oxship

176 posts

oxship

oxship

@oxxxssh

Locked in

Katılım Temmuz 2023
174 Takip Edilen135 Takipçiler
Fat
Fat@fattselimi·
AI is good when its used by people who understand security basics but it sucks when its in wrong hands people are submitting Informative bugs as Criticals without verifying them
drop@dropn0w

oh god... Triagers I feel your pain.

English
2
5
122
6.4K
oxship
oxship@oxxxssh·
@OriginalSicksec /goal makes it run for hours non stop until it achieves the goal
English
0
0
3
354
SickSec 🇲🇦 🇵🇸
SickSec 🇲🇦 🇵🇸@OriginalSicksec·
How to make codex run longer hacking session ? It seems to stop after 15 to 20 minutes max without trying all I'm instructing it :/
English
10
0
42
10K
Fat
Fat@fattselimi·
@oxxxssh Or you should just make a submission limit for new users until they prove that they are solid and have skills and then revoke the limit
English
2
0
6
331
s0rte
s0rte@_MrPlanB·
@oxxxssh @intigriti congrats man! I'm sure you'll do it to top 100 soon..you're on fire
English
1
0
2
39
Intigriti
Intigriti@intigriti·
⏰ It's CHALLENGE O'CLOCK! 👉 Pop an alert before Monday the 25th of May 👉 Win €400 in SWAG prizes 👉 We'll release a tip for every 100 likes on this tweet Thanks @KulinduKodi for the challenge 👇 challenge-0526.intigriti.io
Intigriti tweet media
English
18
4
108
10.7K
oxship
oxship@oxxxssh·
@CristiVlad25 @intigriti most companies tend to pay the minimum possible so even if the impact was higher, they dont change the cvss
English
1
0
0
79
🇷🇴 cristi
🇷🇴 cristi@CristiVlad25·
the company usually knows better when it comes to the impact. in this case what I thought is medium turned to be higher impact. @intigriti
🇷🇴 cristi tweet media
English
3
0
82
4.2K
Random Robbie
Random Robbie@Random_Robbie·
Woke up.. one dupe and one informative.
English
1
0
12
827
oxship
oxship@oxxxssh·
@intigriti this is a .NET app might need a .aspx web shell i guess
English
0
0
2
225
Intigriti
Intigriti@intigriti·
Common ways to achieve RCE > Insecure file uploads > SQL injections > Insecure deserializations > Server-side prototype pollution > XXEs > Command injections > Server-side template injections Example 👇
Intigriti tweet media
English
7
45
232
10.9K
oxship retweetledi
Ibrahim AH
Ibrahim AH@HouranyIbrahim·
These idiots using AI in #bugbounty without knowing anything about security — they only see their AI slop say "5 RCE confirmed..." then directly submit reports without any verification. Because they don't have the knowledge to verify the results. Please go learn and build real knowledge, or go away, you fools, we've had enough! 😡
English
16
21
171
9.9K
oxship retweetledi
souravpaul
souravpaul@souravpaul_01·
Today my report got marked as duplicate even though I reported the bug first. There was a time when @intigriti triage would take at most 1 week to validate a report. Now you wait months, only to get marked as duplicate even when you were the one who reported it first.
souravpaul tweet media
English
8
2
67
5.2K