Tweet fijado
Roland Hack
635 posts

Roland Hack
@RolandHack6
20yo😼|Junior Pentester|Bug Hunter|Discoverer of 2 CVEs
Au cœur des 0 et 1👻 Se unió Ekim 2022
2.5K Siguiendo976 Seguidores
Roland Hack retuiteado

I think I have completed client-side security , just one report:
Self-XSS -> Drag-Drop Payload -> Scroll-To-Fragment -> Unchecked postMessage Listener -> Text Injection -> DOM-XSS -> OAuth State Misconfiguration -> Cookie Bomb -> Account Takeover
@renwa/iframe-sandbox-bypass-cross-origin-drag-drop-unvalidated-postmessage-origin-cookie-bomb-to-21357a4d94f5" target="_blank" rel="nofollow noopener">medium.com/@renwa/iframe-…

English

I’m officially back to @Hacker0x01 🙏
Truly grateful to everyone who supported me. Your support meant more than words can express.
Back to hunting. 💪
Hackerone.com/imtheking

English
Roland Hack retuiteado
Roland Hack retuiteado
Roland Hack retuiteado

@zseano people always asking what tools we use... then don't believe us when we say only Burp proxy + Intruder + Repeater lol
English
Roland Hack retuiteado

First bug of 2026 🐞
First critical of the year 🚨
Found and Bypass by AI 99.99% 🤖
#AI #BugHunting #BugBounty #Automation #Hacking #Bugcrowd

English

@RockstarGames can you please vibe code the rest of the game and release it next month?
English
Roland Hack retuiteado
Roland Hack retuiteado

ATO via OAuth unsanitized schema
This is such a sneaky finding. Bugs like this just continue to prove that thinking away from the norm will go a long way. Get weird.
Blog link👇
sicks3c.github.io/posts/ato-via-…
English
Roland Hack retuiteado

PoV: you wakeup and go run a pwn2own exploit @thezdi
SinSinology@SinSinology
exhausted, last entry tomorrow
English

















