Christian Lopez 🦄

2.4K posts

Christian Lopez 🦄 banner
Christian Lopez 🦄

Christian Lopez 🦄

@phr0nak

(in)Security Leader | Bug Bounty Connoisseur | I know things | Director of Triage - Bug Bounty Services at @NCCGroupInfosec // Before: @Synack @EY_Ireland

127.0.0.1 Katılım Aralık 2009
725 Takip Edilen2.3K Takipçiler
Sabitlenmiş Tweet
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
@stokfredrik 1. Infosec is small world. Be nice and humble. You're probably talking to your future employer/employee/colleague. 2. Learn to write reports. 3. Don't let people decide for you to which platforms use. Use all of them and increase your chances of learn.
English
2
3
31
0
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
I'd like to believe there is a story behind the scenes, but checking in 44 seconds if the asset is in scope, it is not a duplicate, it is valid, impactful, and reproducible? If this is automated, I wonder what are the stats for FP and FN...🤔
Roberto Nunes@0x_Akoko

Wow Fast @Bugcrowd Triage Triaged in just 44 Seconds 😂 Thanks for Bugcrowd/ Bugcrowd triage Team

English
0
1
0
556
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
"Success is not final. Failure is not fatal. It is the courage to continue that counts." – Winston Churchill
English
0
2
2
269
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
@monkehack I was in the DMZ and JSA a few years ago. Totally recommend it. I remember seeing tourists groups on the other side and thinking what story their guide was sharing. Also remember when I got to the "blue house" and how I was extra careful to not cross the line 😅
English
1
0
2
228
Ciarán Cotter
Ciarán Cotter@monkehack·
Visiting the Korean DMZ and looking into North Korea was one of the weirdest experiences of my life. This is your reminder to balance work and hacking with living your life and experiencing the world. Onwards to Japan on Wednesday to see my grandma :)
Ciarán Cotter tweet media
English
6
1
32
3.9K
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
I am in London for Black Hat Europe 2023. If you want to meet and have a chat about how @NCCGroupplc can help to fulfill your Bug Bounty needs, DM :) #BHEU
English
0
1
2
446
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
@dcuthbert The screenshot I attached was taken after reading your tweet. You are right do, before it was at this setting by default. But I was able to change it.
English
0
0
1
48
Daniel Cuthbert
Daniel Cuthbert@dcuthbert·
@phr0nak Go in and check, it defaults back to blue only, at least for me
English
1
0
0
222
Daniel Cuthbert
Daniel Cuthbert@dcuthbert·
So either it’s a bug or deliberate but you can’t change the setting
Daniel Cuthbert tweet media
English
10
1
8
5.5K
Christian Lopez 🦄 retweetledi
Douglas Day
Douglas Day@ArchAngelDDay·
100 (very) short bug bounty rules:
English
77
730
1.9K
257.2K
Intigriti
Intigriti@intigriti·
Your grandma asks you what an IDOR is, what do you answer?
English
40
4
99
43.9K
Soroush Dalili
Soroush Dalili@irsdl·
@CoreyD97 Side question, can a triager report bugs in the same programme or it’s forbidden for some time after? I think if a reporter knows that the triager has no interest but also can earn more points/money by accepting an actual issue then they would feel much better.
English
2
0
2
1K
Christian Lopez 🦄
Christian Lopez 🦄@phr0nak·
After so many years there are still people who believe Triagers get commission for rejected reports. ¯\_(ツ)_/¯
English
0
1
1
670