Shreyas Chavhan @shreyas_chavhan
Hacker | Secured Microsoft, OpenSea & more | Slaying Bugs Full Time with My Nichirin Sword (aka Burp) since Aug 2023 | Analytical Psychology Enthusiast - Ni Dom github.com/shreyaschavhan GitHub → Joined June 2019-
Tweets628
-
Followers2K
-
Following283
-
Likes3K
Sharing My Study Methodology as a Bug Bounty Hunter. I promised a friend of mine that I'll share my study methodology with them - thought if I'm gonna share it with them, why not make it public 🤷🏻♂️. Link 🔗: shreyaschavhan.notion.site/My-Study-Metho… #BugBounty #BugBountytips #study
Thank you 🥹!!
I was getting a lot of DMs asking me how I got started, how I progressed so fast and if I can suggest a Roadmap for the beginners who also wanna get started and progress. Sharing the answer publicly. Link: shreyaschavhan.notion.site/Roadmap-I-foll… #BugBounty #BugBountytips
A few of you guys wanted me to share the notes I took when I read 5000 H1 reports last month. I just got reminded by a friend to share it (I almost forgot). Here it is: Notion Link: fork-glass-a4c.notion.site/H1-Report-Note… #bugbountytips #bugbounty
Thank you to all the 1000+ people who joined me on my #BugBounty journey! I'm very grateful.
Yay, I just received my highest bounty and my first 4-digit bounty of $2,500 on @Hacker0x01! It took me 8 months of consistent efforts. Hard work does indeed pay off especially when you least expect it! Last 30 days: $3,250 #TogetherWeHitHarder #BugBounty
If www,example,com is in scope and half of the functionality of the site has backend API hosted on xyz,another,com where example,com makes CORS to another,com which isn't explicitly mentioned in scope or OOS - does that mean we ain't allowed to test on xyz,another,com?#BugBounty
I made a simple static daily endpoints-tested goal tracker web app for personal use. I hosted it on GitHub so you can make use of it too if you need. It's nothing fancy or new - just a simple front end. github.com/shreyaschavhan… #BugBounty
Abhinav Surya @RuttalaSurya
114 Followers 336 Following bug bounty hunter, ethical hacker, Traveller. more to add...Nikshay Ghode @NikshayGhode
52 Followers 180 FollowingSurgical Nova @EthicalhackerC
42 Followers 557 Following amateur Web Developer and bug bounty hunterPaxful support @SupportPaxful_
184 Followers 2K Following Building a financial system for the 100%, one #Bitcoin $ at a time. Support: click on the chat button on our website Community:just reading @DarywshP
48 Followers 377 Following i made this account just for reading about securitytharooon @infosectharun
17 Followers 204 Following cybersecurity enthusiast | security consultant@/one of big 4hackoflpf @hackoflpf
50 Followers 1K FollowingK0walski @K0walski_Van
5 Followers 166 Following I like the dreams of the future better than the history of the past.KISHORE @KishoreramK
46 Followers 520 Following CTF PLAYER 👨💻¥ PASSIONATE NETWORKING ENTHUSIAST 🛜¥ CLOUD SECURITY INTERN@VTFSlEEpyEiNstEiN @sleepyeinstein
225 Followers 3K Following 1 learner ,1/2 human , 1/4 Pen Tester,1/6bookworm,1/8geekZeeshan @zeeshan1338
362 Followers 5K Following Ethical Hacker ! Security Researcher And Software EngineerHodad Rad @HodadRad
107 Followers 721 Following Programmer | Bug Hunter👨💻Swimmer🏊♂️❄Dey❄ کار خوبه خدا درست کنه برنامه نویس | مدیر ایران سکیوریتیHut @hounteng10
0 Followers 87 FollowingShehzad Roy @TheRoyHunter313
647 Followers 619 Following Independent Cyber Security Researcher || Bug Bounty Hunter || Penetration TesterPrathamesh Jadhav @lollinnnng
9 Followers 131 Following IC1 backend dev at oracle , looking for meaningful professional connections.Vidar @Svevidar
51 Followers 343 Followinggreensec @greensec_
130 Followers 558 Following Learning Bug Bounty Hunting | Information Engineering StudentMarouane @Mar_tanafaat
0 Followers 18 Followinglittleflyinginsect @LittleFInsect
5 Followers 57 Followings4h44r @s4h4r3eh
75 Followers 394 FollowingTariaS @sunyalala1
1 Followers 20 FollowingNil4 @Hara_Sec
11 Followers 314 FollowingSmoo max @SmooMax26084
26 Followers 317 Followingpablo @pabloTaddei26
