LamScun
386 posts

LamScun
@LamScun
Researcher of mobile and web security issues. It's safer in the forest than on the internet.
Katılım Şubat 2020
815 Takip Edilen2K Takipçiler


@_pt200 @yeswehack This the first time I see this swag of ywh, congrats 🎉
English
LamScun retweetledi

We just kicked off the first LHE event of the Vietnam HackerOne Ambassador Club with the participation of 100 bug bounty hunters. You are potential candidates for the next season of AWC 2026. We wish all you success and hope you gain valuable experience at this event.
@LamScun 🇻🇳



English

BB 2025 Recap
- Top 14 H1 Crit Rep, Top 16 H1 Highest Rep, Top 2 H1 🇻🇳(Cheers Top 1 @thaivd98), Top 2 GG🇻🇳
- Stop at Elite 8 H1 AWC vs talented🇪🇸
- 1st GG LHE, 1st H1 LHE, Flysec 1st Hack Trip
- Amazing memories in 🇻🇳 w 🇪🇸 friends
- More Flysec's mems joined fly w hacking dreams!




English

My bug bounty recap 2025:
- Top 7 Highest Reputation, top 7 Highest Critical Reputation on @Hacker0x01 🪲
- Top 1 on Vietnam Leaderboard H1
- Memorable Prague LHE with 🇻🇳 AWC team and had new great friends 🇪🇸🌎🕺
- First LHE in Singapore
- @flysec_corp organized First Flysec LHE




English
LamScun retweetledi

Calling all 🇻🇳 BUG BOUNTY HUNTERS to participate in 🔥 VIETNAM LHE WARM UP 2026 – HACKERONE 🔥
🗓️Schedule:
- 05/01/2026: Kickoff
- 10/01/2026: Sharing & Collaboration
- 24/01/2026: Closing Ceremony & "Show & Tell"
Register: h1.community/e/m6r8cn/
Contact: @LamScun @haxor31337

English
LamScun retweetledi

React2Shell (CVE-2025-55182 / 66478) detection is now available in Burp Suite.
Update/install ActiveScan++ v2.0.8 → bit.ly/4rCSeNp
or use the Custom scan check → bit.ly/4pfkK6l
#React2Shell #AppSec #BurpSuite
English

@thaivd98 @Hacker0x01 Chắc thaivu đang nói chuyện của 10-20 năm nữa á phải k
Tiếng Việt

LamScun retweetledi

❌ Wrong: “Victim must install a malicious app”
✅ Right: “Any 3rd-party app can exploit it”
Legit apps (e.g. Chrome) can be abused as gadgets, turning complex bugs into 1-click exploits. No excuse to leave it unfixed.
ndevtk.github.io/writeups/2024/…
English

@hipotermia @Hacker0x01 Can you please explain the symbol on your hand? 🙌
English

Thanks to everyone who joined us at the @Hacker0x01 Brand Ambassadors Speed Show&Tell in Madrid, and special thanks to all who presented! 💕




English

@mdshakibkhan0x1 @Hacker0x01 In hackerone the report number will increase, you just wait and create a draft report
English

@LamScun @Hacker0x01 how you know the sequential number? let me know please about it.
English
LamScun retweetledi

Just published my first blog post "Cache Deception + CSPT: Turning Non Impactful Findings into Account Takeover"
You can read the full write-up here:
zere.es/posts/cache-de…
English
LamScun retweetledi

The first-ever "Flysec Hack Trip" #FSHT49, has ended, and what an incredible 10 days it was! This #FSHT49 was just for Flysec members only and our members embarked on a journey to the beautiful city of Da Lat, Vietnam where they combined their passion for hacking with the serene landscapes and cool weather:
⚔️ This exclusive event brought together Flysec members to compete in teams, focusing their skills on a single, challenging target: a product from Zoom. Over the course of the trip, participants demonstrated incredible collaboration and ingenuity. Their hard work paid off with a remarkable total of 33 submissions, a testament to the high level of talent and dedication within our community.
❤️🔥 But it wasn't all just hacking. The trip was filled with joyful moments—from team outings to exploring the city's scenic spots.
In short, the Flysec Hack Trip is more than just a competition. It’s a chance to build a community, solve complex problems, and create lasting memories with other cybersecurity enthusiasts, all while traveling.
🚀 The next "Flysec Hack Trip" event will come soon and open for more hackers/bug bounty hunters. Waiting for our announcement!



English
LamScun retweetledi

KingOfBugBounty by @KingOfBugbounty is an extensive curation of bug bounty tips, one-liners and other relevant resources to help you find more vulnerabilities! 😎
Check it out! 👇
🔗 github.com/KingOfBugbount…

English

@thaivd98 @Hacker0x01 @flysec_corp Next time, please try taking a larger screenshot to see the word "lamscun" :(
English

Q2 was a blast for me!
Somehow reached Top 5 in @Hacker0x01 Leaderboard 🤪
Reached Top 5 in Highest Critical Reputation 🪲
Reached Top 3 in Web Application Asset Types 😁
Worked & played hard with my teammate @flysec_corp ❤️🔥
Let's see how it goes in Q3! 🤓
#TogetherWeHitHarder



English

Happy to reach 15000 reputation checkpoint on @Hacker0x01
Thanks @Hacker0x01 for always be a best platform for Bug Bounty Hunters 🙌
And a big thanks to @flysec_corp . I never could have come this far without you ❤️🔥

English









