Security Talent

332 posts

Security Talent banner
Security Talent

Security Talent

@Securi3yTalent

JS Dev | Penetration Tester | malware analyst

Rajshahi, Bangladesh Katılım Ekim 2021
3.4K Takip Edilen353 Takipçiler
Security Talent retweetledi
7h3h4ckv157
7h3h4ckv157@7h3h4ckv157·
S3Scanner A tool to find open S3 buckets in AWS or other cloud providers: •AWS •DigitalOcean •DreamHost •GCP •Linode •Scaleway •Custom Resource: github.com/sa7mon/s3scann…
7h3h4ckv157 tweet media
English
0
43
227
8K
Security Talent retweetledi
Vivek | Cybersecurity
Vivek | Cybersecurity@VivekIntel·
🎯 Full Bug Bounty Hunting & Red Team Methodology 2026 — A Structured Recon Workflow Full Bug Bounty Hunting & Red Team Methodology 2026 is an open-source knowledge repository that documents a structured workflow for web application reconnaissance and attack surface discovery. Rather than focusing on individual tools, the methodology emphasizes an intelligence-driven approach where each reconnaissance phase builds upon previous findings to progressively map an organization's infrastructure before conducting manual security testing. The guide covers the complete reconnaissance lifecycle, including passive and active subdomain enumeration, DNS brute forcing, ASN and CIDR infrastructure mapping, reverse DNS analysis, origin IP discovery, WAF-aware reconnaissance, virtual host enumeration, URL and endpoint collection, JavaScript analysis, secret discovery, directory enumeration, source code intelligence, technology fingerprinting, service discovery, automated vulnerability scanning, and subdomain takeover detection. Throughout the workflow, it demonstrates how to correlate outputs from multiple reconnaissance utilities, historical archives, certificate transparency logs, search engines, public datasets, and OSINT sources to improve visibility while reducing redundant effort. The repository also includes environment setup recommendations, curated wordlist references, API integrations, automation examples, and practical techniques for consolidating reconnaissance results into a comprehensive attack surface inventory. It serves as a practical reference for security professionals, bug bounty hunters, penetration testers, and learners seeking a repeatable methodology for authorized web application security assessments. 📌 Credit: @Cybernote9 🔗 github.com/Cyber-note/Ful… #CyberSecurity #BugBounty #Recon #OSINT #WebSecurity #PenetrationTesting #RedTeam #AttackSurface #EthicalHacking #ThreatIntelligence
Vivek | Cybersecurity tweet media
English
3
106
552
23.3K
Security Talent retweetledi
ܛܔܔܔܛܔܛܔܛ
ܛܔܔܔܛܔܛܔܛ@skocherhan·
107[.]178[.]103[.]157:8041 AS53755 Input Output Flood LLC 🇺🇸 #ScreenConnect #ConnectWise
ܛܔܔܔܛܔܛܔܛ tweet media
Szabolcs Schmidt@smica83

ScreenConnect client seen from Hungary, used for scam attacks @abuse_ch c20c5f34f17b762774984d5d5e647e9946a6c6d7fa20e1c2ac06e67588de4916 Source from: hxxps://store-na-phx-5.gofile(.)io/download/direct/6c764b93-1032-4d26-ba26-cbb202487a78/ScreenConnect.ClientSetup.msi bazaar.abuse.ch/sample/c20c5f3… Contacted domain: wzrldplainstge(.)info

English
0
1
3
366
Security Talent
Security Talent@Securi3yTalent·
Excited to share that I've officially joined freeCodeCamp English as a Contributor on Hashnode! 🎉 I'm grateful for the opportunity to contribute technical content to one of the world's largest developer communities. Thank you to the @freeCodeCamp #freecodecamp #securitytalent
Security Talent tweet media
English
0
0
0
28
Security Talent retweetledi
V12
V12@v12sec·
AnyPwn: AnyDesk preauth 0click RCE (heap buffer overflow) we will release PoC post disclosure and patch
English
28
238
1.6K
129.7K
Security Talent retweetledi
Cyber Advising
Cyber Advising@cyber_advising·
CVE-2026-54806: unauthenticated PHP Object Injection vulnerability in the WP Activity Log WordPress plugin (wp-security-audit-log)... PoC github.com/joshuavanderpo…
Cyber Advising tweet media
English
0
14
41
4.7K
Security Talent retweetledi
7h3h4ckv157
7h3h4ckv157@7h3h4ckv157·
A tool to find open S3 buckets in AWS or other cloud providers: - AWS - DigitalOcean - DreamHost - GCP - Linode - Scaleway - Custom Source: github.com/sa7mon/s3scann…
7h3h4ckv157 tweet media
English
4
30
187
8.6K
Security Talent retweetledi
Het Mehta
Het Mehta@hetmehtaa·
Someone made a website that discloses every scam done by a bug bounty program bugbountyscam.com
Het Mehta tweet media
English
37
168
1.3K
67.9K