codersanjay's profile picture. Coder | Bug Bounty Hunter | Youtuber | Detectify Crowdsource | NIT Durgapur | Engineer at Qualcomm

Sanjay Verdu

@codersanjay

Coder | Bug Bounty Hunter | Youtuber | Detectify Crowdsource | NIT Durgapur | Engineer at Qualcomm

Sanjay Verdu reposted

🚨 1st Giveaway of 2024 🚨 Enter a draw to get a chance to win a 100% OFF COUPON! 🔥 ✅ Follow us ✅ Like this post ✅ Share this post 🏆 Winners will be announced in a couple of days. Good luck! 😀 knoxss.me #KNOXSS #XSS #Bypass

KNOXSS #bypass got 💲12k #BugBounty #XSS 💰💰💰 👇🏾

KN0X55's tweet image. KNOXSS #bypass got 💲12k
#BugBounty #XSS 💰💰💰 👇🏾


Sanjay Verdu reposted

Incapsula XSS WAF Bypass Thread! The application was allowing all the specials characters but as incapsula was there it was problematic to achieve XSS. alert/prompt/confirm was being blocked when was used along with any JS 'on' events (1/n)

SMHTahsin33's tweet image. Incapsula XSS WAF Bypass Thread!

The application was allowing all the specials characters but as incapsula was there it was problematic to achieve XSS. alert/prompt/confirm was being blocked when was used along with any JS 'on' events (1/n)
SMHTahsin33's tweet image. Incapsula XSS WAF Bypass Thread!

The application was allowing all the specials characters but as incapsula was there it was problematic to achieve XSS. alert/prompt/confirm was being blocked when was used along with any JS 'on' events (1/n)

PortSwigger Labs - Reflected XSS into a JavaScript string with angle brackets HTML encoded Link:- youtu.be/DNwhPUv0eSo #Bugbounty #bugBountytip #Bugbountytips @intigriti @WebSecAcademy @PortSwigger

codersanjay's tweet image. PortSwigger Labs - Reflected XSS into a JavaScript string with angle brackets HTML encoded

Link:- youtu.be/DNwhPUv0eSo

#Bugbounty #bugBountytip #Bugbountytips 
@intigriti
 
@WebSecAcademy
 
@PortSwigger

PortSwigger Labs - Reflected XSS into a JavaScript string with single quote and backslash escaped youtube.com/watch?v=7edeXR… #Bugbounty #bugBountytip #Bugbountytips @intigriti @WebSecAcademy @PortSwigger

codersanjay's tweet image. PortSwigger Labs - Reflected XSS into a JavaScript string with single quote and backslash escaped

youtube.com/watch?v=7edeXR…

#Bugbounty #bugBountytip #Bugbountytips @intigriti @WebSecAcademy @PortSwigger

Finally after 25 XSS dups,one XSS got accepted. #bugbounty #bugbountytips I will keep posting the POCs on my YouTube whenever they get fixed. youtube.com/@codeverd

codersanjay's tweet image. Finally after 25 XSS dups,one XSS got accepted.

#bugbounty #bugbountytips 

I will keep posting the POCs on my YouTube whenever they get fixed.

youtube.com/@codeverd

Today I found my first Web Cache Poisoning Vulnerability on a bug bounty website and it was beautiful!!!!!!! <3 #bugbounty


PortSwigger Labs - Reflected XSS in canonical link tag Will cover all Portswigger labs in my youtube channel along with methodology in future there. youtube.com/watch?v=hCHWfj… #BugBountyTip #BugBountyTips #bugBounty @intigriti @PortSwigger @WebSecAcademy

codersanjay's tweet image. PortSwigger Labs - Reflected XSS in canonical link tag

Will cover all Portswigger labs in my youtube channel along with methodology in future there.

youtube.com/watch?v=hCHWfj…

#BugBountyTip #BugBountyTips #bugBounty 
@intigriti

@PortSwigger

@WebSecAcademy

PortSwigger Labs - Stored XSS into anchor href attribute with double quotes HTML-encoded Will cover all Portswigger labs in my youtube channel along with methodology in future there. youtube.com/watch?v=KVR5WZ… #BugBountyTip #BugBountyTips #bugBounty @intigriti @WebSecAcademy

codersanjay's tweet image. PortSwigger Labs - Stored XSS into anchor href attribute with double quotes HTML-encoded

Will cover all Portswigger labs in my youtube channel along with methodology in future there.

youtube.com/watch?v=KVR5WZ…

#BugBountyTip #BugBountyTips #bugBounty @intigriti @WebSecAcademy

One more XSS, Tip: Sometimes using both (") and (') together will break out of quotes so we can inject an event.Will make sure to cover all this in xss playlist in future. youtube.com/@codeverd #bugbounty #bugbountytips #bugbountytip @PortSwigger @WebSecAcademy @Hacker0x01

codersanjay's tweet image. One more XSS, 
Tip: Sometimes using both (&quot;) and (&apos;) together will break out of quotes so we can inject an event.Will make sure to cover all this in xss playlist in future.

youtube.com/@codeverd

#bugbounty #bugbountytips #bugbountytip @PortSwigger @WebSecAcademy @Hacker0x01

9 XSS in 2 hours, :P I would really love to share my XSS methodology on my youtube channel once I finish off Portswigger XSS Series which is under progress. youtube.com/@codeverd #bugbounty #bugbountytip #bugbountytips #cybersecurity @PortSwigger @WebSecAcademy @Hacker0x01

codersanjay's tweet image. 9 XSS in 2 hours, :P

I would really love to share my XSS methodology on my youtube channel once I finish off Portswigger XSS Series which is under progress.

 youtube.com/@codeverd

#bugbounty #bugbountytip #bugbountytips #cybersecurity @PortSwigger @WebSecAcademy @Hacker0x01

Sanjay Verdu reposted

Giveaway time! We are going to send a t-shirt and few goodies to one person who follows @PentesterLab and likes this tweet !! And we are going to give a 1-year voucher to someone who RT this tweet!


Sanjay Verdu reposted

GIVEAWAY! XSS is one of the most awarded bug bounty vulnerabilities. Learn how to find XSS and how to defend. Help me get to 100 retweets and I’ll pick 5 winners! Enter: 1- Retweet 2- Follow me 3- Reply w/ what you hope to learn Ends Wed 30th at 5pm MDT #xss #bugbounty

christophelimp's tweet image. GIVEAWAY! XSS is one of the most awarded bug bounty vulnerabilities. Learn how to find XSS and how to defend. Help me get to 100 retweets and I’ll pick 5 winners! Enter:
1- Retweet
2- Follow me
3- Reply w/ what you hope to learn
Ends Wed 30th at 5pm MDT #xss #bugbounty

Loading...

Something went wrong.


Something went wrong.