Hussein Daher

3.1K posts

Hussein Daher banner
Hussein Daher

Hussein Daher

@HusseiN98D

Entrepreneur, Hacker 🇱🇧🇨🇮 @WebImmunify 21th/270000 BugCrowd Hacking Platform

Liban Katılım Mart 2014
197 Takip Edilen50.3K Takipçiler
Hussein Daher
Hussein Daher@HusseiN98D·
Rule number 1 in Bug Bounty is only hack targets you enjoy hacking
English
6
12
241
7.4K
Hussein Daher
Hussein Daher@HusseiN98D·
Anyone has a contact at Apple Security? Bug bounty related
English
1
1
16
4.4K
Hussein Daher
Hussein Daher@HusseiN98D·
Long story short - triagers should ask when they can't reproduce instead of arbitrary closing reports. This impacts every of us and if I didn't have direct contact with the team this would eventually get buried.
Hussein Daher tweet media
English
10
0
123
9.3K
Godfather Orwa 🇯🇴
Godfather Orwa 🇯🇴@GodfatherOrwa·
@HusseiN98D All the time I keep saying, if the triager can’t reproduce/ or not understand the bug, just create a blocker for the client Don’t triaged , and for sure done closed
English
2
1
20
2.1K
Hussein Daher
Hussein Daher@HusseiN98D·
@Hogarth45_ Yup, I'm also top 1 on this specific program - otherwise I wouldn't mind
English
0
0
2
322
Jess
Jess@Hogarth45_·
@HusseiN98D You can have a positive 10 year history with a platform and triagers will still treat you like you're trying to BS them and sneak a payday.
English
1
0
3
336
Hussein Daher
Hussein Daher@HusseiN98D·
X algorithm is becoming garbage. All I see is politics. Same there ?
English
9
0
25
4.7K
Hussein Daher
Hussein Daher@HusseiN98D·
Wishing everyone a happy new year filled with love, good health, growth, and moments worth remembering. 🎆
English
0
0
20
2.2K
Hussein Daher
Hussein Daher@HusseiN98D·
We're looking to connect with individuals or companies who have deep expertise in ransomware data recovery and decryption. If you specialize in decryptors, post-incident recovery, reverse engineering ransomware, or large-scale data restoration, we'd like to talk. DMs open or reply below.
English
2
1
19
3.4K
Hussein Daher
Hussein Daher@HusseiN98D·
when filename="xx" was used, the WAF was not looking inside the value. so "_response": and others were not blocked.
English
1
0
5
1.7K
Hussein Daher
Hussein Daher@HusseiN98D·
For ref, I was playing with adding filename="xx" to the params - returns 403 now vs 500 before. GL
Hussein Daher tweet mediaHussein Daher tweet media
English
1
0
9
1.9K
Hussein Daher
Hussein Daher@HusseiN98D·
@cramforce That's cool, but it seems like you are patching "close payloads" from our tests? I was working on something which was working and the same request now returns 403.
English
0
0
2
599
Malte Ubl
Malte Ubl@cramforce·
Vercel has stopped allowing new deployments of next.js applications vulnerable to CVE-2025-66478. If you have not upgraded, the time to do so is now. Exploits are in the wild and WAF rules are not sufficient indefinitely vercel.com/changelog/new-…
English
14
19
267
67.7K
Hussein Daher
Hussein Daher@HusseiN98D·
AI finds vuln --> AI fixes vuln It's an AI vs AI war now.
English
9
1
73
7.8K
Hussein Daher
Hussein Daher@HusseiN98D·
hey @Burp_Suite , is there any way to reset burp collab? I keep getting tons of these spam
Hussein Daher tweet media
English
3
0
34
6.9K
Hussein Daher
Hussein Daher@HusseiN98D·
Love is sharing potential vulnerabilities notes
English
2
4
76
7.2K