136 Followers 977 Following Soy Desarrollador de Software y hace 7 años que estoy en este apasionante mundo del Software hasta el momento eh trabajado con distintas tecnologías, modernasNiklesh Rai @sibao_nick
1 Followers 36 FollowingAbhinab Bala @abhinab_bala
7 Followers 107 Followingmax_bean1 @max_bean1
12 Followers 75 FollowingD33p4k @BeingN00b
256 Followers 924 Following Security Engineer | Synack Red Team | Pentabug | Web3 | eWPTXmachariadaniel @machariadani515
12 Followers 104 Following Structural engineer/ Building TechnologistFPL @Taman0X
315 Followers 621 FollowingDark zone @kosikh_dutta
57 Followers 451 Following ethical hecker | bug bounty hunter | love to play with bugsLoubibi @Louuubs
196 Followers 1K Following Cybersecurity & Cie 👨💻- It’s all about the journey, not the destination - Streaming Game & Hacking Twitch : @LoubibitvTejus Juyal @tejus_juyal
3 Followers 52 Following Upcoming Cyber Security Intern Mazars Securing Web application Ex-ISRO InternFat @fattselimi
12K Followers 7K Following Hacking for fun and profit @Hacker0x01 @Bugcrowd @intigriti #CyberSecurity #1 @BMWGroup | Pentester @CytadelEuTESS @ArmanSameer95
6K Followers 818 Following Application Security Researcher https://t.co/g0QPLb24tI | https://t.co/XuUMBUWl0x | Most Valuable Hacker 2022 thanks to @bugcrowd | ex @pdiscoveryioSanjyot Panure @SanjyotPanure
16 Followers 134 FollowingMathias Karlsson @avlidienbrunn
16K Followers 602 Following Web security fiddler. Bug bounty bastard. Sometimes I cut shapes.Het Mehta @hetmehtaa
24K Followers 954 Following Security Analyst | Content Creator | I Spread Cyber Security & Talk about AI, Cloud, Tech, Tools & UpdatesSachin Pandey @sachin_pandey98
4K Followers 548 Following Security Engineer | Penetration Testing | #bugbounty | #cybersecurityRajesh sagar @rajeshsagar777
173 Followers 171 FollowingQuora @Quora
260K Followers 400 Following A place to share knowledge and better understand the world.Constant Learner 🇮.. @_mrbuddhu_
1K Followers 5K Following On Gap 🏖️ | 𝐄𝐧𝐭𝐫𝐞𝐩𝐫𝐞𝐧𝐞𝐮𝐫 🦄 | 360° 𝐄𝐧𝐠𝐢𝐧𝐞𝐞𝐫 🖥️ | Teacher 👨🏫Tuan Anh Nguyen 🇻�.. @haxor31337
13K Followers 2K Following 28 y/o Bug Bounty Hunter and Red Teamer at Viettel Cyber Security. Brand Ambassador @Hacker0x01 - Researcher Spotlight @BugcrowdOctavian @0xtavian
4K Followers 2K Following Sup Earth! | #OSCP | break shit | @TechEmiiily 💍 | Cloud Red Team Lead | Co-Inventor of Axiom | nmap -p- {always} | he/himRandom Robbie @Random_Robbie
15K Followers 5K Following Scanner of the internet and owner of your k8s. All opinions here are mine and do not represent my employer's views. @[email protected]Holme @holme_sec
1K Followers 220 Following Love to learn https://t.co/RQQsvW1WcL https://t.co/3mOunfH5fMMustafa Can İPEKÇİ @mcipekci
7K Followers 356 Following I'm an engineer from Turkey, who is interested with biotechnology, computer science and digital gaming. Proud father of three little devils. A.K.A nukedxd0xing @d00xing
6K Followers 790 Followinggr3pme @gr3pme
338 Followers 394 Following HackerNotes Author @ctbbpodcast || Bug Bounty Hunter || OSWE, OSCPMatan Berson @MtnBer
965 Followers 203 Following Hacking for fun | H1-65 Eliminator award | AWC23 Best New Hackersw33tLie @sw33tLie
7K Followers 819 Following Hacker and CS student, 23yo. Top 50 @ https://t.co/u2ia5UqJZA https://t.co/ukQXXGMJxT https://t.co/LGYK7tMOGoManasi Joshi @Manasi_Joshi159
1 Followers 40 Followingtechoxified @techoxified
196 Followers 34 FollowingUpdraft @CyfrinUpdraft
7K Followers 3 Following Teaching the next generation of web3 developers. Join Updraft and let your skills take flight! Powered by @cyfrinauditsErik Donker @kire_devs_hacks
424 Followers 387 Following I develop stuff and I hack things. Microsoft MSRC 2023 Most Valuable Researcher (11th place), top Dynamics 365 researcher (1th place).İsmail Şentürk@Hac.. @ismailsntrk7
2K Followers 585 Following @Hacker0x01 Serial Entrepreneur & White Hat Hacker 1# Ranked - @ATT Most Valuable Hacker 2022 @Microsoft Most Valuable Hacker 2023 @MicrosoftThread Reader App @threadreaderapp
