putsi

940 posts

putsi banner
putsi

putsi

@putsi

White hat hacking in Team ROT. Also, hacker-for-hire & bug bounty hunter -- https://t.co/5sHK3CHtdm

Tampere, Finland Bergabung Eylül 2015
2.6K Mengikuti2.9K Pengikut
Tweet Disematkan
putsi
putsi@putsi·
Wrote a blog post about how to host private Burp collaborator instance. It also has some scripts to make it a bit easier and faster. teamrot.fi/2019/05/23/sel…
English
12
115
275
0
putsi
putsi@putsi·
Modifying Burp Collaborator config file every time you need to host a new payload takes too much time. If self-hosted Burp collaborator could serve files from a web root directory like Nginx does, would you use it? (I’m gathering votes for a support case)
English
0
0
4
443
bugcrowd
bugcrowd@Bugcrowd·
who is your hacker hero?
English
250
21
416
104.7K
putsi me-retweet
Burp Suite
Burp Suite@Burp_Suite·
As promised, here's the first sneak peek into our new AI-powered features coming to Burp Suite Professional next month... 👀 🤫 First up, we have Explain This. #BurpAI #BurpSuite
GIF
English
8
27
253
21.4K
putsi me-retweet
Zack Witten
Zack Witten@zswitten·
Spamming "hi" at every LLM: a thread.
English
322
1.3K
14.8K
3.5M
putsi me-retweet
@mikko
@mikko@mikko·
I bet a song composed and performed by an AI will be a Top 40 hit during this year.
English
23
12
140
38.9K
putsi me-retweet
@mikko
@mikko@mikko·
Video of the Keynote talk from last T2 infosec conference in history: 𝒮𝒴𝒮𝒯𝐸𝑀𝒮 𝒜𝐿𝒞𝐻𝐸𝑀𝒴. By @thegrugq. youtu.be/JYhIui542Xg
YouTube video
YouTube
English
0
10
30
14.1K
putsi me-retweet
faulty *ptrrr
faulty *ptrrr@0x_shaq·
This is how tears look like under the microscope. Insane
English
11
101
1K
188.2K
putsi me-retweet
Steve
Steve@SteveFlanders22·
The first two weeks of the Vision Pro were absolutely insane. Here are 13 examples that prove the Vision Pro is the best piece of tech ever invented. 1) Real-time 3D surgery twitter.com/Medivis_AR/sta…
English
287
2.5K
21.6K
9.6M
putsi me-retweet
HTTPVoid
HTTPVoid@httpvoid0x2f·
Check out our new blog post! We hacked into Apple Travel Portal (yes, again!) using a 0-day Remote Code Execution exploit. Part 1 is live now, stay tuned for the follow-up on another RCE worth a total bounty of $40k! blog.projectdiscovery.io/hello-lucee-le…
English
7
110
353
44.4K
putsi me-retweet
shubs
shubs@infosec_au·
The SSRF/auth bypass affecting Ivanti Pulse Connect Secure (CVE-2024-21893), is a great example of what can be achieved with a fully blind SSRF vulnerability (RCE). Read the @assetnote blog here which includes a reliable payload and generation steps: assetnote.io/resources/rese…
English
3
87
352
32.8K
putsi me-retweet
Corben Leo
Corben Leo@hacker_·
I've made $500k+ from SSRF vulnerabilities. Here are my tricks:
Corben Leo tweet media
English
83
1.2K
4.4K
439.8K
putsi me-retweet
Chris Evans
Chris Evans@scarybeasts·
Hackers, an important one. e.g.: we heard that CVSS "PR" is handled inconsistently (should be PR:None for self-sign-up). We're transparently listing a set of Detailed Platform Standards for consistency across programs. Need your help -- what to cover next? docs.hackerone.com/organizations/…
English
10
27
106
52.4K
putsi me-retweet
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
Web Security vs. Binary Exploitation
English
99
1.9K
10.2K
833K
putsi me-retweet
The Paranoids
The Paranoids@TheParanoids·
Earlier this year, the Paranoids Vulnerability Research team  disclosed a critical remote code execution (RCE) vulnerability in @GoIvanti’s endpoint management product: yahooinc.com/paranoids/para….
English
1
17
54
11.1K
putsi me-retweet
Jeti
Jeti@0xJeti·
Here's a write-up on a Browser-Powered Desync bug that I discovered in the Azure CDN service known as Front Door. The entire concept is built upon the excellent research by @albinowax. Initially identified within the @intigriti program. blog.jeti.pw/posts/knocking… #bugbounty
English
8
46
150
16.5K