quicksand (@quicksand02) 's Twitter Profile
quicksand

@quicksand02

ID: 1249640880727683074

calendar_today13-04-2020 10:09:46

310 Tweet

1,1K Followers

1,1K Following

ๆฉ™ๅญ๐ŸŠๅ•Š (@sailfishcc1) 's Twitter Profile Photo

#ๅทฅๅ…ทๅˆ†ไบซ ๅˆ†ไบซ่‡ชๅทฑๆ•ด็†็š„ๅทฅๅ…ทๅˆ—่กจ๏ผŒๅŽ็ปญไผšๆŒ็ปญๆ›ดๆ–ฐ๏ผŒๅธฎๅŠฉๅคงๅฎถๅ‘็Žฐๆ›ดๅฅฝ็š„ๅทฅๅ…ท๏ผŒ่žๅ…ฅ่‡ชๅทฑ็š„ๅทฅไฝœๆตไธญ๏ผŒไฝ†ๆ˜ฏๅทฅๅ…ทๅชๆ˜ฏๅทฅๅ…ท๏ผŒๆ›ด้‡่ฆ็š„ๆ˜ฏๅทฅๅ…ทๅฏน่‡ชๅทฑๅธฆๆฅ็š„่กŒไธบๆ”นๅ˜๏ผŒๆ•ด็†็š„็ตๆ„Ÿๆฅ่‡ชไบŽ ้™ˆๆˆ - github.com/Sailfishc/awesโ€ฆ

#ๅทฅๅ…ทๅˆ†ไบซ ๅˆ†ไบซ่‡ชๅทฑๆ•ด็†็š„ๅทฅๅ…ทๅˆ—่กจ๏ผŒๅŽ็ปญไผšๆŒ็ปญๆ›ดๆ–ฐ๏ผŒๅธฎๅŠฉๅคงๅฎถๅ‘็Žฐๆ›ดๅฅฝ็š„ๅทฅๅ…ท๏ผŒ่žๅ…ฅ่‡ชๅทฑ็š„ๅทฅไฝœๆตไธญ๏ผŒไฝ†ๆ˜ฏๅทฅๅ…ทๅชๆ˜ฏๅทฅๅ…ท๏ผŒๆ›ด้‡่ฆ็š„ๆ˜ฏๅทฅๅ…ทๅฏน่‡ชๅทฑๅธฆๆฅ็š„่กŒไธบๆ”นๅ˜๏ผŒๆ•ด็†็š„็ตๆ„Ÿๆฅ่‡ชไบŽ <a href="/chenchengpro/">้™ˆๆˆ</a> 
- github.com/Sailfishc/awesโ€ฆ
Tw93 (@hitw93) 's Twitter Profile Photo

#ๅทฅ็จ‹ๅธˆๅทฅๅ…ท ๅ‘็Žฐไธ€ไธช่ถ…็บง้…ท็š„็ฝ‘็ปœๆฃ€ๆŸฅๅทฅๅ…ทใ€ŒWeb-Checkใ€๏ผŒๅพˆ Hacker๏ผŒๅฏไปฅๆŸฅ็œ‹ไธ€ไธช็ฝ‘็ซ™ๅ‡ ไนŽๆ‰€ๆœ‰ไฟกๆฏ๏ผŒๅฆ‚ IP ไฟกๆฏใ€SSLใ€DNS่ฎฐๅฝ•ใ€Cookiesใ€ๅŸŸๅไฟกๆฏใ€ๆœ็ดข็ˆฌ่กŒ่ง„ๅˆ™ใ€ๆœๅŠกๅ™จไฝ็ฝฎใ€้‡ๅฎšๅ‘่ฎฐๅฝ•ใ€ๅผ€ๆ”พ็ซฏๅฃใ€่ทฏ็”ฑ่ทŸ่ธชใ€DNSๅฎ‰ๅ…จๆ‰ฉๅฑ•ใ€็ฝ‘็ซ™ๆ€ง่ƒฝใ€ๅ…ณ่”ไธปๆœบๅ็ญ‰ใ€‚ ๐Ÿค– web-check.xyz

Intigriti (@intigriti) 's Twitter Profile Photo

You've probably seen this SQL Injection payload before... ๐Ÿง But how does it exactly work? Let's break it down and also craft a few variants for bypassing WAFs! ๐Ÿค‘๐Ÿ‘‡

You've probably seen this SQL Injection payload before... ๐Ÿง 

But how does it exactly work?

