Hamed Elnwasani

5 posts

Hamed Elnwasani banner
Hamed Elnwasani

Hamed Elnwasani

@0xhamdoon

Offensive Security Engineer @DeepStrike_io

参加日 Ağustos 2023
415 フォロー中296 フォロワー
Hamed Elnwasani
Hamed Elnwasani@0xhamdoon·
@FSouihiSOAI Yes, I’ve seen this pattern mentioned in several writeups before, and I’ve read about other researchers finding it. However, this is the first time I’ve actually encountered and successfully exploited it myself in a real target
English
0
0
0
107
micheal souis
micheal souis@FSouihiSOAI·
@0xhamdoon Have you seen this pattern frequently in bug bounty targets, or was this a one-off case?
English
1
0
1
444
Hamed Elnwasani
Hamed Elnwasani@0xhamdoon·
Two useful writeups I recently published: 1. Zero-Click ATO via Self-Stored XSS + WAF Bypass + IDOR 🔗@0xhamdoon/from-self-stored-xss-to-zero-click-ato-531e167ef276" target="_blank" rel="nofollow noopener">medium.com/@0xhamdoon/fro… 2. Chained Two Logic Flaws to Break a Ticketing System 🔗@0xhamdoon/how-i-chained-two-logic-flaws-to-break-a-ticketing-system-e9a3bdd6e8fe" target="_blank" rel="nofollow noopener">medium.com/@0xhamdoon/how… Enjoy reading, and happy hacking #bugbounty #cybersecurity
English
1
26
169
7.4K