kassem (@kassem_s94) 's Twitter Profile
kassem

@kassem_s94

Ethical Hacker | Web app pentester | Hacker @Hacker0x01 and Bugcrowd/intigriti | Whitehat @Immunefi | HOF APPLE/MICROSOFT |Follow me t.me/kassems94

ID: 1432845372846653441

calendar_today31-08-2021 23:19:11

815 Tweet

3,3K Followers

176 Following

kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ Last Sale of the Year Coming Soon! ๐Ÿšจ Get ready, because this is going to be the final chance with special prices for 2025! ๐Ÿ’ฅ ๐Ÿ› ๏ธ Secret Hunter, XOXO XSS, Cash Poisoner Pro, SSRFStorm, Aurora, DepHunterโ€ฆ all included! โณ Stay tuned t.me/kassems94 #BugBounty

kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ LAST CHANCE of the year! Secret Hunter for only $15/month! ๐Ÿšจ โณ 24 HOURS ONLY,after that, the price goes up! ๐Ÿ’โ€โ™‚๏ธCheck real screenshots from happy customers! ๐Ÿ“ฉJoin us: t.me/kassems94 ๐Ÿ’โ€โ™‚๏ธCheck how Secret Hunter work: youtu.be/wDQxVVHDlfc #bugbounty #hacking

๐Ÿšจ LAST CHANCE of the year! Secret Hunter for only $15/month! ๐Ÿšจ  

โณ 24 HOURS ONLY,after that, the price goes up!
๐Ÿ’โ€โ™‚๏ธCheck real screenshots from happy customers!  

๐Ÿ“ฉJoin us: t.me/kassems94

๐Ÿ’โ€โ™‚๏ธCheck how Secret Hunter work: youtu.be/wDQxVVHDlfc

#bugbounty
#hacking
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ LAST CHANCE of the year! Secret Hunter for only $15/month! ๐Ÿšจ โณ 24 HOURS ONLY,after that, the price goes up! ๐Ÿ’โ€โ™‚๏ธCheck real screenshots from happy customers! ๐Ÿ“ฉJoin us: t.me/kassems94 ๐Ÿ’โ€โ™‚๏ธCheck how Secret Hunter work: youtu.be/wDQxVVHDlfc #bugbounty #hacking

๐Ÿšจ LAST CHANCE of the year! Secret Hunter for only $15/month! ๐Ÿšจ  

โณ 24 HOURS ONLY,after that, the price goes up!
๐Ÿ’โ€โ™‚๏ธCheck real screenshots from happy customers!  

๐Ÿ“ฉJoin us: t.me/kassems94

๐Ÿ’โ€โ™‚๏ธCheck how Secret Hunter work: youtu.be/wDQxVVHDlfc

#bugbounty
#hacking
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ New bug found using #SecretHunter Publicly accessible JavaScript file exposing PII ๐Ÿ”ฅ Simple issue, BIG impact. Bug bounty is all about recon ๐Ÿ‘€ Join our community ๐Ÿ‘‰ t.me/kassems94 DM to get access to the tool ๐Ÿ‘‰ t.me/apesofficial #BugBounty #InfoSec

๐Ÿšจ New bug found using #SecretHunter

Publicly accessible JavaScript file exposing PII ๐Ÿ”ฅ  
Simple issue, BIG impact.

Bug bounty is all about recon ๐Ÿ‘€

Join our community ๐Ÿ‘‰ t.me/kassems94  
DM to get access to the tool ๐Ÿ‘‰ t.me/apesofficial

#BugBounty #InfoSec
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ’ฐ $10,000 Bug Bounty๐Ÿ’ฅ One of our customers found a real vulnerability using **Secret Hunter** ๐Ÿ› ๏ธ Then successfully chained it with: SQLi + IDOR๐Ÿš€ โžก๏ธ Critical impact โžก๏ธ Real money ๐Ÿ’ธ ๐Ÿ‘ฅ Community & access: t.me/kassems94 #BugBounty #InfoSec #Hacking #SecurityTools

๐Ÿ’ฐ $10,000 Bug Bounty๐Ÿ’ฅ

One of our customers found a real vulnerability using **Secret Hunter** ๐Ÿ› ๏ธ
Then successfully chained it with: SQLi + IDOR๐Ÿš€

