Youssef Sammouda (sam0) @samm0uda
Hacker, bug bounty hunter, guy behind https://t.co/TBAtP71Cop. 1st in Meta bug bounty program for the last 5 years. YES Team Member ysamm.com Yes™ Joined October 2016-
Tweets1K
-
Followers32K
-
Following429
-
Likes3K
It was a great interview! Thank you for having me @ctbbpodcast
It was a great interview! Thank you for having me @ctbbpodcast
New @ctbbpodcast with @samm0uda, should be a good one! 🤩 youtube.com/watch?v=U8lZKl…
In 2023: - I met in two occasions my hacker friends and also made new ones. - Reported 14 bugs - Made $450,000 My goals for 2024 are to grow and learn new things and share more writeups.
I got $66000 once for an XSS. The impact to the business and its users is the important thing in a report and not the bug itself.
I got $66000 once for an XSS. The impact to the business and its users is the important thing in a report and not the bug itself.
if you hate light bursts from you srceen at night, enable this "chrome://flags/#enable-force-dark"
To all triagers out there, stop trying to reproduce client-side pocs from a local html file.
Yay, I was awarded a $30,000 bounty on @Hacker0x01 ! hackerone.com/sam0 #TogetherWeHitHarder Should have been another $50,000, however no consistently in payouts, going back to Meta.
Hyped! On the 28th of September i will be hosting the annual Truesec Cybersecurity Summit & present the talk I performed at Blackhat, Defcon and soon Sec-t! Get your tickets at: securitysummit.truesec.com/?utm_campaign=…
Latest @ctbbpodcast episode with @securinti has dropped 🔥 youtube.com/watch?v=MSXf2f…
Bug write-up for Google Extensions thanks @ThomasOrlita and others for the help :) ndevtk.github.io/writeups/2023/… this writeup does include some free XSSs I got board of waiting.
This year's Defcon was really nice, i met a lot of people who i always admired for their work but now i like them more because in real life they were super cool. Special thanks to Meta, Microsoft, Intigriti, Hackerone teams, all my Brazilian friends and all the hackers i met.
I'm in Vegas! Happy to meet and talk sec.
Yay, I was awarded a $50,000 bounty on @Hacker0x01! hackerone.com/sam0 #TogetherWeHitHarder
. @assetnote is legendary for its bug bounty roots and recon capabilities. In this latest episode, we sit down LIVE from London with @seanyeoh (head of engineering at Assetnote) and get all the tips on how to build a performant, scaling recon system! buff.ly/453j713
Last days I've spent on Meta's BountyCon event hosted in Seoul, Korea. Together with my teammates(@phwd_, @samm0uda and @JosipFranjkovic ) we took 1-2 places and won 5/7 nominations. Also special thanks from me for event collaboration with @_bagipro & @OversecuredInc scanner.
The best time to start bug bounty was 10 years ago. The second best time is now.
Intigriti @intigriti
155K Followers 644 Following Global Bug Bounty & VDP Platform. 🌐: https://t.co/fgCupJckrW ▶️: https://t.co/lRfCzZBgb7 👾: https://t.co/Inf7N9VQIlBen Sadeghipour @NahamSec
197K Followers 1K Following Cofounder @hackinghub_io, Advisor @Trick3st @CaidoIO. I hack companies and make content about it. Bug Bounty Village & #NahamCon organizer. ex @hacker0x01🇮🇷Sam Curry @samwcyo
77K Followers 943 Following Hacker, bug bounty hunter. Run a blog to better explain web application security.The XSS Rat - Uncle R.. @theXSSrat
128K Followers 888 Following Alone we survive, together we prosper. Are you with me? https://t.co/AfnDsVhqqA🇷🇴 cristi @CristiVlad25
38K Followers 151 FollowingJoseph Thacker @rez0__
49K Followers 865 Following the promptfather. christian. hacker. hobby jogger. principal ai engineer @appomnisecurity.Jason Haddix @Jhaddix
146K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. @arcanuminfosec 18 years hacking + sec leadership. ex:BuddoBot-Ubisoft-Bugcrowd-Fortify-HP-Redspin-Citrix.Abhishek Meena - {�.. @RadhaSec
31K Followers 230 Following COO at @Vulncure | 🖊️ Tester | 🪲 Hunter HOF - Google 🤝 Sharing Knowledge with infosec community 📬 Inbox Whenever Need HelpCorben Leo @hacker_
