#bugbountytips

52 سلاسل التغريدات

Found SQL Injection to Account Takeover Manually :) 1. Enter mobile number to login intercept {"mobile_number":"8888888888"} >> 200 {"mobile_number":"8888888888'"} >> 500 {"mobile...

Be careful when testing for cache poisoning, it is rare but sometimes URL parameters are not included in the cache key. This means that even if you add a parameter to poison the c...

My Methodology in Testing for Subdomain Takeover Vulnerabilities ## Useful Writeups and Disclosured Reports in the first comment (: #bugbountytips #cybersecurity #security htt...

𝐋𝐨𝐠𝐢𝐧 𝐭𝐞𝐬𝐭𝐢𝐧𝐠 𝐜𝐡𝐞𝐜𝐤𝐥𝐢𝐬𝐭 : 1. Host header injection on login page 2. Session Expiration ( logout all devices ) 3.Improper Session Validation 4. OAuth Bypass (google, OAuth Token St...

100 Days of Hacking! Day 44 #Special ⬇ ~# GraphQL-Hacking 🔥 #cybersecurity #Pentesting #Hacking #bugbountytips #infosec #pwn #cybersecuritytips #redteam #coding #100DaysOfHack...

🔎🔒Discover Web Vulnerabilities with Burp_Bug_Finder Extension In Burp🐛🌐 Burp_Bug_Finder is a powerful custom Burp Suite plugin written in Python.This tool simplifies the process...

Nuclei + AI = Money 🤑 Here's how to use AI and nuclei to make money while you sleep 👇🧵 #bugbountytips #bugbounty https://t.co/LiXRowXhLq

Vuln: 403 & 401 Bypasses Severity: High HTTP 401 and 403 are both status codes that indicate that a client's request to a server was not successful. 401 -- client provides no cr...

Here are 30 cybersecurity search engines 1. Dehashed—View leaked credentials. 2. SecurityTrails—Extensive DNS data. 3. DorkSearch—Really fast Google dorking. 4. ExploitDB—Archive...

2023 Hacker's Guide: How to Break into Pentesting and AppSec. (thread)

Day 1⃣2⃣/2⃣0⃣ -- [Broken Access Control Vulnerabilities & Broken Authentication and Session Management] ➡️ Detecting & Exploiting IDOR, Privilege Escalation e.t.c ➡️ Below some of...

موضوع اليوم From domain TakeOver to Account TakeOver on Adobe AEM بنكهة البلاك هات تعريف : سكربت AEM مقدم من شركة ادوبي شبيه بإدارة المحتوى لكن السكربت مدفوع ويستخدم من كبرى الش...