charan

3.2K posts

charan banner
charan

charan

@0xcharan

@Hacker0x01 Brand Ambassador | Bug Bounty Hunter | Penetration Tester

Rajahmundry, India Katılım Kasım 2020
377 Takip Edilen1.9K Takipçiler
Shreyas Chavhan
Shreyas Chavhan@shreyas_chavhan·
one more triaged and paid, yayyyy!! 😍 coming back stronger.
Shreyas Chavhan tweet media
English
12
0
184
3.7K
charan retweetledi
sw33tLie
sw33tLie@sw33tLie·
bbscope v2 is out & bbscope.com is live! A free #bugbounty tool to pull scope from HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi. Store it all in PostgreSQL, track changes, query it, pipe it into your tools Thread on what's new👇
sw33tLie tweet mediasw33tLie tweet mediasw33tLie tweet mediasw33tLie tweet media
English
12
84
400
49.8K
charan retweetledi
N B Sri Harsha
N B Sri Harsha@nbsriharsha·
Glad to be a part of bug bounty panel at @BSidesVizag It was great sharing the stage with Surya Subash, Laxmi Narayana @0xdln, Charan, Dhawal. A big thanks to @deathflash_xyz and their entire team for organizing it so well. Wishing you all the best for future editions.
N B Sri Harsha tweet mediaN B Sri Harsha tweet media
English
1
3
7
1.1K
Ashutosh
Ashutosh@0xmarvelmaniac·
Attended @bsidesahmedabad. People I met there made it fun 👀 P.S: Really not a selfie guy and I always forget to click pictures in a public event. Met so many of you but I only got these few clicks 🫠
Ashutosh tweet mediaAshutosh tweet mediaAshutosh tweet mediaAshutosh tweet media
English
5
4
52
3.8K
Kullai⚡️
Kullai⚡️@Kullai12·
$4,000 - Github Pat Token Leak Leads to CRUD permissions $1,000 - Auth Bypass $500 - Privilege Escalation $100 + $100 + $100 = Information Disclosure $5,800 in June :) $110 worth Swag from @posthog Crossed 750 on @Hacker0x01 Finally 🙌 #hackerone #BugBounty #security
Kullai⚡️ tweet mediaKullai⚡️ tweet mediaKullai⚡️ tweet mediaKullai⚡️ tweet media
English
15
10
289
13.1K
yso
yso@0a_yso·
Parsed 12k+ bug-bounty write-ups & blogs (and counting 24/7) and mapped each to CWE + language. Quick hits: • ~60% of RCEs happen in PHP/JS • >50% of GraphQL bugs are plain access-control issues Free site coming soon - reply "access" for an early invite! #bugbounty #hacking
yso tweet mediayso tweet media
English
139
22
232
24.9K
Immunefi
Immunefi@immunefi·
Statement: A. Spectra Finance contracted with Immunefi to run an Audit Competition. Per our process, Immunefi provided Spectra the program draft that included the reward structure and linked to our standard competition reward terms. The Spectra team, including their CEO, conducted multiple reviews over 3+ weeks and approved the program draft that clearly stated that a single bug finding unlocks the full $40K pool. Not a single time during program drafting, marketing or during the 1.5 month hunting and evaluation period did they bring up an issue with this reward mechanic. Only when it was time to pay the community did they claim there was a disconnect in expectations. B. The program received 331 reports from 103 SRs of which 27 were confirmed reports excluding insight reports. C. After several weeks of good faith engagement to resolve the matter with Spectra including offering to contribute Immunefi program fees to bridge the gap and cover the full $40k payout, the matter remains unresolved. Spectra has not honored its commitment per the program rules they approved for publishing on Immunefi. D. We have designed our platform rules to protect the balance of interests and hold them at the highest tier of priority to protect against bad faith actions from either party. E. In this case, given the >1 month delay in payment to SRs, we have decided to make SRs whole using Immunefi’s own funds, rather than accept the unreasonably low and unfair offer made by Spectra. Their offer to pay per bug finding is precisely what a Bug Bounty program is - NOT an audit competition. F. It would have been easier for us to either shortchange SRs or quietly fill the gap in payments from Spectra but we instead chose transparency and solving the problem for SRs. Given the recent undercurrent of opacity on such issues in the web3 sec space, we decided to take the lead in defining the way forward - even if it means taking a financial hit for it. G. We would like to highlight here that this is the first case of such abuse by a project in our history of running 43 competition programs. H. To protect SRs and the platform from such abuse in the future, we will be updating our policy on pre-payment of the reward in due course.
Spectra@spectra_finance

Public Statement on the Immunefi Audit Contest Dispute

English
45
40
381
64.4K
⚡🌌🌌teslatheg0d🌌🌌⚡
Year 2024 Recap: - Total H1 Reputation: 7367 & Total BC Points: 1136 - In 2024, Submitted Reports: 307 ( got paid for 220 reports and others pending bounties ) - Made over $160K in 2024 ( $100K from 🔴Critical and 🟠High Severity Reports ) - Ranked 2 in India Country Leaderboard 2024 🇮🇳 - Ranked 21 in Global Leaderboard 2024 🌎 - Invested Money in the Stock Market 💸💸💸💸💸💸 #bugbounty #Hackerone #bugcrowd
⚡🌌🌌teslatheg0d🌌🌌⚡ tweet media⚡🌌🌌teslatheg0d🌌🌌⚡ tweet media⚡🌌🌌teslatheg0d🌌🌌⚡ tweet media⚡🌌🌌teslatheg0d🌌🌌⚡ tweet media
English
26
8
241
32.1K
bytehx
bytehx@bytehx343·
This year has been incredible, filled with hard work and significant milestones. On the bug bounty side, it’s been especially rewarding. I attended my first Live Hacking Event (LHE) and had the chance to travel to Switzerland, my favorite country. I’m excited for whatever’s next!
bytehx tweet mediabytehx tweet mediabytehx tweet media
English
4
0
37
2.1K
🇷🇴 cristi
🇷🇴 cristi@CristiVlad25·
What's your bug bounty / pentesting goal for 2025?
English
29
4
80
14.9K
Ashutosh
Ashutosh@0xmarvelmaniac·
24 months streak 🔥 on @Hacker0x01 hackerone.com/marvelmaniac?t… I think h1 should introduce some form of swag rewards( could be just one time awards) for maintaining streak for a certain period of time. It'll make the process more fun :)
Ashutosh tweet media
English
8
2
72
3.7K
0xdln
0xdln@0xdln·
My 2024 #BugBounty Recap - Earned 118,286$ in Bounties ( all platforms combined ) - Maintained streak for 12 months in @Hacker0x01 @intigriti and @Bugcrowd - Submitted 600+ bugs across all platforms x.com/0xdln/status/1…
0xdln tweet media0xdln tweet media0xdln tweet media0xdln tweet media
0xdln@0xdln

My 2023 #BugBounty Recap - Earned 46,369$ in Bounties ( all platforms combined ) - Made it to top 20 in @intigriti - Top 3 in 2023 Q1 @intigriti - Able to maintain streak for 12 months in @Hacker0x01 @intigriti and @Bugcrowd - Crossed 1000 reputation @Hacker0x01

English
21
14
348
26K