Araf Rubayed (@arafrubayed) 's Twitter Profile
Araf Rubayed

@arafrubayed

ID: 1231547307578945536

linkhttp://www.facebook.com calendar_today23-02-2020 11:57:25

132 Tweet

55 Followers

1,1K Following

payloadartist (@payloadartist) 's Twitter Profile Photo

If you are tired of googling for #BugBounty writeups, I made a little tool that lets you search writeups easily. You can also pull the search data in JSON format if you need it. BugBountyHunting.com #cybersecurity #bugbountytips #infosec #100DaysOfCode

Devang Solanki (@devangsolankii) 's Twitter Profile Photo

httpx -silent -l all_subdomain.txt | xargs | sed -e 's/ /,/g' | xargs -I '{}' subzy -hide_fails -target {} Onliner for finding potential subdomain takeover using subzy and httpx. #bugbountytip #bugbountytips #bugbounty

httpx -silent -l all_subdomain.txt | xargs | sed -e 's/ /,/g'  | xargs -I '{}' subzy -hide_fails -target {}

Onliner for finding potential subdomain takeover using subzy and httpx.

#bugbountytip #bugbountytips #bugbounty
Araf Rubayed (@arafrubayed) 's Twitter Profile Photo

๐Ÿšจ#BREAKING: Everyone rushing on X to seeing Meta down Sites Facebook, Instagram, Messenger and Threads, all of them owned by Meta, are reportedly down since Tuesday shortly after 9 a.m. according to DownDetector

Araf Rubayed (@arafrubayed) 's Twitter Profile Photo

People coming to X to check if Facebook is down ๐Ÿ‘€Facebook and instagram are both down!!! Who even uses FB & IG? #facebookdown #instagramdown #meta #metadown

Araf Rubayed (@arafrubayed) 's Twitter Profile Photo

1. Technical issues: Facebook may be experiencing server problems or conducting maintenance activities, leading to global service disruptions. 2. Connectivity problems: Internet connectivity issues could prevent users from accessing Facebook worldwide. #instagram #Facebook

1. Technical issues: Facebook may be experiencing server problems or conducting maintenance activities, leading to global service disruptions.  
2. Connectivity problems: Internet connectivity issues could prevent users from accessing Facebook worldwide.
  #instagram #Facebook
Bug Bounty Community Bangladesh (@bbcbd_official) 's Twitter Profile Photo

Let's go hackers! HackerOne BUG HUNT 2024 Powered By BCSI has been finally scheduled to 16 November (Saturday), 2024! ๐Ÿ“… More information will be on it's way soon! #bughunt2024 #BCSI #hackerone #TheHuntIsOn

Let's go hackers! HackerOne BUG HUNT 2024 Powered By BCSI has been finally scheduled to 16 November (Saturday), 2024! ๐Ÿ“…

More information will be on it's way soon!

#bughunt2024 #BCSI #hackerone #TheHuntIsOn
๐• Bug Bounty Writeups ๐• (@bountywriteups) 's Twitter Profile Photo

๐Ÿ” Bug Bounty Tips for Smart Hunters ๐Ÿž #bugbounty #bugbountytips #bugbountytip #hackerone #bugcrowd #infosec #cybersecurity #pentesting #redteam #informationsecurity #securitycipher #technology #coding #code #recon #ai #llm #owasp

๐Ÿ” Bug Bounty Tips for Smart Hunters ๐Ÿž

#bugbounty #bugbountytips #bugbountytip #hackerone #bugcrowd #infosec #cybersecurity #pentesting #redteam #informationsecurity #securitycipher #technology #coding #code #recon #ai #llm #owasp
Md Ismail ล ojal๎จ€ ๐Ÿ•ท๏ธ (@0x0sojalsec) 's Twitter Profile Photo

Quick and dirty way to find parameters vulnerable to LFI & Path Traversal & SSRF & Open Redirect: Burp Search > Regex \?.*=(\/\/?\w+|\w+\/|\w+(%3A|:)(\/|%2F)|%2F|[\.\w]+\.\w{2,4}[^\w]) And find potentially vulnerable SSRF params - github.com/In3tinct/See-Sโ€ฆ #SSRF #cybersec

Quick and dirty way to find parameters vulnerable to LFI & Path Traversal & SSRF & Open Redirect:
Burp Search > Regex 
\?.*=(\/\/?\w+|\w+\/|\w+(%3A|:)(\/|%2F)|%2F|[\.\w]+\.\w{2,4}[^\w])

And find potentially vulnerable SSRF params 
- github.com/In3tinct/See-Sโ€ฆ
#SSRF #cybersec
H1 Disclosed - Public Disclosures (@h1disclosed) 's Twitter Profile Photo

