nick

34 posts

nick banner
nick

nick

@nickresponsefor

hehe Katılım Ocak 2018
61 Takip Edilen22 Takipçiler
nick retweetledi
Coinfessions
Coinfessions@coinfessions·
I submitted a critical and imminent vulnerability report to a BSC project that exposed $400 million TVL to theft and was being actively exploited. The CEO promised a bug bounty if I shared the the team. I did. They confirmed it. CEO ghosted me for months and has refused to pay.
English
79
23
1K
172.1K
nick retweetledi
Dmitriy Shagov
Dmitriy Shagov@dmi3sh·
Hilarious bug bounty story. Reported an RCE to one of the @immunefi programs. Their scope was hxxps://app.com. When loaded, their app sent requests to hxxps://api.app.finance. And by modifying one of these requests i gained RCE.
English
13
23
156
0
nick
nick@nickresponsefor·
@HusseiN98D Hope u will brigther soon!
English
0
0
2
0
Hussein Daher
Hussein Daher@HusseiN98D·
I've been taking some time OFF due to COVID - variant where you feel the pain, then felt good after 2 weeks, then again felt bad after 2 days of recovering. Kind of endless loop. Doing better now, thanks for the messages. Take care and keep shining there ❤️
English
11
0
96
0
nick retweetledi
xnwup
xnwup@xnwup·
Hackerone might be the only company that decided to not pay citizens of Belarus/Russia what they owed them prior to invasion of Ukraine. They won't send $25k that I earned in 2021. They say sanctions are the reason, but actually the reasons are not legal, but... ideological. 1/
xnwup tweet media
English
2
7
34
0
nick retweetledi
Immunefi
Immunefi@immunefi·
New research out on DOS attacks in the blockchain ecosystem! The authors provide lots of examples of DOS attacks against 10 blockchain entities. Definitely worth a read for #immunefischool! arxiv.org/pdf/2205.13322…
English
1
6
31
0
nick
nick@nickresponsefor·
@Jhaddix Harry Potter and methods of rationality. It's easy and enthralling fanfic which contain a lot of physic's methodology stuff.
English
0
0
0
0
JS0N Haddix
JS0N Haddix@Jhaddix·
Can someone recommend an easy (but good) sci-fi or fantasy read? Helps me de-stress 🤓
English
68
4
103
0
nick
nick@nickresponsefor·
@NahamSec Try Harry Potter and methods of rationality
English
0
0
0
0
Ben Sadeghipour
Ben Sadeghipour@NahamSec·
Almost done with “The Power of Now”. What should I read next?
English
40
7
114
0
nick
nick@nickresponsefor·
@h4x0r_dz yo, somebody succes is not your failure, especially if it's fake
English
0
0
1
0
H4x0r.DZ 🇰🇵
H4x0r.DZ 🇰🇵@h4x0r_dz·
Why everyone is successful at LinkedIn ? every single day when I open "LinkedIn " I see everyone showing off their success ?. This makes me depressed
English
56
16
189
0
nick
nick@nickresponsefor·
@equat0rium @Hacker0x01 Yo, honestly is realy impressive that u only focus on Epic Games for few month or even more, congratz man
English
0
0
1
0
nick
nick@nickresponsefor·
@stokfredrik I find it when u have 1.7k subs, Congratz man
English
1
0
1
0
STÖK ✌️
STÖK ✌️@stokfredrik·
Do you stop and celebrate milestones, or do you keep pushing towards what’s next?
STÖK ✌️ tweet media
English
56
10
526
0
nick
nick@nickresponsefor·
@stokfredrik @TomNomNom It would be great if u ask permission from apps like h1 or smth and do step by step understanding of how it works. Just kinda course about what u pay attention for and kinda scenariors might be here with that stuff
English
2
0
1
0
STÖK ✌️
STÖK ✌️@stokfredrik·
Speaking of courses, what if I managed to convince @TomNomNom to teach a course together with me (I mean Tom’s voice and teaching skills is to die for) On what subject would you like us to educate you on? And would you be willing to pay for said course? Asking for a friend,
English
17
2
66
0
nick
nick@nickresponsefor·
@stokfredrik @TomNomNom actualy intesting how guys like @TomNomNom do these things. It might contain a sections like 'js static analasys', 'requests analysis' etc
English
0
0
1
0
nick
nick@nickresponsefor·
@Masonhck3571 i've found xss on literaly same kinda place few weeks ago and sec. team told that they need working atack vector. It's hard sometimes to proof any impact on these circumstences if u playing around black box. So, report was closed as "informative".
English
0
0
3
0
Masonhck357
Masonhck357@Masonhck3571·
Thoughts? If I find an XSS on an authentication portal(unauthenticated) and even though I am unable to get authentication, I can prove(via JS file) that the web app stores Auth token or session cookie in Localstorage, Would that be enough to consider a higher severity?
English
8
1
26
0
nick
nick@nickresponsefor·
@h4x0r_dz so, it might be a good point for smth u realy wanna do
English
0
0
1
0
nick
nick@nickresponsefor·
@h4x0r_dz just go outside and take a walk, don't think about motivation and productivity. Just focus on what you see and feel in the moment. You can go somewhere and have tea or coffee. Usually such walks help to free ur mind from negativity and unpleasant thoughts.
English
1
0
3
0