Hamed Elnwasani

5 posts

Hamed Elnwasani banner
Hamed Elnwasani

Hamed Elnwasani

@0xhamdoon

Offensive Security Engineer @DeepStrike_io

شامل ہوئے Ağustos 2023
415 فالونگ295 فالوورز
Hamed Elnwasani
Hamed Elnwasani@0xhamdoon·
@FSouihiSOAI Yes, I’ve seen this pattern mentioned in several writeups before, and I’ve read about other researchers finding it. However, this is the first time I’ve actually encountered and successfully exploited it myself in a real target
English
0
0
0
86
SecOps AI
SecOps AI@FSouihiSOAI·
@0xhamdoon Have you seen this pattern frequently in bug bounty targets, or was this a one-off case?
English
1
0
1
426
Hamed Elnwasani
Hamed Elnwasani@0xhamdoon·
Two useful writeups I recently published: 1. Zero-Click ATO via Self-Stored XSS + WAF Bypass + IDOR 🔗@0xhamdoon/from-self-stored-xss-to-zero-click-ato-531e167ef276" target="_blank" rel="nofollow noopener">medium.com/@0xhamdoon/fro… 2. Chained Two Logic Flaws to Break a Ticketing System 🔗@0xhamdoon/how-i-chained-two-logic-flaws-to-break-a-ticketing-system-e9a3bdd6e8fe" target="_blank" rel="nofollow noopener">medium.com/@0xhamdoon/how… Enjoy reading, and happy hacking #bugbounty #cybersecurity
English
1
26
169
7.4K