Tarun mahour (@sratarun) 's Twitter Profile
Tarun mahour

@sratarun

Cyber security researcher and Bug bounty hunter

ID: 781097362059956224

calendar_today28-09-2016 11:44:58

818 Tweet

2,2K Followers

660 Following

Tarun mahour (@sratarun) 's Twitter Profile Photo

🛡️ZoneScan🛡️ — AWS Route 53 NS Takeover Detector ZoneScan detects misconfigured nameservers in AWS Route 53, scans domain NS records, identifies takeover risks, and tests for DNS hijacking using AWS automation. Link: github.com/tarun776/ZoneS… Aditya Shende Emad Shanab - أبو عبد الله

Tarun mahour (@sratarun) 's Twitter Profile Photo

SubSniper - Subdomain Takeover Checker chrome extension SubSniper to check subdomains for potential takeover vulnerabilities. It uses body fingerprinting to alert you when a subdomain is vulnerable to takeover github.com/tarun776/SubSn… sudi Aditya sharma 🇮🇳

Tarun mahour (@sratarun) 's Twitter Profile Photo

📷 XSS Challenge Solution Recently, I tweet a small XSS challenge, and today I’m sharing its solution! 📷 In this video, I demonstrate how to bypass < and > filters to exploit a vulnerability caused by a misused function named "include" in the code. Poc: facebook.com/share/v/1BhCau…

Mustafa Adam Qamar El-Din (@wadgamaraldeen) 's Twitter Profile Photo

الحمد لله♥️ I got my first 2 bounty rewards from Standoff365 (1 public, 1 private). Still got accepted reports pending, including a High severity in the platform itself! Great experience with their professional and respectful teams. 🔗 standoff365.com/en-US/profile/… #infosecurity

الحمد لله♥️
I got my first 2 bounty rewards from Standoff365 (1 public, 1 private). 
Still got accepted reports pending, including a High severity in the platform itself! Great experience with their professional and respectful teams.
🔗 standoff365.com/en-US/profile/…

#infosecurity
Tarun mahour (@sratarun) 's Twitter Profile Photo

Welcome to XSS Under Siege — an advanced-level XSS challenge designed to push your skills to the limit. 📷Challange Link := > …cf-48b4-d911-485e-2721.ngrok-free.app sudi Aditya sharma 🇮🇳

Tarun mahour (@sratarun) 's Twitter Profile Photo

👿👿After a long time, finally got a Pwn again! 💀💻 This time it’s a Windows WebApp RCE 🧠⚡ Feels great to get that exploit adrenaline back! 🚀 #BugBounty #RCE #HackerVibes #HackTrainingHackers TrainingHack Training

👿👿After a long time, finally got a Pwn again! 💀💻
This time it’s a Windows WebApp RCE 🧠⚡
Feels great to get that exploit adrenaline back! 

🚀 #BugBounty #RCE #HackerVibes #HackTrainingHackers TrainingHack Training
👑 OFJAAAH 👑 (@ofjaaah) 's Twitter Profile Photo

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

Use NextJS? Recon ✨

A quick way to find "all" paths for Next.js websites:
DevTools-&gt;Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n'));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips