Sabitlenmiş Tweet
Olajeedae Jr 🇳🇬
6.3K posts

Olajeedae Jr 🇳🇬
@r007User
Web App Hacking (Preferably) | RED TEAMER 🟥 | Cybersecurity YouTuber | r007 https://t.co/7EOgqWKq7X
0.0.0.0 Katılım Haziran 2013
897 Takip Edilen1.4K Takipçiler

@akintunero AD is an on-premises, server based identity system, while Entra ID is a cloud-native, Identity-as-a-Service (IDaaS) platform.
English
Olajeedae Jr 🇳🇬 retweetledi

This is where I draw the line for me.
X Freeze@XFreeze
You can upload up to 100 files (Images, PDFs, or documents) - directly into Grok Whether it’s tax documents, medical records, confidential files, contracts, or office projects, Grok helps you analyze everything in seconds Grok can break down complex information, summarize key points, and even identify hidden loopholes inside contracts Work smarter. Let Grok handle the heavy lifting
English

@nvm_hermes1 Hopefully this might help you
@instatunnel/insecure-direct-object-references-idor-the-1-billion-authorization-bug-cfc342ba428a" target="_blank" rel="nofollow noopener">medium.com/@instatunnel/i…
There are also more on YouTube from Nahamsec and others
English

@S_pentest Thanx man hopefully it does not end up as duplicate
English
Olajeedae Jr 🇳🇬 retweetledi

Exciting news: we have teamed up with @intigriti
Bug hunters can now earn a FREE 6-month Burp Suite Professional license by hitting 400 reputation points on Intigriti.
More power. Deeper testing. Bigger impact.
Happy hunting 🐝
#BugBounty #Intigriti #BurpSuite

English
Olajeedae Jr 🇳🇬 retweetledi

Common mistakes to avoid when using AI for vulnerability reports! 🧐
❌ Letting AI write lengthy paragraphs (triagers need concise reports)
❌ Including untested PoCs (always verify your payload works)
❌ Copy-pasting AI reproduction steps (they lack target context)
❌ Following AI suggestions that violate platform rules (e.g. uploading PoC videos to YT without consent)
❌ Including speculative attack vectors without proof
❌ Using AI to respond to triage feedback requests
More in next post! 👇

English

Report just passed preliminary review on HackerOne.

Olajeedae Jr 🇳🇬@r007User
Opened my HackerOne account in 2023, haven't hunted on the platform since then. Took a long break. Back now. Now we wait.
English

No algorithms= parameter. The library doesn't know what algorithm to enforce so it accepts anything the token claims.
Olajeedae Jr 🇳🇬@r007User
What's wrong with this code?
English

@Oluwakomiyo_ I can’t give tips on it yet. Waiting for the report process to finish on HackerOne.
English

@_jensec It also depends on what u able to do with the hours.
English

@r007User If it works
It a sign for me
Keep me posted boss
English
Olajeedae Jr 🇳🇬 retweetledi

I'm sure some people already have their own way of doing things, but I figured I'd share a Claude Code / general vibe-coding tip for people that I've found super useful.
I don't think it's a secret that you should be getting an LLM to write your main instruction file (CLAUDE.md or equivalent).
However, I've had really good results by telling the LLM to create this plan document, giving it a brief description of the thing I want to build, and including the following:
> Reminder: I want a plan as the output here, not the code.
> IMPORTANT: I want you to ask me questions now about any details, edge cases, features, etc. so that I can better instruct you. Keep asking me questions and DO NOT start writing the plan until I have explicitly told you I think you have enough information.
(> included here for clarity). The reminder I've found useful because sometimes the LLM will go off and try to be too helpful, actually starting to write the code for you.
The final line is key though. A good LLM will keep asking better and better questions, often giving you options to choose from. Iteratively refining the prompt until you have more information than you would have given it on your own.
English
Olajeedae Jr 🇳🇬 retweetledi

If you’re looking to take the OSCP exam anytime soon this repos will help you a lot
oscpdb.vercel.app

English













