Tweet Disematkan
Roland Hack
635 posts

Roland Hack
@RolandHack6
20yo😼|Junior Pentester|Bug Hunter|Discoverer of 2 CVEs
Au cœur des 0 et 1👻 Bergabung Ekim 2022
2.5K Mengikuti976 Pengikut
Roland Hack me-retweet

I think I have completed client-side security , just one report:
Self-XSS -> Drag-Drop Payload -> Scroll-To-Fragment -> Unchecked postMessage Listener -> Text Injection -> DOM-XSS -> OAuth State Misconfiguration -> Cookie Bomb -> Account Takeover
@renwa/iframe-sandbox-bypass-cross-origin-drag-drop-unvalidated-postmessage-origin-cookie-bomb-to-21357a4d94f5" target="_blank" rel="nofollow noopener">medium.com/@renwa/iframe-…

English

I’m officially back to @Hacker0x01 🙏
Truly grateful to everyone who supported me. Your support meant more than words can express.
Back to hunting. 💪
Hackerone.com/imtheking

English
Roland Hack me-retweet
Roland Hack me-retweet
Roland Hack me-retweet

@zseano people always asking what tools we use... then don't believe us when we say only Burp proxy + Intruder + Repeater lol
English
Roland Hack me-retweet

First bug of 2026 🐞
First critical of the year 🚨
Found and Bypass by AI 99.99% 🤖
#AI #BugHunting #BugBounty #Automation #Hacking #Bugcrowd

English

@RockstarGames can you please vibe code the rest of the game and release it next month?
English
Roland Hack me-retweet
Roland Hack me-retweet

ATO via OAuth unsanitized schema
This is such a sneaky finding. Bugs like this just continue to prove that thinking away from the norm will go a long way. Get weird.
Blog link👇
sicks3c.github.io/posts/ato-via-…
English
Roland Hack me-retweet

PoV: you wakeup and go run a pwn2own exploit @thezdi
SinSinology@SinSinology
exhausted, last entry tomorrow
English

















