bergee

360 posts

bergee

bergee

@_bergee_

Webdev, bug hunter

Beigetreten Kasım 2017
916 Folgt814 Follower
xandsz
xandsz@xandsz__·
@_bergee_ @intigriti Thanks, I always check the size of the responses in fuzzing even if it's 302/301, I learned that from your article.
English
1
0
2
180
xandsz
xandsz@xandsz__·
In the last few months, I received a total of 81 packages from Red Bull. @intigriti
xandsz tweet mediaxandsz tweet media
English
15
5
219
11.6K
bergee
bergee@_bergee_·
@chmodx1sh @SynackRedTeam Good job. Like that you talking about the time spent. Not an illusion of the easy win 💪🏻
English
1
0
1
156
bergee
bergee@_bergee_·
@intigriti In fact I need one cert - burp cert installed ;)
English
1
0
3
441
Intigriti
Intigriti@intigriti·
| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| You don't need certs to be successful in bug bounty |___________| \ (•◡•) / \ / --- | |
English
23
70
766
45.3K
manuel valdez⛩️
manuel valdez⛩️@saur1n·
@_bergee_ Also I do recommend yours, i've found some guidance in some of your blog posts while exploiting some bugs in the past (ssrf, xxe) so thanks a lot for your "indirect" help
English
1
0
1
60
bergee
bergee@_bergee_·
My first CVE. Insecure deserialization and PHP objects injection in WP "Doubly" plugin. Thanks @wordfence . #cve
bergee tweet media
English
1
0
6
320
bergee
bergee@_bergee_·
Today, thanks to @NahamSec I bought pretty solid VPS at @Hostinger for 2 years. It is Black Week deal so for $4,79 per month you got parameters as in the screenshot. I need it for bug bounty and hosting so if you need one here it is: shorturl.at/w2bYM #BugBounty #deal
bergee tweet media
English
0
1
5
291
bergee
bergee@_bergee_·
Dear bughunters. Have you ever heard about self-RCE? I did. I found RCE via command injection and the company said that it is self-RCE as the filesystem is isolated with some chroot and this RCE affects only the user's files. What do you think? #BugBounty #bugbountytips
English
0
0
0
245
bergee retweetet
Sekurak
Sekurak@Sekurak·
Wbijaj na konferencję największej społeczności ITsec w Polsce! ✅ 4 ścieżki / ~40 praktycznych prezentacji, wiedza absolutnie z pierwszej ręki i bez ściemy ✅ Pokazy hackowania na żywo ✅ Jakość i niepowtarzalny klimat gwarantuje Sekurak ✅ 20 października w Krakowie: hackingparty.pl
Polski
0
9
35
3.4K
Marcel
Marcel@marcelkargul·
Reply with your website and I'll rate it. I'll answer everyone...
Marcel tweet media
English
1.2K
115
2.8K
790.5K