Vishal Gupta (@hackerxtommy) 's Twitter Profile
Vishal Gupta

@hackerxtommy

โ€ขHACKER
โ€ขSecurity Resercher @Hacker0x01 & @Bugcrowd โ€ขBug Bounty Hunter
#Ittakesacrowd
#HackWorld

ID: 1796920208621543424

linkhttps://www.linkedin.com/in/vishalgupta0001?utm_source=share&utm_campaign=share_via&utm_content=prof calendar_today01-06-2024 15:02:26

45 Tweet

96 Followers

3,3K Following

Kanhaiya Sharma ๐Ÿ‡ฎ๐Ÿ‡ณ (@krishnsec) 's Twitter Profile Photo

#P1 #bugbounty #bugbountytips #bugcrowd 1- on visiting url http://domain.tld it were redirecting first to http://domain.tod/dir1/dir2 then to sso login 2- Fuzzed after first redirection 3- http://domain.tld/dir1/dir2/FUZZ 4- this payload leads to 200 ok disclosed local files

#P1 #bugbounty #bugbountytips #bugcrowd

1- on visiting url http://domain.tld it were redirecting first to http://domain.tod/dir1/dir2 then to sso login

2- Fuzzed after first redirection

3- http://domain.tld/dir1/dir2/FUZZ

4- this payload leads to 200 ok disclosed local files
chrisdior.eth (@chrisdior777) 's Twitter Profile Photo

Here is a simple path to becoming a Web3 Security Researcher: 1. Basics of Blockchain 2. Fundamentals of Smart Contracts 3. Common Smart Contract Vulnerabilities 4. Niche Smart Contract Vulnerabilities Link to a great roadmap: github.com/slowmist/SlowMโ€ฆ

Here is a simple path to becoming a Web3 Security Researcher:

1. Basics of Blockchain
2. Fundamentals of Smart Contracts
3. Common Smart Contract Vulnerabilities
4. Niche Smart Contract Vulnerabilities

Link to a great roadmap:

github.com/slowmist/SlowMโ€ฆ
Jayesh Madnani (@jayesh25_) 's Twitter Profile Photo

๐Ÿ”’Bug Bounty Tips - Here's how I earned a $6000 Bounty by escalating a simple Elmah File Disclosure Issue ๐Ÿ”’ ๐Ÿ’ก If you haven't already, add /elmah and /elmah.axd to your wordlist! These paths often lead to Elmah file disclosures, a finding many researchers report as Low/Medium

๐Ÿ”’Bug Bounty Tips - Here's how I earned a $6000 Bounty by escalating a simple Elmah File Disclosure Issue ๐Ÿ”’

๐Ÿ’ก If you haven't already, add /elmah and /elmah.axd to your wordlist! These paths often lead to Elmah file disclosures, a finding many researchers report as Low/Medium
The SecOps Group (@thesecopsgroup) 's Twitter Profile Photo

๐ŸŽ‰ ๐—™๐—ฟ๐—ฒ๐—ฒ ๐—–๐—ฒ๐—ฟ๐˜๐—ถ๐—ณ๐—ถ๐—ฒ๐—ฑ ๐—ก๐—ฒ๐˜๐˜„๐—ผ๐—ฟ๐—ธ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฃ๐—ฟ๐—ฎ๐—ฐ๐˜๐—ถ๐˜๐—ถ๐—ผ๐—ป๐—ฒ๐—ฟ (๐—–๐—ก๐—ฆ๐—ฃ) ๐—˜๐˜…๐—ฎ๐—บ - ๐—ข๐˜‚๐—ฟ ๐—•๐—ถ๐—ด๐—ด๐—ฒ๐˜€๐˜ ๐—š๐—ถ๐˜ƒ๐—ฒ๐—ฎ๐˜„๐—ฎ๐˜†!ย ๐ŸŽ‰ Community empowerment is at the core of everything we do. ๐Ÿค For a limited time, we are offeringย ๐—™๐—ฅ๐—˜๐—˜ย access to one of our

