Intigriti(@intigriti) 's Twitter Profileg
Intigriti

@intigriti

Global Bug Bounty & VDP Platform.
๐ŸŒ: https://t.co/fgCupJckrW
โ–ถ๏ธ: https://t.co/lRfCzZBgb7
๐Ÿ‘พ: https://t.co/Inf7N9VQIl

ID:736615159653924864

linkhttps://www.intigriti.com calendar_today28-05-2016 17:48:34

9,8K Tweets

154,9K Followers

644 Following

Follow People
Intigriti(@intigriti) 's Twitter Profile Photo

There are no API endpoints in the HTTP traffic, and the target has some defenses against introspection.

So, how can we find the hidden GraphQL endpoint? ๐Ÿค”

buff.ly/3Wc9rQT

account_circle
CryptoCat(@_CryptoCat) 's Twitter Profile Photo

Almost halfway into the Intigriti April challenge ๐Ÿ‘€

It's a really cool one from a top Microsoft hacker (@kire_devs_hacks), including elements he's come across in real-world bug bounty programs! ๐Ÿ’œ

challenge-0424.intigriti.io

account_circle
Intigriti(@intigriti) 's Twitter Profile Photo

Happy ! ๐ŸŽ‰ Our furry friends are stealing the show today as they hacked their way into our hearts. Share a photo of your pet and tell us how much they helped you along your journey ๐Ÿฑ๐Ÿถ

Happy #NationalPetsDay! ๐ŸŽ‰ Our furry friends are stealing the show today as they hacked their way into our hearts. Share a photo of your pet and tell us how much they helped you along your #hacking journey ๐Ÿฑ๐Ÿถ #intigriti #hackwithintigriti
account_circle
Intigriti(@intigriti) 's Twitter Profile Photo

On what feature did you find your very first client-side template injection vulnerability on? ๐Ÿง๏ธ ๐Ÿ˜Ž๏ธ

account_circle
Intigriti(@intigriti) 's Twitter Profile Photo

Another quick one this week! In today's Web Security Academy lab, we'll exploit an access control vulnerability by inducing the API to reveal user credentials ๐Ÿ˜ˆ

buff.ly/3TSqBQm

account_circle
Intigriti(@intigriti) 's Twitter Profile Photo

Do you test for client-side template injections? ๐Ÿง๏ธ

And do you use any automated tooling for testing CSTI vulnerabilities? ๐Ÿค 

account_circle