BrunoZero
431 posts

BrunoZero
@BrunoModificato
CTFer for: @Water_Paddler / Security auditor @osec_io my writeups: https://t.co/XurIhbWdj7 24y



NEW: OAuth misconfigurations show how common dev settings can lead to account takeovers. Our second deep dive breaks down real cases where overlooking differences between desktop and mobile environments left SDKs, exchanges, and wallets open to exploits. osec.io/blog/2025-10-1…












⏰ It's CHALLENGE O'CLOCK! 👉 Find the FLAG before Friday the 16th of May 👉 Win €400 in SWAG prizes 👉 We'll release a tip for every 50 likes on this tweet Thanks @joaxcar for the challenge 👇 challenge-0525.intigriti.io

NEW: A few months ago, we uncovered an authentication bypass in Web3Auth that could have led to full account takeover. In this deep dive, we break down how we found the issue and expose other authentication misconfigurations lurking in Web3. osec.io/blog/2025-07-0…





