RogueSMG(@RogueSMG) 's Twitter Profileg
RogueSMG

@RogueSMG

Hacker Wannabe👨‍💻 | YouTube: https://t.co/HukfUSF3jA | Null Ahmedabad Chapter Lead | SRT | Psychology

ID:845869111

linkhttp://TheHackrSpace.com calendar_today25-09-2012 16:54:54

4,4K Tweet

7,6K Takipçi

1,0K Takip Edilen

Akshat Shrivastava(@Akshat_World) 's Twitter Profile Photo

We are slowly moving towards a system of 30% taxation on capital gains.

[1] A lot of retail folks used to enjoy the indexation benefits on Debt mutual Funds.

This was taken away in 2023.

Rational? Well, Equities have no indexation-- why should debt have it?

[2] Next 2…

account_circle
Paul Seekamp(@nullenc0de) 's Twitter Profile Photo

I've been seeing a lot of pentesters having trouble with delegations and exploiting them. Specifically, write access.

Learn this tool. Read the wiki. It will help you and the customer understand impact. I understand it's very easy to miss these.

github.com/CravateRouge/b…

account_circle
Mobile Hacker(@androidmalware2) 's Twitter Profile Photo

A similar tool - Lockphish - is available on GitHub. It is convincing, and a user in a hurry can be easily tricked

Lockphish is a tool for phishing the lock screen, designed to grab Windows credentials, Android PIN, and iPhone Passcode using a https link

account_circle
doomerhunter(@DoomerOutrun) 's Twitter Profile Photo

Yay, I was awarded a $15,000 bounty on HackerOne! hackerone.com/doomerhunter

Public target, main app, core feature. Really emphasises that everyone can find bugs on public progs with a lot of reports :)

account_circle
Moulchi(@oualilweb) 's Twitter Profile Photo

💉𝗛𝗼𝘄 𝗜 𝘂𝘀𝗲𝗱 𝗬𝗼𝘂𝗧𝘂𝗯𝗲 𝘁𝗼 𝗳𝗶𝗻𝗱 𝗮 𝘁𝗮𝗿𝗴𝗲𝘁 𝘃𝘂𝗹𝗻𝗲𝗿𝗮𝗯𝗹𝗲 𝘁𝗼 𝗦𝗤𝗟 𝗶𝗻𝗷𝗲𝗰𝘁𝗶𝗼𝗻

𝟙/𝟜

The company offered a paid service accessible through web and mobile apps. But accessing it was a challenge - no direct URL or app link was available.

💉𝗛𝗼𝘄 𝗜 𝘂𝘀𝗲𝗱 𝗬𝗼𝘂𝗧𝘂𝗯𝗲 𝘁𝗼 𝗳𝗶𝗻𝗱 𝗮 𝘁𝗮𝗿𝗴𝗲𝘁 𝘃𝘂𝗹𝗻𝗲𝗿𝗮𝗯𝗹𝗲 𝘁𝗼 𝗦𝗤𝗟 𝗶𝗻𝗷𝗲𝗰𝘁𝗶𝗼𝗻 𝟙/𝟜 The company offered a paid service accessible through web and mobile apps. But accessing it was a challenge - no direct URL or app link was available.
account_circle
m0uka 🇩🇿(@m0uka_Dz) 's Twitter Profile Photo

Hi @m0uka_dz,
Unfortunately, this was submitted previously by another researcher, but we appreciate your work and look forward to additional reports from you.

Hi @m0uka_dz, Unfortunately, this was submitted previously by another researcher, but we appreciate your work and look forward to additional reports from you. #bugbounty #ethicalhacking #CyberSec
account_circle
Otterly(@ott3rly) 's Twitter Profile Photo

Just a while ago, I found a pretty interesting Stored XSS which was injected by visiting the URL:
https://www\.target\.com/redirectEndpoint.do?redirectPage=redacted&itemFromOrder=''`//><Svg+Only%3d1+OnLoad%3dconfirm(atob('WW91IGhhdmUgYmVlbiBoYWNrZWQgYnkgb3R0ZXJseSE'))>

For some…

account_circle
Sergio Medeiros(@grumpzsux) 's Twitter Profile Photo

The team at @Sysdig wrote a great article on how they fuzzed and bypassed the AWS WAF!
buff.ly/4d69fbK

<strong><button popovertarget=x>click me</button><test onbeforetoggle=alert(document.domain) popover id=x>aaa</aaa></strong>

tips

The team at @Sysdig wrote a great article on how they fuzzed and bypassed the AWS WAF! buff.ly/4d69fbK <strong><button popovertarget=x>click me</button><test onbeforetoggle=alert(document.domain) popover id=x>aaa</aaa></strong> #bugbounty #bugbountytips #hackers #xss
account_circle
Jason Haddix(@Jhaddix) 's Twitter Profile Photo

I announced this a few weeks ago but I wanna make it a regular thing :)

Introducing the annual “jhaddix recon bounty”

forms.gle/fqDeCuL1Wq4J1B…

10 days left to submit!

I announced this a few weeks ago but I wanna make it a regular thing :) Introducing the annual “jhaddix recon bounty” forms.gle/fqDeCuL1Wq4J1B… 10 days left to submit!
account_circle
Jason Haddix(@Jhaddix) 's Twitter Profile Photo

Want to strengthen you Burp Suite kung fu? check out the below to practice session management and macros!

github.com/Hipapheralkus/…

Video to help:

youtube.com/watch?v=mM3LR9…

By Andrej Šimko

account_circle