๐ŸŽ‰ ๐—™๐—ฟ๐—ฒ๐—ฒ ๐—–๐—ฒ๐—ฟ๐˜๐—ถ๐—ณ๐—ถ๐—ฒ๐—ฑ ๐—ก๐—ฒ๐˜๐˜„๐—ผ๐—ฟ๐—ธ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฃ๐—ฟ๐—ฎ๐—ฐ๐˜๐—ถ๐˜๐—ถ๐—ผ๐—ป๐—ฒ๐—ฟ (๐—–๐—ก๐—ฆ๐—ฃ) ๐—˜๐˜…๐—ฎ๐—บ - ๐—ข๐˜‚๐—ฟ ๐—•๐—ถ๐—ด๐—ด๐—ฒ๐˜€๐˜ ๐—š๐—ถ๐˜ƒ๐—ฒ๐—ฎ๐˜„๐—ฎ๐˜†!ย ๐ŸŽ‰
Community empowerment is at the core of everything we do. ๐Ÿค

For a limited time, we are offeringย ๐—™๐—ฅ๐—˜๐—˜ย access to one of our
The SecOps Group (@thesecopsgroup) 's Twitter Profile Photo

๐Ÿ”ฅ ๐Ÿด๐Ÿฌ% ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ + ๐—” ๐—–๐—ต๐—ฎ๐—ป๐—ฐ๐—ฒ ๐˜๐—ผ ๐—ช๐—œ๐—ก ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—˜๐˜…๐—ฎ๐—บ!ย ๐Ÿ”ฅ This is BIG! Not only are we offeringย ๐Ÿด๐Ÿฌ% ๐—ฑ๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ย on ALL our pentesting exams, but weโ€™re also givingย ๐Ÿฑ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฒ๐˜…๐—ฎ๐—บ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ๐—ถ๐—ฟ

๐Ÿ”ฅ ๐Ÿด๐Ÿฌ% ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ + ๐—” ๐—–๐—ต๐—ฎ๐—ป๐—ฐ๐—ฒ ๐˜๐—ผ ๐—ช๐—œ๐—ก ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—˜๐˜…๐—ฎ๐—บ!ย ๐Ÿ”ฅ
This is BIG! Not only are we offeringย ๐Ÿด๐Ÿฌ% ๐—ฑ๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ย on ALL our pentesting exams, but weโ€™re also givingย ๐Ÿฑ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฒ๐˜…๐—ฎ๐—บ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ๐—ถ๐—ฟ
Bug Bounty Village (@bugbountydefcon) 's Twitter Profile Photo

Excited to announce a new giveaway to celebrate our blue check!๐ŸŽ‰ We will pick 5 winners to win a Six month license for PentesterLab! To enter: 1๏ธโƒฃ Follow us Bug Bounty Village 2๏ธโƒฃ Like this post โค๏ธ 3๏ธโƒฃ Tag 3 hacker friends in the comments 4โƒฃRetweet this post ๐Ÿ” Giveaway open

The SecOps Group (@thesecopsgroup) 's Twitter Profile Photo

๐Ÿ”ฅ ๐Ÿด๐Ÿฌ% ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ + ๐—” ๐—–๐—ต๐—ฎ๐—ป๐—ฐ๐—ฒ ๐˜๐—ผ ๐—ช๐—œ๐—ก ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—˜๐˜…๐—ฎ๐—บ!ย ๐Ÿ”ฅ This is BIG! Not only are we offeringย ๐Ÿด๐Ÿฌ% ๐—ฑ๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ย on ALL our pentesting exams, but weโ€™re also givingย ๐Ÿฏ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฒ๐˜…๐—ฎ๐—บ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ๐—ถ๐—ฟ

๐Ÿ”ฅ ๐Ÿด๐Ÿฌ% ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ + ๐—” ๐—–๐—ต๐—ฎ๐—ป๐—ฐ๐—ฒ ๐˜๐—ผ ๐—ช๐—œ๐—ก ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—˜๐˜…๐—ฎ๐—บ!ย ๐Ÿ”ฅ

