@fattselimi@intigriti I'm 24 hours into my first bug bounty program, but seeing the source code in scope and devs fixing bugs publicly(pushing in github) makes me feel discouraged—should I keep going toward my 100-hour goal, or change the target, source code review seems overwhelming
Use fast and simple Google Dorks during recon.
They can 𝐫𝐞𝐯𝐞𝐚𝐥 𝐬𝐞𝐧𝐬𝐢𝐭𝐢𝐯𝐞 𝐢𝐧𝐟𝐨 𝐥𝐢𝐤𝐞 .𝐞𝐧𝐯 𝐟𝐢𝐥𝐞𝐬, 𝐃𝐁 𝐝𝐮𝐦𝐩𝐬, 𝐜𝐨𝐧𝐟𝐢𝐠 𝐟𝐢𝐥𝐞𝐬, 𝐚𝐧𝐝 𝐛𝐚𝐜𝐤𝐮𝐩𝐬.
Follow me 👉🏼 DarkShadow 😁
#bugbountytip#recon#infosec#dork
Great research here this technique leverages Rust’s capabilities to compile to WASM for HTML smuggling (lrqa.com/en/cyber-labs/…) - Next Level Smuggling with WebAssembly. However, my extension "SmuggleShield" prevents such crafted file by default.
#infosec#redteam#blueteam
💡 Quick tip!
When testing WordPress targets, always make sure to check for exposed backup files! These are sometimes saved in the web root path of the server and accessible to anyone! 🤠
Here's a list of common file names to look for! 👇
⚠️ Giveaway ⚠️
Want to learn modern reconnaissance and hacking skills?
Join The Bug Hunter's Methodology Cohort 5!
October 2nd, 3rd, 4th -
jhaddix.gumroad.com/l/kihwd
Like and retweet this post for a chance to win a free seat! Five winners will be announced on Sept 1st!
All those guys who expect Ambanis to help poor people instead of spending Lavishly on wedding are the same guys who spend 500-600 per plate on their wedding where they invite 1000+ guests !! Its all Jealousy and nothing else!! 😂😂
#Ambani#weddings#Jio
4 Followers 173 FollowingRecruiting webshell engineers to penetrate websites, w ith a monthly salary of up to $100,000. If interested, please contact https://t.co/qJVoKih82z
2K Followers 2K FollowingSecurity Analyst
Bug Bounty Hunter by night
Father of 🤖 bots & dogs 🐺 🦊 & michi 🐱
🐧 GNU/Linux Lover
https://t.co/0Gvllql3Vz
El +1 de ❤️@FlashBack022❤️
3K Followers 516 FollowingHacker | I try to hack things, or whatever. Memes are my own and represent my employer (me) | Formerly @microsoft & BB triage
4K Followers 397 FollowingMicrosoft's Top Security Researcher Globally (Rank 23) | Apple Hall of Fame | Google Hall of Fame | Microsoft Hall of Fame | Microsoft MSRC MVR (Rank 82) Global
532 Followers 330 FollowingGoogle | NASA | Pinterest | Yandex - Security Hall Of Fames
NASA | Paytm | Eset | McAfee Appreciate Letter | Secured LG Electronics | LG Energy | NCIIPC