dr34mhacks's profile picture. Just a teenage boy with millions of dreams in his eyes | Security Analyst | Keen Learner

Sid

@dr34mhacks

Just a teenage boy with millions of dreams in his eyes | Security Analyst | Keen Learner

Pinned

Here is a quick resource where you can learn each vulnerability on lab and also perform the same 🔥 owasp-skf.gitbook.io/asvs-write-ups/ #bugbounty #cybersecurity #bugbountytips


Sid reposted

H2H video with @ThisIsDK999 live here in 17 hours > Made $100K+ in bug bounties before 25 > Started hacking in cyber cafes, no formal training > Focused on Adobe Experience Manager, rich niche > Collaboration prevents burnout > Recon + automation = efficiency > Bug bounties…

AseemShrey's tweet card. How This 22 Year Old Made $100,000 Hacking Companies ! | Hacker...

youtube.com

YouTube

How This 22 Year Old Made $100,000 Hacking Companies ! | Hacker...


Sid reposted

JWT pentesting toolkit for analyzing and testing token security

tom_doerr's tweet image. JWT pentesting toolkit for analyzing and testing token security

Sid reposted

wow... great finds. good writeup, worth a read! :) and if you've ever been to burgerking drivethru, AI is analyzing your convos ;D web.archive.org/web/2025090615…


Sid reposted

Facebook Messenger Remote code execution Worth a $111,750 Video Poc Here: youtube.com/watch?v=wvywPU… Report: vulnano.com/2025/09/remote… @Google @intigriti

awais0x1's tweet image. Facebook Messenger Remote code execution Worth a  $111,750 
 Video Poc Here: youtube.com/watch?v=wvywPU…
Report:
vulnano.com/2025/09/remote…

@Google @intigriti

Sid reposted

🔥 Exploring the DOMPurify library: Hunting for Misconfigurations Part 1: mizu.re/post/exploring… Part 2: mizu.re/post/exploring… author: @kevin_mizu

mqst_'s tweet image. 🔥 Exploring the DOMPurify library: Hunting for Misconfigurations

Part 1: mizu.re/post/exploring…
Part 2: mizu.re/post/exploring…

author: @kevin_mizu
mqst_'s tweet image. 🔥 Exploring the DOMPurify library: Hunting for Misconfigurations

Part 1: mizu.re/post/exploring…
Part 2: mizu.re/post/exploring…

author: @kevin_mizu

Sid reposted

Hacking Firebase targets! 🤑 A thread! 🧵👇

intigriti's tweet image. Hacking Firebase targets! 🤑

A thread! 🧵👇

Sid reposted

drive.google.com/file/d/1T1bcgc… Can't find research like these nowadays, everyone too busy to chase AI hype, no one really diving into libraries for cool bugs :/ AI-will-find-all-bugs is such a boring take.


Sid reposted

For anyone interested in Desktop Application Hacking - I found this talk to be a nice introduction: m.youtube.com/watch?v=nudjte…

YourFinalSin's tweet card. Intro to Desktop Application Testing Methodology w/ Craig Vincent...

youtube.com

YouTube

Intro to Desktop Application Testing Methodology w/ Craig Vincent...


Sid reposted

Here’s my slides from today’s “Regex For Hackers” talk at DEFCON with @NahamSec, bookmark this for some exciting news in the near future docs.google.com/presentation/d…


Sid reposted

Red Team Tactics: Evading EDR on Linux with io_uring matheuzsecurity.github.io/hacking/evadin…


Sid reposted

JWTAuditor - Advance JWT Security Testing Platform jwtauditor.com


Sid reposted

This will be one of the few OSEE trainings held in Asia. Welcome to Taiwan :) blog.orange.tw/posts/2025-07-…


Sid reposted

ENOUGH IS ENOUGH NOW! THE GOVERNMENT CAN'T KEEP PRETENDING TO TURN A BLIND-EYE TO THE INCOMPETENCE OF INDIA's 'BEST' SOFTWARE COMPANY @Infosys @Infosys_nmurthy RT this to amplify the same to @FinMinIndia @IncomeTaxIndia @nsitharaman @nsitharamanoffc 🚨 Release ITR-2/3/5/6/7…


Sid reposted

updated my ADCS cheatsheet seriotonctf.github.io/ADCS-Attacks-w…


Sid reposted

I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame" is coming to #DEFCON33! This talk will feature multiple new classes of desync attack, mass exploitation spanning multiple CDNs, and over $200k in bug bounties. See you there!

albinowax's tweet image. I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame" is coming to #DEFCON33!  This talk will feature multiple new classes of desync attack, mass exploitation spanning multiple CDNs, and over $200k in bug bounties. See you there!

Sid reposted

Ever spent more time finding the right pentesting tool than actually using it? Yeah, same here. So I built something that might just save you hours next time. 👇 (1/n)


Sid reposted

Sharon Brizinov made ~$64k by recovering secrets from deleted files in public Git repos. Even after using git rm, files remain in the history stored in the .git/objects dir until garbage collection runs. Here's the command to use:

ctbbpodcast's tweet image. Sharon Brizinov made ~$64k by recovering secrets from deleted files in public Git repos. Even after using git rm, files remain in the history stored in the .git/objects dir until garbage collection runs.

Here's the command to use:

Sid reposted

Bash Scripting basics: Understanding (), {}, [], $(), $(()), ${}, and [[]]

thatstraw's tweet image. Bash Scripting basics: Understanding (), {}, [], $(), $(()), ${}, and [[]]

Loading...

Something went wrong.


Something went wrong.