✨Neha Tariq✨
@nehatarick
Don't learn to #hack, Do #hack to learn.
ID: 1060544802360623105
https://imparable.medium.com/ 08-11-2018 14:49:19
646 Tweet
2,2K Followers
323 Following
New blog post: BigQuery SQL Injection Cheat Sheet with Anil Yuksel link.medium.com/ziAChPpCDnb
On recent engagements to the on program on Synack Red Team, I find out that target had error based SQL injection on LIMIT clause, it appears that DBMS was MariaDB 10.4.13 so it was limiting options to be used on the injection. #bugbountytips #bugbounty 1/5
Blogged about a fun SSRF I found last month on Synack Red Team #bugbounty #bugbountytips infosecwriteups.com/svg-ssrfs-and-…
Got my first ever XXE accepted on Synack Red Team. Here's a writeup on how I did it: kuldeep.io/posts/second-o…
New blog post on a recent collab with Usman Mansha where I bypassed Akamai WAF to get RCE on a Java application with Spring EL injection. Spent some time writing about the process of constructing the custom payload. Hope you enjoy! h1pmnh.github.io/post/writeup_s…