Let's break it down and also craft a few variants for bypassing WAFs!  ๐Ÿค‘๐Ÿ‘‡
Intigriti (@intigriti) 's Twitter Profile Photo

You've found a XSS vulnerability But alert, confirm, prompt & print are all blocked by WAF What do you use to visually prove your XSS? ๐Ÿ˜Ž

You've found a XSS vulnerability

But alert, confirm, prompt &amp; print are all blocked by WAF

What do you use to visually prove your XSS? ๐Ÿ˜Ž
Nithin ๐Ÿฆนโ€โ™‚๏ธ (@thebinarybot) 's Twitter Profile Photo

You fire an XSS payload. But you see no pop-up. Why is this happening you ask? Any rule/policy behind the screen blocking your payload? Let's talk about CSP, why and how you should bypass it ๐Ÿ‘‡

Intigriti (@intigriti) 's Twitter Profile Photo

JavaScript files are a gold mine for bug bounty hunters! ๐Ÿค‘ If you aren't analyzing JavaScript files... you're probably missing on a lot! But manually reading them can be a tedious task ๐Ÿ˜ด Here are the top 4 tools for parsing & analyzing JavaScript files! A thread! ๐Ÿงต ๐Ÿ‘‡

N$ (@nav1n0x) 's Twitter Profile Photo

I recently found a cool #RCE/path traversal bug on a target in Intigriti. It was rejected because of OoS :( But I am proud that I found this cool bug through a full manual testing of the endpoint. This video just simplifies the steps, but I took hours to figure out. #BugBounty

Bug Bounty Village (@bugbountydefcon) 's Twitter Profile Photo

To celebrate our badge launch, we're giving away FIVE free 6-month licenses to @pentesterlab. โœ… Comment BADGELIFE and retweet this post to enter. Additionally, pre-order a custom badge at shop.bugbountydefcon.com for a chance to win one of FIVE Annual VIP+ subscription to

The SecOps Group (@thesecopsgroup) 's Twitter Profile Photo

๐Ÿ“ข Super-massive 80% discount on ๐—–๐—ฒ๐—ฟ๐˜๐—ถ๐—ณ๐—ถ๐—ฒ๐—ฑ ๐—”๐—ฝ๐—ฝ๐—ฆ๐—ฒ๐—ฐ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—ฒ๐—ซ๐—ฝ๐—ฒ๐—ฟ๐˜ (๐—–๐—”๐—ฃ๐—ฒ๐—ป๐—ซ) Exam!ย ๐Ÿ“ข ๐ŸŽŠ ๐‘ณ๐’Š๐’Œ๐’† ๐’‚๐’๐’… ๐‘น๐’†๐’‘๐’๐’”๐’•ย ๐’‡๐’๐’“ ๐’‚ ๐‘ช๐’‰๐’‚๐’๐’„๐’† ๐’•๐’ ๐‘พ๐’Š๐’ ๐’‚ ๐‘ญ๐’“๐’†๐’† ๐‘ฌ๐’™๐’‚๐’Ž! ๐Ÿฏ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐˜„๐—ถ๐—น๐—น ๐—ฟ๐—ฒ๐—ฐ๐—ฒ๐—ถ๐˜ƒ๐—ฒ ๐˜๐—ต๐—ฒ

๐Ÿ“ข  Super-massive 80% discount on ๐—–๐—ฒ๐—ฟ๐˜๐—ถ๐—ณ๐—ถ๐—ฒ๐—ฑ ๐—”๐—ฝ๐—ฝ๐—ฆ๐—ฒ๐—ฐ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—ฒ๐—ซ๐—ฝ๐—ฒ๐—ฟ๐˜ (๐—–๐—”๐—ฃ๐—ฒ๐—ป๐—ซ) Exam!ย ๐Ÿ“ข
๐ŸŽŠ ๐‘ณ๐’Š๐’Œ๐’† ๐’‚๐’๐’… ๐‘น๐’†๐’‘๐’๐’”๐’•ย ๐’‡๐’๐’“ ๐’‚ ๐‘ช๐’‰๐’‚๐’๐’„๐’† ๐’•๐’ ๐‘พ๐’Š๐’ ๐’‚ ๐‘ญ๐’“๐’†๐’† ๐‘ฌ๐’™๐’‚๐’Ž!

