Mr. Crit0x
@mrcrit0x
Bug Hunter
ID: 1472621064052101122
19-12-2021 17:33:34
210 Tweet
29 Followers
611 Following
GitHub - KingOfBugbounty/Bugbounty-Checklist: Tips and Tutorials for Bug Bounty and also Penetration Tests.π₯π₯ credit: Clandestine #bugbountytips #hacking #recon #bugcrowd #hackerone #infose github.com/KingOfBugbountβ¦
Cloudflare Bypasses Here are 10 Writeups about Cloudflare bypasses 1. medium.com/@the_harvester⦠(XSS) 2. cyberweapons.medium.com/reflected-xss-⦠(RXSS) 3. medium.com/@amitdutta6026⦠(SQLi) 4. medium.com/@mayankchoubey⦠(SID from XSS) 5. royzsec.medium.com/cloudflare-byp⦠(In Microsoft) 6.
ποΈ Top Checks for IDOR Bugs β’ Change IDs in URLs & APIs (e.g. /user?id=123) β’ Test DELETE & PUT requests, not just GET/POST β’ Swap numeric β alphanumeric IDs β’ Hunt for ID references in JavaScript files β’ Inspect nested JSON objects for hidden IDs π° IDORs are easy to