hitesh_paliya's profile picture. The IT Guy!

Hitesh Paliya

@hitesh_paliya

The IT Guy!

Hey @_groww, thank you for simplifying investments. How about simplifying taxes with @HowToQuicko too!!!


Hitesh Paliya reposted

introducing glyde 😎 our all-new mobile app that will completely change the way you do taxes📱 just pre-fill. review. swipe to e-file 🏎️ get.set.glyde. download now 👇🏻


Hitesh Paliya reposted

Get. Set. File. Head over to quicko.com/income-tax & put your taxes on AutoPilot🚀 👉 Import trades from multiple brokers 👉 Compare & choose tax regimes 👉 File taxes instantly Plan. Prepare. E-file. All in one place.


Hitesh Paliya reposted

In a galaxy far far away, in 2013 a startup based out of Bangalore went on to build the largest brokerage platform. Tune in to ‘Do-While’ as we talk to the Jedi mastermind behind @zerodhaonline tech - Kailash Nadh, on how Zerodha uses APIs to scale.


Hitesh Paliya reposted

My notes (actually a checklist ✅) for getting into Blockchain Security, a thread 🧵


Hitesh Paliya reposted

A step by step workshop to exploit various vulnerabilities in Node.js and Java applications : github.com/snyk/exploit-w…


Hitesh Paliya reposted

Bug bounties work because vulnerability scanners don't


Hitesh Paliya reposted

G-Maps API Scanner Tool updates: - 8 more API checks, including FCM service - Cost table generation for vulnerable API's - Now allowing to set api_key via command-line argument - Help command generated - JS file creation for manual confirmation of JS API. github.com/ozguralp/gmaps…


Hitesh Paliya reposted

The Ultimate GitHub Dorks List v1 My list of 240 unique GitHub Dorks for sensitive information exposure compiled from various sources to find easy wins. Happy hunting and be sure to follow me for v2! Text File: github.com/obheda12/GitDo… #BugBounty #bugbountytip #bugbountytips

acceleratooooor's tweet image. The Ultimate GitHub Dorks List v1

My list of 240 unique GitHub Dorks for sensitive information exposure compiled from various sources to find easy wins.

Happy hunting and be sure to follow me for v2!

Text File:
github.com/obheda12/GitDo…

#BugBounty #bugbountytip #bugbountytips

Hitesh Paliya reposted

Just FYI my content discovery file is: gist.github.com/jhaddix/b80ea6… My subdomain enumeration file is: gist.github.com/jhaddix/f64c97… My github dork section of hunter.sh is: gist.github.com/jhaddix/77253c… Enjoy!


Hitesh Paliya reposted

Want to bypass file upload restrictions? Add ' , . " after the file extension just like: file.php' , file.php. , file.php" worked on many targets. #BugBounty #bugbountytips

Savitar0x01's tweet image. Want to bypass file upload restrictions? 
Add ' , . " after the file extension just like:
file.php' , file.php. , file.php"  worked on many targets.
#BugBounty #bugbountytips

Hitesh Paliya reposted

We're delighted to reveal our next guest for Instagram live AMA - @yappare Synack Rookie 2019 | Google VRP Awardee 😍 On: 4th Oct | 3PM IST At: instagram.com/bsidesahmedabad Hosted by: @rupali0405 #BSidesAhmedabad #AMA #Hacker #Synack #BugCrowd #GoogleVRP #Hacking #Pentest #BugBounty

bsidesahmedabad's tweet image. We're delighted to reveal our next guest for Instagram live AMA - @yappare
Synack Rookie 2019 | Google VRP Awardee 😍

On: 4th Oct | 3PM IST
At: instagram.com/bsidesahmedabad
Hosted by: @rupali0405

#BSidesAhmedabad #AMA #Hacker #Synack #BugCrowd #GoogleVRP #Hacking #Pentest #BugBounty

Hitesh Paliya reposted

Many companies send data via POST data (json), I found a lot bugs like Request Arbitrary Path (IDORs), LFI, CRLF,… Example:

m4ll0k's tweet image. Many companies send data via POST data (json), I found a lot bugs like Request Arbitrary Path (IDORs), LFI, CRLF,…
Example:

Hitesh Paliya reposted

Very good introductory blog for serialization vulnerabilities by @vickieli7. Check out her other articles as well, she explains concepts well. vkili.github.io/blog/insecure%…


Hitesh Paliya reposted

𝗢𝗿𝗮𝗹𝘆𝘇𝗲𝗿 - Oralyzer, a simple python script, capable of identifying the open redirection vulnerability in a website by fuzzing. github.com/0xNanda/Oralyz… #bugbountytips #bugbounty #pentest #owasp #cybersecurity

Pethuraj's tweet image. 𝗢𝗿𝗮𝗹𝘆𝘇𝗲𝗿 - 
Oralyzer, a simple python script, capable of identifying the open redirection vulnerability in a website by fuzzing. 

github.com/0xNanda/Oralyz…
#bugbountytips #bugbounty #pentest #owasp #cybersecurity

Hitesh Paliya reposted

{“id”:111} --> 401 Unauthriozied {“id”:{“id”:111}} --> 200 OK POST /api/get_profile Content-Type: application/json {“user_id”:<attacker_id>,”user_id”:<victim’s_id>} GET /api_v1/messages?user_id=VICTIM_ID --> 401 GET /api_v1/messages?user_id=attack&user_id=VICTIM --> 200 OK


Hitesh Paliya reposted

My secret bugbounty notes🤫: All about IDOR's! Exploitation, bypasses and chains!💥 #bugbountytips #bugbounty #bugbountytip notion.so/IDOR-Attack-ve…


Hitesh Paliya reposted

#bugbountytip: don't rely on #bugbountytip


United States Trends

Loading...

Something went wrong.


Something went wrong.