Abdullah Al Fahad
@frozenflame0001
A #infosec & #cybersecurity lover. Would be #DOCTOR. ๐ Right now, trying to learn #bugbountyhunting . Surely, I am nothing without my ALLAH.
ID: 1375423930597433346
https://everythingvuln1.blogspot.com/ 26-03-2021 12:26:50
660 Tweet
147 Followers
742 Following
Can you Drop some good resources about source code reviewing, SAST tools.. Tushar Verma ๐ฎ๐ณ Harsh Bothra Mayur Parmar ๏ฃฟ Hemant Patidar The XSS Rat - Proud XSS N00b :-) ๐ท๐ด cristi
Ways to bypass JSON Web Token controls:โ Tip2 โถ๏ธKID manipulation: { "alg" : "HS256", "typ" : "JWT" "kid" : "1" } If field is controlled by the user, it can be manipulated by attackers to lead: โถ๏ธDirectory traversal: โkidโ: โ../../etc/groupsโ #bugbountytips #infosecurity