Fawad khan (@mrrfawadkhann) 's Twitter Profile
Fawad khan

@mrrfawadkhann

Penetration Tester. | bug bounty hunter |
Digital Consultant

ID: 846774577531424770

calendar_today28-03-2017 17:22:46

5,5K Tweet

705 Followers

1,1K Following

Six2dez (@six2dez1) 's Twitter Profile Photo

burp-ai-agent v0.2.0 is out (pretty proud of this one) - Chats saved per project (no more lost sessions when closing) - New chat UI - Markdown export - Enter sends, Shift+Enter new line github.com/six2dez/burp-a… #hacking #pentest #bugbounty

burp-ai-agent v0.2.0 is out (pretty proud of this one)

  - Chats saved per project (no more lost sessions when closing)
  - New chat UI
  - Markdown export
  - Enter sends, Shift+Enter new line

github.com/six2dez/burp-a…

#hacking #pentest #bugbounty
Nav Singh (@heynavsingh) 's Twitter Profile Photo

🚨 Someone just open sourced a fully autonomous AI hacker and it's terrifying. It's called Shannon. Point it at your web app, and it doesn't just scan for vulnerabilities. It actually exploits them. Real injections. Real auth bypasses. Real database exfiltrations. Not alerts.

🚨 Someone just open sourced a fully autonomous AI hacker and it's terrifying.

It's called Shannon.

Point it at your web app, and it doesn't just scan for vulnerabilities. It actually exploits them. Real injections. Real auth bypasses. Real database exfiltrations.

Not alerts.
John Ʌ Konrad V (@johnkonrad) 's Twitter Profile Photo

Lori Ann LaRocco Brian Sullivan OSINT Open-source intelligence done right. These accounts show their methodology and correct mistakes. If an account can't explain how they verified a claim, it's not OSINT — it's gossip. ★ Ian Ellis (Ian Ellis-Jones) — Best maps in the OSINT space. Visual intelligence that

DefiMaran⚡ (@marandefi) 's Twitter Profile Photo

most students have no idea they get claude opus 4.6 for free github literally gives it away if you verify student status steps to get free access: 1/ apply for github student developer pack - go to: education.github.com/pack - sign in using your github account (or create one)

most students have no idea they get claude opus 4.6 for free

github literally gives it away if you verify student status

steps to get free access:

1/ apply for github student developer pack

- go to: education.github.com/pack

- sign in using your github account (or create one)
Om Patel (@om_patel5) 's Twitter Profile Photo

this guy got tired of copy pasting between claude code, codex, and gemini so he built a chat room where AI agents can literally talk to each other you tag an agent in the chat and it reads the conversation and responds. agents can tag each other too. the whole loop runs

this guy got tired of copy pasting between claude code, codex, and gemini

so he built a chat room where AI agents can literally talk to each other

you tag an agent in the chat and it reads the conversation and responds. 

agents can tag each other too. the whole loop runs
Behi (@behi_sec) 's Twitter Profile Photo

Meet BugSkills. I built a tool to convert the knowledge and methodology used in your HackerOne reports into AI skills you can use to automate vulnerability discovery. Thank you Joseph Thacker for the idea. github.com/BehiSecc/bugSk…

Faiyaz Ahmad (@faiyazz007) 's Twitter Profile Photo

What if you could learn AI hacking and pentest automation — completely FREE? On my YouTube channel, I’ve created multiple playlists where I break down practical cybersecurity topics step by step. One of them is my AI Hacking playlist, where I show: • How AI applications can be

What if you could learn AI hacking and pentest automation — completely FREE?

On my YouTube channel, I’ve created multiple playlists where I break down practical cybersecurity topics step by step. One of them is my AI Hacking playlist, where I show:

• How AI applications can be
Hasan Toor ✪ (@hasantoxr) 's Twitter Profile Photo

🚨 BREAKING: A developer just built a military-grade firewall specifically for AI agents. It's called Kavach and it sits silently between your AI agent and your OS kernel. No cloud. No subscriptions. Runs entirely local. Here's why this matters right now: Autonomous agents

🚨 BREAKING: A developer just built a military-grade firewall specifically for AI agents.

It's called Kavach and it sits silently between your AI agent and your OS kernel.

No cloud. No subscriptions. Runs entirely local.

Here's why this matters right now:

Autonomous agents
xss0r (@xss0r) 's Twitter Profile Photo

xss0r just discovered 129,000+ subdomains of Microsoft in only 5 seconds using passive scanning. And it doesn’t stop there, xss0r automatically continues with active enumeration, digging even deeper to uncover hidden assets. Run it yourself: ./xss0r --subdomains --urls

xss0r just discovered 129,000+ subdomains of Microsoft in only 5 seconds using passive scanning.

