Ben Sadeghipour
14.9K posts

Ben Sadeghipour
@NahamSec
Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
California Katılım Ocak 2014
1.1K Takip Edilen244.2K Takipçiler
Ben Sadeghipour retweetledi

1 day left before the Bug Bounty Village takes over #BSidesSF.
🛠️ Advanced Workshops with Caido
🚩 A dedicated WEB CTF
🏆 Massive Prize Pools
Your logic vs. our challenges. Are you in?
English

The best trophy I received in my bug bounty career, by far!
Thanks @swisscom_csirt - it always has been pleasure to work with you all - and happy to see my work appreciated and respected!
9 years of hunting it - 10th one coming soon! 🎂
#bugbounty


English

Ben Sadeghipour retweetledi

🚀Visit the Bug Bounty Village: HackingHub x Caido x Bugcrowd at BSidesSF (March 21–22).
Workshops, high-value prizes, and a dedicated Web CTF🚩
#BSidesSF #BugBountyVillage
English

We'll be hosting another Bug Bounty Village at @BSidesSF this year with some hands on labs, live workshops, and CTF with prizes! See you there!

English

Shoutout to @rez0__ for coming on the first episode. May or may not release the next one next week.
English

I'm documenting my journey of learning how to hack LLMs and building with AI so I'm so excited for this week's video: BECOMING AN AI HACKER (Episode 1) 👉🏼 youtu.be/dG6NFXQOmsE

YouTube

English
Ben Sadeghipour retweetledi

This is exactly the kind of content we love to see 🙌 Watching @NahamSec dig into AI hacking recon in real time is a masterclass. Honored that Neo has earned a spot in his pentest toolkit. If you're into AI security, this series is one to follow 👇
Ben Sadeghipour@NahamSec
I'm documenting my journey of learning how to hack LLMs and building with AI so I'm so excited for this week's video: BECOMING AN AI HACKER (Episode 1) 👉🏼 youtu.be/dG6NFXQOmsE
English

Excited to bring Bug Bounty Village back to BSidesSF with @hackinghub_io and @CaidoIO with @Bugcrowd's support! We'll be hosting some live workshops, hands-on challenges, and a CTF!

English
Ben Sadeghipour retweetledi

.@NahamSec teaches me bug bounty basics! He fills me in on the platforms, programs, and how the scope has grown so much now. Ben walked me through threat modeling and had a slick demo of his real-world bugs found with Red Bull and others 😎 Video: youtu.be/lNuvI48ysVo

YouTube

English
Ben Sadeghipour retweetledi

New Hub: Naham CRM 🕶️
This bug was worth $15,000, but the exploit isn't just about a payload. You have to understand the logic of how applications talk to each other, and exactly where that communication breaks.
Watch the full video and get started. 👇
app.hackinghub.io/hubs/nahamcrm
English
Ben Sadeghipour retweetledi

Different teams, diverging maturities. The core app blocked it. The events app didn’t. That gap is where the money was.
Ben Sadeghipour@NahamSec
I found really interesting XSS at a @hacker0x01 LHE that required a few bypasses. Do you think it was worth $15,000? youtu.be/oJM8GxyWs20
English

@NahamSec @Hacker0x01 Crazy how such a simple xss can get you so much congrats 😲
(and your shirt is diabolical)
English

I found really interesting XSS at a @hacker0x01 LHE that required a few bypasses. Do you think it was worth $15,000? youtu.be/oJM8GxyWs20

YouTube

English

I spent three days breaking this PDF renderer on the same target just to be sent the following user agent:
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/145.0.0.0 Safari/537.36 - /
Ben Sadeghipour@NahamSec
I'm one XSS filter bypass away from being able to entirely own this AI chatbot 🫠 but I actually can't bypass this pos.
English

Wave 2 of @GraySwanAI’s Indirect Prompt Injection Challenge goes live today at 1 PM EDT.
New targets, $10K in wave prizes, and every successful break still counts toward the $14K overall pool.
Challenge: hubs.ly/Q043HD1M0
Discord: hubs.ly/Q043HBsh0

English



