Esteban Brenes (@b0ydc_) 's Twitter Profile
Esteban Brenes

@b0ydc_

Security Researcher

Founder #machetevault
eWPTx2/eWPT | CEH Master | eJPT

ID: 834276067955318784

linkhttps://machetevault.com calendar_today22-02-2017 05:38:09

595 Tweet

158 Followers

101 Following

CryptoCat (@_cryptocat) 's Twitter Profile Photo

Want to become an ethical hacker? πŸ₯· Here's a list of my favourite [mostly practical] resources πŸ“š They are all free (or have a free option) and there's more high quality material here than anybody realistically has the time to complete ⏳

Want to become an ethical hacker? πŸ₯· Here's a list of my favourite [mostly practical] resources πŸ“š

They are all free (or have a free option) and there's more high quality material here than anybody realistically has the time to complete ⏳
VAIDIK PANDYA (@h4x0r_fr34k) 's Twitter Profile Photo

Cloudflare Bypasses Here are 10 Writeups about Cloudflare bypasses 1. medium.com/@the_harvester… (XSS) 2. cyberweapons.medium.com/reflected-xss-… (RXSS) 3. medium.com/@amitdutta6026… (SQLi) 4. medium.com/@mayankchoubey… (SID from XSS) 5. royzsec.medium.com/cloudflare-byp… (In Microsoft) 6.

Critical Thinking - Bug Bounty Podcast (@ctbbpodcast) 's Twitter Profile Photo

If you're scratching your head after the matan berkovich episodes, here's a demo to show you how to: - Enable developer mode - Download extension's crx file Debugging: - Enable "Search in anonymous and content scripts" - Disable Ignore List "Content scripts injected by extensions"

James Kettle (@albinowax) 's Twitter Profile Photo

We’re finally live! You can now watch β€œListen to the whispers: web timing attacks that actually work” on YouTube: youtube.com/watch?v=zOPjz-…

Ben Sadeghipour (@nahamsec) 's Twitter Profile Photo

🎯 Black Friday Special+ Giveaway: Get the full course for just $29 (reg. $119) at with code 'FRIDAY2024'! hhub.io/BlackFriday Includes: 15+ Hours of content + 100+ labs! 🎁 BONUS: reply & retweet - one lucky winner gets 2 FREE course coupons (keep one, gift one)!

🎯 Black Friday Special+ Giveaway: 

Get the full course for just $29 (reg. $119) at with code 'FRIDAY2024'! hhub.io/BlackFriday 

Includes: 15+ Hours of content + 100+ labs!

🎁 BONUS: reply & retweet - one lucky winner gets 2 FREE course coupons (keep one, gift one)!
Gareth Heyes \u2028 (@garethheyes) 's Twitter Profile Photo

Struggling with WAFs that seem to block every XSS attempt? Here’s a lesser-known trick from parrot409: the Chrome-only onscrollsnapchange event. We’ve just added it to our XSS cheat sheet for those hard-to-crack scenarios.

Struggling with WAFs that seem to block every XSS attempt? Here’s a lesser-known trick from <a href="/parrot409/">parrot409</a>: the Chrome-only onscrollsnapchange event. We’ve just added it to our XSS cheat sheet for those hard-to-crack scenarios.
Critical Thinking - Bug Bounty Podcast (@ctbbpodcast) 's Twitter Profile Photo

#BugBountyTip of the day: If you're learning about cookie injection or parsing logic, you should read arxenix’s blog on cookie bugs. Link: blog.ankursundara.com/cookie-bugs Once you've read it, make sure to bookmark it for when you find yourself in injection contexts!

Critical Thinking - Bug Bounty Podcast (@ctbbpodcast) 's Twitter Profile Photo

We've interviewed a lot of impressive hackers here on Critical Thinking - but Sharon Brizinov is really something else. This guy won two awards at the latest H1 LHE and has been a regular at Pwn2Own for the past several years. He does web & IoT. Enjoy! youtu.be/CP3FxNPXh0g

Critical Thinking - Bug Bounty Podcast (@ctbbpodcast) 's Twitter Profile Photo

How to find the manifest.json file of any Chrome extension: 1. Go to chrome://extensions 2. Turn on Developer mode 3. Copy the extension ID 4. Go to ~/Library/Application Support/Google/Chrome/Default/Extensions 5. Find the matching ID then find the manifest.json file!