And it doesn’t stop there, xss0r automatically continues with active enumeration, digging even deeper to uncover hidden assets.

 Run it yourself:

./xss0r --subdomains --urls
Nav Singh (@heynavsingh) 's Twitter Profile Photo

🚨 Governments pay millions for this. Someone just open sourced it for free. It's called Crucix. It watches the entire world. And texts you when something changes. It pulls from 26 live data sources every 15 minutes and renders everything on a single Jarvis-style dashboard.

🚨 Governments pay millions for this. Someone just open sourced it for free.

It's called Crucix. It watches the entire world. And texts you when something changes.

It pulls from 26 live data sources every 15 minutes and renders everything on a single Jarvis-style dashboard.
Soxoj (@sox0j) 's Twitter Profile Photo

MCP + OSINT is a powerful combo 🔥 Instead of figuring out how to run CLI tools, just ask your LLM — and it runs Shodan queries, Maigret lookups, DNS fuzzing, and threat intel checks for you. So, I've made a curated list of OSINT MCP servers. Take a look, try plugging something

MCP + OSINT is a powerful combo 🔥

Instead of figuring out how to run CLI tools, just ask your LLM — and it runs Shodan queries, Maigret lookups, DNS fuzzing, and threat intel checks for you.

So, I've made a curated list of OSINT MCP servers. Take a look, try plugging something
Charly Wargnier (@datachaz) 's Twitter Profile Photo

🚨 STOP BURNING YOUR TOKENS! If you use Claude Code, you are probably wasting 80% of your context window. I found 10 ace tools that will completely rescue your API bill. 1. Caveman Claude - Literally makes Claude talk like a caveman - Slashes 75% of output tokens with zero

🚨 STOP BURNING YOUR TOKENS!

If you use Claude Code, you are probably wasting 80% of your context window.

I found 10 ace tools that will completely rescue your API bill.

1. Caveman Claude
- Literally makes Claude talk like a caveman
- Slashes 75% of output tokens with zero
CyrilXBT (@cyrilxbt) 's Twitter Profile Photo

THOUSANDS OF ANTHROPIC API KEYS ARE SITTING EXPOSED ON GITHUB RIGHT NOW. Anyone can find them. Search "claude_desktop_config" on GitHub. Hundreds of real API keys. Sitting in public repos. Uploaded by people who had no idea they were leaking their credentials to the entire

THOUSANDS OF ANTHROPIC API KEYS ARE SITTING EXPOSED ON GITHUB RIGHT NOW.

Anyone can find them.

Search "claude_desktop_config" on GitHub.

Hundreds of real API keys. Sitting in public repos. Uploaded by people who had no idea they were leaking their credentials to the entire
Name cannot be blank (@hacksultan) 's Twitter Profile Photo

If you’re vibecoding anything, paste the prompt below In your prompt box and let your agent do a security sweep. [ You are a senior security engineer and red-team specialist tasked with performing a comprehensive, adversarial security audit of the following codebase, system

loonggg (@kengguanglong) 's Twitter Profile Photo

谷歌 Gemini 团队主管 Addy Osmani 最近开源了一个叫 Agent Skills 的项目,短时间内在 GitHub 上拿到了 18000 多个 Star,热度很高。 这个项目做的事情说起来也不复杂:把资深工程师多年积累的工作流程和开发规范,整理成一套标准化的技能库,让 AI

ꫀꪜꪖ (@evaperry0) 's Twitter Profile Photo

🚨Breaking: Someone open sourced a knowledge graph engine for your codebase and it's terrifying how good it is. It's called GitNexus. And it's not a documentation tool. It's a full code intelligence layer that maps every dependency, call chain, and execution flow in your repo

🚨Breaking: Someone open sourced a knowledge graph engine for your codebase and it's terrifying how good it is.

It's called GitNexus. And it's not a documentation tool.

It's a full code intelligence layer that maps every dependency, call chain, and execution flow in your repo
Crypto Space OG (@cryptospaceog) 's Twitter Profile Photo

RIP SEO agencies. This free GitHub repo just gave Claude Code the ability to read your Search Console data, diagnose your traffic drops, and rewrite your site to fix them. It's called Toprank. Type one command. Get a full audit and a 30-day action plan. Tell it to implement.

RIP SEO agencies.

This free GitHub repo just gave Claude Code the ability to read your Search Console data, diagnose your traffic drops, and rewrite your site to fix them.

It's called Toprank. Type one command. Get a full audit and a 30-day action plan. Tell it to implement.