23

46 posts

23 banner
23

23

@0X23XO

Life HackZzz🦄

Katılım Haziran 2024
203 Takip Edilen195 Takipçiler
23
23@0X23XO·
@thedawgyg Oh congrats, This deserves at least 50-70k :((
English
0
0
1
129
dawgyg - WoH
dawgyg - WoH@thedawgyg·
Maybe should sell to the brokers next time lol
dawgyg - WoH tweet mediadawgyg - WoH tweet media
English
35
5
323
18.8K
YS
YS@YShahinzadeh·
New triage on Google, I asked for permission to publish the previous 12k ATO on Google VRP, I'll drop a blog post once they grant it (1) On top of that, I'm going to publish an OAuth 1-click ATO that I recently uncovered in a MAIN domain of a well-known company (2), stay tuned
YS tweet media
English
11
5
490
15.5K
23
23@0X23XO·
@zseano RIP❤️ Same pain. I lost my father on this same day, this same year, and the sadness still feels heavy. I hope you can get through it and find comfort in knowing that our fathers are always with us in spirit, watching over us and taking care of us :)
English
0
0
0
25
zseano
zseano@zseano·
Unexpectedly lost my dad early hours this morning… completely out of the blue. He was fit & healthy and now he’s gone 😭 lost for words on how I feel. RIP Dad ❤️❤️ love & miss you forever
zseano tweet media
English
378
0
875
47.7K
YS
YS@YShahinzadeh·
I ranked 34th on H1 in 2025. I couldn’t work on H1 after the ban three months ago; if I could've, I would have ranked in the top 20 which was my yearly goal. this is the last time I see my username on the H1 leaderboard, and it’s sad, but never mind, let’s move forward :]
YS tweet media
English
15
8
297
12.2K
23
23@0X23XO·
Voorivex's classes aren't just classes there's a smth BEYOND class. Special tnx 2 Sadra 4 this gifts hope to more bugs and more bounties 4 u, I love these books 🩷🫶🏿 @MrMSA16 @voorivex I wanna mention one of ma classmates who gave me his gift but don't have his ID :(
English
7
4
75
6K
YS
YS@YShahinzadeh·
after a long conversation, both were accepted, the attack vector was complex with a very unique trigger path, so the triage team tried many times to reproduce it, and I should thank them for their patience :]
YS tweet media
English
3
1
155
5.1K
YS
YS@YShahinzadeh·
public program on BugCrowd, tip: in OAuth, check every "login with" seprately. Google, Apple, etc. each might have different implementaion and flaw, btw I'm going to write a blog post for 0-click, the scenario was interesting, happy hacking
YS tweet media
English
27
42
828
27.2K
YS
YS@YShahinzadeh·
another one on Google
YS tweet media
English
14
5
337
10.6K
ciel
ciel@bitati8·
این تایمی که هانتو شروع کردیم با @aysanhain خیلی استرس داشتیم٫ دوست داشتیم بلاخره بعد یه سال باگ بزنیم و زدیمممم🔥 میدونم مبلغش کمه ولی ما براش خیلی زحمت کشیدیم، انتظار داشتیم بیشتر بانتی بدن ولی همینم کلی بهمون امید و انرژی داد :)) مرسی از حاج یاشار @voorivex ❤️‍🔥
ciel tweet media
فارسی
46
4
195
10.7K
Kianmehr
Kianmehr@Kian_mehrr·
Locked in for the past ~1.5–2 months, grinding full-focus on hunting with my great friends @CSa6an and @DanialXray . We dove deep into a big program (and some of its subsets), and the results were worth every hour. More bugs, more learning, more experience. 🚀 @voorivex
Kianmehr tweet mediaKianmehr tweet media
English
25
11
272
9.5K
YS
YS@YShahinzadeh·
Another one on Google VRP. this one is an old-buggy-pettern storing data as an object in State parameter and processing it in OAuth callback. I couldn't manipulate final url using attacker/domain or attacker@domain, but with attacker\u002fdomain. I expect 20k or 13k for this ;]
YS tweet media
English
31
27
646
58.7K
 یاشو
 یاشو@voorivex·
@AmirFouladvand امروز خیلی ضربه سنگینی خوردم، تیمم «هیچ‌کدوم» این فیلمو ندیدن، لفت دادم از گروه
فارسی
2
0
9
751
 یاشو
 یاشو@voorivex·
به شاگردم میگم فیلم ۲۳ جیم‌کری رو ندیدی؟ بعد براش قلب سیاه زدم چون یوزرنیمش ۲۳ بود. برگشت گفت یاشار اون موقع که فیلم اومده ۳ سالم بوده، خدایی حق داره من پیر شدم 😂😂
 یاشو tweet media
فارسی
13
0
181
10.5K
23
23@0X23XO·
@voorivex tonight's plan: The Number 23
English
1
0
3
585
Mohammad
Mohammad@MalwareMamad·
All I can say about you is gratitude @voorivex 🫡❤️
Mohammad tweet media
English
1
0
8
259
23
23@0X23XO·
@voorivex U r the Goat man📿
English
0
0
1
180
 یاشو
 یاشو@voorivex·
و تازه تونستم خودمو پیدا کنم، پولش برام مهم بود ولی مهم‌تر از اون هویت «من» بود که بن شد. بلاخره برگشتم بکار روی پلتفرمای دیگه و میشه گفت کام‌بک زدم، یکی از بزرگ‌ترین شکستای زندگیم بود، منتها زندگی ادامه داره و من باید سعی کنم ورژن قوی‌تری از خودم بشم، دمتون گرم ❤️
فارسی
14
1
358
6.3K
 یاشو
 یاشو@voorivex·
هکروان ماه پیش (بعد از مکانیزم ماشه) حساب منو بدون دلیل بست، تقریبا نیم میلیون دلار بانتی زده بودم توش و سال ۲۰۲۵ جز ۲۰ هکر اول بودم. حدود ۵۰ هزار دلارم تو حساب موند که بعیده یه روز بدنش، اینا در حالیه که من «هیچ» قانونیو نقض نکردم. هیچ دلیلی هم بم نگفتن، فشار زیادی بم اومد /
YS@YShahinzadeh

I’ve been hunting on H1 for almost 3 years, ranked #18 in 2025, have always tried to contribute positively to the hacker community. I’ve earned around $500k in bounties and was on the road to $1M. Yet I don’t even have HSM, and I feel I haven’t been recognized as I should 1/4

فارسی
22
13
613
37.6K