Mike Takahashi (@taksec) 's Twitter Profile
Mike Takahashi

@taksec

Pentester | Bug Bounty Hunter | AI Red Team

ID: 586128387

linkhttp://taksec.com/ calendar_today20-05-2012 22:33:55

2,2K Tweet

22,22K Followers

612 Following

bugcrowd (@bugcrowd) 's Twitter Profile Photo

Here's one for all you Google Dorks out there! 🤓 Try something like "© [COMPANY]. All rights reserved." to find new root domains!

Here's one for all you Google Dorks out there! 🤓

Try something like "© [COMPANY]. All rights reserved." to find new root domains!
liad eliyahu (@liadeliyahu) 's Twitter Profile Photo

🚨We could bypass authentication to thousands of applications by exploiting a configuration-based vulnerability in AWS ALB. Here’s everything you need to know about the #ALBeast vulnerability discovered by Miggo Security

🚨We could bypass authentication to thousands of applications by exploiting a configuration-based vulnerability in AWS ALB. Here’s everything you need to know about the #ALBeast vulnerability discovered by <a href="/MiggoSecurity/">Miggo Security</a>
Logan Kilpatrick (@officiallogank) 's Twitter Profile Photo

We just shipped a new native prompt gallery in Google AI Studio ✨ Test out long context, native multi-modal (image, video and audio), structured outputs, and more! aistudio.google.com

We just shipped a new native prompt gallery in Google AI Studio ✨ 

Test out long context, native multi-modal (image, video and audio), structured outputs, and more! 

aistudio.google.com
Johann Rehberger (@wunderwuzzi23) 's Twitter Profile Photo

🔥 Microsoft fixed a high severity data exfiltration exploit chain in Copilot that I reported earlier this year. It was possible for a phishing mail to steal PII via prompt injection, including the contents of entire emails and other documents. The demonstrated exploit chain

Johan Carlsson (@joaxcar) 's Twitter Profile Photo

Thanks for the great explanations for this. Apparently, URL parsing (at least in browsers) is supposed to strip out "newlines" AND tabs. So all of these will land on /b

Thanks for the great explanations for this. Apparently, URL parsing (at least in browsers) is supposed to strip out "newlines" AND tabs. So all of these will land on /b
0x999 🇮🇱 (@_0x999) 's Twitter Profile Photo

سایه HackerOne Gareth Heyes \u2028 Read the white paper: portswigger.net/research/split… Practice using the lab: portswigger.net/web-security/l… Search for web applications that have any functionality which relies on an email domain validation, probe -> exploit -> report

Burcu YARAR (@brcyrr) 's Twitter Profile Photo

"How to write a prompt in ChatGPT for Bug Bounty❓" Today I have a great GitHub repository suggestion where you can find the answer to this question❗️👩🏻‍💻 Don't forget to bookmark it.🌸 Credit: Mike Takahashi 🌟🙌🏻 Repo: github.com/TakSec/chatgpt… #CyberSecurity #AI #ChatGPT #BugBounty

"How to write a prompt in ChatGPT for Bug Bounty❓" Today I have a great GitHub repository suggestion where you can find the answer to this question❗️👩🏻‍💻 Don't forget to bookmark it.🌸

Credit: <a href="/TakSec/">Mike Takahashi</a> 🌟🙌🏻

Repo: github.com/TakSec/chatgpt…

#CyberSecurity #AI #ChatGPT #BugBounty
Saoud Khalifah (@saoudkhalifah) 's Twitter Profile Photo

The rise of LLMs is transforming how we work, but what does this mean for innovation and creativity? In my latest post, we explore this and a paradigm I am calling the Generalist. Click the below to learn more! saoudkhalifah.com/2024/08/28/the…

The rise of LLMs is transforming how we work, but what does this mean for innovation and creativity? 

In my latest post, we explore this and a paradigm I am calling the Generalist.  

Click the below to learn more!

saoudkhalifah.com/2024/08/28/the…
Ian Carroll (@iangcarroll) 's Twitter Profile Photo

In April, Sam Curry and I discovered a way to bypass airport security via SQL injection in a database of crewmembers. Unfortunately, DHS ghosted us after we disclosed the issue, and the TSA attempted to cover up what we found. Here is our writeup: ian.sh/tsa

Rachel Tobac (@racheltobac) 's Twitter Profile Photo

Whoaaa, you know how folks talk about QR code scams and mention to be careful but that there isn’t a lot of evidence that QR code scams are in the wild often. Here’s another QR code scam in CA! 150 parking meters with fake QR codes on them plus on the parking signs themselves.

Whoaaa, you know how folks talk about QR code scams and mention to be careful but that there isn’t a lot of evidence that QR code scams are in the wild often. 
Here’s another QR code scam in CA! 
150 parking meters with fake QR codes on them plus on the parking signs themselves.