termireum (@termireum) 's Twitter Profile
termireum

@termireum

ID: 1142374192370688000

calendar_today22-06-2019 10:10:06

2,2K Tweet

303 Takipçi

1,1K Takip Edilen

Damian Strobel (@damian_89_) 's Twitter Profile Photo

Bug Bounty became such a scam recently. Reported a critical issue to Wells Fargo, H1 triaged it as 9.3. Found an actuator (env only), Akamai blocked heapdump, bypassed it by fuzzing finding the correct origin ip... PM makred as "informative".

Zaros (@zarosfi) 's Twitter Profile Photo

Something is coming to MagicEden on Monad Testnet 👀 Just drop your wallets in the comments & fill out the form below 📝 You have 24 hours ⌛

Typus Finance (@typusfinance) 's Twitter Profile Photo

A huge thanks to everyone who participated in our Typus Perps testing! We received some amazing feedback and support. Here are the winners 🏆: EdCryptoFi 💧 Sui leafweb3 🦭 termireum nabil ./ 🦋 vy|$AR🦭/acc likef🦭 Also a special bonus will be sent to all the early testers 🎁

chux (@chux13786509) 's Twitter Profile Photo

#HuntersLog 🐞 Here's a nice thread about one of my recent targets and how it was pwned: recon, research, code review and exploitation 🔥🔥 🧵👇

chux (@chux13786509) 's Twitter Profile Photo

Starting with recon using: ✔️Amass ✔️httpx ✔️ ffuf (with a small wordlist of low hanging fruits) ✔️ Nuclei I found an interesting /.git/config to dump with GitTools!

Starting with recon using:
✔️Amass
✔️httpx
✔️ ffuf (with a small wordlist of low hanging fruits)
✔️ Nuclei
I found an interesting /.git/config to dump with GitTools!
DarkShadow (@darkshadow2bd) 's Twitter Profile Photo

Find a Business Logic Bug Exploit steps: 1. Register a new account (note the username) 2. Verify & activate it 3. Delete the account 4. Try registering again with the same username If blocked, it’s a Business Logic bug — deleted usernames shouldn't be reserved! #bugbountytips

André Baptista (@0xacb) 's Twitter Profile Photo

Subdomain enumeration tools often miss the most obscure dev related subs. Tools like ProjectDiscovery alterx are able to generate subdomain permutations in an efficient way.

Subdomain enumeration tools often miss the most obscure dev related subs. Tools like <a href="/pdiscoveryio/">ProjectDiscovery</a> alterx are able to generate subdomain permutations in an efficient way.
A.Mugh33ra🇵🇰❤️🇵🇸 (@mugh33ra) 's Twitter Profile Photo

Account Takeover Via Password Reset These Methods Still works👌 #BugBounty #hackerone #idor #sqlinjection #bugbountytip #xss #injection #privateinvitation #owasp

Account Takeover Via Password Reset These Methods Still works👌

#BugBounty #hackerone #idor #sqlinjection #bugbountytip #xss #injection #privateinvitation #owasp
termireum (@termireum) 's Twitter Profile Photo

A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities. github.com/xalgord/Massiv…

Soul Labs (@0xsoulprotocol) 's Twitter Profile Photo

We’re excited to introduce Soul Protocol, a new DeFi primitive, now live on Testnet! The first unified, omnichain liquidity layer connecting cross-chain money markets. Supply anywhere. Borrow anywhere. Seamlessly, across any chain and protocol. 🧵

termireum (@termireum) 's Twitter Profile Photo

Soul Protocol: The Future of Cross-Chain DeFi — Join the Incentivized Testnet Now! 👇 Link: app.soul.io/?referredBy=Z3…

Soul Labs (@0xsoulprotocol) 's Twitter Profile Photo

As we prepare for the upcoming $SO Public Sale, our partner xLaunchpad has officially kicked off their KYC process, allowing participants on their platform to start verifying their identity ahead of the raise. For those using the Soul Labs Platform, KYC will open

TEN (🔟/🔟) (@tenprotocol) 's Twitter Profile Photo

House of TEN is live now. AI agents playing poker onchain. Trained to bluff, deceive and take risks. Select winners, earn rewards, and position yourself for what's coming next 😏 houseof.ten.xyz

termireum (@termireum) 's Twitter Profile Photo

I just joined Billions, a human and AI network that gives you rewards for verifying as a human. If you use my link to sign up, you'll get early access: Billions signup.billions.network/?rc=B65LORD6

Soul Labs (@0xsoulprotocol) 's Twitter Profile Photo

🚨 $SO PUBLIC SALE IS NOW LIVE! You can participate by accessing the following link: app.soul.io/ico For the past two years, we’ve been building Soul with one core belief: DeFi only fulfills its promise when access, ownership, and value are aligned. And one vision:

Bullet (@bulletxyz_) 's Twitter Profile Photo

Our Bug Bounty leaderboard is live, and the top hunters are making Bullet bulletproof. Who’s leading? Who’s rising? Fire with Bullet and see for yourself 👇

Our Bug Bounty leaderboard is live, and the top hunters are making Bullet bulletproof.

Who’s leading? Who’s rising?

Fire with Bullet and see for yourself 👇
Bullet (@bulletxyz_) 's Twitter Profile Photo

Another bug down. The testnet gets stronger. termireum identified a lack of input validation on TP/SL fields and claimed their bug bounty. We’re fighting for the future of DeFi. Ready to join?

Another bug down. The testnet gets stronger.

<a href="/termireum/">termireum</a> identified a lack of input validation on TP/SL fields and claimed their bug bounty.

We’re fighting for the future of DeFi.

Ready to join?