Makimaa

613 posts

Makimaa banner
Makimaa

Makimaa

@v1239root

18 • learning cool things •

Entrou em Ağustos 2025
98 Seguindo183 Seguidores
Tweet fixado
Makimaa
Makimaa@v1239root·
Hello, good morning y'all I've wrote my 1st blog and tried sum up every thing I've understood so far in following topic, in simple way so that non-cyber ppl can also understand chk it out 🤗 and give a feedback. @Nayuu_here/explaining-open-redirect-vulnerabilities-eaf7d5f141e9" target="_blank" rel="nofollow noopener">medium.com/@Nayuu_here/ex…
English
15
1
44
3.1K
Wᴀʟʟꜰʟᴏᴡᴇʀ 🥀
(why am i putting dates wrong? it is 10 April for the quoted post) 11 April 2026 > 1x1100 on cf > took my meds. fuck exams i need them now > got meds for 30 days more ( ◡̀_◡́)ᕤ > 2 questions in atcoder beginner's contest > gonna make an assignment now, and probably gonna do some maths (hopefully) that's all...
Wᴀʟʟꜰʟᴏᴡᴇʀ 🥀 tweet media
Wᴀʟʟꜰʟᴏᴡᴇʀ 🥀@autom8nerd

11 April 2026 Day 07/30 > did nothing. today was hectic (as in a lot of work had to be done. tomorrow will probably be the same) > fucked up an interview (⁠「⁠`⁠・⁠ω⁠・⁠)⁠「 > Thank you God for making me suffer. At least now, I know that you are not what people out there think you are.

English
2
0
8
304
Makimaa retweetou
Mohammed Tawakkal Ahmed
Mohammed Tawakkal Ahmed@Tawakkalah13_10·
JWT JSON Web Token (jwt) is a secure way to send information btw a client and server. it is used in web applications and APIs to verify users and prevent unauthorized accesses when jwt generates tokens its structure is Header ,Payload and signature this is how jwt token works login request the user logs in through the client application by sending their credentials (username & password) to the server.Server Generates JWT If the credentials are correct the server generates a JWT token using a secret key.if the jwt token gets expired token it will returns 401 unauthorized . Then Returns JWT The server sends the JWT back to the client application. Further Requests with JWT For any subsequent requests, the client sends the JWT along with the request. The server verifies the JWT before granting access to protected resources. Security considerations use https prevent man in the middle attacks by transmitting JWTs over https . set expiration time prevent long-lived tokens that can be exploited. and use secure storage to store jwt securely for example Http only cookies instead of local storage Common issues with JWT jwt Rejects the token if the token has expired, the signature is invalid, or the claims do not match the expected details.token does not support required scope the token does not include the permissions needed for the action.JWT Jwt is a secure way to send information btw a client and server. it is used in web applications and APIs to verify users and prevent unauthorized accesses when jwt generates tokens its structure is Header , Payload and signature this is how jwt token works login request the user logs in through the client application by sending their credentials (username & password) to the server.Server Generates JWT If the credentials are correct the server generates a JWT token using a secret key.if the jwt token gets expired token it will returns 401 unauthorized . Then Returns JWT The server sends the JWT back to the client application. Further Requests with JWT For any subsequent requests, the client sends the JWT along with the request. The server verifies the JWT before granting access to protected resources. Security considerations use https prevent man in the middle attacks by transmitting JWTs over https . set expiration time prevent long-lived tokens that can be exploited. and use secure storage to store jwt securely for example Http only cookies instead of local storage Common issues with JWT jwt Rejects the token if the token has expired, the signature is invalid, or the claims do not match the expected details.token does not support required scope the token does not include the permissions needed for the action. Jwt is not Encrypted Like JWT is encoded, not encrypted And anyone can decode payload base64 jwt is stateless servers does NOT store session data Basic question What is a common issue present in it ?
Mohammed Tawakkal Ahmed tweet media
English
15
28
147
4.3K
Makimaa
Makimaa@v1239root·
@Avinash25818689 I don't think there is any ytuber with 0 haters 😭 tho she has good content so can be possible
Makimaa tweet media
English
0
0
2
24
Avinash
Avinash@Avinash25818689·
Name a YouTuber with 0 haters. I'll go first
Avinash tweet media
English
9
0
17
233
Avinash
Avinash@Avinash25818689·
Me : New folder New folder (1) New folder (2) New folder (3) New folder (4)
Avinash tweet media
English
4
1
20
330
Sarah Modi
Sarah Modi@ZarxhNebula·
Another A01 lesson: never trust the client. @PortSwigger lab used a forgeable cookie (Admin=false) to control admin access. Flipped it to true → admin panel unlocked → deleted a user. That’s how easily systems get compromised. portswigger.net/web-security/a…
English
1
0
1
75
Makimaa
Makimaa@v1239root·
oki, Enough touching grass :')) >what i've been doing last month? - staring BB(#bugbounty) with sql injection and BAC vulns. -been working on web security fundamentals(dont wanna be Skid😭) -been doing some CTFs(online) -writing my 2nd blog on really basic yet important topic
Makimaa tweet mediaMakimaa tweet mediaMakimaa tweet media
English
5
0
13
316
Rahul 🥷
Rahul 🥷@therahul4402·
Starting coding today… you can only pick ONE 👇 Python Java C++ JavaScript what are you choosing ?
Rahul 🥷 tweet media
English
292
13
369
17.3K
Segun
Segun@sudosheggs·
@v1239root Well done Makimaa 💪🏽
English
1
0
1
50
Makimaa
Makimaa@v1239root·
@smtwt_ Hehe😋 , why not posting these days?
English
1
0
1
24
Makimaa
Makimaa@v1239root·
@sarvesht25 Yeah definitely you can add 1 or 2 more in list but for starting xss is good
English
1
0
1
17
Shreyas Chavhan
Shreyas Chavhan@shreyas_chavhan·
one more triaged and paid, yayyyy!! 😍 coming back stronger.
Shreyas Chavhan tweet media
English
12
0
188
3.8K