Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile
Mohammard Reza Omrani

@omranisecurity

Penetration Tester | Bug Hunter | Full-Time Learner

ID: 1480222954139136003

linkhttps://www.linkedin.com/in/omranisecurity/ calendar_today09-01-2022 17:00:36

147 Tweet

679 Followers

1,1K Following

Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

از آقای آشفته‌ی عزیز بسیار متشکرم که افتخار حضور در دورهمی‌مون رو به ما دادند. امیدوارم با برگزاری این دورهمی به نتایج خوبی برسیم.

Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

جلسه‌ی سوم دورهمی امنیت به خوبی به پایان رسید و امیدوارم با برگزاری مستمر این جلسات بتونیم دانش و تجربه‌مون رو به افراد دیگه انتقال بدیم. خیلی متشکرم از آقای محمد حسین آشفته عزیز که ما رو در این مسیر همراهی میکنن. محمد حسین

جلسه‌ی سوم دورهمی امنیت به خوبی به پایان رسید و امیدوارم با برگزاری مستمر این جلسات بتونیم دانش و تجربه‌مون رو به افراد دیگه انتقال بدیم.
خیلی متشکرم از آقای محمد حسین آشفته عزیز که ما رو در این مسیر همراهی میکنن.
<a href="/sec_zone64/">محمد حسین</a>
Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

Found the elasticsearch login page? Try the following default credentials: elastic:changeme Shodan Query: http.title:"Elastic" || http.favicon.hash:1328449667 #bugbounty #bugbountytips Nuclei by ProjectDiscovery

Found the elasticsearch login page? Try the following default credentials: 
elastic:changeme
Shodan Query: http.title:"Elastic" || http.favicon.hash:1328449667
#bugbounty #bugbountytips <a href="/pdnuclei/">Nuclei by ProjectDiscovery</a>
Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

I discovered a few vulnerabilities in #Memos and reported them on GitHub. To my surprise, my reports were deleted, and some of the vulnerabilities were fixed. This is unprofessional behavior! Memos

Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

Jailbreaks or Prompt Injection on Google Bard. Although the vulnerability I reported was out of the scope of Bug Bounty, they triaged it. #GoogleVRP #GoogleBard #CyberSecurity

Jailbreaks or Prompt Injection on Google Bard.  Although the vulnerability I reported was out of the scope of Bug  Bounty, they triaged it.

#GoogleVRP #GoogleBard #CyberSecurity
Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

I created a tool that discovers Cors Misconfiguration. I made it because the other tools I used didn't test enough cases. I have more ideas to add over time and I'm interested in collaborating with others. #bugbounty #penetration_testing github.com/omranisecurity…

Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

🚀 CorsOne v0.9.5 is out now! 🎉 🔒 Early exit on first detected vulnerability ⚡ Enhanced scan performance 🛠️ Codebase simplified (proxy functionality removed) github.com/omranisecurity… #CyberSecurity #bugbounty #GitHub

Borna Nematzadeh (@logicalhunter) 's Twitter Profile Photo

It's an honor that my research, Exploiting Number Parsers in JS, has been nominated for the Top Ten Web Hacking Techniques of 2024. I discussed how discrepancies in JS number parsers could be used to carry out DoS attacks. If you find it interesting, please vote for it!

Mohammard Reza Omrani (@omranisecurity) 's Twitter Profile Photo

🚀 CorsOne v0.9.6 is out now! In my latest update, I've expanded to 53 test cases based on the latest community security research! #bugbounty #GitHub

Hamid Kashfi (@hkashfi) 's Twitter Profile Photo

حملات سایبری به ایران، در خلال و پیش از جنگ ایران و اسراییل x.com/i/spaces/1DXxy…