โžก๏ธ Critical impact
โžก๏ธ Real money ๐Ÿ’ธ

๐Ÿ‘ฅ Community & access: t.me/kassems94

#BugBounty #InfoSec #Hacking #SecurityTools
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ REAL BUG BOUNTY RESULT ๐Ÿšจ ๐Ÿ’ฅ JWT token exposed in client-side JavaScript ๐Ÿ’ฅ Weak secret key โœ… Report triaged on HackerOne Found using **Secret Hunter** ๐Ÿ› ๏ธ No theory. No fake hype. Just real impact. Join the hunters ๐Ÿ‘‡ ๐Ÿ‘‰ t.me/kassems94 #BugBounty

๐Ÿšจ REAL BUG BOUNTY RESULT ๐Ÿšจ

๐Ÿ’ฅ JWT token exposed in client-side JavaScript  
๐Ÿ’ฅ Weak secret key  
โœ… Report triaged on HackerOne

Found using **Secret Hunter** ๐Ÿ› ๏ธ  
No theory. No fake hype. Just real impact.

Join the hunters ๐Ÿ‘‡  
๐Ÿ‘‰ t.me/kassems94

#BugBounty
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ”ฅ SECOND BUG by the SAME CUSTOMER ๐Ÿ”ฅ Discovered using **Secret Hunter** ๐Ÿ› ๏ธ ๐Ÿชฃ Open S3 Bucket โžก๏ธ Information Disclosure ๐Ÿ’ฅ This is what real tools deliver. ๐Ÿ‘ฅ Community: t.me/kassems94 #BugBounty #CloudSecurity #S3 #hacking #hackers #secret_hunter

๐Ÿ”ฅ SECOND BUG by the SAME CUSTOMER ๐Ÿ”ฅ

Discovered using **Secret Hunter** ๐Ÿ› ๏ธ  
๐Ÿชฃ Open S3 Bucket  
โžก๏ธ Information Disclosure ๐Ÿ’ฅ

This is what real tools deliver.

๐Ÿ‘ฅ Community: t.me/kassems94 

#BugBounty #CloudSecurity #S3 #hacking #hackers #secret_hunter
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ”ฅ New bounty (~$1300) using Secret Hunter ๐Ÿ•ต๏ธโ€โ™‚๏ธ Found: โœ”๏ธ Secret JS files โœ”๏ธ Hidden endpoints โœ”๏ธ Broken Access Control โœ”๏ธ Report accepted ๐Ÿ’ฐ โ€œFinds secret JS files like goldโ€ ๐Ÿฅ‡ ๐Ÿ“ฉJoin Our Community: t.me/kassems94 #BugBounty #Recon #InfoSec #bugbounty #hacking

๐Ÿ”ฅ New bounty (~$1300) using Secret Hunter ๐Ÿ•ต๏ธโ€โ™‚๏ธ

Found:
โœ”๏ธ Secret JS files  
โœ”๏ธ Hidden endpoints  
โœ”๏ธ Broken Access Control  
โœ”๏ธ Report accepted ๐Ÿ’ฐ

โ€œFinds secret JS files like goldโ€ ๐Ÿฅ‡

๐Ÿ“ฉJoin Our Community: t.me/kassems94 

#BugBounty #Recon #InfoSec #bugbounty #hacking
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ’ฐBountys: $ X,XXX These are OLD results from the early version of our Github Shield PRO tool. Multiple GitHub leaks โ†’ valid tokens, API keys, client secrets โœ”๏ธ High & medium & low severity โœ”๏ธ Real bounties paid join: t.me/kassems94 #BugBounty #hacking #hackers

๐Ÿ’ฐBountys: $ X,XXX
These are OLD results from the early version of our Github Shield PRO tool.

Multiple GitHub leaks โ†’ valid tokens, API keys, client secrets  
โœ”๏ธ High & medium & low severity  
โœ”๏ธ Real bounties paid

join: t.me/kassems94

#BugBounty 
#hacking
#hackers
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ”ฅ Huge congrats on the $500 bounty! ๐Ÿ’ฐ๐Ÿ‘ Secrets in JS files & page source still pay ๐Ÿ’ฐ Thatโ€™s why **Secret Hunter** delivers real results ๐Ÿš€ ๐Ÿ‘ฅ Community: t.me/kassems94 #BugBounty #HackerOne #Recon #Secrets

kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ”ฅ Huge congrats on the $500 bounty! ๐Ÿ’ฐ๐Ÿ‘ Secrets in JS files & page source still pay ๐Ÿ’ฐ Thatโ€™s why **Secret Hunter** delivers real results ๐Ÿš€ ๐Ÿ‘ฅ Community: t.me/kassems94 #BugBounty #HackerOne #Recon #Secrets

