Thakur🇮🇳

178 posts

Thakur🇮🇳 banner
Thakur🇮🇳

Thakur🇮🇳

@dz__derry

🐞 Part Time Bug Hunter🐞 | Gamer

Beigetreten Mayıs 2023
474 Folgt79 Follower
Thakur🇮🇳 retweetet
Muhammad Waseem
Muhammad Waseem@wgujjer11·
Bug Bounty Scam Exposure Platform bugbountyscam.com Got scammed by a bug bounty program? Report unfair programs, share your experience, and help protect other researchers. • Report scams • Rate programs • Vote and comment on reports Expose. Review. Protect.
Muhammad Waseem tweet media
English
0
21
71
3.1K
DuckywantDucky
DuckywantDucky@DuckyWantDucky·
Day 200/365 of the Until get 10.0 Critical report 📤 Reports Submitted:- 0 🟠 triaged - 3 🟦 program review - 0 🟤 Duplicate - 0 🟣 New - 2 ⚪️ Info - 0 💰 Paid - $3487 💻 Worked- 10 HOUR #BugBounty Yay, I was awarded a $2700 + Bonus bounty on @Hacker0x01
DuckywantDucky tweet media
English
91
4
413
20.5K
Thakur🇮🇳 retweetet
Ja@t Mind
Ja@t Mind@AttriUpend68452·
@dropn0w Most Of the programs with high AI slop are White Box
English
1
1
1
701
Thakur🇮🇳 retweetet
Years Progress
Years Progress@YearsProgress·
2026 is 0% complete.
Years Progress tweet media
English
278
5.2K
31.9K
923K
⚡🌌🌌teslatheg0d🌌🌌⚡
I won't be Streaming Today. Will probably start streaming again at the end of this Year. Have things to deal with and stuff to think on. ~teslatheg0d-YT (@teslatheg0d-yt" target="_blank" rel="nofollow noopener">youtube.com/@teslatheg0d-yt)
English
11
0
49
2.6K
Thakur🇮🇳 retweetet
The XSS Rat - Proud XSS N00b :-)
Broken Access Control (incl. IDOR) shouldn’t be a lucky find—it should be a lane in your methodology. How I integrate it into any workflow: 1) Scope and model - Map roles, privileges, tenants, and sensitive objects (orders, invoices, files, tickets, messages). - Identify business-critical flows: money movement, approvals, ownership changes, quota/limits, discounts. - Write down intended rules: “Who can do what, to which object, under which state?” 2) Map the attack surface - Inventory endpoints and UI actions tied to those flows. - Note where object identifiers appear (URLs, bodies, headers, GraphQL fields). - Track state transitions (draft → submitted → approved → paid) and who is allowed to trigger them. 3) Design tests before you click - Build a role × resource × action matrix (vertical, horizontal, tenant boundaries). - Add sequence and timing checks (can a user skip steps or perform actions out of order?). - Include negative tests for state (deny if not owner, not approver, outside window, quota exceeded). 4) Execute with signal, not noise - Capture real user journeys, then compare behavior across roles/tenants and states. - Diff responses for hidden fields, policy hints, and inconsistent enforcement. - Validate server-side decisions (deny-by-default, consistent checks at every entry point). 5) Light automation to scale - Create reproducible collections for the same action under different identities/roles. - Use response-diffing to flag inconsistencies across roles/tenants. - Track coverage: which objects, states, and edges have been exercised? 6) Report what matters - Show broken rule → observed behavior → business impact. - Tie to remediation: enforce object-level checks server-side, centralize authorization, use consistent policy middleware, avoid exposing direct references without checks, add test cases for critical flows. Tools that help (use what you have) - Proxy/suite: Burp Suite or OWASP ZAP (site map, logger, comparer) - API clients: Postman or Insomnia (role-based collections, environments) - Param/field discovery: Param Miner, Arjun - Diffing: Burp Comparer, VS Code/Beyond Compare - Observability: browser devtools network tab, proxy history, structured logs Heuristics I keep on my checklist - Anything involving money, identity, ownership, approvals, or limits is high-signal. - Every object ID, slug, or path segment is a policy decision point. - If UI hides an action but backend doesn’t enforce it, that’s a BAC smell. - Multi-step flows often lack checks on later steps—retest each step independently. - Consistency wins: the same rule must hold across web, mobile, and API variants. Bake these into your standard recon → mapping → test → verify → report loop and BAC/IDOR findings stop being “lucky” and start being predictable. What’s your favorite heuristic for catching access control drift?
English
2
19
84
5.5K
Thakur🇮🇳 retweetet
The XSS Rat - Proud XSS N00b :-)
Common Bug Bounty Myths That Are Holding You Back - Think you can’t start bug bounty hunting? These myths are why — here’s the truth. - Are these bug bounty myths stalling your hacking career? Let’s bust them. - Common bug bounty myths holding newcomers back — what no one tells you. 1) Myth: "You must be a coding wizard." Truth: Core concepts, methodical thinking, and perseverance beat flashy code. Action tip: Practice recon and auth flows; automate later. 2) Myth: "Only elite hackers make money." Truth: Consistency, smart target selection, and strong reporting win. Action tip: Pick 1–2 programs, learn them deeply, write crisp repro steps. 3) Myth: "Bug bounties require expensive gear." Truth: A reliable laptop and free/open-source tools are enough to start. Action tip: Start with Burp Community, OWASP tools, FFUF, and your browser. 4) Myth: "It’s all about zero-days." Truth: Many payouts come from logic flaws, access control issues, and misconfigurations. Action tip: Map roles/permissions; test broken object-level and IDOR scenarios. 5) Myth: "If you don’t get quick wins, it’s not for you." Truth: Patience, practice, and learning from each attempt drive progress. Action tip: Keep a learning log; review 3 public write-ups per week. Which myth tripped you up first? Comment your story and tag a friend who should see this. ✅ #BugBounty #EthicalHacking #AppSec #Cybersecurity #CareerGrowth
English
2
7
32
3.8K
Thakur🇮🇳 retweetet
Novran.
Novran.@xchopath·
I kinda love those developers who rely on WAF rules too much. • /res-api/<ID>/status → 200 OK • /res-api/<ID>/qwertyasdf → 404 • /res-api/<ID>/ → 403 Forbidden • /res-api/<ID>/?anyparam → 200 OK
Novran. tweet media
English
13
46
552
22.2K