738K Followers 1K Following I'm a 🤖 to help you read threads more easily. Reply to any tweet of a thread and mention me with the "unroll" keyword and I'll give you a link back 😀mhmd berro (badcracke.. @badcrack3r
4K Followers 260 Following 21 Years old. Researcher at hackerone. Known as badcracker. Listed at more than 100 companies hacker's hall of fame.soiax @soiaxx
337 Followers 436 FollowingShlomie Liberow @Shlibness
2K Followers 1K Following Head of Hacker R&D @Hacker0x01. Lover of 4AM shell battles. All things hacking!Hazem @H4cktus
3K Followers 379 Following Lead Offensive Security Engineer @cyrextech | PT bug hunterCiarán Cotter @monkehack
3K Followers 420 Following 22-year-old Irish web hacker living in The Hague. Cork native. 🇮🇪 / 🇯🇵. Newsletter every Monday. https://t.co/7IvJ9Od3ZcYoussef Sammouda (sam.. @samm0uda
32K Followers 430 Following Hacker, bug bounty hunter, guy behind https://t.co/TBAtP71Cop. 1st in Meta bug bounty program for the last 5 years. YES Team MemberHarsh Bothra @harshbothra_
42K Followers 663 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personalMariahchan @Mariahchan_
233 Followers 312 Following Creator | World traveler Join me for some adventures - in game and irl! 😘😊🙃RyotaK @ryotkak
5K Followers 705 Following 20 years old / Security researcher? | Icon: @MelvilleTw | Private: @RyotaK_Private | Keybase: https://t.co/At1h6p5Kxf | Misskey: https://t.co/63E5Rpv2pk2024 YTD #BugBounty stats update, Week 17: 📄 26 issues reported (15 crit, 7 high, 4 medium) 💰 20 issues Paid 🟤 3 Duplicate ⚪ 2 Informational 🔴 1 OOS
2024 YTD #BugBounty stats update, Week 16: 📄 25 issues reported (15 crit, 6 high, 4 medium) 💰 19 issues Paid 🟤 3 Duplicate ⚪ 2 Informational 🔴 1 OOS I rabbit holed on an issue last week that didn't pan out unfortunately, so no new issues. Some nice bounty payments though!
@sachin_pandey98 @shreyas_chavhan buying a bitcoin with that giftcard is a good idea, bro can you pls tell me the process
@shreyas_chavhan @rajeshsagar777 Sell it on p2p to buy bitcoin
@shreyas_chavhan thanq bhai, wait to listen to my success story also, the same as you. And really thanq for sharing your resources.
@rajeshsagar777 ask them to dispatch Amazon giftcard on Amazon(.)in not Amazon(.)com or else you will struggle to get anything with it 🫣😂 (just sharing my experience).
With this one I made a total of $1000+ money in bug bounty. The bug was s3 bucket misconfiguration, which only list the bucket contents. The funniest fact is the bucket contains 1 lakh+ vouchers, and after ethically reporting, they gave me 100$ giftcard🙂 #BugBounty
I crossed 1cr through bounties🙌🏻 Thanks to people who have been guiding me there, either virtual or in-person:) Keep believing, and leave your problems on Krishna! He will take care of it❤️
What's the highest bounty you've ever received? Mine was 10K USD. #BugBounty #Microsoft
@shreyas_chavhan So i'm thinking like this if i get mastery in SSRF thats fucking gud for me. thats why from starting i am sticking to this only. 😅please guide me if i am following wrong path
@shreyas_chavhan Need 1 suggestion I'm on way of finding my 1st bug, i picked up a vuln(SSRF). I think first i should collect everything that exist on internet related to SSRF & implementing less till i don't get feel of "yes,now i'm ready to hunt" am i doing ryt? or need a change in my approach
Sharing My Study Methodology as a Bug Bounty Hunter. I promised a friend of mine that I'll share my study methodology with them - thought if I'm gonna share it with them, why not make it public 🤷🏻♂️. Link 🔗: shreyaschavhan.notion.site/My-Study-Metho… #BugBounty #BugBountytips #study
@shreyas_chavhan Thank you will be starting from Tuesday my first bounty hunt hopefully can get success what are tips i should follow will be starting with bugcrowd
I recently had one of my worst #BugBounty mediation experiences on @zerocopter, where they backed an immature program that downgraded my mobile account takeover and paid out the bare minimum. These are the program's reasons for downgrading: 1. The implementation is publicly…