dirty0124
@dirtycoder0124
A positive, never give up person. Founder of https://blindf.com Telegram group https://t.me/+xa7Q6GcEudFkYzA1
Potrebbero piacerti
THC Release 💥: The world’s largest IP<>Domain database: ip.thc.org All forward and reverse IPs, all CNAMES and all subdomains of every domain. For free. Updated monthly. Try: curl ip.thc.org/1.1.1.1 Raw data (187GB): ip.thc.org/docs/bulk-data… (The fine work…
🚨 3 critical/high FreePBX vulnerabilities disclosed CVE-2025-66039: Authentication bypass CVE-2025-61675: SQL injection CVE-2025-61678: File upload leading to RCE I've created detection scripts for these vulns: github.com/rxerium/FreePB… @Horizon3ai - horizon3.ai/attack-researc…
Executive Offense - (Release) The Arcanum Prompt Injection Taxonomy v1.5 executiveoffense.beehiiv.com/p/executive-of…
Another good payload <script ysx<>Reflect.apply(alert,null,[1])</script xy<> #xsspayload #bugbountytips
A very good xss payload. <sCriPt x>(((confirm)))``</scRipt x> #bugbountytips #xss #bugbounty
Want to learn complex xss attacks with practical for free? Then this post is for you! Hi everyone! I've added a new video in my xss playlist showing how i was able to find an interesting xss attack in NASA with full practical demonstration Check it out here:…
I've developed a professional and technical tool for Next.js (CVE-2025-55182) 🥳 I'm offering this tool, which allows you to perform both bulk and individual scans, as well as testing on live subdomains. github; github.com/ynsmroztas/Nex… #DevTools #python #bugbountytip…
Reminder: React2Shell detection is live across Burp Suite. If you’re assessing exposure in Next.js apps, here’s how to run reliable checks with Burp Suite Professional or Burp Suite DAST: bit.ly/4rFhtij
🚨 POC for CVE-2025-55182 that works on Next.js 16.0.6 Here are the exact, battle-tested queries you need — Censys, Shodan, FOFA, ZoomEye, Quake, BinaryEdge, Hunter.how, and Nuclei matchers — all tuned specifically to find Next.js RSC / React Server Components…
Paste the data, and it will extract the domains. Not perfect, but useful for me. #bugbountytips #BugBounty dirtycoder0124.github.io/domain-extract…
Just got a reward for a high vulnerability submitted on @yeswehack -- (XSS) - Stored (CWE-79). yeswehack.com/hunters/dirty0… #YesWeRHackers Steps: 1. Found misconfigured Algolia key 2. Escalate it into Stored XSS 3. Payload executed when searching for a specific keyword #bugbountytips
Bug Bounty Search Engine Google advanced search queries generator for target domain: File & Directory Discovery Vulnerabilities & Exploits Subdomain & Asset Discovery And lot more github.com/gatiella/Bug-B… #InfoSec #BugBounty #bugbountytips #CyberSecurity
Stop missing cache poisoning vulnerabilities. Most hunters only test X-Forwarded-Host and miss 90% of the attack surface. I wrote a complete guide to finding what others miss: medium.com/@Aacle/the-cac… #bugbounty #infosec
United States Tendenze
- 1. White Sox 9,539 posts
- 2. #AskFFT N/A
- 3. Happy Winter Solstice 9,812 posts
- 4. Murakami 12.7K posts
- 5. Good Sunday 70.8K posts
- 6. #sundayvibes 4,867 posts
- 7. Estime 5,938 posts
- 8. Victory Sunday 3,470 posts
- 9. #FirstDayOfWinter N/A
- 10. Full PPR 1,229 posts
- 11. And Mary 27.6K posts
- 12. Todd Blanche 7,338 posts
- 13. Ugarte 4,410 posts
- 14. #AskBetr N/A
- 15. Muhammad Qasim 35.1K posts
- 16. #SundayThoughts 1,626 posts
- 17. Dowdle 1,147 posts
- 18. Okamoto 1,943 posts
- 19. Villarreal 14.3K posts
- 20. Northern Hemisphere 2,443 posts
Potrebbero piacerti
-
mohammed eldeeb
@malcolmx0x -
Geekboy
@emgeekboy -
Prateek Tiwari
@prateek_0490 -
KNOXSS
@KN0X55 -
Jasmin Landry
@JR0ch17 -
Japz (h4nt3rx) 🕷️🏴☠️
@japzdivino -
Wh11teW0lf
@Wh11teW0lf -
Pratik Yadav
@pratikyadav7_ -
Rahul Maini
@iamnoooob -
streaak
@streaak -
pwnmachine 👾
@princechaddha -
Jenish Sojitra
@_jensec -
Khizer Javed
@KHIZER_JAVED47 -
Rodolfo Assis
@RodoAssis -
Saad Ahmed
@XSaadAhmedX
Something went wrong.
Something went wrong.