Abood Nour ๐Ÿ‡ต๐Ÿ‡ธ (@aboodnour) 's Twitter Profile
Abood Nour ๐Ÿ‡ต๐Ÿ‡ธ

@aboodnour

That nerd ๐Ÿค“ who's fallen in love with computers ๐Ÿ’ป at the first sight ๐Ÿ’—

ID: 193821501

calendar_today22-09-2010 18:58:30

3,3K Tweet

1,1K Followers

1,1K Following

Black Hat MEA (@blackhatmea) 's Twitter Profile Photo

ู…ุจุฑูˆูƒ ู„ูุฑูŠู‚ ๐Ÿช๐ŸŒช๏ธ (Cookie Storm) ุงู„ูุงุฆุฒ ุจุงู„ู…ุฑูƒุฒ ุงู„ุฎุงู…ุณ ููŠ ู…ุณุงุจู‚ุฉ #ุงู„ุชู‚ุท_ุงู„ุนู„ู… ูˆุฌุงุฆุฒุฉ 40,000ุฑูŠุงู„๐Ÿ‘๐ŸŽ‰๐ŸŽ‰

ู…ุจุฑูˆูƒ ู„ูุฑูŠู‚ ๐Ÿช๐ŸŒช๏ธ (Cookie Storm)  ุงู„ูุงุฆุฒ ุจุงู„ู…ุฑูƒุฒ ุงู„ุฎุงู…ุณ ููŠ ู…ุณุงุจู‚ุฉ #ุงู„ุชู‚ุท_ุงู„ุนู„ู… ูˆุฌุงุฆุฒุฉ 40,000ุฑูŠุงู„๐Ÿ‘๐ŸŽ‰๐ŸŽ‰
Sara Nour (@seranour) 's Twitter Profile Photo

ุฃูƒุจุฑ ู‡ุฒูŠู…ุฉ ูŠูู„ุญูู‚ู‡ุง ุจูƒ ุฎุตูˆู…ูƒ ููŠ ู…ุณูŠุฑุชูƒุŒ ู‡ูŠ ุฃู† ูŠุดุบู„ูˆูƒ ุนู† ุบุงูŠุชูƒ.. ูุชุบูู„ุŒ ุซู… ูŠู‚ุณูˆ ู‚ู„ุจูƒุŒ ุซู… ุชูู‚ุฏ ุจูˆุตู„ุชูƒุŒ ุซู… ุชุชุบูŠุฑ ุฎุตุงู„ูƒุŒ ุซู… ุชุชุดุงุจู‡ ุงู„ุฃูุนุงู„.. ูุชูƒูˆู†ูˆู† ุณูˆุงุก. - ุฏ. ู‡ุจุฉ ุฑุคูˆู

Abood Nour ๐Ÿ‡ต๐Ÿ‡ธ (@aboodnour) 's Twitter Profile Photo

This is a tricky #XSS found by osama_alaa while bug hunting. Don't be fooled by the looks, the technical challenges are very interesting and I promise you will learn something I created a sample app to try it yourself, and test your skills โ€ฆhallenge-bbp-asvzw.ondigitalocean.app/BB_2302.php Enjoy :)

This is a tricky #XSS found by <a href="/osama_hroot/">osama_alaa</a> while bug hunting. 
Don't be fooled by the looks, the technical challenges are very interesting and I promise you will learn something 
I created a sample app to try it yourself, and test your skills
โ€ฆhallenge-bbp-asvzw.ondigitalocean.app/BB_2302.php

Enjoy :)
Abood Nour ๐Ÿ‡ต๐Ÿ‡ธ (@aboodnour) 's Twitter Profile Photo

Several people managed to solve this through creative yet unintended solutions. So lets raise the bar a little bit more ๐Ÿ˜… Here is a slightly modified version to make it even more interesting Can you still beat it? โ€ฆhallenge-bbp-asvzw.ondigitalocean.app/BB_2302_v2.php #XSS #CTF #BugBounty

