Source: github.com/Az0x7/vulnerab…

Tweet Image 1

Donato Scaramuzzo Reposted

Leave your neighbor out of this 🙅 A new Module is here to teach you about Wi-Fi security. Learn how to exploit vulnerabilities in #wifi networks, discover hidden networks, and bypass MAC filtering implemented by access points using aircrack-ng tools: okt.to/AnXdtB

Tweet Image 1

Donato Scaramuzzo Reposted

🚀 v0.42.0 is out! You can now route traffic through SOCKS proxies, with the ability to assign different proxies based on the destination target. Check all the details about the latest release here: github.com/caido/caido/re…


Donato Scaramuzzo Reposted

If you love the @pdiscoveryio tools, you should check out their Tool Manager "pdtm"! You can update ALL of the ProjectDiscovery tools with this one simple command: ⌨️ pdtm -ua Install here: loom.ly/BrxEACM


Donato Scaramuzzo Reposted

New writeup from @_specters_ and I: we're finally allowed to disclose a vulnerability reported to Kia which would've allowed an attacker to remotely control almost all vehicles made after 2013 using only the license plate. Full disclosure: samcurry.net/hacking-kia


Donato Scaramuzzo Reposted

During internal assessments I realized that the most difficult part is to detect all subnets. Running nmap is good but long . So what if we let computers and servers talk to us instead and monitor incoming packets ? (1/2)


Donato Scaramuzzo Reposted

Hunting IDORs with Z-winK 🪲 What is an IDOR? 🐞 How IDORs manifest 🐛 Methods to test for IDORs 🐜 Using tools like Burp Suite for exploitation 🪳 Best practices for safe testing Watch now 📺👇 loom.ly/ToGdDxo


Donato Scaramuzzo Reposted

Wanna futureproof your offensive security career? Add these to your skillset: 1️⃣ API Testing 2️⃣ AI Red Teaming (model and infra) 3️⃣ IoT and Hardware Hacking 4️⃣ Internal / Assumed Breach Testing (AD+++) 5️⃣ Defense (at code level, and architecture level)


Donato Scaramuzzo Reposted

Recon Guide for bug hunting

Tweet Image 1

Donato Scaramuzzo Reposted

Add to your wordlist juicy-paths: /_vti_pvt/service.pwd /master.passwd/master.passwd.txt /servudaemon.ini /app/config/config.local.neon /app/etc/local.xml /home/000~ROOT~000 #bugbountytips #bugbounty #bugbountytip


Donato Scaramuzzo Reposted

The Burp Suite Deep Dive course is now fully uploaded and completely free on YouTube. Monetization is turned off so you should have an ad-free experience. Feel free to spread the word. #pentesting #appsec #cybersecurity #bugbounty #infosec youtube.com/playlist?list=…


Donato Scaramuzzo Reposted

My main stack of free AI tools • Overall: ChatGPT • Writing: Claude 3.5 Sonnet • Image: Ideogram, Freepik • Video: Kling AI, Luma • Coding: Cursor AI • Automation: Zapier • Voice: ElevenLabs • Search: Perplexity, You • Assistants: Poe, Coze • Presentation: Gamma


Donato Scaramuzzo Reposted

🐞Use Burpsuite like Pro by @daffainfo Match and Replace Feature which is not known by many hunters or doesn't use it at all. Source: github.com/daffainfo/matc… #bugbounty #bugbountytips #burpsuite #pentesting #cybersecurity #hacking #ethicalhacking #xss #wafbypass #waf

Tweet Image 1
Tweet Image 2
Tweet Image 3
Tweet Image 4

Donato Scaramuzzo Reposted

Want a comprehensive guide on how to exploit SQL injections? 🤑 Check out Advanced SQL Injection Techniques by @nav1n0x! 😎 A Gitbook covering some of the most common and advanced SQL injections that may be present on your target! 👇 buff.ly/3AfzUUz


Donato Scaramuzzo Reposted

Don’t expect AI to write for you. Instead: • Brainstorm with it • Plan with it • Research with it • Innovate with it • Strategize with it • Learn with it • Collaborate with it • Solve problems with it • Explore with it AI can’t take your job but it sure can amplify it


Donato Scaramuzzo Reposted

Hey Bug Hunters! If you don't have time to listen to @ctbbpodcast excellent podcast, you can read an amazing summary on the podcast's blog. It's worth it! 👇 👇 [link in the first comment] #BugBounty #bugbountytips #podcast #cybersecurity #infosec

Tweet Image 1

Donato Scaramuzzo Reposted

Donato Scaramuzzo Reposted

Give some advice to someone that keeps finding dupes 👇


Donato Scaramuzzo Reposted

@NahamSec is back with streams! He went live into recon techniques, sharing tips, exploring vulnerabilities, and showcasing hacking methods using our public Asset Inventory Solution of 1,200 companies 🏢 Sign up on Trickest to get this data ✍️ youtube.com/watch?v=9mdLNR…


Loading...

Something went wrong.


Something went wrong.