DAMTAP

19 posts

DAMTAP banner
DAMTAP

DAMTAP

@Damtap12

Katılım Ağustos 2023
10 Takip Edilen118 Takipçiler
DAMTAP
DAMTAP@Damtap12·
@krishnsec Thank you, sir. You have no idea how much your words helped me. Can I also become a great hacker like you, even in this AI era?
English
0
0
0
60
Kanhaiya Sharma
Kanhaiya Sharma@krishnsec·
AI is creating more attack surface instead of reducing it , just check the VRT & search for LLM issues. everyone keeps predicting the future, but the reality is that non technical people r now pushing code, security teams are struggling to keep up with rapid reports , and new easy 0days are coming. Meanwhile, AI keeps advancing without slowing down 💯 so instead of overthinking , focus on present day problems & hunt for all bugs 🐞
English
3
1
10
301
DAMTAP
DAMTAP@Damtap12·
@krishnsec Basically, should I just focus on raw hunting, understanding how an application works and using my own unique human brain to figure out how its logic can be broken instead of spending time learning random stuff? Is that the right approach?
English
0
0
2
110
DAMTAP
DAMTAP@Damtap12·
@krishnsec I’ve been doing bug hunting for the past 4 months and recently found a P1 vulnerability on a public Bugcrowd program. With AI rapidly advancing, I’m uncertain about the future of bug hunting and how it will impact cybersecurity. I want to understand where bug hunting is headed.
English
0
0
1
88
Saksham Choudhary
Saksham Choudhary@sakshamintech·
Wow, congratulations…i saw your older tweets too. You were trying so hard from many days and here is the result of not giving up. I am glad i could do this contribution to the infosec community. I stopped uploading podcasts due to other work and job but your post will motivate me to record more of this where we can concentrate on adding value rather than hooey and colours.
English
1
0
7
377
DAMTAP
DAMTAP@Damtap12·
@the_IDORminator Thank you, sir. You have no idea how much your words helped me. Can I also become a great hacker like you, even in this AI era?
English
0
0
1
151
the_IDORminator
the_IDORminator@the_IDORminator·
@Damtap12 Yes, almost all the bugs I find come from using the app, what does it hit, and load, look in those files, look at API paths, recon, click more things, do more stuff, interact, 400 repeater tabs later you may have 50 P1s.
English
1
2
9
290
the_IDORminator
the_IDORminator@the_IDORminator·
Most of the financial sector is not eligible to try Mythos yet. 🤔
English
2
1
31
3.7K
DAMTAP
DAMTAP@Damtap12·
@the_IDORminator Basically, should I just focus on raw hunting, understanding how an application works and using my own unique human brain to figure out how its logic can be broken instead of spending time learning random stuff? Is that the right approach?
English
1
0
2
202
the_IDORminator
the_IDORminator@the_IDORminator·
@Damtap12 You know in an Easter Egg hunt, if you stop to ponder how the hunt may go instead of just picking up the eggs while they are still there, you may come to realize all the other kids got all the Easter Eggs before you were done pondering :) That was deep
English
1
2
10
362
DAMTAP
DAMTAP@Damtap12·
@IslamA18269 @defronixacademy @GodfatherOrwa Go through blogs, articles, and research on Google to find out the potential impact of the exposed credentials, since impact is a crucial factor in bug bounty programs.
English
1
0
0
57
Umar
Umar@IslamA18269·
@Damtap12 @defronixacademy @GodfatherOrwa Thanks, listen I have found the firebase config api key and some other credentials in js files. But don't know how it would be impact full Do you have any idea
English
1
0
0
36
DAMTAP
DAMTAP@Damtap12·
I will never give up, punch those websites someday
English
0
0
5
655
DAMTAP
DAMTAP@Damtap12·
Not find any bug yet, but I will find valid bugs someday and that day will be mine.
English
0
0
3
640