Several people managed to solve this through creative yet unintended solutions. So lets raise the bar a little bit more ๐Ÿ˜…

Here is a slightly modified version to make it even more interesting

Can you still beat it?
โ€ฆhallenge-bbp-asvzw.ondigitalocean.app/BB_2302_v2.php

#XSS #CTF #BugBounty
Gafi (@imgaafar) 's Twitter Profile Photo

ุจู…ุง ุฅู† ุงู„ุซุฑูŠุฏ ุงู„ู„ูŠ ูุงุช ุงู†ุชุดุฑ ุฌุฏู‹ุง ูˆุงู„ู…ุญุชูˆู‰ ุงู„ุนุฑุจูŠ ุนู† ุงู„ู…ูˆุถูˆุน ู†ุงุฏุฑุŒ ูุฃู†ุง ู‡ุญุงูˆู„ ุฃุนู…ู„ ู…ู„ุฎุต ุนู† LK-99 Super Conductor ุงู„ู…ูˆุตู„ ุงู„ูุงุฆู‚ ุงู„ู„ูŠ ุนุงู…ู„ ุถุฌุฉ ููŠ ุงู„ู…ุฌุชู…ุน ุงู„ุนู„ู…ูŠ ู…ู† ุฃุณุจูˆุนูŠู†ุŒ ูˆู‡ุฒูˆุฏ ุนู„ู‰ ุงู„ุซุฑูŠุฏ ู„ูˆ ููŠ ุชุญุฏูŠุซ ุงู„ู…ูˆุถูˆุน ุจุฏุฃ ุจูˆุฑู‚ุฉ ุจุญุซูŠุฉ (ุบูŠุฑ ู…ุญูƒู…ุฉ) ู…ู† ูƒูˆุฑูŠุง ุงู„ุฌู†ูˆุจูŠุฉ ุนู† super conductor ูŠุนู…ู„

ุจู…ุง ุฅู† ุงู„ุซุฑูŠุฏ ุงู„ู„ูŠ ูุงุช ุงู†ุชุดุฑ ุฌุฏู‹ุง ูˆุงู„ู…ุญุชูˆู‰ ุงู„ุนุฑุจูŠ ุนู† ุงู„ู…ูˆุถูˆุน ู†ุงุฏุฑุŒ ูุฃู†ุง ู‡ุญุงูˆู„ ุฃุนู…ู„ ู…ู„ุฎุต ุนู† 
LK-99 Super Conductor
ุงู„ู…ูˆุตู„ ุงู„ูุงุฆู‚ ุงู„ู„ูŠ ุนุงู…ู„ ุถุฌุฉ ููŠ ุงู„ู…ุฌุชู…ุน ุงู„ุนู„ู…ูŠ ู…ู† ุฃุณุจูˆุนูŠู†ุŒ ูˆู‡ุฒูˆุฏ ุนู„ู‰ ุงู„ุซุฑูŠุฏ ู„ูˆ ููŠ ุชุญุฏูŠุซ

ุงู„ู…ูˆุถูˆุน ุจุฏุฃ ุจูˆุฑู‚ุฉ ุจุญุซูŠุฉ (ุบูŠุฑ ู…ุญูƒู…ุฉ) ู…ู† ูƒูˆุฑูŠุง ุงู„ุฌู†ูˆุจูŠุฉ ุนู† super conductor ูŠุนู…ู„
Soroush Dalili (@irsdl) 's Twitter Profile Photo

Cookieless DuoDrop: IIS Auth Bypass & App Pool Privesc in ASP .NET Framework (CVE-2023-36899) soroush.me/blog/2023/08/cโ€ฆ #Appsec #bugbountytips