โšก Account Takeover via Password Reset without user interactions ๐Ÿ‘จ๐Ÿปโ€๐Ÿ’ป asterion04 โžŸ GitLab ๐Ÿ†˜ Critical ๐Ÿ’ฐ $35,000 ๐Ÿ”— hackerone.com/reports/2293343 #bugbounty #bugbountytips #cybersecurity #infosec

โšก Account Takeover via Password Reset without user interactions 
๐Ÿ‘จ๐Ÿปโ€๐Ÿ’ป asterion04 โžŸ GitLab 
๐Ÿ†˜ Critical
๐Ÿ’ฐ $35,000
๐Ÿ”— hackerone.com/reports/2293343
#bugbounty #bugbountytips #cybersecurity #infosec
Pratik Dabhi (@impratikdabhi) 's Twitter Profile Photo

๐Ÿš€ Bug Bounty Workflow for Beginners 1๏ธโƒฃ Recon โ€“ Gather subdomains & endpoints 2๏ธโƒฃ Enumeration โ€“ Identify tech stack & parameters 3๏ธโƒฃ Testing โ€“ Find vulnerabilities (XSS, IDOR, SSRF, SQLi) 4๏ธโƒฃ Exploitation โ€“ Prove impact responsibly 5๏ธโƒฃ Report โ€“ Clear, detailed, and reproducible

Dilly Hussain (@dillyhussain88) 's Twitter Profile Photo

โ€œWhy have you been silent? Why? You see the scenes of death and people burning alive.โ€ A Palestinian girl in Gaza condemns the Arab worldโ€™s silence and cowardice.

Araf Rubayed (@arafrubayed) 's Twitter Profile Photo

Day 1: ๐Ÿ”Ž Recon: 15 mins โœ… ๐Ÿ› ๏ธ Manual Testing: 3.5 hrsโœ… ๐Ÿž Bug Reported: 0 โœ…

Araf Rubayed (@arafrubayed) 's Twitter Profile Photo

Day 2: ๐Ÿ™‹โ€โ™‚๏ธ Learning : 1 hr ๐Ÿ› ๏ธ Manual Testing: 3 hr 30 mins โœ… ๐Ÿž Bug Reported: 0 #BugBounty

HackerOne (@hacker0x01) 's Twitter Profile Photo

HackerOne Clubs across Asia-Pacific are adding fresh energy. Welcome to these new Brand Ambassadors! ๐Ÿ‡ฎ๐Ÿ‡ฉ ZeeAgil & ๐Ÿ‡ฎ๐Ÿ‡ฉ root_geek280 (Indonesiaโ€”new club!) ๐Ÿ‡ฎ๐Ÿ‡ณ Aditya Soni & ๐Ÿ‡ฎ๐Ÿ‡ณ Yash Sharma (India North) ๐Ÿ‡ฎ๐Ÿ‡ณ charan (India South) ๐Ÿ‡ฎ๐Ÿ‡ณ Debangshu ๐Ÿ‡ฎ๐Ÿ‡ณ๐Ÿฅท & snifyak (India East) ๐Ÿ‡ง๐Ÿ‡ฉ

HackerOne Clubs across Asia-Pacific are adding fresh energy. Welcome to these new Brand Ambassadors!

๐Ÿ‡ฎ๐Ÿ‡ฉ <a href="/zeeagils/">ZeeAgil</a> &amp; ๐Ÿ‡ฎ๐Ÿ‡ฉ root_geek280 (Indonesiaโ€”new club!)

๐Ÿ‡ฎ๐Ÿ‡ณ <a href="/hetroublehacker/">Aditya Soni</a> &amp; ๐Ÿ‡ฎ๐Ÿ‡ณ <a href="/05__Yash/">Yash Sharma</a> (India North)

๐Ÿ‡ฎ๐Ÿ‡ณ <a href="/0xcharan/">charan</a> (India South)

๐Ÿ‡ฎ๐Ÿ‡ณ <a href="/ThisIsDK999/">Debangshu ๐Ÿ‡ฎ๐Ÿ‡ณ๐Ÿฅท</a> &amp; snifyak (India East)

๐Ÿ‡ง๐Ÿ‡ฉ
NullSecX (@nullsecurityx) 's Twitter Profile Photo

How to Exploit an IDOR Vulnerability and gain Privileges Just published a new video demonstrating how We exploited an IDOR vulnerability to escalate privileges in a web app. ๐Ÿ“Œ IDOR, privilege escalation ๐Ÿ“บ Watch : youtu.be/r6xrhXPmsiU #IDOR #BugBounty #CyberSecurity