Spent weeks digging into a vuln chain, only for Bugcrowd triagers to dismiss it in 2 minutes. @Bugcrowd
Nothing more frustrating than effort being undervalued.
Researchers deserve better.
#BugBounty#InfoSec#EthicalHacking
While learning various algorithms, the visualization plays a significant role in grasping the concepts easily.
The algorithm-visualizer.org is an excellent resource with amazing collections of algorithms.
Guys, I'm getting a lot of msg for steps, this is how you can use payloads for DOM XSS, And also you can use different open redirection payloads.
1. returnurl=evil.com
2. returnurl=//evil.com
3. returnurl=/\/\evil.com#bugbountytips
Quick Wins: If you come across an outdated Swagger instance, always remember to test for XSS vulnerabilities. Try these payloads and earn some quick bounties!
http://example(.)com/swagger-ui/index.html?configUrl=https://jumpy-floor.surge(.)sh/test.json…
Tip :
generally you ignore ‘package.json’ file but in there you can find Depedency Confusion
- just check Dependency and dev-dependency in that file
- cross check mentioned packages with npm registry
- if that package is not available on registry then its vulnerable
Bug Bounty Tips: Working on a target app that requires an International phone # for sign up? 📲🌏
Don't let International phone number requirements stop your bug bounty journey! Here are my top 3 favorite services for receiving SMS online to tackle these targets:
1️⃣…
Becoming a pro in finding client-side bugs is simple. Not easy, but simple.
1. Go through a JS tutorial and understand the basics.
2. Ready everything on this blog 8x until you understand it: ysamm.com
3. Read JS for Hackers by @garethheyes 4x
Then go hack stuff
Found an untouched asset (built in 2018) with an unsubscribe functionality.
Turned out it was vulnerable to time-based blind SQLi → from a single entry point I accessed 200+ databases.
Patience + curiosity always pay off 💰€€€€
#BugBounty#SQLi#BugBountytips
Thread 🧵…
🎓🤖 QANDA Learning Assistant
QANDA's educational platform transforms problem-solving with intelligent solutions, quizzes, and dynamic graphs. Built on LangGraph, its multi-agent system specializes in different educational domains for personalized learning.
Learn more:…
Theory + Practice
Found one good MLOps playlist, specially for beginners.
From installation to deployment, along with good portfolio projects.
Link in comments 😎👇
🤖🔌 DeepMCPAgent
A powerful tool for dynamic MCP tool discovery and agent development. Built with LangChain and LangGraph, it streamlines integration over HTTP/SSE while supporting major LLMs.
Check it out! 🚀
github.com/cryxnet/deepmc…
2 Followers 173 FollowingRecruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/daYew94xEm
226 Followers 890 Following🔍 Discover the latest AI tools and innovations. 💼 Promoting cutting-edge AI solutions & updates. DM for Collaboration [email protected]
48K Followers 622 FollowingThe power behind the @Synack platform is an elite team of the world's top cybersecurity researchers. Our best are honored at https://t.co/6bEAyp7HWJ
65K Followers 2 FollowingThis is an unofficial HackerOne public disclosure watcher who keeps you up to date about the recently disclosed bugs. By @NOBBD
101K Followers 2K FollowingFollow for posts about GitHub repos, DSPy, and agents
Subscribe for top posts
DM to share your AI project (Due to volume of DMs I'll prioritize subscribers)
10K Followers 6 FollowingBringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://t.co/D5Mco1u8zM
78 Followers 1 FollowingWe are a global company made up of hackers and security researchers working together to tackle advanced vulnerabilities & techniques using AI. Building @pwn_ai
222K Followers 1 FollowingUpdates for developers building with the OpenAI Platform and API • Service status: https://t.co/kZwnwdYqOS • Support: https://t.co/qCi6M5ESZU
1K Followers 125 FollowingSecurity Professional and Researcher with over a decade of experience. I'm fairly low profile, but share useful info from time to time.
10K Followers 1 FollowingUser friendly unofficial HackerOne public disclosures, keeps you updated about the recently disclosed bugs.
Made With ♥ By Hackers For Hackers. - @rohsec
131K Followers 987 Following⊰•-•⦑ latent space steward ❦ prompt incanter 𓃹 hacker of matrices ⊞ breaker of jails ☣︎ ai danger researcher ⚔︎ red team bt6 ⚕︎ architect-healer ⦒•-•⊱
1.4M Followers 1K FollowingBuilding @EurekaLabsAI. Previously Director of AI @ Tesla, founding team @ OpenAI, CS231n/PhD @ Stanford. I like to train large deep neural nets.
8K Followers 97 FollowingSharing resources from the cybersecurity community • Passionate learner and creator • YouTube: https://t.co/1BmE6QOd0D • Turn ON Notifications 🔔
205K Followers 5K FollowingVC at @MenloVentures. Formerly founding team @glean, @Google Search. @Cornell CS. Tweets about tech, immigration, India, fitness and search.
7K Followers 508 FollowingAI Agents & Automations Expert | 3x Founder | Built 50+ Revenue Generating Automations | Turning AI into ROI while saving you hours | Book ROI Strategy Call ↓
523K Followers 867 FollowingI run a portfolio of internet companies and host @startupideaspod. CEO: @latecheckoutplz we build companies like @ideabrowser, @meetLCA, @boringmarketer etc