kassem (@kassem_s94) 's Twitter Profile
kassem

@kassem_s94

Ethical Hacker | Web app pentester | Hacker @Hacker0x01 and Bugcrowd/intigriti | Whitehat @Immunefi | HOF APPLE/MICROSOFT |Follow me t.me/kassems94

ID: 1432845372846653441

calendar_today31-08-2021 23:19:11

815 Tweet

3,3K Followers

176 Following

kassem (@kassem_s94) 's Twitter Profile Photo

🚨 Last Sale of the Year Coming Soon! 🚨 Get ready, because this is going to be the final chance with special prices for 2025! 💥 🛠️ Secret Hunter, XOXO XSS, Cash Poisoner Pro, SSRFStorm, Aurora, DepHunter… all included! ⏳ Stay tuned t.me/kassems94 #BugBounty

kassem (@kassem_s94) 's Twitter Profile Photo

🚨 LAST CHANCE of the year! Secret Hunter for only $15/month! 🚨 ⏳ 24 HOURS ONLY,after that, the price goes up! 💁‍♂️Check real screenshots from happy customers! 📩Join us: t.me/kassems94 💁‍♂️Check how Secret Hunter work: youtu.be/wDQxVVHDlfc #bugbounty #hacking

🚨 LAST CHANCE of the year! Secret Hunter for only $15/month! 🚨  

⏳ 24 HOURS ONLY,after that, the price goes up!
💁‍♂️Check real screenshots from happy customers!  

📩Join us: t.me/kassems94

💁‍♂️Check how Secret Hunter work: youtu.be/wDQxVVHDlfc

#bugbounty
#hacking
kassem (@kassem_s94) 's Twitter Profile Photo

🚨 LAST CHANCE of the year! Secret Hunter for only $15/month! 🚨 ⏳ 24 HOURS ONLY,after that, the price goes up! 💁‍♂️Check real screenshots from happy customers! 📩Join us: t.me/kassems94 💁‍♂️Check how Secret Hunter work: youtu.be/wDQxVVHDlfc #bugbounty #hacking

🚨 LAST CHANCE of the year! Secret Hunter for only $15/month! 🚨  

⏳ 24 HOURS ONLY,after that, the price goes up!
💁‍♂️Check real screenshots from happy customers!  

📩Join us: t.me/kassems94

💁‍♂️Check how Secret Hunter work: youtu.be/wDQxVVHDlfc

#bugbounty
#hacking
kassem (@kassem_s94) 's Twitter Profile Photo

🚨 New bug found using #SecretHunter Publicly accessible JavaScript file exposing PII 🔥 Simple issue, BIG impact. Bug bounty is all about recon 👀 Join our community 👉 t.me/kassems94 DM to get access to the tool 👉 t.me/apesofficial #BugBounty #InfoSec

🚨 New bug found using #SecretHunter

Publicly accessible JavaScript file exposing PII 🔥  
Simple issue, BIG impact.

Bug bounty is all about recon 👀

Join our community 👉 t.me/kassems94  
DM to get access to the tool 👉 t.me/apesofficial

#BugBounty #InfoSec
kassem (@kassem_s94) 's Twitter Profile Photo

💰 $10,000 Bug Bounty💥 One of our customers found a real vulnerability using **Secret Hunter** 🛠️ Then successfully chained it with: SQLi + IDOR🚀 ➡️ Critical impact ➡️ Real money 💸 👥 Community & access: t.me/kassems94 #BugBounty #InfoSec #Hacking #SecurityTools

💰 $10,000 Bug Bounty💥

One of our customers found a real vulnerability using **Secret Hunter** 🛠️
Then successfully chained it with: SQLi + IDOR🚀

➡️ Critical impact
➡️ Real money 💸

👥 Community & access: t.me/kassems94

#BugBounty #InfoSec #Hacking #SecurityTools
kassem (@kassem_s94) 's Twitter Profile Photo

🚨 REAL BUG BOUNTY RESULT 🚨 💥 JWT token exposed in client-side JavaScript 💥 Weak secret key ✅ Report triaged on HackerOne Found using **Secret Hunter** 🛠️ No theory. No fake hype. Just real impact. Join the hunters 👇 👉 t.me/kassems94 #BugBounty

🚨 REAL BUG BOUNTY RESULT 🚨

💥 JWT token exposed in client-side JavaScript  
💥 Weak secret key  
✅ Report triaged on HackerOne

Found using **Secret Hunter** 🛠️  
No theory. No fake hype. Just real impact.

Join the hunters 👇  
👉 t.me/kassems94

#BugBounty
kassem (@kassem_s94) 's Twitter Profile Photo

🔥 SECOND BUG by the SAME CUSTOMER 🔥 Discovered using **Secret Hunter** 🛠️ 🪣 Open S3 Bucket ➡️ Information Disclosure 💥 This is what real tools deliver. 👥 Community: t.me/kassems94 #BugBounty #CloudSecurity #S3 #hacking #hackers #secret_hunter

🔥 SECOND BUG by the SAME CUSTOMER 🔥

Discovered using **Secret Hunter** 🛠️  
🪣 Open S3 Bucket  
➡️ Information Disclosure 💥

This is what real tools deliver.

