(inc0gbyt3) (@incogbyte) 's Twitter Profile
(inc0gbyt3)

@incogbyte

pentester/infosec/ infosec researcher of nothing

ID: 1157672339993178114

linkhttps://incogbyte.github.io calendar_today03-08-2019 15:19:29

124 Tweet

387 Followers

385 Following

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I wrote a small guide with some common techniques to bypass WAF, focus on SQL injection.. incogbyte.github.io/sqli_waf_bypass #bugbountytips #bugbountytip

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I wrote a little bit about a pentest that I did, and I got domain admin incogbyte.github.io/domain-admin/ #BugBounty #PenTest

Pentester Land (@pentesterland) 's Twitter Profile Photo

Check this out if you want to learn about a lesser known IDOR variant, how to leverage markdown for hacking, what Jason Haddix & Frans Rosén are up to these days & more! #hacking #websec #InfoSec #bugbountynews #T5HN #pentesting #bugbounty #pentest pentester.land/newsletter/202…

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I wrote a small tool to grab subdomains from Shodan github.com/incogbyte/shos… yeah.. i know that this already exist but.. i made another ;) #peace #golang

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

Those who haven't seen my tool on h@cktivitycon, this one [github.com/incogbyte/shos…] and the conference also so you didn't see [youtube.com/watch?v=qLTe6Z… ] thanks to JS0N Haddix 寿つかさ HackerOne #bugbountytips #BugBounty

PT SWARM (@ptswarm) 's Twitter Profile Photo

📲 We are pleased to present the utility developed by our researcher Impact for Flutter apps traffic monitoring. Just make app trust installed certificates by repacking it with reFlutter and hunt bugs using Burp Suite. No root, no VPN, no more hassle! github.com/ptswarm/reFlut…

📲 We are pleased to present the utility developed by our researcher <a href="/lmpact_l/">Impact</a> for Flutter apps traffic monitoring.

Just make app trust installed certificates by repacking it with reFlutter and hunt bugs using Burp Suite. No root, no VPN, no more hassle!

github.com/ptswarm/reFlut…
(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I added a template, for nuclei to identify a XSS without authentication in Lucee check. github.com/projectdiscove… #bugbountytips #nuclei

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

small write up about PHPIPAM CVE-2022-23046 with exploit, incogbyte.github.io/post/2022-01-2… #bugbounty #bugbountytips #infosec #beginner

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I'm sharing a script using frida, to bypass sslpinning more common (Android). gist.github.com/incogbyte/1e0e… codeshare.frida.re/@incogbyte/and… #BugBounty #bugbountytips #fridadotre Frida

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

With the arrival of palera1n, I made a script, using frida, to bypass jb checks based on relative paths and also include some bypass for more common antitampers like ptrace, geppid. codeshare.frida.re/@incogbyte/ios… Frida and thans to euphoria ⚡️ for the GUI♥️

(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

I just completed the #burpchallenge. I found a logic bug where after requesting a password reset, the link sent to the email had a token that did not expire and had a predictable pattern, after understand the pattern, it was possible to account takeover of any user

Murphy (@as0ler) 's Twitter Profile Photo

Our #r2Frida trainees put their knowledge in practice and it publicly! n0psn0ps.github.io/2024/06/07/mac… If you have lost the opportunity, you have another chance to learn from it in our next ringzerø.training && @[email protected] Training in Las Vegas with Grant 🌱🏴󠁧󠁢󠁳󠁣󠁴󠁿 and me. ringzer0.training/doubledown24-m…

Jiska (@naehrdine) 's Twitter Profile Photo

It's been a while – here's a brand new reversing short on how to interpret log messages in Apple's binaries! youtu.be/-uIeRISQaiI #reversingshorts

It's been a while – here's a brand new reversing short on how to interpret log messages in Apple's binaries!

youtu.be/-uIeRISQaiI #reversingshorts
(inc0gbyt3) (@incogbyte) 's Twitter Profile Photo

In this post, I dive into how Flutter apps generally encrypt requests using RSA, how to analyze the compiled binaries, and how I reverse using frida, blutter Check it out here: incogbyte.github.io/posts/flutter-… thanks Frida Edu Novella Worawit Wang #infosec