pulkitpandey92's profile picture. Security Engineer

pulkit pandey

@pulkitpandey92

Security Engineer

For first time I have requested an organization to remove my name from their HOF on the basis of interview & allegations made on me Company: Oracle Hyderabad #oracle #security #offensivesecurity #hiring #job #infosec #recruiting #hr #jobs #jobsearch #recruitment #bugbounty

pulkitpandey92's tweet image. For first time I have requested an organization to remove my name from their HOF on the basis of interview & allegations made on me 

Company: Oracle Hyderabad 

#oracle #security #offensivesecurity #hiring #job #infosec #recruiting #hr #jobs #jobsearch #recruitment #bugbounty

Acknowledgement from Palo Alto Networks Responsible Disclosure (Powered by Synack) Thanks @synack for your response #synack #paloalto #infosec #bugbounty

pulkitpandey92's tweet image. Acknowledgement from Palo Alto Networks Responsible Disclosure (Powered by Synack)
Thanks @synack for your response 
#synack #paloalto #infosec #bugbounty

Microsoft Online Services Bounty Program #microsoft #infosec #bugbounty

pulkitpandey92's tweet image. Microsoft Online Services Bounty Program
#microsoft #infosec #bugbounty

pulkit pandey reposted

Do not miss out on any passive data source out there and use all of them with the amass scripting engine github.com/OWASP/Amass/bl… ;-)

ITSecurityguard's tweet image. Do not miss out on any passive data source out there and use all of them with the amass scripting engine 

github.com/OWASP/Amass/bl…

;-)

Acknowledgement from MYOB Thanks for your response @MYOB #infosec #bugbounty

pulkitpandey92's tweet image. Acknowledgement from MYOB
Thanks for your response @MYOB 
#infosec #bugbounty

Listed in United Nations Information Security Hall of Fame #infosec #bugbounty

pulkitpandey92's tweet image. Listed in United Nations Information Security Hall of Fame 
#infosec #bugbounty

pulkit pandey reposted

1. Found a subdomain with 404 error 2. Added /api ==> 401 error 3. Using FFUF find /api/v2/users endpoint. But still forbidden. 4. Bypass api protection using / ===> //api/v2/users Boom!! PII of internal user disclosure. #bugbounty #cybersecurity #infosec #bugbountytips


pulkit pandey reposted

If you want to learn how to find bugs and see the vulnerable code block, you should look at @yeswehack's Dojo. Here is the website: dojo-yeswehack.com Good work @yeswehack #BugBountyTips #BugBountyTip #BugBounty

alicanact60's tweet image. If you want to learn how to find bugs and see the vulnerable code block, you should look at @yeswehack's Dojo. Here is the website:
dojo-yeswehack.com

Good work @yeswehack 
#BugBountyTips #BugBountyTip #BugBounty

pulkit pandey reposted

🚨𝗧𝗛𝗘 𝗨𝗟𝗧𝗜𝗠𝗔𝗧𝗘 𝗚𝗜𝗧𝗛𝗨𝗕 𝗗𝗢𝗥𝗞𝗦 𝗟𝗜𝗦𝗧 𝗩𝟯 🚨 A total of now 𝟱𝟬𝟬+ dorks for sensitive information exposure to find easy wins. Text file and my tool to automate these dorks tinyurl.com/gitdorks #BugBounty #bugbountytip #bugbountytips #github #infosec

acceleratooooor's tweet image. 🚨𝗧𝗛𝗘 𝗨𝗟𝗧𝗜𝗠𝗔𝗧𝗘 𝗚𝗜𝗧𝗛𝗨𝗕 𝗗𝗢𝗥𝗞𝗦 𝗟𝗜𝗦𝗧 𝗩𝟯 🚨

A total of now 𝟱𝟬𝟬+ dorks for sensitive information exposure to find easy wins.

Text file and my tool to automate these dorks
tinyurl.com/gitdorks

#BugBounty #bugbountytip #bugbountytips #github #infosec

pulkit pandey reposted

I just published leaky-paths on Github, it's a collection of special paths linked to major web CVEs, known juicy APIs, known misconfigurations.. etc. They could be used for web-content discovery as a way to find quick-wins. Please feel free to contribute github.com/ayoubfathi/lea…


pulkit pandey reposted
hunter0x7's tweet image.

Loading...

Something went wrong.


Something went wrong.