๐Ÿฏ ๐—น๐˜‚๐—ฐ๐—ธ๐˜† ๐˜„๐—ถ๐—ป๐—ป๐—ฒ๐—ฟ๐˜€ ๐˜„๐—ถ๐—น๐—น ๐—ฟ๐—ฒ๐—ฐ๐—ฒ๐—ถ๐˜ƒ๐—ฒ ๐˜๐—ต๐—ฒ
Rana Khalil ๐Ÿ‡ต๐Ÿ‡ธ (@rana__khalil) 's Twitter Profile Photo

๐ŸŽ‰ New Course Alert + Giveaway! ๐ŸŽ‰ I'm excited to announce a brand-new course on Rana Khalil's Academy - OAuth 2.0 Vulnerabilities. This course includes: ๐Ÿ“š A technical deep dive into OAuth 2.0 and OpenID Connect: what they are, how they work, the common pitfalls in

๐ŸŽ‰ New Course Alert + Giveaway! ๐ŸŽ‰

I'm excited to announce a brand-new course on Rana Khalil's Academy - OAuth 2.0 Vulnerabilities.

This course includes:

๐Ÿ“š A technical deep dive into OAuth 2.0 and OpenID Connect: what they are, how they work, the common pitfalls in
Jason Haddix (@jhaddix) 's Twitter Profile Photo

Big shout to our friends and sponsors The SecOps Group (New Giveaway!) โฌ‡๏ธ At DEF CON 2025, they handed out THOUSANDS of FREE Exams! The SecOps Group have also just dropped a massive 80% discount code on two of their best selling eXpert category exams: ๐ŸงฉCertified AppSec

Big shout to our friends and sponsors <a href="/TheSecOpsGroup/">The SecOps Group</a>  (New Giveaway!) โฌ‡๏ธ

At DEF CON 2025, they handed out THOUSANDS of FREE Exams! The SecOps Group have also just dropped a massive 80% discount code on two of their best selling eXpert category exams:

๐ŸงฉCertified AppSec
Jason Haddix (@jhaddix) 's Twitter Profile Photo

New Executive Offense Newsletter - Building AI Hackbots, Hard-Earned Lessons Pt 1 (and course giveaway) executiveoffense.beehiiv.com/p/ai-hackbots-โ€ฆ Giveaway: Retweet this post and be entered to win a seat in Q4s courses! ("Red Blue Purple AI" or "Attacking AI") Three winners will be chosen next

HackerRats - Uncle Rat โค๏ธ (XSS Rat) (@thexssrat) 's Twitter Profile Photo

๐Ÿ”ฅ 6 MONTHS TryHackMe + a 900 Hackers Toolkit drop (over 800โ‚ฌ worth) ๐Ÿ”ฅ yep biggest prize iโ€™ve dropped in ages my 900 crew just dumped like 5000 subdomains on me in our alpha bounty toolโ€ฆ absolute madness. so imma celebrate: ๐Ÿ‘‰ 6 MONTHS of TryHackMe (tagged cause its

๐Ÿ”ฅ 6 MONTHS <a href="/RealTryHackMe/">TryHackMe</a>  + a 900 Hackers Toolkit drop (over 800โ‚ฌ worth) ๐Ÿ”ฅ
yep biggest prize iโ€™ve dropped in ages

my 900 crew just dumped like 5000 subdomains on me in our alpha bounty toolโ€ฆ absolute madness.

so imma celebrate:
๐Ÿ‘‰ 6 MONTHS of TryHackMe (tagged cause its