OlamDeen (@olamdeen) 's Twitter Profile
OlamDeen

@olamdeen

Cybersecurity Researcher | 💻 Penetration Tester | ✍️ Content Creator | UI/UX designer

ID: 1012359665831895040

linkhttps://www.linkedin.com/in/muhydeen-abdulsalam-8a6442174 calendar_today28-06-2018 15:38:47

3,3K Tweet

808 Followers

564 Following

San (@0xsnpaii) 's Twitter Profile Photo

(Short) #BugBounty Tips for the Coming Year: 1. Skill - A lot of advice out there say you should go complete all PortSwigger Labs before you start hunting. While there's nothing wrong in that, I genuinely feel that is counter productive. Here is what I do instead - Pick a Main

OlamDeen (@olamdeen) 's Twitter Profile Photo

You're good with Google Dorking, even shodan Dorking, not to talk of Duckduckgo But have you tried Yandex before. Try and come back here 😂

OlamDeen (@olamdeen) 's Twitter Profile Photo

Learn more dorking methods today and it's really fun. Someone used yandex dorking which I shared before and found some PII on one big public bug bounty program. Congratulations bro

OlamDeen (@olamdeen) 's Twitter Profile Photo

Relearning about Race condition, Its Basically, when multiple requests hit the server simultaneously before it updates. sometimes ago, i met someone who got a VTU website, he complained about how a malicious person had less that 1k in his account and was able to withdraw 100k+.

Relearning about Race condition, Its Basically, when multiple requests hit the server simultaneously before it updates. sometimes ago, i met someone who got a VTU website, he complained about how a malicious person had less that 1k in his account and was able to withdraw 100k+.
OlamDeen (@olamdeen) 's Twitter Profile Photo

Got critical vulnerabilities from Amazon just by using Yandex dorking Congratulations bro. Im happy my little tips help.

OlamDeen (@olamdeen) 's Twitter Profile Photo

I just published Critical API Authorization Flaw: 5,000 Euro Bounty; How a Missing Check Led to Complete Account… medium.com/p/critical-api…