Jinay Patel
1.3K posts

Jinay Patel
@0_0eth0
Looking at the burp history & analyzing | InfoSec | Hacker | An semi-active member at @Hacker0x01 | Securing IoMT Devices | BLR🔁AMD | Views are my own









Introducing the new /crawl endpoint - one API call and an entire site crawled. No scripts. No browser management. Just the content in HTML, Markdown, or JSON.





We want to thank the hackerone community for an incredible collaboration over the weekend. They discovered a total of 15 unique issues, leading to an expected payout of $750K. Our eng team has hardened the WAF as issues were discovered, and the last "flag capture" was 20 hours ago as of this writing. By no means is the work done, but we have have jointly achieved substantial protection against React2Shell for Vercel customers. With that: The focus should remain on patching vulnerable deployments. If you have not patched the time is now! vercel.com/react2shell



Bug Type: Authentication bypass lead to Admin Panel Access Severity: Critical (10.0) 🎉🎉🎉🎉 Reward: $5,000 (4,43,000 INR) How I find it? -- Checked for IPs on Shodan for example[.]com lead to access to admin panel #hacking #security #bugbountytips #cyber #bughunting #infosec









