PinkArmor

149 posts

PinkArmor

PinkArmor

@PinkArmor56394

Katılım Temmuz 2024
314 Takip Edilen7 Takipçiler
PinkArmor retweetledi
obscaries ❘ AppSec
obscaries ❘ AppSec@obscaries·
Found a pretty solid fuzzing resource for web security testing 👀 👉 github.com/gh0stkey/Web-F… Contains: • endpoint discovery wordlists • XSS/SSRF/LFI payloads • parameter fuzzing lists • Burp Intruder payloads • recon & web fuzzing dictionaries Useful with: ffuf • Burp Suite • dirsearch • arjun Good repo for bug bounty & web app testing workflows. #BugBounty #CyberSecurity #WebSecurity #InfoSec #EthicalHacking
English
4
53
279
10.8K
Gabson
Gabson@gabson0x·
same bug asset scope , same company go where you are valued
Gabson tweet mediaGabson tweet media
English
8
2
131
10.8K
Bug Bounty Village
Bug Bounty Village@BugBountyDEFCON·
IT'S GIVEAWAY SEASON! We will pick 6 winners to win one of the following: 1x Annual VIP Hack The Box Licence 5x Pentesterlab 3 Month Licences To enter: 1️⃣ Follow us @BugBountyDefcon 2️⃣ Like this post ❤️ 3️⃣ Tag 3 hacker friends in the comments 4️⃣ Retweet this post 🔁 Giveaway open until Thursday May 14th! GOOD LUCK!
Bug Bounty Village tweet media
English
165
169
315
21K
Biscuit
Biscuit@OreoB1scuit·
Got marked as a duplicate for a bug that allows leaking basically any Udemy course. It’s been around since 2024. I get that things are “free,” but not this free, haha. 🫠
Biscuit tweet media
English
8
0
53
4.7K
PinkArmor retweetledi
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
This weekend, I gave a talk on web browser security research at a student-organized conference. I tried to make the talk reasonably beginner-friendly, so the slides (linked here) could hopefully be useful to someone as a learning resource. docs.google.com/presentation/d…
English
3
144
541
29.3K
PinkArmor retweetledi
vulnX
vulnX@vuln_X·
Bug Bounty tip 🧵 Don't just swap IDs — wrap them. ❌ {"Account": 1111} ✅ {"Account": {"Account": 3333}} Auth validates the outer key. Business logic executes the inner one. Scanners miss it. You won't. #BugBounty #IDOR #APIHacking
English
3
38
266
9.9K
PinkArmor retweetledi
Vivek | Cybersecurity
Vivek | Cybersecurity@VivekIntel·
Google VRP Writeups — Real Exploits, Real Bounties 🐛🔥 Curated list of Google VRP (Vulnerability Reward Program) writeups: • Real-world bugs → XSS, SSRF, RCE, IDOR, Privilege Escalation • High bounty cases → $100k+, $50k, $20k reports • Google Cloud, YouTube, Gmail, Chrome attack surfaces • Both blog + video writeups from top researchers If you're serious about bug bounty, this is where real learning happens — not theory. 🔗 github.com/xdavidhu/aweso… #BugBounty #GoogleVRP #Pentesting #CyberSecurity #Infosec #AppSec
Vivek | Cybersecurity tweet mediaVivek | Cybersecurity tweet mediaVivek | Cybersecurity tweet mediaVivek | Cybersecurity tweet media
English
2
72
383
17.6K
PinkArmor retweetledi
Kerem 🛡 Cyber Security Engineer
7 Claude prompts for pentesters. Attack surface mapping. PrivEsc paths. CVE analysis. Lateral movement planning. 🧵
English
1
3
3
179