Sabitlenmiş Tweet
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳
541 posts

ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳
@sharp488
https://t.co/sfzZkMe9r4 Vai, amico, libero da fardelli e paure ☘️☘️☘️ ETHiCaL HaCKeR 🕵🏻♂️ BuG BouNtY HuNTeR🐞 GaMeR 🎮 PuN LoVeR 👻
Nerul, Navi Mumbai Katılım Mayıs 2013
315 Takip Edilen337 Takipçiler
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

WAF Bypass Cheat Sheet
Cloudflare, Akamai, AWS WAF, ModSecurity, Imperva, F5 BIG-IP, Sucuri, Wordfence, Azure WAF, FortiWeb, Barracuda
Detection tips + XSS, SQLi, RCE, SSRF and Path Traversal bypasses for each one
Full database with 150+ payloads inside Bug Bounty Center → bugbountycenter.com
Try it free for 30 days
#BugBounty #BugBountyTips #WAF #WebSec #AppSec #Cybersecurity

English

ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

🚨403 Bypass Payloads ⚙️
#CyberSecurity #403Bypass #BugBounty #EthicalHacking #Infosec #Professor #the #hunter

English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

Got the first bounty for 2026 where I make AI editor to execute the XSS which in turn lead to full access by elevating the privileges.
#BugBounty @Hacker0x01

English

@_jensec Thanks for sharing...this should be a real game changer ✌️
English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

Sharing my Burp Extension that earned me $200k in 2025 while API testing heavy JS-rich targets.
github.com/jenish-sojitra…
The tool helps find endpoints, files, internal emails, and some secrets from minified JS.
Its goal is to achieve maximum efficiency with reduced noise in results. Contributions and feedbacks are welcome.

English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

Most JWT vulnerabilities go unnoticed as they're notoriously tricky to test for 😬
Yet, when present, they can allow for account takeovers, SQL injections and in-app privilege escalations 🤠
In our latest article, we break down every common JWT attack vector with practical exploitation techniques to help you find more JWT vulnerabilities.
Read the article today! 👇
intigriti.com/researchers/bl…

English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

JShunter
JShunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for developers, bug bounty and security researchers.
github.com/cc1a2b/JShunter

English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

When we decompile an APK and see an unreadable index.android.bundle, it could be Hermes bytecode. Using github.com/P1sec/hermes-d… we can make it readable and look for interesting endpoints, keys, or app flows.
#bugbounty
English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

Woa, this #BugBountyTip from @hakluke works surprisingly well! Someone please automate this 🙏 #BugBountyTips

English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

1000$ 𝘣𝘶𝘨 𝘣𝘰𝘶𝘯𝘵𝘺 2𝘍𝘈 𝘣𝘺𝘱𝘢𝘴𝘴 𝘷𝘪𝘢 𝘉𝘢𝘴𝘪𝘤 𝘈𝘶𝘵𝘩𝘦𝘯𝘵𝘪𝘤𝘢𝘵𝘪𝘰𝘯
𝘞𝘳𝘪𝘵𝘦-𝘶𝘱 𝘭𝘪𝘯𝘬:
@sharp488/2fa-bypass-via-basic-authentication-on-private-bug-bounty-program-93bb457cd065" target="_blank" rel="nofollow noopener">medium.com/@sharp488/2fa-…
𝘝𝘪𝘥𝘦𝘰 𝘗𝘖𝘊 𝘭𝘪𝘯𝘬:
youtu.be/ZDEUmR0FEsg?fe…

YouTube
English

1000$ 𝘉𝘶𝘨 𝘉𝘰𝘶𝘯𝘵𝘺 2𝘍𝘈 𝘣𝘺𝘱𝘢𝘴𝘴 𝘥𝘶𝘦 𝘵𝘰 𝘊𝘚𝘙𝘍 𝘮𝘪𝘴𝘤𝘰𝘯𝘧𝘪𝘨𝘶𝘳𝘢𝘵𝘪𝘰𝘯
𝘞𝘳𝘪𝘵𝘦-𝘶𝘱 𝘭𝘪𝘯𝘬:
@sharp488/2fa-bypass-on-private-bug-bounty-program-due-to-csrf-token-misconfiguration-5a9c82151a1" target="_blank" rel="nofollow noopener">medium.com/@sharp488/2fa-…
𝘝𝘪𝘥𝘦𝘰 𝘗𝘖𝘊 𝘭𝘪𝘯𝘬:
youtube.com/watch?v=NJyN7Y…

YouTube
English

@0_0eth0 Ek payment bypass report aur race condition report pe mila mujhe recently.
English
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi
ѕнαяαт кαιкσℓαмтнυяυтнιℓ 🇮🇳 retweetledi

@Bugcrowd Sometimes this noises led for P1s
such as some calls happening to 3rd party’s , secrets / tokens in js files on other domains affect directly on the scope target as well
English






