Sabitlenmiล Tweet
๐ดโ๐๐๐ ๐บ๐๐๐๐
649 posts

๐ดโ๐๐๐ ๐บ๐๐๐๐
@algamil7x
bug bounty hunter โ
Ismailia Katฤฑlฤฑm Aฤustos 2017
427 Takip Edilen4.6K Takipรงiler

I'm about to release an open source recon tool on GitHub.
Try to get the most URLs out of its testbed with your recon methods (in the shortest time possible) and let me know in the comments!
recon.brutelogic.net
English

@M7moudx22 ุงุจุนุชูู ูุจูู ููุนุจ ุณูุง ุงูููุฒุฑ ุจุชุงุนู ๐
algamil7x
ุงูุนุฑุจูุฉ

@19whoami19 @Hacker0x01 ู
ุจุงุฑู ูุงุฎููุง โฅ๏ธโฅ๏ธ
ุงูุนุฑุจูุฉ

Thanks Bugbounty !
And special thanks to @Hacker0x01 for being a main part in my journey โค๏ธโค๏ธ

English
๐ดโ๐๐๐ ๐บ๐๐๐๐ retweetledi

@Alex_Gabriel0 @LinkedInHelp Thank you, I will contact him.
English

Hey @LinkedInHelp , my account has been restricted for over 6 months. I'm certain I didn't intentionally violate any policies.I've reached out here before but received no response. Also, the help center keeps giving me an error when I try to open a ticket.
English

@LinkedInHelp @LinkedIn Please, I need a manual review as this is essential for my
English

@sl4x0 ุนุงุด ูุฎููุง ุฑุจู ูุฒูุฏู โฅ๏ธ
ุงูุนุฑุจูุฉ

Me and a friend just landed a bounty for an RCE using a technique I addict it earlier and have kept refining ever since. Grateful for the results. Alhamdulillah.
More here:
sl4x0.xyz/turning-dependโฆ or sl4x0.medium.com/turning-dependโฆ

English

Who Knows this fuck guy? , he are stiling my content on my private channel
#bugbounty
English

@Al3zzat ุงุฒุงู ูุนูู ุญู
ุงู
ุงูุณุจุงุญู ู
ููููุด ุชุฏูุฆู ุ!
ุงูุนุฑุจูุฉ

@AHMEDMELEGY_ ุทูุจ ูุงุฒู
ุชูุถุญ ุงู ุงุฐูู ุงูุฎุฒุงูู ูุงูุดูุงุฏุงุช ูุงูุญุงุฌุงุช ุฏู ุงููู ุฎุงุตู ุจุงูุจููู ูุงููู ุจุชุฏู ูุณุจ ุซุงุจุชู ุฏู ุญุฑุงู
ุงูุนุฑุจูุฉ

ู ุทุจุนุงู ููู ุฌูุง ุตูุงุฏูู ุนูู ุญุณุจ ู
ุณุชูู ุงูู
ุฎุงุทุฑุฉ ูู
ุซูุง ููู ุตูุงุฏูู ุจุชุณุชุซู
ุฑ ูู ุงุฐูู ุงูุฎุฒุงูุฉ ู ุงูู
ุฎุงุทุฑุฉ ูููุง ููููุฉ ุฌุฏุง ู ููู ุตูุงุฏูู ุชุงูู ูุชูุงูู ุงู ุงูู
ุฎุงุทุฑุฉ ูููุง ุงุนูู ุจุณ ูุตุงุฏ ูุฏู ู
ู
ูู ุชุงุฎุฏ ุฑุจุญ ุงุนูู ุจูุชูุฑ ู ู
ู
ูู ุชุฎุณุฑ ูุฐูู.
ูข
ุงูุนุฑุจูุฉ

ูุตูุญุฉ
ูู
ุง ุชุญูู ูุซุงูุฏุฑ ุงุนู
ู ุญุณุงุจ ู
ุตุงุฑูู ุงูุฏุงุน ู ุณุญุจ ุงููููุณ ุ ูู
ุชุญููุด ู
ุจุงูุบ ููููุฉ ูุฃู ูุฏู ุงูุช ู
ุญุชุงุฌ ุงูุณูู
ุงูุงูู ูุนูุถ ู
ุตุงุฑูู ุฏุฎููู ู ุฎุฑูุฌู ู
ูู ู ุจุนุฏูู ุชุจุฏุฃ ุชูุณุจ.
ูู ูุชุฑุฉ ูู
ุง ูููู ู
ุนุงู ู
ุจูุบ ูููุณ ูกู ู ู ุงู ุงูุชุฑ ู
ู
ูู ุชุญุทูู
ูู ุงูุจุฑูุงู
ุฌ ู ุดูู ุณูู
ุงู ุตูุฏูู ู
ูุงุณุจ ูุฃุญุชูุงุฌู.
ูก
ุงูุนุฑุจูุฉ

@SirBagoza ููุง ุจุงูุนูุฏู ูุนู
โฅ๏ธ
ุงูุนุฑุจูุฉ

@AshrafBasyoni4 ู
ุงุดุงุกุงููู ุฑุจู ูุฒูุฏู ูุง ุงุดุฑู โฅ๏ธ
ุงูุนุฑุจูุฉ

ุงูุญู
ุฏ ููู
Tip: If the application allows users to generate personal API keys, create a key, remove the user from the org, then try using that key again, you might find it still works and gives you full control over the organization.
#InfoSec
#bugbountytips
#BugBounty

English

{ููุฑูุญูููู ุจูู
ูุง ุขุชูุงููู
ู ุงูููููู ู
ููู ููุถููููู}
ุงูููู
ูู ุงูุญู
ุฏ ุงูุฌุงุฒ ุฌุฏูุฏย ูุถุงู ูู ู
ุณูุฑุชู ุงูู
ูููุฉ ูุฏุฑุช ุงูุชุดู ุซุบุฑุฉ ุนูู ููุงูุฉ ุงููุถุงุก ุงูุงู
ุฑูููุฉ ูุงุณุง ูุจูุถู ุงููู ุชู
ูุจูู ุงูุซุบุฑุฉ ูู
ุนุงูุฌุชูุง
ุงูุญู
ุฏููู ุฏุงุฆู
ุง ูุงุจุฏุงโจ

ุงูุนุฑุจูุฉ

@AshrafBasyoni4 ู
ุงุดุงุกุงููู ูุง ุงุดุฑู ุฑุจู ูุฒูุฏู โฅ๏ธ
ุงูุนุฑุจูุฉ

ุงูุญู
ุฏ ููู
The application only checks whether an email exists during account creation, not on account modification.
Inside my org, thereโs an option to add users, when I try to add an existing email, it correctly says โuser already existsโ and blocks it.
But when I add a new user with a non-existing email, it gets created normally and I have full access, I can change the name, email, and password.
Then I tried to change that email to one that already exists, and the system didnโt perform any check, allowing me to link it to the victimโs account and take full control
#InfoSec
#BugBounty
#infosecurity

English

@theXSSrat @grok I would be happy if I was chosen๐ฅฐโ๏ธ
English

@grok In 48 hours from now, pick 3 random people in my comments to win my endless bundle/ 900 - Hacker's toolkit. They must have liked and shared the post and left a comment.
thexssrat.podia.com/full-house-bunโฆ
English

@19whoami19 @Bugcrowd ุงูู ู
ุจุฑูู ูุฎููุง ุฑุจูุง ููุฑู
ู โค๏ธ
ุงูุนุฑุจูุฉ