This is BIG! Not only are we offeringย ๐Ÿด๐Ÿฌ% ๐—ฑ๐—ถ๐˜€๐—ฐ๐—ผ๐˜‚๐—ป๐˜ย on ALL our pentesting exams, but weโ€™re also givingย ๐Ÿฏ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐—ฎ ๐—™๐—ฅ๐—˜๐—˜ ๐—ฒ๐˜…๐—ฎ๐—บ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ๐—ถ๐—ฟ
Symone Capone (@symonecapone) 's Twitter Profile Photo

๐Ÿฃ ๐ŸŒท Easter Giveaway ๐ŸŒท๐Ÿฃ Iโ€™m giving away one CompTIA Security+ Exam Voucher! How to enter: โ€ขLike & RT this post โ€ขComment or tag a friend Winners will be announced Friday Good luck and Happy Easter!

๐Ÿฃ ๐ŸŒท Easter Giveaway ๐ŸŒท๐Ÿฃ

Iโ€™m giving away one CompTIA Security+ Exam Voucher!

How to enter:
โ€ขLike & RT this post
โ€ขComment or tag a friend

Winners will be announced Friday

Good luck and Happy Easter!
Security BSides Ahmedabad (@bsidesahmedabad) 's Twitter Profile Photo

๐Ÿšจ OSCP GIVEAWAY ALERT๐Ÿšจ Weโ€™re giving away 3 OSCP vouchers to supercharge your pentesting journey โ€“ proudly sponsored by OffSec ! ๐Ÿ’ฅ๐Ÿ™Œ To enter: 1.โœ… Follow Us 2.๐Ÿ” Retweet this post 3.โค๏ธ Like this post 4.๐Ÿ’ฌ Reply with your funniest cybersecurity meme ๐ŸŽฏ Weโ€™ll pick 3

๐Ÿšจ OSCP GIVEAWAY ALERT๐Ÿšจ

Weโ€™re giving away 3 OSCP vouchers to supercharge your pentesting journey โ€“ proudly sponsored by <a href="/offsectraining/">OffSec</a> ! ๐Ÿ’ฅ๐Ÿ™Œ

To enter:
1.โœ… Follow Us
2.๐Ÿ” Retweet this post
3.โค๏ธ Like this post
4.๐Ÿ’ฌ Reply with your funniest cybersecurity meme

๐ŸŽฏ Weโ€™ll pick 3
Jason Haddix (@jhaddix) 's Twitter Profile Photo

Another launch and giveaway from our sponsors The SecOps Group ! ๐Ÿšจ Latest Launch + Win a FREE Exam Chance! ๐Ÿšจ The all-new Binary Fuzzing & Reversing pentesting exam just dropped and 3 of you can win it for FREE! ๐ŸŽ‰ The SecOps Group is back with their latest pentesting exam:

Another launch and giveaway from our sponsors <a href="/TheSecOpsGroup/">The SecOps Group</a> !

๐Ÿšจ Latest Launch + Win a FREE Exam Chance! ๐Ÿšจ

The all-new Binary Fuzzing &amp; Reversing pentesting exam just dropped and 3 of you can win it for FREE! ๐ŸŽ‰

The SecOps Group is back with their latest pentesting exam:
X (@themsterdoctor1) 's Twitter Profile Photo

Offensive Security notes ๐Ÿ”ฅ๐Ÿ“ข Welcome to the Linux Privilege Escalation Guide within my OSCP 2025 (Offensive Security Certified Professional) notes. ๐Ÿš€๐Ÿš€๐Ÿš€ "Access to my OSCP Linux Privilege Escalation notes is limited to a select group. First 1000 people are eligible to

Offensive Security notes ๐Ÿ”ฅ๐Ÿ“ข

Welcome to the Linux Privilege Escalation Guide within my OSCP 2025 (Offensive Security Certified Professional) notes. ๐Ÿš€๐Ÿš€๐Ÿš€

"Access to my OSCP Linux Privilege Escalation notes is limited to a select group. 

First 1000 people are eligible to