68K Followers 660 Following I hack stuff (legally) | Jesus follower | Co-founder @boringmattresshakluke @hakluke
88K Followers 2K Following Hacker, bounties, entrepreneur. I help cybersecurity companies produce amazing content for their blogs and socials. Founder of: @haksecio and @hacker_contentInfoSec Community @InfoSecComm
38K Followers 638 Following Largest InfoSec publication with 30k+ followers and 1M+ monthly views. 3rd edition of @IWcon_ happening in December 2023!Hussein Daher @HusseiN98D
43K Followers 151 Following Entrepreneur, Hacker 🇱🇧🇨🇮 @WebImmunify 27th/270000 BugCrowd Hacking PlatformSTÖK ✌️ @stokfredrik
126K Followers 1K Following Hi.. im that hacker / creative that your friends told you about. Creative Director & Hacks all the things at @truesecJulien | MrTuxracer �.. @MrTuxracer
30K Followers 417 Following Freelancer | Full-time #BugBounty | @Hacker0x01 H1-Elite & $1,500,000 Hacker | ❤️ IDA ProHarsh Bothra @harshbothra_
42K Followers 661 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personalshubs @infosec_au
50K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnoteNathaniel @nnwakelam
38K Followers 1K Followingbombomhunter @bonibomhunter
0 Followers 130 Following Researcher not LPG 🧯| @Defcon Speaker | Bug Bounty Hunterlilil @ls_i0
0 Followers 450 FollowingVictim Deepak @VictimDeepak
0 Followers 59 FollowingTony Snyder @tony19snyder
2 Followers 51 Followingpele cop @cop_pele72902
11 Followers 213 FollowingCyb3r Wolf @cyb3rwolf420
4 Followers 78 FollowingStubbed @souf911_dz
4 Followers 88 FollowingOMEGA @OMEGA_8181
2 Followers 50 FollowingRiad Hossain @Riad_Hossain_67
2 Followers 92 FollowingAkemi @Akemi86994779
30 Followers 129 FollowingYIDIDIYA ADMASU @YDAdmasu
13 Followers 68 FollowingT-Rex @0xt_r3x
6 Followers 238 FollowingSolve @lercomday
1 Followers 31 Followingpwner @ManishNeupane03
2K Followers 196 FollowingJaneDavy @Gw8I5zyv4EAO8
8 Followers 168 FollowingIdrees Abdallah @idr335_O7
26 Followers 113 Following My goal is to expose the uncovered facts in Western mainstream mediaSai Prashanth @saip_007
44 Followers 585 Following #saip007 Tech enthusiast; Security Researcher @Loginsoft_IncChaves @chavescysec
12 Followers 61 Following Tech Writer | Cybersecurity Analyst Apaixonado por inovação e tecnologia.Deen @itxDeeni
3K Followers 3K Following Backend/ API Engineer | Technical Writer 👨💻 ⚡️Typescript 🐍Python ☕️Java 🐙Git 🐧Linux ⚓️Scrum ☁️AWS 🐳Docker 🌟GitHub 🏆Agile 📊SEO 🤖AIroldan santos @dan000317
1 Followers 167 FollowingDan Iskandarov @0xOnit3ngu
130 Followers 1K FollowingEnjoyer @GottenNathen
0 Followers 115 Following Software expert passionate about creating innovative solutions for complex problems. Always striving for excellence in code and design.SHAHO IT @shaho_it
107 Followers 209 Following web developer application developer database developer bug hunter networking linux developerYassine Root 💻 @rootaccess591
67 Followers 345 Following 🟠🟦 Knicks 🏀 ⚽️Juventus ⚪️⚫️ Technicien système et réseau en devenir #php #CSharp #sysadmin 💻K @Kirubel_Atile
2 Followers 22 Followingalice njoki @bushymane_alice
3 Followers 169 FollowingKiran R @Kiran_r_
3 Followers 82 FollowingAngelin Iyla @AngelinIyla
1 Followers 22 Following¢@m @f1tton1a
2 Followers 50 FollowingTanmay Jain @BugCrusader
1 Followers 102 FollowingAbhinav Pillalamarri @jrnagamouli
3 Followers 54 FollowingGary Wayne @user31fibcxw2
0 Followers 528 FollowingCuban_Food @Cuban_Food8824
0 Followers 14 Following Viva Cuba Libre 🇨🇺. views are my own. Cybersecurity degrees are over rated. https://t.co/h1c8INFWlo https://t.co/nVofHhOBm7bogdan stevanovic @boge3301
99 Followers 970 FollowingRichard Taft Jr @RichardTaftJr
3 Followers 32 FollowingHhacks @hhacksio
1 Followers 37 FollowingMohamed Gamal @Mohameeedgamall
8 Followers 86 Following يَا غُلَامُ إِنِّي أُعَلِّمُكَ كَلِمَاتٍ ، احْفَظِ اللَّهَ يَحْفَظْكَ ، احْفَظِ اللَّهَ تَجِدْهُ تُجَاهَكَ ، إِذَا سَأَلْتَ فَاسْأَلِ اللَّه🖤Intigriti @intigriti