👥 Community: t.me/kassems94 

#BugBounty #CloudSecurity #S3 #hacking #hackers #secret_hunter
kassem (@kassem_s94) 's Twitter Profile Photo

🔥 New bounty (~$1300) using Secret Hunter 🕵️‍♂️ Found: ✔️ Secret JS files ✔️ Hidden endpoints ✔️ Broken Access Control ✔️ Report accepted 💰 “Finds secret JS files like gold” 🥇 📩Join Our Community: t.me/kassems94 #BugBounty #Recon #InfoSec #bugbounty #hacking

🔥 New bounty (~$1300) using Secret Hunter 🕵️‍♂️

Found:
✔️ Secret JS files  
✔️ Hidden endpoints  
✔️ Broken Access Control  
✔️ Report accepted 💰

“Finds secret JS files like gold” 🥇

📩Join Our Community: t.me/kassems94 

#BugBounty #Recon #InfoSec #bugbounty #hacking
kassem (@kassem_s94) 's Twitter Profile Photo

💰Bountys: $ X,XXX These are OLD results from the early version of our Github Shield PRO tool. Multiple GitHub leaks → valid tokens, API keys, client secrets ✔️ High & medium & low severity ✔️ Real bounties paid join: t.me/kassems94 #BugBounty #hacking #hackers

💰Bountys: $ X,XXX
These are OLD results from the early version of our Github Shield PRO tool.

Multiple GitHub leaks → valid tokens, API keys, client secrets  
✔️ High & medium & low severity  
✔️ Real bounties paid

join: t.me/kassems94

#BugBounty 
#hacking
#hackers
kassem (@kassem_s94) 's Twitter Profile Photo

🔥 Huge congrats on the $500 bounty! 💰👏 Secrets in JS files & page source still pay 💰 That’s why **Secret Hunter** delivers real results 🚀 👥 Community: t.me/kassems94 #BugBounty #HackerOne #Recon #Secrets

kassem (@kassem_s94) 's Twitter Profile Photo

🔥 Huge congrats on the $500 bounty! 💰👏 Secrets in JS files & page source still pay 💰 That’s why **Secret Hunter** delivers real results 🚀 👥 Community: t.me/kassems94 #BugBounty #HackerOne #Recon #Secrets

🔥 Huge congrats on the $500 bounty! 💰👏  

Secrets in JS files & page source still pay 💰
That’s why **Secret Hunter** delivers real results 🚀  

👥 Community: t.me/kassems94  

#BugBounty #HackerOne #Recon #Secrets
kassem (@kassem_s94) 's Twitter Profile Photo

🚨To Remind: 💰 $10,000 Bug Bounty💥 One of our customers found a real vulnerability using **Secret Hunter** 🛠️ Then successfully chained it with: SQLi + IDOR ➡️ Critical impact ➡️ Real money 💸 👥 Community & access: t.me/kassems94 #BugBounty #Hacking #SecurityTools

🚨To Remind:
💰 $10,000 Bug Bounty💥

One of our customers found a real vulnerability using **Secret Hunter** 🛠️
Then successfully chained it with: SQLi + IDOR

➡️ Critical impact
➡️ Real money 💸

👥 Community & access: t.me/kassems94

#BugBounty #Hacking #SecurityTools
kassem (@kassem_s94) 's Twitter Profile Photo

🚨🚨 MEGA YouTube GIVEAWAY 48H 🔥 🎁 Winner: 1 Month FREE Secret Hunter OR XOXO XSS 💥 Everyone: 50% OFF on many tools! To enter: ✅ Subscribe: youtube.com/@kassem_s94 ✅ Drop a NEW comment here: youtu.be/wDQxVVHDlfc ✅ Share this post + Join: t.me/kassems94

kassem (@kassem_s94) 's Twitter Profile Photo

💰 **New $1,000 Bug Bounty Paid!** A new customer used **Secret Hunter** last week and successfully found exposed secret keys,the report was accepted and rewarded. Real tools. Real results. 🚀 Join the community: t.me/kassems94 #BugBounty #Hacking #CyberSecurity

💰 **New $1,000 Bug Bounty Paid!**

A new customer used **Secret Hunter** last week and successfully found exposed secret keys,the report was accepted and rewarded.

Real tools. Real results. 🚀

Join the community: t.me/kassems94

#BugBounty #Hacking #CyberSecurity
kassem (@kassem_s94) 's Twitter Profile Photo

💁‍♂️OLD BUT GOLD 💡 Bug Bounty Tip: CORS Misconfig. Weak Origin validation can be bypassed with origins like: ⚠️ domain[.]com.attacker[.]com Always test CORS misconfigs, they pay 💰 Earned $500 bounty 🎯 Join us: t.me/kassems94 #bugbounty #BugBountytips #InfoSec #hack

💁‍♂️OLD BUT GOLD
💡 Bug Bounty Tip: CORS Misconfig.

Weak Origin validation can be bypassed with origins like:

⚠️ domain[.]com.attacker[.]com

Always test CORS misconfigs, they pay 💰

Earned $500 bounty 🎯
Join us: t.me/kassems94

#bugbounty
#BugBountytips
#InfoSec
#hack
kassem (@kassem_s94) 's Twitter Profile Photo

📘From Request to Root A new book for aspiring penetration testers. I’ve reviewed its content and highly recommend it. Covers: 🧱 WebApp architecture. 🔎 Passive+Active recon. 💥 Injection,client+server side vulnerabilities. 📲 Contact: Telegram: t.me/moebofficial

📘From Request to Root

A new book for aspiring penetration testers.

I’ve reviewed its content and highly recommend it.

Covers:

🧱 WebApp architecture.

🔎 Passive+Active recon.

💥 Injection,client+server side vulnerabilities.

📲 Contact: Telegram: t.me/moebofficial