Sh O Aib (@sh_o_a1b) 's Twitter Profile
Sh O Aib

@sh_o_a1b

Ethical Hacker | Security Researcher | Bugcrowd |Hackerone | Stock Investor | Crypto/NFTs Geek | Entrepreneur | MBBS | 🇦🇪🇵🇰

ID: 1005539055671693313

linkhttps://instagram.com/sh.0.aib calendar_today09-06-2018 19:56:07

826 Tweet

754 Takipçi

524 Takip Edilen

Hussein A.Taha (@0xhussein) 's Twitter Profile Photo

If you're into generating subdomains quickly 🚀 check out this website: husseinphp.github.io/subdomain/ #bugbountytips #bugbountytip #BugBounty

If you're into generating subdomains quickly  🚀
check out this website: husseinphp.github.io/subdomain/

#bugbountytips  #bugbountytip #BugBounty
Ali (@111xnagashy) 's Twitter Profile Photo

Tip:- Add to your wordlist: auth/jwt/register auth-demo/register/classic auth-demo/register/modern My First P1🥳 #bugbountytips #bugbountytip #bugbounty #hackerone #bugcrowd #h1

Tip:-

Add to your wordlist:

auth/jwt/register
auth-demo/register/classic
auth-demo/register/modern

My First P1🥳

#bugbountytips #bugbountytip #bugbounty #hackerone #bugcrowd #h1
X (@themsterdoctor1) 's Twitter Profile Photo

Subdomain Takeover Detection with Subfinder & Nuclei -new wordpress takeover detection for nuclei template subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target #bugbountytips #bugbounty github.com/schooldropout1…

Subdomain Takeover Detection  with Subfinder & Nuclei 

-new wordpress takeover detection for nuclei template

subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target

#bugbountytips #bugbounty

github.com/schooldropout1…
RootMoksha Labs (@rootmoksha) 's Twitter Profile Photo

Nuclei Template : REFLECTION Potential XSS, SSRF, Cache Poisoning, Open URL Redirection & OAUTH Redirection nuclei -t reflection[.]yaml -u target Credit: Gudetama #BugBounty #bugbountytips

Nuclei Template : REFLECTION

Potential XSS, SSRF, Cache Poisoning, Open URL Redirection & OAUTH Redirection

nuclei -t reflection[.]yaml -u target

Credit: <a href="/gudetama_bf/">Gudetama</a> 

#BugBounty #bugbountytips
Mike Takahashi (@taksec) 's Twitter Profile Photo

Google Dorks - Code Leaks 💧 site:pastebin. com "example. com" site:jsfiddle. net "example. com" site:codebeautify. org "example. com" site:codepen. io "example. com"

Google Dorks - Code Leaks 💧

site:pastebin. com "example. com"
site:jsfiddle. net "example. com"
site:codebeautify. org "example. com"
site:codepen. io "example. com"
Karim Habeeb (@nored0x) 's Twitter Profile Photo

Add the file `wp-config.php.txt` to your wordlist, and you might discover some juicy data. Enjoy! 😏 #bugbountytips #bugbountytip #cybersecurity #ethicalhacking

Add the file `wp-config.php.txt` to your wordlist, and you might discover some juicy data. Enjoy! 😏                                                        

 #bugbountytips #bugbountytip #cybersecurity #ethicalhacking
Ali (@111xnagashy) 's Twitter Profile Photo

Tip:- Do wayback on root domain then get endpoints and add it to your list and fuzz on subdomains or other roots.. $ ~ waybackurls root.com |cut -d "/" -f 4-|sort -u > endpoints.txt #bugbountytips #bugbountytip #bugbounty #hackerone #bugcrowd #h1

Tip:-

Do wayback on root domain then get endpoints and add it to your list and fuzz on subdomains or other roots..

$ ~ waybackurls root.com  |cut -d "/" -f 4-|sort -u &gt; endpoints.txt

#bugbountytips #bugbountytip #bugbounty #hackerone #bugcrowd #h1
Godfather Orwa 🇯🇴 (@godfatherorwa) 's Twitter Profile Photo

Hello everyone ♥ a little bit write-up of #bugbountytip #bugbountytips I am going to write here ..... Title: getting unauthorized access on 3rd party's/workspaces & and building your checklist for quickly locating bugs there via massive recon we know that its helpful to look

Hello everyone ♥
a little bit write-up of #bugbountytip #bugbountytips I am going to write here ..... 

Title:
getting unauthorized access on 3rd party's/workspaces &amp; and building your checklist for quickly locating bugs there via massive recon

we know that its helpful to look
CyCatz (@cycatz_official) 's Twitter Profile Photo

#Cycatz #cybersecurity Unlock Hidden Backups with wayBackupFinder More.... shorturl.at/andsK #cyberattacksurfacemanagement #darkwebmonitoring #SurfaceWebMonitoring #cloudsecurity #grc #vendorriskmanagement #brandmonitoring #incedentreport #bug #sensitiveinformationexpoture

#Cycatz #cybersecurity Unlock Hidden Backups with wayBackupFinder More.... shorturl.at/andsK

#cyberattacksurfacemanagement #darkwebmonitoring #SurfaceWebMonitoring #cloudsecurity #grc #vendorriskmanagement #brandmonitoring #incedentreport #bug #sensitiveinformationexpoture
Sh O Aib (@sh_o_a1b) 's Twitter Profile Photo

I earned $xxxxx for my submission on @bugcrowd bugcrowd.com/sh0a1b #ItTakesACrowd #bugboubtytip #bugbounty #bugcrowrd Tip: Always go through every single JS of the scope -> extract all endpoints -> Make your own script and wordlist -> Bruteforce all the endpoints -> P1 IDORs

I earned $xxxxx for my submission on @bugcrowd bugcrowd.com/sh0a1b #ItTakesACrowd #bugboubtytip #bugbounty #bugcrowrd
Tip: Always go through every single JS of the scope -&gt; extract all endpoints -&gt; Make your own script and wordlist -&gt; Bruteforce all the endpoints -&gt; P1 IDORs
Web Security Academy (@websecacademy) 's Twitter Profile Photo

HTTP Request Smuggling Lab Walkthrough: Confirming a CL.TE vulnerability via differential responses. How to identify CLTE Vulnerabilities: 1. Send request to repeater 2. Downgrade protocol to HTTP/1.1 3. Disable "Update Content-Length" 4. Set Content-Length to 6 5. Add

Sh O Aib (@sh_o_a1b) 's Twitter Profile Photo

Just released a simple and easy to use burpsuite extension, it rotates the user agent with every request to bypass WAF which blocks user via User Agent. It was helpful to me, though to share it with community! github.com/sh-o-aib/Burp-… #Bugbounty #bugcrowd #hackerone #burpsuite

Godfather Orwa 🇯🇴 (@godfatherorwa) 's Twitter Profile Photo

A long time ago, i was using (Frogy Recon Tool) and the results were more than amazing now its back as 2.0 and now i like it so much github.com/iamthefrogy/fr… by the amazing Chintan 'Frogy' Gurjar Just want to share here if someone wants to check it #bugbountytips #bugbountytip