155K Followers 644 Following Global Bug Bounty & VDP Platform. 🌐: https://t.co/fgCupJckrW ▶️: https://t.co/lRfCzZBgb7 👾: https://t.co/Inf7N9VQIlBen Sadeghipour @NahamSec
197K Followers 1K Following Cofounder @hackinghub_io, Advisor @Trick3st @CaidoIO. I hack companies and make content about it. Bug Bounty Village & #NahamCon organizer. ex @hacker0x01🇮🇷Sam Curry @samwcyo
77K Followers 943 Following Hacker, bug bounty hunter. Run a blog to better explain web application security.🇷🇴 cristi @CristiVlad25
38K Followers 151 FollowingJoseph Thacker @rez0__
49K Followers 865 Following the promptfather. christian. hacker. hobby jogger. principal ai engineer @appomnisecurity.Jason Haddix @Jhaddix
146K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. @arcanuminfosec 18 years hacking + sec leadership. ex:BuddoBot-Ubisoft-Bugcrowd-Fortify-HP-Redspin-Citrix.Corben Leo @hacker_
68K Followers 660 Following I hack stuff (legally) | Jesus follower | Co-founder @boringmattresshakluke @hakluke
88K Followers 2K Following Hacker, bounties, entrepreneur. I help cybersecurity companies produce amazing content for their blogs and socials. Founder of: @haksecio and @hacker_contentInfoSec Community @InfoSecComm
38K Followers 638 Following Largest InfoSec publication with 30k+ followers and 1M+ monthly views. 3rd edition of @IWcon_ happening in December 2023!Hussein Daher @HusseiN98D
43K Followers 151 Following Entrepreneur, Hacker 🇱🇧🇨🇮 @WebImmunify 27th/270000 BugCrowd Hacking PlatformSTÖK ✌️ @stokfredrik
126K Followers 1K Following Hi.. im that hacker / creative that your friends told you about. Creative Director & Hacks all the things at @truesecJulien | MrTuxracer �.. @MrTuxracer
30K Followers 417 Following Freelancer | Full-time #BugBounty | @Hacker0x01 H1-Elite & $1,500,000 Hacker | ❤️ IDA ProHarsh Bothra @harshbothra_
42K Followers 661 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personalshubs @infosec_au
50K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnoteNathaniel @nnwakelam
38K Followers 1K Followingpayloadartist @payloadartist
34K Followers 288 Following Tweeting about Application Security, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my ownYassine Aboukir 🐐 @Yassineaboukir
26K Followers 338 Following HackerOne Top 20, Pentest Lead, Ambassador, MVH Title and Hacker Advisory Board • Digital Nomad • Aspiring Athlete.Bug Bounty Reports Ex.. @gregxsunday
38K Followers 555 Following Grzegorz Niedziela - a hacker who documents his hacking journey by creating and curating the best content about bug bounty and offensive security.Gareth Heyes \u2028 @garethheyes
32K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5Lennert @LennertWo
4K Followers 1K Following PhD Researcher @CosicBe | Hardware Security @[email protected]CryptoCat @_CryptoCat
6K Followers 420 Following Security Researcher 😈 Community Content @intigriti 💜 Hackz @ https://t.co/1tqiCzJpbi Views are my own 🏳️🌈🇵🇸🇾🇪SSD Secure Disclosure @SecuriTeam_SSD
23K Followers 2 Following SSD provides the support you need to turn your experience uncovering security vulnerabilities into a highly paid career. [email protected]godiego @_godiego__
3K Followers 1K Following Security researcher and bug bounty hunter. https://t.co/ybndhjqZ5z | https://t.co/ALWTKTdgwc | 🇪🇸Joseph Cox @josephfcox
88K Followers 3K Following Hacking/crime/privacy journalist. Author of forthcoming DARK WIRE. Co-founder of @404mediaco. Signal: +44 20 8133 5190. Email: [email protected]Exodus Intelligence @XI_Research
12K Followers 47 Following Industry leading provider of exclusive zero-day vulnerability intelligence, exploits, defensive guidance, and vulnerability research trends.Alberto Daniel Hill �.. @ADanielHill
34K Followers 14K Following 1st #HACKER wrongfully sent to #PRISON in #URUGUAY: @darknetdiaries ep. 25 @hacknotcrime #AI #WEB3 #BLOCKCHAIN https://t.co/QrqRFxT3b6 @01000011GAK @_akhaliq
