Youssef Sammouda (sam0)
@samm0udaHacker, bug bounty hunter, guy behind https://t.co/TBAtP71Cop. 1st in Meta bug bounty program for the last 5 years. YES Team Member
Similar User
@disclosedh1
@PortSwiggerRes
@gregxsunday
@fransrosen
@TomNomNom
@thedawgyg
@HusseiN98D
@albinowax
@MrTuxracer
@galnagli
@hunter0x7
@s0md3v
@infosec_au
@Farah_Hawaa
@codecancare
Multiple bugs chained to takeover Facebook Accounts which uses Gmail. ( $42k ) ysamm.com/?p=763
It was a great interview! Thank you for having me @ctbbpodcast
New @ctbbpodcast with @samm0uda, should be a good one! 🤩 youtube.com/watch?v=U8lZKl…
In 2023: - I met in two occasions my hacker friends and also made new ones. - Reported 14 bugs - Made $450,000 My goals for 2024 are to grow and learn new things and share more writeups.
I got $66000 once for an XSS. The impact to the business and its users is the important thing in a report and not the bug itself.
if you hate light bursts from you srceen at night, enable this "chrome://flags/#enable-force-dark"
To all triagers out there, stop trying to reproduce client-side pocs from a local html file.
Yay, I was awarded a $30,000 bounty on @Hacker0x01 ! hackerone.com/sam0 #TogetherWeHitHarder Should have been another $50,000, however no consistently in payouts, going back to Meta.
Hyped! On the 28th of September i will be hosting the annual Truesec Cybersecurity Summit & present the talk I performed at Blackhat, Defcon and soon Sec-t! Get your tickets at: securitysummit.truesec.com/?utm_campaign=…
Latest @ctbbpodcast episode with @securinti has dropped 🔥 youtube.com/watch?v=MSXf2f…
Bug write-up for Google Extensions thanks @ThomasOrlita and others for the help :) ndevtk.github.io/writeups/2023/… this writeup does include some free XSSs I got board of waiting.
This year's Defcon was really nice, i met a lot of people who i always admired for their work but now i like them more because in real life they were super cool. Special thanks to Meta, Microsoft, Intigriti, Hackerone teams, all my Brazilian friends and all the hackers i met.
Yay, I was awarded a $50,000 bounty on @Hacker0x01! hackerone.com/sam0 #TogetherWeHitHarder
. @assetnote is legendary for its bug bounty roots and recon capabilities. In this latest episode, we sit down LIVE from London with @seanyeoh (head of engineering at Assetnote) and get all the tips on how to build a performant, scaling recon system! buff.ly/453j713
Last days I've spent on Meta's BountyCon event hosted in Seoul, Korea. Together with my teammates(@phwd_, @samm0uda and @JosipFranjkovic ) we took 1-2 places and won 5/7 nominations. Also special thanks from me for event collaboration with @_bagipro & @OversecuredInc scanner.
The best time to start bug bounty was 10 years ago. The second best time is now.
United States Trends
- 1. Justin Tucker 15,9 B posts
- 2. Ravens 49,9 B posts
- 3. Packers 35,1 B posts
- 4. Steelers 56,2 B posts
- 5. Bears 73 B posts
- 6. Jets 41,5 B posts
- 7. #OnePride 10,1 B posts
- 8. Dustin Hopkins 1.722 posts
- 9. Browns 22,7 B posts
- 10. Jordan Love 5.300 posts
- 11. #HereWeGo 8.637 posts
- 12. Vikings 26,9 B posts
- 13. Taysom Hill 3.027 posts
- 14. WWIII 14,9 B posts
- 15. Boswell 2.739 posts
- 16. Jags 7.497 posts
- 17. Drake Maye 6.758 posts
- 18. Titans 32,9 B posts
- 19. Broderick Jones 1.075 posts
- 20. $CUTO 9.250 posts
Who to follow
-
publiclyDisclosed
@disclosedh1 -
PortSwigger Research
@PortSwiggerRes -
Bug Bounty Reports Explained
@gregxsunday -
Frans Rosén
@fransrosen -
TomNomNom
@TomNomNom -
dawgyg - WoH
@thedawgyg -
Hussein Daher
@HusseiN98D -
James Kettle
@albinowax -
Julien | MrTuxracer 🇪🇺
@MrTuxracer -
Nagli
@galnagli -
Ahsan Khan
@hunter0x7 -
Somdev Sangwan
@s0md3v -
shubs
@infosec_au -
Farah Hawa
@Farah_Hawaa -
todayisnew
@codecancare
Something went wrong.
Something went wrong.