I¯\_(ツ)_/¯I \ (•◡•) /

1.5K posts

I¯\_(ツ)_/¯I \ (•◡•) / banner
I¯\_(ツ)_/¯I \ (•◡•) /

I¯\_(ツ)_/¯I \ (•◡•) /

@BountyOverflow

BBH ( ͡° ͜ʖ ͡°) 💰 @Bugcrowd Top 50 \o/ ✌️ MVP✌️ I am here to learn/share application security stuff ✌️ I enjoy finding auth bypass bugs 🐞

🌎 Earth 🌎 เข้าร่วม Aralık 2010
1K กำลังติดตาม6.6K ผู้ติดตาม
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
Th3g3nt3lman
Th3g3nt3lman@Th3G3nt3lman·
Been following @damian_89_ work for years, used his EASM product for bug bounty and it was one of the best out there. Now he just dropped ArgosDNS focused on subdomain intelligence, exactly what the recon space needed. The data quality is crazy, do yourself a favor and check it.
Damian Strobel@damian_89_

Hey guys, I just launched argosdns.io - if you are into IT security, bug bounty hunting, red teaming, ... this is interesting for you! argosdns.io

English
0
2
10
2.5K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
KNOXSS
KNOXSS@KN0X55·
Why to use a simple #XSS vector like this 🤔 <img src=x onerror=alert(1)> when you can use a much better one? 🤩 1'//"</Script><Img/Src%0AOnError=alert(1)// The vector above pops in HTML and JS scenarios for single and double quotes! 🤯 Try it here: x55.is/brutelogic/xss…
English
0
11
54
2.6K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
Rhino Security Labs
Rhino Security Labs@RhinoSecurity·
New Rhino Blog Post: CVE-2025-0693: AWS IAM User Enumeration bit.ly/3QcEpnx
English
0
10
23
1.5K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
evan j
evan j@ejcx_·
blog.cloudflare.com/resolving-a-mu… I don’t work there anymore but it’s truly so sick seeing this level of weird bug being patched so fast Hell yeah
English
1
4
48
10K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
Kévin GERVOT (Mizu)
Kévin GERVOT (Mizu)@kevin_mizu·
Thanks to the recent @PortSwigger top 10, I finally found the motivation to finish writing the 2nd article about DOMPurify security! 😁 Before releasing it, I would like to share a small challenge 🚩 Challenge link 👇 challenges.mizu.re/xss_04.html 1/2
Kévin GERVOT (Mizu) tweet media
English
1
15
146
12K
I¯\_(ツ)_/¯I \ (•◡•) /
I¯\_(ツ)_/¯I \ (•◡•) /@BountyOverflow·
After a 4-month break, I’m backon @Bugcrowd ! Life kept me busy with something truly special—welcoming my adorable daughter into the world. 🍼💕 Feeling so blessed! 🥰
I¯\_(ツ)_/¯I \ (•◡•) / tweet media
English
10
1
160
6.6K
Deepak bug_vs_me
Deepak bug_vs_me@bug_vs_me·
Back to bug hunting after a long time. 💪 Let's bounce back!
English
18
1
117
9.6K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
ramsexy
ramsexy@plmaltais·
I was facing a very strict WAF while trying to exploit a XSS : no gt/lt signs, no parentheses, no double quotes, no backticks. I was injecting inside an html tag. Turns out the solution was very simple (and not well documented): <img src=x onerror=alert&#40document.domain&#41>
ramsexy tweet media
English
9
37
411
32.8K
I¯\_(ツ)_/¯I \ (•◡•) / รีทวีตแล้ว
Hunter
Hunter@HunterMapping·
🚨Alert🚨CVE-2024-30103: Microsoft Outlook Remote Code Execution Vulnerability ⚠This Microsoft Outlook vulnerability can be circulated from user to user and doesn’t require a click to execute. Rather, execution initiates when an affected email is opened.This is notably dangerous for accounts using Microsoft Outlook’s auto-open email feature. 📰Refer: blog.morphisec.com/cve-2024-30103… #Outlook #Microsoft #hunterhow #infosec #infosecurity #Infosys #Vulnerability
Hunter tweet media
English
6
174
408
59.5K
I¯\_(ツ)_/¯I \ (•◡•) /
I¯\_(ツ)_/¯I \ (•◡•) /@BountyOverflow·
@Burp_Suite Sadly I dont see any improvement despite your focus on performance, from the last 6 months, I already sent information many times in the past!
English
0
0
1
162
Burp Suite
Burp Suite@Burp_Suite·
@BountyOverflow Please drop us an email at support@portswigger.net - we have a heavy focus on performance issues, so getting to the bottom of this would be very useful!
English
3
0
6
390