real_bitmap's profile picture. Security Researcher | Red teamer | Bug Bounty hunter

Bitmap

@real_bitmap

Security Researcher | Red teamer | Bug Bounty hunter

I’m so grateful to be invited to the #1337up0822 LHE hosted by @intigriti and @TheParanoids. I’ve met a lot of new faces and had a blast throughout the entire event. Cherry on top was today’s visit to the BelgianGP F1 race 🏎 Congrats to the winners and see you next time ✌️


Already looking ⏩ to see you guys 🍻🔥


Bitmap reposted

Multiple bugs chained to takeover Facebook Accounts which uses Gmail. ( $42k ) ysamm.com/?p=763

samm0uda's tweet image. Multiple bugs chained to takeover Facebook Accounts which uses Gmail. ( $42k )

ysamm.com/?p=763

Bitmap reposted

🟣 #1337uplive release 7/10! 🟣 Today,  @honoki is taking us on a journey on how to code you very first bug bounty tool! 🔨 #bugbounty #bugbountytips Watch now! 👇 youtu.be/zh5AUKk0hJc

intigriti's tweet card. The basics of building your own bug bounty tool | @honoki

youtube.com

YouTube

The basics of building your own bug bounty tool | @honoki


My @intigriti #1337uplive talk is now available on YouTube. Go check it out 👇

🟣 #1337uplive release 2/10! 🟣 Today, @real_bitmap shows us some very special research on hacking hosting providers! Fun and profit included 💰 Watch now! 👇 youtu.be/o34FfpknQ0w

intigriti's tweet card. A “symbolic” talk - Hacking hosting providers for fun and profit |...

youtube.com

YouTube

A “symbolic” talk - Hacking hosting providers for fun and profit |...



Received my @snackmagic gift from @intigriti today for being a speaker at the 1337uplive conference last weekend. Nothing better than a large stack of Belgian waffles 😋🧇🇧🇪. Thanks again for the amazing event!

real_bitmap's tweet image. Received my @snackmagic gift from @intigriti  today for being a speaker at the 1337uplive conference last weekend. Nothing better than a large stack of Belgian waffles 😋🧇🇧🇪. Thanks again for the amazing event!

Bitmap reposted

Now starting: @real_bitmap's talk "A “symbolic” talk - Hacking hosting providers for fun and profit"#1337uplive 📺 Tune in: intigriti.com/1337uplive 📅 Agenda: intigriti.com/1337uplive/age…

intigriti's tweet image. Now starting: @real_bitmap's talk "A “symbolic” talk - Hacking hosting providers for fun and profit"#1337uplive
📺 Tune in: intigriti.com/1337uplive
📅 Agenda: intigriti.com/1337uplive/age…

Hell yeah 🤘 🔥

🟣 Guess what: @0xLupin, @bug_dutch, @SanderWind, @_superhero1, @real_bitmap, @_JohnHammond, @JoakimTauren, @thefluffy007, @InsiderPhD, and @honoki are all ready for you 🥊 Comment down below the country where you will be watching from 🌎🌍🌏👇



Bitmap reposted

🟣 Guess what: @0xLupin, @bug_dutch, @SanderWind, @_superhero1, @real_bitmap, @_JohnHammond, @JoakimTauren, @thefluffy007, @InsiderPhD, and @honoki are all ready for you 🥊 Comment down below the country where you will be watching from 🌎🌍🌏👇


Bitmap reposted

Let me introduce you to KrbRelay, the only public tool for relaying Kerberos tickets and the only relaying framework written in C#. No-fix LPE + No-fix Cross-Session, VDI deployments has never been more broken. Demo at Images/demo.mp4 ! github.com/cube0x0/KrbRel…

cube0x0's tweet image. Let me introduce you to KrbRelay, the only public tool for relaying Kerberos tickets and the only relaying framework written in C#. 
No-fix LPE + No-fix Cross-Session, VDI deployments has never been more broken.
Demo at Images/demo.mp4 !
github.com/cube0x0/KrbRel…

Tune in on March 12th, 4PM CET! I will be hosting a talk about hosting provider security. There will be bugs 😉🐛

🟣 We are so excited to present you the very first @intigriti virtual live bug bounty conference! 🟣 When: March 12th, 4PM CET 🟣 What: Free #bugbounty conference with 10 incredible speakers including a 24 hour long CTF! 🟣 Where: intigriti.com/1337uplive Save the date everyone!



Bitmap reposted

Today we're publishing a detailed technical writeup of FORCEDENTRY, the zero-click iMessage exploit linked by Citizen Lab to the exploitation of journalists, activists and dissidents around the world. googleprojectzero.blogspot.com/2021/12/a-deep…


Bitmap reposted

[thread 🧵] lets all welcome the new kid in town 😈 ✨ Kerberos sAMAccountName spoofing ✨ from regular user to domain admin, because Microsoft didn't care enough about it's $$$ thehacker.recipes/ad/movement/ke…

_nwodtuhs's tweet image. [thread 🧵] lets all welcome the new kid in town 😈 
✨ Kerberos sAMAccountName spoofing ✨ from regular user to domain admin, because Microsoft didn't care enough about it's $$$

thehacker.recipes/ad/movement/ke…

Bitmap reposted

Well here it it is, the initial release of lsarelayx. Considered alpha at this stage, so I recommended lab use only for now. Appreciate any feedback, especially non working environments. github.com/CCob/lsarelayx


Bitmap reposted

Another weekend or so left and lsarelayx should be at least ready for lab testing. In the meantime checkout the latest feature. Kerberos -> NTLM downgrade, so even clients attempting to connect with Kerberos will be forced to use NTLM.


Bitmap reposted

I think that private keys used to sign EU Digital COVID Certificate, at least in Italy, have been leaked in some ways 1/3


Really mixed feelings about this one. Auto surveillance on chat messages isn’t really the way to go imo.. #ChatControl chatcontrol.eu

"Previously secure end-to-end encrypted messenger services such as Whatsapp or Signal would be forced to install a backdoor. " I'm sorry.. what now?? #chatcontrol



Thanks for having me @intigriti!🤓

👩‍💻👨‍💻 It's HACKER HEROES THURSDAY! Episode #4 is out NOW! 🥳 Today we are talking to @real_bitmap who is in our @intigriti TOP-10 leaderboard of all time! Let's hear his #bugbountytips and how he made his way to the top! 🏆 youtu.be/FQsMw70_ufg

intigriti's tweet card. Hacker Heroes #4 - @real_bitmap (Interview)

youtube.com

YouTube

Hacker Heroes #4 - @real_bitmap (Interview)



Loading...

Something went wrong.


Something went wrong.