309K Followers 3K Following AI research paper tweets, ML @Gradio (acq. by @HuggingFace 🤗) dm for promo follow on Hugging Face: https://t.co/q2Qoey80GxStephen Wolfram @stephen_wolfram
149K Followers 4 Following Creating ideas, technology, science, companies, books, ... #WolfLang #WolframPhysics #WolframAlpha #Mathematica @WolframResearchJohan Carlsson @joaxcar
4K Followers 155 Following Father and developer during the day, looking for bugs at night 🐞. Using Twitter for infosec only. Also on: @[email protected]Daniel Cuthbert @dcuthbert
30K Followers 1K Following Documentary photographer, old creaky hacker. Co-author of @OWASP ASVS standard. Blackhat/Brucon Review Board & UK Government Cyber Security Advisory BoardOSINTdefender @sentdefender
1.1M Followers 793 Following Open Source Intelligence Monitor focused on Europe and Conflicts across the World. RT ≠ Endorsement. Want to Support my Work? https://t.co/PcUbewvWPrPrateek Tiwari @prateek_0490
8K Followers 349 Following abnormally normal!!! Views, posts, and opinions shared are my own.Renwa @RenwaX23
4K Followers 71 FollowingMadeline Eckert @eckert_madeline
547 Followers 87 Following Senior Program Manager with Microsoft Security Response CenterLozaning @lozaning
10K Followers 2K Following They/Them IoT, Blink'n Lights, InfoSec, creator of @WigleB, Mother of The Wifydra, HACKERS movie shitposting, HAM radio, top 100 Wigler. @[email protected]Dark Web Intelligence @DailyDarkWeb
92K Followers 0 Following https://t.co/3gj0T4Udv3 | Your daily dose from the dark side ☠️ For any questions about a post, you can send an email to [email protected]NCC Group plc @NCCGroupplc
10K Followers 1K Following NCC Group is a global expert in cyber security & risk mitigation. @NCCGroupInfosec - Global Technical. @NCCsecurityUS - North America. @NCCGroupCareers/r/netsec @_r_netsec
28K Followers 1 Following Follow for new posts submitted to the netsec subreddit. Unofficial.Bytebytego @bytebytego
84K Followers 2 Following Weekly system design topics you can read in 10 mins.Mathew Solnik @msolnik
3K Followers 1K Following CEO @ OffCell Research / Head of Security Engineering @ WitnessAILetsDefend @LetsDefendIO
89K Followers 0 Following LetsDefend is a hands-on Blue Team training platform that enables people to gain practical experience by investigating real cyber attacks inside a simulated SOCAriel Garcia @Arl_rose
5K Followers 3K Following Community Builder. Pentester. Bug bounty Hunter. Bug bounty village @ DEFCON. https://t.co/PojmVAcqXQ Tweets are my own and not the views of my employer.Roberto Suggi @malerisch
1K Followers 387 Following I am not sure why but when I hack something I feel like Tony Montana.Gaurav Mathur @gmat0991
78 Followers 95 Following Quantum Physics. Ethical Hacking. Heavy Metal. Manchester City. Security PM at MSRC, Microsoft. Opinions are my own.Jonathan Bouman @JonathanBouman
5K Followers 466 Following Medical Doctor (GP) & Security ResearcherHussein Nasser @hnasr
58K Followers 649 Following Backend Podcast https://t.co/Td6AkF08Dr YouTube https://t.co/FfDg8cnnNa writes on https://t.co/i5ZOqUzJEZ Postgres https://t.co/PcX2tDsaI4 Engineer @esriFredrik N. Almroth @almroot
4K Followers 680 Following Co-Founder & Security Researcher at @detectify. I code things to hack stuff. PGP/MIT: 0xEDF8D9828B06A7F7 #shellpopperAkshay Srivastav @akshaysrivastv
3K Followers 520 Following Independent Security Researcher | Smart Contract Auditor | Top warden & lookout @code4rena | Researcher @SpearbitDAOMicrosoft BlueHat @MSFTBlueHat
3K Followers 170 Following BlueHat is where the security research community and @Microsoft security pros come together as peers, to connect, share and learn. Run by @MSFTSecResponseCritical Thinking - B.. @ctbbpodcast
13K Followers 50 Following A 'by Hackers for Hackers' podcast focused on technical content ranging from bug bounty tips, to write-up explanations, to the latest exploitation techniques.Kim Zetter @KimZetter
