sumgr0

24.8K posts

sumgr0 banner
sumgr0

sumgr0

@sumgr0

Pentester | Bug Bounty Hunter | #hackerone | #intigriti | #bugcrowd @[email protected]

Katılım Mayıs 2009
4.9K Takip Edilen5.4K Takipçiler
sumgr0 retweetledi
sw33tLie
sw33tLie@sw33tLie·
bbscope v2 is out & bbscope.com is live! A free #bugbounty tool to pull scope from HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi. Store it all in PostgreSQL, track changes, query it, pipe it into your tools Thread on what's new👇
sw33tLie tweet mediasw33tLie tweet mediasw33tLie tweet mediasw33tLie tweet media
English
12
82
391
47.4K
Manas
Manas@ManasH4rsh·
We are launching a Hacker House in Noida. If you are in Delhi NCR, feel free to join us. We will have one target and multiple hackers working on it together. It will be a full night of hacking, brainstorming, and sharing ideas. #hacking
English
63
2
214
16.4K
sumgr0 retweetledi
Manas
Manas@ManasH4rsh·
Hi everyone, Fill this form to participate in hacker house. Once we have exact no. Of people who can participate, we will invite 10 of you, in the first of many weekends. forms.gle/GFy11G16dDc3mb…
Manas@ManasH4rsh

We are launching a Hacker House in Noida. If you are in Delhi NCR, feel free to join us. We will have one target and multiple hackers working on it together. It will be a full night of hacking, brainstorming, and sharing ideas. #hacking

English
1
2
8
1.8K
sumgr0
sumgr0@sumgr0·
I’ll be at @seasides_conf from 19-21 February 2026. If you see the Bald and Long Bearded Guy come say Hi 👋 See ya ✌️
English
0
1
6
714
sumgr0 retweetledi
Sunil Yedla
Sunil Yedla@sunilyedla2·
I wasn’t active in Bugbounty since very long time but the amount of love and support the bug bounty community is showing towards the live hacking event is overwhelming ❤️ As I always say stay kind with each other 😇 @BugTroopers #lhe #bugbounty #iitr #bugtrooper #security
Sunil Yedla tweet media
English
0
4
29
1.3K
sumgr0 retweetledi
H4x0r.DZ 🇰🇵
H4x0r.DZ 🇰🇵@h4x0r_dz·
Let’s be clear: @Hacker0x01 is using researchers’ work to train their AI and profit from it without consent. That’s not “innovation” — that’s exploitation. Our reports, our research, our time — turned into their product, while we get nothing. This violates client agreements. Vulnerabilities belong to the companies and the researchers — not HackerOne. Yet they’re monetizing it anyway. Layoffs, shrinking bounties, and now this? The platform is collapsing, and instead of fixing it, they’re squeezing the community that built it. Researchers made HackerOne. Programs trusted HackerOne. And now both are being treated like disposable data sources. If you’re a company, review your contracts immediately. If you’re a researcher, stop feeding them your work. HackerOne isn’t supporting the community anymore it’s exploiting it. And people are finally waking up. Many programs have already shifted to self-hosted , such as Salesforce. #BugBounty
BugBountyHQ@BugBountyHQ

Thread - My own opinion & this is to the Bug Hunters, What @Hacker0x01 is doing re AI, is essentially stealing “our work” “our research” for their own profitability. They are for sure breaking client agreements, wherein a clients data / vulns belong to the client. Not H1!!

English
13
32
232
15.2K
sumgr0 retweetledi
Ben Sadeghipour
Ben Sadeghipour@NahamSec·
n case you missed it, all of the talks from both conferences last year are posted on our website for free. Watch all 20+ talks here 👉🏼 nahamcon.com
Ben Sadeghipour tweet media
English
4
17
159
8K
sumgr0 retweetledi
Nagli
Nagli@galnagli·
I was targeted by a popular X phishing campaign after my @moltbook discovery that tried to steal my account - this time by impersonating a fake @TechCrunch reporter So I used @openclaw to investigate the attackers. Here's what I found 🧵
Nagli tweet media
English
24
31
275
27.2K
sumgr0 retweetledi
Gareth Heyes \u2028
Gareth Heyes \u2028@garethheyes·
Over the weekend I developed a major new feature for Shazzer: Teams! You can now share your vectors between team members and have your own fuzzing network. shazzer.co.uk/blog/shazzer-t…
English
0
2
12
1.5K
sumgr0 retweetledi
Jsmon - jsmon.sh
Jsmon - jsmon.sh@jsmonsh·
Join the webinar on Feb 3, 2026, with Inderjeet Singh, (CEO of JSMON) for an exclusive session on securing modern apps. 📅 : Feb 3, 12:00 PM IST 🔗 Registration: form.typeform.com/to/YbXDBRxJ
Jsmon - jsmon.sh tweet media
English
0
2
6
375
sumgr0 retweetledi
Jsmon - jsmon.sh
Jsmon - jsmon.sh@jsmonsh·
Just dropped a new Jsmon CLI walkthrough (Part 1). Learn how to scan any domain/website for: ✅ Recon & Threat Signals ✅ Leaked Secrets & PII ✅ API paths, URLs, emails, subdomains ✅ Clean, structured output you can act on Watch here: youtu.be/rRjEyXuTYc8
YouTube video
YouTube
English
0
2
7
2K
Toshit bharti
Toshit bharti@Toshusec_·
@sumgr0 First TKO Thanks for planting the idea of subdomain takeovers in bsides ahmedabad hope meet again:)
Toshit bharti tweet media
English
1
0
4
142
sumgr0 retweetledi
Jsmon - jsmon.sh
Jsmon - jsmon.sh@jsmonsh·
New blog from our research team: DOM XSS is not dead. A breakdown of polyglot payloads, real-world exploitation patterns, and what defenders should watch for. blogs.jsmon.sh/dom-xss-is-not…
English
1
7
36
4.8K
sumgr0
sumgr0@sumgr0·
@Toshusec_ Shopify has implemented TXT verification, so it has become an edge case.
English
1
0
0
88
Toshit bharti
Toshit bharti@Toshusec_·
@sumgr0 sir this is still vulnerable? over 20 min now its still loading
Toshit bharti tweet media
English
1
0
3
121