nop
53 posts

nop retweetledi

The first week of bug bounty hunting in the cantina, big win.
cantina.xyz/u/InfiniteSec
I'm a bit curious why there isn't a leaderboard for bug bounties, only for auditing competitions.😆
@cantinasecurity

English

the fuzzing continues.
recently received a $500 reward for a report that came out of techniques i've been learning and documenting along the way.
still experimenting. still learning.
#fuzzing #bugbounty #TogetherWeHitHarder

English

This was a 10k USD simple but critical time-based sqli bug i found a while ago, with the help of bbradar.io notifications.
> New target went live -> Instant Discord notification
> Basic recon
> Ghauri against api endpoints
> Full db dump
Sometimes its as simple as being first.
Kle0z@Kle0z
Finally confirmed!
English

Yay, I was awarded a $20,000 bounty on @Hacker0x01! hackerone.com/jjjjjjjjjjjjjj… #TogetherWeHitHarder
English

$500,000 to @rileyholterhus through Cantina Bounties. 🪐
The researchers who consistently find the bugs that matter don't chase volume. They follow programs where scope is tight, triage is fast, and rewards match actual impact.
Well done, Riley!

English

Finding Critical Bugs in Adobe Experience Manager (AEM) muhammadwaseem29.tech/blog/aem
English
nop retweetledi
nop retweetledi

Claude Code with agent, autonomously hacked Subway Surfers, and printed millions of coins.
A rooted Android phone... and it turned Subway Surfers into a money printer.
From 4 coins to 2,000,000+ coins in two runs. autonomous loop, analyzed, and pwned a Unity game in one session, intercepts traffic, bypasses SSL pinning, and even reverse-engineers offline games.
The full Setup: Rooted emulator via rootAVD + Magisk + AlwaysTrustUserCerts.
Toolchain: UI Automator, mitmproxy traffic capture, Frida bypass scripts, APK static analysis.
The agent loops by itself:
- Dump screen & UI elements
- Tap/swipe via ADB
- Analyze traffic or binary
- Decide next move without a human.
It played the game, reverse-engineered the Unity IL2CPP binary, hooked Frida on SafeInt anti-cheat, and silently multiplied currency.
Subway Surfers (com.kiloo.subwaysurf) Almost zero network traffic to agent pivots.
Detects Unity IL2CPP parses global-metadata.dat
Finds WalletModel, RunSessionData, AddCoins, and SetCurrencySilently.
Then hooks with Frida and multiplies rewards ×100+.
Result: 4 coins to over 2 million.
SafeInt anti-cheat? Bypassed Stealth mode
This is the future of mobile pentesting?
credit via: @skshadan_
- workers.io/blog/autonomou…
English






