95K Followers 3K Following Journalist - cyber/national security. Author - COUNTDOWN TO ZERO DAY: Stuxnet and the Launch of the World's First Digital Weapon. https://t.co/334DzfSL1fPhilips_NE555 @Philips_NE555
2K Followers 66 Following An electronics enthusiast who was born on the year when NE555 launchedCommix Project @commixproject
3K Followers 1 Following Automated All-in-One OS Command Injection Exploitation Tool. Created with ❤️ by @ancstNordace @NordaceOfficial
41K Followers 0 Following Whether you're hiking the Andes or exploring the streets of Rome, we have the best travel bags and accessories for any adventure. Always searching for adventureDimitrios 🪼🪼 �.. @Ch0pin
3K Followers 58 Following Senior Security Researcher @Microsoft. Developer of https://t.co/Gc5RzBvCGL. Mastodon: https://t.co/jimGT5rgIU. My opinions are my own.Sergey Toshin 🇺�.. @_bagipro
6K Followers 216 Following Ranked as the #1 hacker for Google Play Security Rewards Program. The founder of @OversecuredInc Android and iOS vulnerability scannersRendi ⛧ @Rendi_Mento
14K Followers 548 Following Too weird to live, and too weird to die. Business inquiries: [email protected]Joel Eriksson @OwariDa
5K Followers 4K Following Offensive security researcher and entrepreneur -Kernels, browsers and all that jazz- Also: - AI/ML/DL - AR/VR/XR - CTFs (pwn/re/crypto) + Cicada 3301, Boxen etcArchitecture Notes @arcnotes
44K Followers 1 Following engineering notes about software architecture from your favourite corps by engineers for engineers.starlabs @starlabs_sg
7K Followers 16 Following A Singapore company that discovers vulnerabilities to help customers mitigate the risks against the ever-evolving threat of cyber attacks.All hail the king of regex bugs, his majesty @d0nutptr
My favorite part of finding this bug
Curious about how a $20,000 OAuth bug I discovered at a Live Hacking Event last year looks like? Today you can dive into an exact replica and see for yourself! I've collaborated with @NahamSec & @hackinghub_io to create walkthrough video + demo lab 🧪 youtube.com/watch?v=VLgB2f…
I found time to work with the #InfiniTime dev kit. Happy to see it on bluetooth scan 😍 Now time to work on pairing it with #MyGNUHealth PHR to sync heart rate and steps info! #HappyHacking #privacy #eHealth #GNU #OpenScience @gnuhealth @thepine64
Great writeup by @0vercl0k on pwning a TP-Link AC1750 (Pwn2Own 2021) Couple years old but still a good read for anyone interested in consumer routers security doar-e.github.io/blog/2022/03/2… #iot #cybersecurity
📷We’re excited to announce the second training session for #TyphoonCon24: “Fuzzing & Attacking Deeply Embedded Devices” by Tobias Scharnowski (@ScepticCtf) & Marius Muench (@nSinusR). Learn more and register: eventbrite.com/e/typhooncon-2…
Ghost files in the shared_prefs ... Escalating a WRITE to OVERWRITE link.medium.com/xvq81mNgiHb
DoJ Breaks Russian Military Botnet in Fancy Bear Takedown: informatech.co/3UNkr6x by @nerdiegaga
@ctbbpodcast @samm0uda Wooooha, big fan of @samm0uda, can’t wait to listen in!
We just dropped episode 58 with @samm0uda! This episode is packed with client-side war stories and all the technical goodies we like to hear about. Youssef is a true master of his craft - it was awesome to interview him. ctbb.show/58
Blink: Intent to Ship: setHTMLUnsafe and parseHTMLUnsafe groups.google.com/a/chromium.org…
like/dislike any youtube video on android vulnano.com/2024/02/youtub…
Foscam exploits are now in high demand! Found a preauth RCE in one of Foscam's IP cameras? Submit your findings today at ssd-disclosure.com/foscam-vulnera… and see how much your research is really worth 💸💸💸
CVE-2023-50358: A zero-day vulnerability affecting QNAP NAS devices securityonline.info/cve-2023-50358…
New Vectary integration with @figma → Embed interactive 3D viewers in FigJam ⚡
Sounds like BC crushed this past LHE. We might see some rising competition in the LHE space now 👏🏻
Seriously, after this event, I’m going to focus on @Bugcrowd assets going forward. Incredible experience working with them.