mridul
85 posts


My FIRST bug bounty writeup is live! 🚀
Found a NoSQLi of @usetraceix that turned a simple hash lookup into a full database dump on a threat intel platform. No auth needed!
Read the PoC here 👇 [@mridulsec/pwning-a-threat-intel-platform-uncovering-a-critical-nosql-injection-in-traceix-a51c075a6e02" target="_blank" rel="nofollow noopener">medium.com/@mridulsec/pwn…]
#bugbounty #infosec #bugbountytips
English
mridul retweetledi

HackerOne Reports Collection — Real Bug Bounty Cases 📊🔥
Curated dataset of top HackerOne reports:
• Top Reports
Top 100 upvoted + paid reports
• By Vulnerability Type
XSS, SQLi, SSRF, RCE, IDOR, XXE, CSRF
Race Condition, Subdomain Takeover, OAuth, SSTI, Request Smuggling
• By Program
Reports from Shopify, GitLab, Uber, Slack, Coinbase, TikTok
Use this to study real exploits and patterns.
🔗 github.com/reddelexc/hack…
#BugBounty #Pentesting #CyberSecurity #Infosec #AppSec


English
mridul retweetledi

GitHub repos with reports/writeups for bug bounty hunters:
1. HackerOne Reports github.com/reddelexc/hack…
2. Google VRP Writeups github.com/xdavidhu/aweso…
3. Facebook Bug Bounty Writeups github.com/jaiswalakshans…
4. Awesome Bugbounty Writeups github.com/devanshbatham/…
5. Daily Bugbounty Writeups github.com/securitycipher…
#BugBounty #BugBountyTips #Infosec #EthicalHacking #CyberSecurity
English

@BRuteLogic I’d love to be selected as a beta tester for BRUTE ONE 🚀
I’m genuinely interested in exploring the full capabilities of the tool and providing consistent, detailed feedback. I’ll actively use it, follow all instructions, and share regular screenshots as required.
English
mridul retweetledi

Would you like to use BRUTE ONE for free in its FULL VERSION?
We are selecting beta testers.
You will need to share regular screenshots of your usage according to our instructions.
RT and let us know in the comments why we should choose YOU.
Good luck.
brutelogic.net
English

@BugBunny_ai This looks super interesting 👀 Already shared with my network—excited to explore BugBunny if I get the chance 🐰
English

Wanna get a free BugBunny trial?
Share our below initiative as best as you can, and a bunny may hop into your DMs 🐰
giveth.io/project/bugbun…
English
mridul retweetledi

🤖 AI pentesting tool built on decentralized swarm intelligence
• No fixed pipeline
• Shared blackboard memory
• nmap, nuclei, subfinder integration
• Cloud + local LLM support
github.com/Armur-Ai/Pente…
#AI #Pentesting #AppSec
GIF
English

@zack0x01_ Can we take 3 days trail and cancel subscription any time before 149$
English
mridul retweetledi

Every JWT writeup online covers 2–3 attacks and stops.
I got tired of jumping between 40 blog posts, so I wrote the whole thing. All in one place.
rmrf.tips/en
#infosec #appsec #bugbounty #websec #jwt

English
mridul retweetledi

🛡️ The Largest Open-Source Cybersecurity Skills Library for AI Agents
754+ skills • 26 domains • 5 framework mappings
• MITRE ATT&CK + ATLAS + D3FEND + NIST CSF + AI RMF
• DFIR, Red Team, Threat Hunting, Cloud, Malware
• Real workflows — not summaries
• Plug into Claude, Copilot, Codex, Cursor
🔗 github.com/mukul975/Anthr…
#AISecurity #CyberSecurity #RedTeam #Pentesting
English
mridul retweetledi

🚀 AutoAR = Full Bug Bounty Automation
Recon → Scan → Exploit → Report (automated)
• Subdomains (15+ sources)
• Nuclei + CVE scan
• JS secrets + GitHub leaks
• DNS takeover + misconfigs
• AI agent (FREE)
• Results → Cloudflare R2
Stop manual recon.
github.com/h0tak88r/AutoAR
#BugBounty #CyberSecurity #Automation #Recon #InfoSec
English
mridul retweetledi

🔥 Ultimate Bug Bounty Goldmine — 1000+ Real Writeups
XSS, CSRF, SSRF, IDOR, SQLi, RCE… everything in one place.
Real reports from Google, Facebook, PayPal, Microsoft & more.
Perfect for learning real-world exploitation, not just theory.
GitHub: github.com/devanshbatham/…
#BugBounty #CyberSecurity #EthicalHacking #InfoSec #Pentesting #OSINT
English
mridul retweetledi

If you're using Nuclei but not leveraging community templates, you're leaving bugs on the table 👀
The Nuclei-Templates-Collection is a curated hub of custom templates to supercharge your scans, from CVEs to real-world bug bounty cases.
More templates = more coverage = more findings 🔥
🔗 github.com/emadshanab/Nuc…
#BugBounty #Nuclei #Infosec #AppSec #CyberSecurity
English
mridul retweetledi

🚨 GIVEAWAY: 50,000 AI TOKENS 🚨
ObsidianLabs: The #Uncensored AI for #Cyber #Security & #BugBounty. 🔓🕷️
We're giving 50k tokens lucky winners! 🪙
To Enter:
1️⃣ Like & RT ❤️
🔄 2️⃣ Reply "Unleash the AI" 👇
🔗 obsidianlabs.cloud
#ObsidianLabs

English

@VanshGupta97362 @hackerspider1 Bro can you please dm me i am unable to dm you
English

Finally got a Critical one 🙂
Learned a lot while working through this one 🙌
Shoutout to @hackerspider1
#bughunters #hackerone

English






