
Intrusion Expert
@intruxpert
Bug Bounty Hunter | Web App Hacker | Red Team Specialist | Finding vulnerabilities, exploiting weaknesses, and securing the web one app at a time.
ID: 132452793
https://intruxpert.com 13-04-2010 08:17:07
177 Tweet
1,1K Followers
752 Following

Looking for payloads to bypass weak URL validations? Check out the new PortSwigger URL validation bypass cheat sheet! It contains payloads to help you exploit SSRFs, CORS misconfigurations, open URL redirects and more! π€ π π buff.ly/4ja2KYs








Using common crawl for hacking is genius! Here's a small snippet from the latest Critical Thinking - Bug Bounty Podcast episode about what Truffle Security did to find 12,000 live api keys and secrets.

Common Security Issues in Financially-Oriented Web Applications by Soroush Dalili is a guideline for pentesters (& bug bounty hunters) to test checkout and payment systems in all sorts of targets! π π soroush.me/downloadable/cβ¦



Creating custom wordlists with GAP Burp Suite extension by / XNL -Π½4cΔΈ3r (and @xnl-h4ck3r in the new Sky)! π π π οΈ buff.ly/zYYbJ1l


