HyprHex
378 posts

HyprHex
@hyprhex
Build and Break APIs. Check my latest https://t.co/pENfcMZhnh
@hyprhex Beigetreten Şubat 2023
96 Folgt38 Follower


@0xTib3rius We need the Traige team for prompt, and a lot will be close as N/A and Info
English

If anyone has prompt / skill advice btw I will happily accept it.
The potential here is crazy, and if nothing else I'm having fun learning stuff. 😁
Tib3rius@0xTib3rius
I've been playing around with Claude Code for bug bounty hunting all day. I'm afraid to share my opinions on it because I think it's going to annoy people on both sides of the "are we cooked" debate.
English

@Ronycoder Only God knows the future, so every prediction is false until reality shows.
I'm not scared of the future and what kind of job will be replaced, because everything comes with trades.
Human in the loop
English
HyprHex retweetet

@adibhanna sit down, set a timer for 2 hours, work, and do that over and over and over. Nothing meaningful was built in a day, a week, or even a month. You should launch quickly, but the work can't end there. Successful products have YEARS of craft behind them
English

AI is more of a force multiplier.
If you have zero skills, AI times zero is still going to be zero.
By @thedawgyg
English

غداً تنطلق ورش العمل التطبيقية في منتدى تعهيد الأعمال والتقنية 2025 لتقدّم تجربة عملية تركّز على بناء الكفاءات ورفع الجاهزية التشغيلية في الذكاء الاصطناعي والأمن السيبراني وتطوير المواهب، بإشراف خبراء وممارسين لنقل المعرفة من النظرية إلى التطبيق
#منتدى_تعهيد_الأعمال_والتقنية
سجل الان :
bpoqassim.com/ar/register

العربية

Today is your day to sharpen your skills. And to master breaking APIs?
🔗 Full article: hyprhex.com/posts/only_one…
#API #CyberSecurity #Hacking #bugbountytip #InfoSec #APISecurity #HackThePlanet #WebSecurity #ChallengeAccepted #DeveloperLife #Motivation #BugBounty #bugbountytips

English


Many hunters miss the most important part of an API: the response body.
One unnecessary parameter can turn into account takeover or PII exposure — and it already happened.
I explain the lessons and mindset in my latest blog👇
hyprhex.com/posts/dont_mis…
#BugBounty #apisecurity

English

@100Thieves @RAINvard Waiting for the team to get back to the show. Let's go
English

Guys, someone used a bug in @discord @discord_support to send malware links to your friend who has a chat with them: He tries to use something like that [image.png](malwaerwebsite/{id}/1.jpg)
#BugBounty

English

Spent the last week reading 250+ IDOR reports on HackerOne 🕵️♂️
Now I’ve compiled 200+ easy-to-search IDOR test cases for beginners!
Want the file? Comment IDOR & I’ll send it 💾
#BugBounty #CyberSecurity #IDOR #EthicalHacking #AppSec

English

Last-minute costume idea: hacker at @YesWeHack 🕷️💻
Don't have what you need? Try your luck to win a swag pack!
To enter:
👉 Follow us
👉 Comment your fav Halloween emojis
Winners (one here, one on LinkedIn) will be announced Monday, 11AM CET.
Good luck, spooky hackers! 💀

English

I found out that you can use "ftp::" to convert a limited Dom Clobering situation into a full CSPT. Then, while talking about it with @LooseSecurity, he found that we can also use "https::"
This can be used to prevent URL parsing of href, allowing us to hit other endpoints

English

7 Rules to make your to-do list by @fortelabs
#1: Don't keep tasks in your minds
Every time a task needs to be done, write it down.
Keep a small note or in your digital one to write it down in your inbox.
English