Cookieless DuoDrop: IIS Auth Bypass &amp; App Pool Privesc in ASP .NET Framework (CVE-2023-36899)

soroush.me/blog/2023/08/cโ€ฆ

#Appsec #bugbountytips
Ahmed Sultan ๐Ÿ‡ช๐Ÿ‡ฌ๐Ÿ‡ต๐Ÿ‡ธ (@0x4148) 's Twitter Profile Photo

Burns are excruciatingly painful, and anesthesia is crucial for relief. This is a heartbreaking example representing the agony of the children facing Israeli terror attacks! And moreover, NO PAINKILLERS ARE AVAILABLE OR ALLOWED TO REACH THEM!!! Still arguing whether or not this

Tech For Palestine (@tech4palestine) 's Twitter Profile Photo

There is no justification for genocide. But Israel lied about 40 beheaded babies to convince the world there was. Today we launch Oct7FactCheck, a thorough, deeply researched fact check of Oct 7 claims

Kha1i (@kha1ifuzz) 's Twitter Profile Photo

Excited to share that the Malcrove - Next Generation Security Red Team just dropped new blog and new tool SeamlessPass! utilizing Microsoftโ€™s Seamless SSO feature to acquire access tokens for Microsoft 365 services by leveraging on-premises Active Directory Kerberos tickets malcrove.com/seamlesspass-lโ€ฆ

ู‡ู…ุงู… ุดุนู„ุงู† || H . Shaalan (@osswsso) 's Twitter Profile Photo

ุฏุน ุงู„ุนุงู„ู… ูŠุฑู‰ ูˆุฌู‡ู‡ู… ุงู„ุญู‚ูŠู‚ูŠ .. ู„ู‚ุฏ ูƒุงู†ุช ูˆุณุงุฆู„ ุงู„ุฅุนู„ุงู… ุงู„ุบุฑุจูŠุฉ ุชุญู…ูŠู‡ู… ุฏุงุฆู…ู‹ุง ู‚ุจู„ ูˆุณุงุฆู„ ุงู„ุชูˆุงุตู„ ุงู„ุงุฌุชู…ุงุนูŠุŒ ูˆู„ูƒู† ุงู„ุขู† ูŠู…ูƒู† ู„ู„ุนุงู„ู… ุฃุฌู…ุน ุฑุคูŠุชู‡ู… .. x.com/narrative_holeโ€ฆ

Bassem Youssef (@byoussef) 's Twitter Profile Photo

And suddenly my phone , our security system , my kids tablets are time bombs that detonate at the whims of one country . You win Israel . Not a single politician or late night show talks about this ? None of that worth the news ? Nothing โ€œfunnyโ€ can come out of it ? The whole

Dr. Omar Suleiman (@omarsuleiman) 's Twitter Profile Photo

Just like that. Almost 500 human beings. Israel is a rogue terrorist state. Praying for our brothers and sisters in Lebanon as we have been for our people in Palestine. And longing for the day this criminal regime is brought to account. ๐Ÿ‡ต๐Ÿ‡ธ ๐Ÿ‡ฑ๐Ÿ‡ง

Just like that. Almost 500 human beings. 

Israel is a rogue terrorist state. 

Praying for our brothers and sisters in Lebanon as we have been for our people in Palestine. And longing for the day this criminal regime is brought to account. 

๐Ÿ‡ต๐Ÿ‡ธ ๐Ÿ‡ฑ๐Ÿ‡ง
Al Jazeera English (@ajenglish) 's Twitter Profile Photo

Lebanese journalist Fadi Boudiya, editor-in-chief of the Miraya International Network, was injured after an Israeli air attack hit his home during a live TV interview.

Philippe Lazzarini (@unlazzarini) 's Twitter Profile Photo

#BREAKING ๐Ÿ›‘: We are pausing the delivery of aid through Kerem Shalom, the main crossing point for humanitarian aid into #Gaza. The road out of this crossing has not been safe for months. On 16 November, a large convoy of aid trucks was stolen by armed gangs. Yesterday, we