๐Ÿ”ฅ Huge congrats on the $500 bounty! ๐Ÿ’ฐ๐Ÿ‘  

Secrets in JS files & page source still pay ๐Ÿ’ฐ
Thatโ€™s why **Secret Hunter** delivers real results ๐Ÿš€  

๐Ÿ‘ฅ Community: t.me/kassems94  

#BugBounty #HackerOne #Recon #Secrets
kassem (@kassem_s94) 's Twitter Profile Photo

๐ŸšจTo Remind: ๐Ÿ’ฐ $10,000 Bug Bounty๐Ÿ’ฅ One of our customers found a real vulnerability using **Secret Hunter** ๐Ÿ› ๏ธ Then successfully chained it with: SQLi + IDOR โžก๏ธ Critical impact โžก๏ธ Real money ๐Ÿ’ธ ๐Ÿ‘ฅ Community & access: t.me/kassems94 #BugBounty #Hacking #SecurityTools

๐ŸšจTo Remind:
๐Ÿ’ฐ $10,000 Bug Bounty๐Ÿ’ฅ

One of our customers found a real vulnerability using **Secret Hunter** ๐Ÿ› ๏ธ
Then successfully chained it with: SQLi + IDOR

โžก๏ธ Critical impact
โžก๏ธ Real money ๐Ÿ’ธ

๐Ÿ‘ฅ Community & access: t.me/kassems94

#BugBounty #Hacking #SecurityTools
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿšจ๐Ÿšจ MEGA YouTube GIVEAWAY 48H ๐Ÿ”ฅ ๐ŸŽ Winner: 1 Month FREE Secret Hunter OR XOXO XSS ๐Ÿ’ฅ Everyone: 50% OFF on many tools! To enter: โœ… Subscribe: youtube.com/@kassem_s94 โœ… Drop a NEW comment here: youtu.be/wDQxVVHDlfc โœ… Share this post + Join: t.me/kassems94

kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ’ฐ **New $1,000 Bug Bounty Paid!** A new customer used **Secret Hunter** last week and successfully found exposed secret keys,the report was accepted and rewarded. Real tools. Real results. ๐Ÿš€ Join the community: t.me/kassems94 #BugBounty #Hacking #CyberSecurity

๐Ÿ’ฐ **New $1,000 Bug Bounty Paid!**

A new customer used **Secret Hunter** last week and successfully found exposed secret keys,the report was accepted and rewarded.

Real tools. Real results. ๐Ÿš€

Join the community: t.me/kassems94

#BugBounty #Hacking #CyberSecurity
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ’โ€โ™‚๏ธOLD BUT GOLD ๐Ÿ’ก Bug Bounty Tip: CORS Misconfig. Weak Origin validation can be bypassed with origins like: โš ๏ธ domain[.]com.attacker[.]com Always test CORS misconfigs, they pay ๐Ÿ’ฐ Earned $500 bounty ๐ŸŽฏ Join us: t.me/kassems94 #bugbounty #BugBountytips #InfoSec #hack

๐Ÿ’โ€โ™‚๏ธOLD BUT GOLD
๐Ÿ’ก Bug Bounty Tip: CORS Misconfig.

Weak Origin validation can be bypassed with origins like:

โš ๏ธ domain[.]com.attacker[.]com

Always test CORS misconfigs, they pay ๐Ÿ’ฐ

Earned $500 bounty ๐ŸŽฏ
Join us: t.me/kassems94

#bugbounty
#BugBountytips
#InfoSec
#hack
kassem (@kassem_s94) 's Twitter Profile Photo

๐Ÿ“˜From Request to Root A new book for aspiring penetration testers. Iโ€™ve reviewed its content and highly recommend it. Covers: ๐Ÿงฑ WebApp architecture. ๐Ÿ”Ž Passive+Active recon. ๐Ÿ’ฅ Injection,client+server side vulnerabilities. ๐Ÿ“ฒ Contact: Telegram: t.me/moebofficial

๐Ÿ“˜From Request to Root

A new book for aspiring penetration testers.

Iโ€™ve reviewed its content and highly recommend it.

Covers:

๐Ÿงฑ WebApp architecture.

๐Ÿ”Ž Passive+Active recon.

๐Ÿ’ฅ Injection,client+server side vulnerabilities.

๐Ÿ“ฒ Contact: Telegram: t.me/moebofficial