what_web
323 posts

what_web
@jae_hak99
@Hacker0x01 @Bugbounty @Web
Republic Korea Katılım Mart 2020
99 Takip Edilen3.2K Takipçiler

I recently found out about a platform called #hackthebox. This platform provides a learning space and information to learn various knowledge such as cybersecurity, web, network, AI, etc.
I think it would be very useful for researchers who want to learn more about information security. The content is so vast that this platform seems much better than other educational platforms. #bugbounty
English

I have 15 reports Pending program review. :) I hope the final result comes out soon 😃😃
@Hacker0x01 #bugbounty

English

When a token, key, etc. is found in a sensitive repository, we have developed a tool that tests whether the token or key is actually valid and if so, accessible, and automatically lists only the valid values in a .html file.
Now you don't have to manually test whether tokens and API keys found in your organization's repository are actually valid.
How it works is that we fully automate the validation by connecting to a separate Proof of Concept (PoC) built for each token to check whether the API function is actually accessible in the repository (e.g. GitHub, Slack, multiple DBs). It detects whether the token is actually accessible in your organization. Validated tokens output a live token in a .html file.

English

I've been busy for a while. So I took a long break for 3-4 years. I recently started the #Hacker0x01 bug bounty activity again in May, and I found 20 vulnerabilities in the BBP program All are under evaluation and review, and some are already being fixed.
Hope it goes well :)

English