Jason Haddix (@jhaddix) 's Twitter Profile Photo

🚨 GIVEAWAY ALERT 🚨 Today is DAY ONE of FIVE DAYS of Arcanum Information Security and friends Black Friday and Cyber Monday giveaways! Today we are giving away FIVE seats to our new "Attacking AI" course in January! (Syllabus coming soon, it's gonna be a banger) payhip.com/b/2qPZ1

🚨 GIVEAWAY ALERT 🚨

Today is DAY ONE of FIVE DAYS of <a href="/arcanuminfosec/">Arcanum Information Security</a> and friends Black Friday and Cyber Monday giveaways!

Today we are giving away FIVE seats to our new "Attacking AI" course in January! (Syllabus coming soon, it's gonna be a banger)

payhip.com/b/2qPZ1
Jason Haddix (@jhaddix) 's Twitter Profile Photo

πŸ›‘ GIVEAWAY ALERT πŸ›‘ Today is DAY TWO of FIVE DAYS of Arcanum Information Security and friends Black Friday and Cyber Monday giveaways! Today we are giving away FIVE seats to our flagship training: "The Bug Hunter's Methodology Live" TBHM is one of the BEST trainings in the industry for

πŸ›‘ GIVEAWAY ALERT πŸ›‘

Today is DAY TWO of FIVE DAYS of <a href="/arcanuminfosec/">Arcanum Information Security</a>  and friends Black Friday and Cyber Monday giveaways!

Today we are giving away FIVE seats to our flagship training:

"The Bug Hunter's Methodology Live" 

TBHM is one of the BEST trainings in the industry for
𝕏 Bug Bounty Writeups 𝕏 (@bountywriteups) 's Twitter Profile Photo

πŸ“š The Smarter Bug Hunting (For Low Hanging Bug) πŸ“Œ Step 1: Gather Recon Data The foundation of bug hunting is solid reconnaissance. Use tools like Amass and Subfinder to discover subdomains. #amass enum -d target.com #subfinder -d target.com -o

πŸ“š The Smarter Bug Hunting (For Low Hanging Bug)

πŸ“Œ Step 1: Gather Recon Data
The foundation of bug hunting is solid reconnaissance. Use tools like Amass and Subfinder to discover subdomains.

#amass enum -d target.com  
#subfinder -d target.com -o
Jason Haddix (@jhaddix) 's Twitter Profile Photo

πŸ›‘ GIVEAWAY ALERT πŸ›‘ ⬇️ Today is day FOUR of FIVE days of Arcanum Information Security and friends Black Friday and Cyber Monday giveaways! Today we are giving away FIVE seats to our training: "Red Blue Purple AI" RBPAI is a cutting edge course on how to USE AI to scale

πŸ›‘ GIVEAWAY ALERT πŸ›‘ ⬇️

Today is day FOUR of FIVE days of <a href="/arcanuminfosec/">Arcanum Information Security</a> 
and friends Black Friday and Cyber Monday giveaways!     

Today we are giving away FIVE seats to our  training:   

   "Red Blue Purple AI"     

RBPAI is a cutting edge course on how to USE AI to scale
chux (@chux13786509) 's Twitter Profile Photo

My latest writeup about how to exploit file upload vulnerabilities, even when the server is hardened and "secured" πŸ”₯ #BugBounty #bugbountytips #hacking medium.com/@red.whisperer…

Justin Gardner (@rhynorater) 's Twitter Profile Photo

We recently had a vision meeting with the Crit Digital team - the parent company of Critical Thinking - Bug Bounty Podcast. The goal for the company is simple: Promote hacker excellence in the bug bounty community. Here is how we plan to do it.