rootsploit's profile picture. Offensive Security Engineer @Amazon | Ex @Apple | Bug Hunter | OSCP | Cobalt Core | Views are my own!!

RootSploit

@rootsploit

Offensive Security Engineer @Amazon | Ex @Apple | Bug Hunter | OSCP | Cobalt Core | Views are my own!!

Pinned

Had a great time on the SECURITY@ panel hosted by @Hacker0x01 with @JR0ch17, discussing Bug Bounty, Pentesting, and how Generative AI is shaping cybersecurity. Thanks to Chad & @infinitelogins for the invite! #BugBounty #Pentesting #GenAI #CyberSec #HackerOne #infosec

rootsploit's tweet image. Had a great time on the SECURITY@ panel hosted by @Hacker0x01 with @JR0ch17, discussing Bug Bounty, Pentesting, and how Generative AI is shaping cybersecurity.

Thanks to Chad & @infinitelogins for the invite!

#BugBounty #Pentesting #GenAI #CyberSec #HackerOne #infosec
rootsploit's tweet image. Had a great time on the SECURITY@ panel hosted by @Hacker0x01 with @JR0ch17, discussing Bug Bounty, Pentesting, and how Generative AI is shaping cybersecurity.

Thanks to Chad & @infinitelogins for the invite!

#BugBounty #Pentesting #GenAI #CyberSec #HackerOne #infosec

RootSploit reposted

Apple's Real World CTF : you get the flag, you get the bounty security.apple.com/blog/apple-sec…

matteyeux's tweet image. Apple's Real World CTF : you get the flag, you get the bounty
security.apple.com/blog/apple-sec…

RootSploit reposted

ChatGPT quietly scrubbed today nearly 50,000 shared conversations from Google's index after our investigation. They thought they'd solved the problem. They were wrong. (1/5)

henkvaness's tweet image. ChatGPT quietly scrubbed today nearly 50,000 shared conversations from Google's index after our investigation. They thought they'd solved the problem. They were wrong. (1/5)

Recently I collaborated with @rtvkiz to explore Bug bounty in automobile space, it was definitely an interesting hunt we recently did.

I'm excited to share the blog on how @rootsploit and I got into Maruti Suzuki’s systems earlier this year and accessed loads of customer and dealer data. Here’s how it happened: rtvkiz.github.io/2025/06/13/How… #infosec #MarutiSuzuki



RootSploit reposted

Ever run an exploit in the wrong path? AI has too In this demo, @niemand_sec & @djurado9 show their agent (@xbow) debugging itself, fixing dependencies, tweaking payloads and eventually logging in as admin — autonomously. Full talk → youtu.be/YDsHI2acEVA #BugBounty #DEFCON


RootSploit reposted

So... I just simply asked Manus to give me the files at "/opt/.manus/", and it just gave it to me, their sandbox runtime code... > it's claude sonnet > it's claude sonnet with 29 tools > it's claude sonnet without multi-agent > it uses @browser_use > browser_use code was…


RootSploit reposted

Apple released a hearing aids feature for the AirPods Pro a while ago. I bought a pair for grandma, but then realized that the feature was geoblocked in India So we at @_lagrangepoint decided to unblock it. It ended up involving a leaky microwave and building a Faraday cage:

thel3l's tweet image. Apple released a hearing aids feature for the AirPods Pro a while ago. I bought a pair for grandma, but then realized that the feature was geoblocked in India

So we at @_lagrangepoint decided to unblock it. It ended up involving a leaky microwave and building a Faraday cage:

RootSploit reposted

INTRODUCING: Agentic Security - LLM Security Scanner! 🔍 🔑 Features: Scans for prompt injections, jailbreaking & more. Provides detailed reports & options to customize attack rules. 🔗access the GitHub Link ↓


RootSploit reposted

🎙️ New episode of The Hacker's Cache #Podcast is LIVE! 🔥 Ever wondered how to become a #BugBounty hunter or what it’s like being an #OffensiveSecurity pro at a Fortune 500 company? We’ve got you covered in Ep. 17 with @RootSploit! Watch now! youtu.be/8VbZ-iLt8W4 #InfoSec

KyserClark's tweet image. 🎙️ New episode of The Hacker's Cache #Podcast is LIVE! 🔥

Ever wondered how to become a #BugBounty hunter or what it’s like being an #OffensiveSecurity pro at a Fortune 500 company? We’ve got you covered in Ep. 17 with @RootSploit!

Watch now! youtu.be/8VbZ-iLt8W4

#InfoSec

RootSploit reposted

1/ An investigation into how Greavys (Malone Iam), Wiz (Veer Chetal), and Box (Jeandiel Serrano) stole $243M from a single person last month in a highly sophisticated social engineering attack and my efforts which have helped lead to multiple arrests and millions frozen.

zachxbt's tweet image. 1/ An investigation into how Greavys (Malone Iam), Wiz (Veer Chetal), and Box (Jeandiel Serrano) stole $243M from a single person last month in a highly sophisticated social engineering attack and my efforts which have helped lead to multiple arrests and millions frozen.
zachxbt's tweet image. 1/ An investigation into how Greavys (Malone Iam), Wiz (Veer Chetal), and Box (Jeandiel Serrano) stole $243M from a single person last month in a highly sophisticated social engineering attack and my efforts which have helped lead to multiple arrests and millions frozen.

RootSploit reposted

Fucking wild. @OpenAI's new o1 model was tested with a Capture The Flag (CTF) cybersecurity challenge. But the Docker container containing the test was misconfigured, causing the CTF to crash. Instead of giving up, o1 decided to just hack the container to grab the flag inside.…

hosseeb's tweet image. Fucking wild.

@OpenAI's new o1 model was tested with a Capture The Flag (CTF) cybersecurity challenge. But the Docker container containing the test was misconfigured, causing the CTF to crash. Instead of giving up, o1 decided to just hack the container to grab the flag inside.…

RootSploit reposted

We're excited to announce one of our giveaways thanks to "@CaidoIO" 🎉 We will pick 5 winners to win a 1-year Caido Pro license! To enter: 1️⃣ Follow us @BugBountyDefcon and @CaidoIO 2️⃣ Like this post ❤️ 3️⃣ Retweet this post 🔁 You have time to participate until Friday (9/13)!


RootSploit reposted

In April, @samwcyo and I discovered a way to bypass airport security via SQL injection in a database of crewmembers. Unfortunately, DHS ghosted us after we disclosed the issue, and the TSA attempted to cover up what we found. Here is our writeup: ian.sh/tsa


RootSploit reposted

🚨#BREAKING🚨Notorious threat actor, @InteIBroker, is selling access to a large Cybersecurity company. Price: $20,000. Details below. #DarkWebInformer #DarkWeb #Cybersecurity #Cyberattack #Cybercrime #Infosec #CTI Revenue: $1.8 Billion Access includes: - Confidential and highly…

DarkWebInformer's tweet image. 🚨#BREAKING🚨Notorious threat actor, @InteIBroker, is selling access to a large Cybersecurity company. Price: $20,000. Details below.

#DarkWebInformer #DarkWeb #Cybersecurity #Cyberattack #Cybercrime #Infosec #CTI

Revenue: $1.8 Billion
Access includes:
- Confidential and highly…

RootSploit reposted

Can I just say @PaulosYibelo has been dropping some bangers lately. We'll mention them on the pod this upcoming Thursday, but both of these client-side techniques are really innovative and sick: paulosyibelo.com/2024/02/cross-… octagon.net/blog/2022/05/2…


Loading...

Something went wrong.


Something went wrong.