#bugbounty 搜尋結果

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

Unrestricted file-upload bypass: if a server trusts only Content-Type/extension, attackers can use Content-Disposition double-extensions to upload .asp/.php disguised as image/jpeg. magic-bytes ≠ MIME, presence of `<%...%>` or `<?php`, accessible executable URIs. #BugBounty

NullSecurityX's tweet image. Unrestricted file-upload bypass: if a server trusts only Content-Type/extension, attackers can use Content-Disposition double-extensions to upload .asp/.php disguised as image/jpeg. magic-bytes ≠ MIME, presence of `&amp;lt;%...%&amp;gt;` or `&amp;lt;?php`, accessible executable URIs. #BugBounty

Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique > Pll leakage data #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

sardar0x1's tweet image. Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique &amp;gt; Pll leakage data  #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

Yay! I was rewarded a $1,000 bounty on HackerOne. @Hacker0x01 #BugBounty #CyberSecurity

austino_as's tweet image. Yay! I was rewarded a $1,000 bounty on HackerOne.

@Hacker0x01 #BugBounty #CyberSecurity

I don’t think I was ready for that :D #BugBounty

AseemShrey's tweet image. I don’t think I was ready for that :D

#BugBounty

XSS Bypass Method: Payload: ">>>>>><marquee>RXSS</marquee></head><abc></script><script>alert(document.cookie)</script><meta #BugBounty #XSS

NullSecurityX's tweet image. XSS Bypass Method:

Payload:
&quot;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;lt;marquee&amp;gt;RXSS&amp;lt;/marquee&amp;gt;&amp;lt;/head&amp;gt;&amp;lt;abc&amp;gt;&amp;lt;/script&amp;gt;&amp;lt;script&amp;gt;alert(document.cookie)&amp;lt;/script&amp;gt;&amp;lt;meta

#BugBounty #XSS

First Boolean‑based SQLi, still shaking 😭🔥! Reported and paused let’s goooo!, thanks for continuous support Everyone. #BugBounty #CyberSecurity #infosec #sql #web #bugbountytips @bugcrowd #Hacking

eh_pavan's tweet image. First Boolean‑based SQLi, still shaking 😭🔥! Reported and paused  let’s goooo!, thanks for continuous support Everyone.
#BugBounty #CyberSecurity #infosec #sql #web #bugbountytips @bugcrowd  #Hacking

🚨 Bug Bounty Tip: Never skip Recon! One of the first steps in finding bugs is checking for pre-existing leaks. Use these data breach search engines to see what's already out there and guide your testing. 📷 #BugBounty #Hacking #tips #professor #the #hunter

bughuntar's tweet image. 🚨 Bug Bounty Tip: Never skip Recon!

One of the first steps in finding bugs is checking for pre-existing leaks. Use these data breach search engines to see what&apos;s already out there and guide your testing. 📷
#BugBounty #Hacking #tips #professor #the #hunter

الحمدلله ♥️🔥 Frist bug , Frist bounty #bugbounty

Saoud_Maryout's tweet image. الحمدلله ♥️🔥 Frist bug , Frist bounty  
#bugbounty

I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2 @Hacker0x01 #bugbounty

Muntrive's tweet image. I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2
@Hacker0x01
#bugbounty

New XSS Bypass Cloudflare WAF 🧱 Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #XSS #Cybersecurity

NullSecurityX's tweet image. New XSS Bypass Cloudflare WAF 🧱

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #XSS #Cybersecurity

Just another sleepless night.... #BugBounty #desksetup


reading Js >> found an endpoint file inclusion >> LFI >> RCE :D Write-up will be published after fix on: blog.voorivex.team #BugBounty

af4himi's tweet image. reading Js &amp;gt;&amp;gt; found an endpoint file inclusion    &amp;gt;&amp;gt; LFI &amp;gt;&amp;gt; RCE :D
Write-up will be published after fix on:
blog.voorivex.team

#BugBounty

First bounty on hackerone and critical on Inditex public program, after less than 24h of researching 🔥🔥 @Hacker0x01 #bugbounty

YoyoDavelion's tweet image. First bounty on hackerone and critical on Inditex public program, after less than 24h of researching 🔥🔥 @Hacker0x01 #bugbounty

I've been hunting on the Shopify program for 2.5 years. Looking to collaborate with other hunters. Let’s team up and find some cool bugs! #bugbounty #hackerone #bugbountytips #bugbountyhunting #bugcrowd #hackers

ravimahile's tweet image. I&apos;ve been hunting on the Shopify program for 2.5 years.
Looking to collaborate with other hunters.
Let’s team up and find some cool bugs! #bugbounty #hackerone #bugbountytips #bugbountyhunting #bugcrowd #hackers

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

viehgroup's tweet image. New XSS Bypass Cloudflare WAF

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #bugbountytips #infosec

Digging up old path traversal vulnerabilities? 🕵️‍♂️ I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets: Github Tool: github.com/bughuntar/CVE-… #Cybersecurity #VulnerabilityScanner #BugBounty #bugbountytips #professor #the

bughuntar's tweet image. Digging up old path traversal vulnerabilities? 🕵️‍♂️

I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets:

Github Tool: github.com/bughuntar/CVE-…

#Cybersecurity #VulnerabilityScanner #BugBounty  #bugbountytips #professor #the…

Huge thanks to @Hacker0x01 for hooking me up with a fresh Burp Suite Professional license again! 🤩 Time to put this to work and find some critical bugs. Let the hacking continue! 💻💰 #BugBounty #HackerOne #Infosec #BurpSuite #Professor #the #Hunter

bughuntar's tweet image. Huge thanks to @Hacker0x01 for hooking me up with a fresh Burp Suite Professional license again! 🤩
Time to put this to work and find some critical bugs. Let the hacking continue! 💻💰
#BugBounty #HackerOne #Infosec #BurpSuite #Professor #the #Hunter

Day 04: Grinded hard last night hunting for valid bugs in public programs, but struck out. Recharging for tonight's session—full consistency, max energy! Let's bag some bounties. #BugBounty #EthicalHacking #hackerlife #hack #bugbountytips #FreePalestine


reading Js >> found an endpoint file inclusion >> LFI >> RCE :D Write-up will be published after fix on: blog.voorivex.team #BugBounty

af4himi's tweet image. reading Js &amp;gt;&amp;gt; found an endpoint file inclusion    &amp;gt;&amp;gt; LFI &amp;gt;&amp;gt; RCE :D
Write-up will be published after fix on:
blog.voorivex.team

#BugBounty

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

Digging up old path traversal vulnerabilities? 🕵️‍♂️ I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets: Github Tool: github.com/bughuntar/CVE-… #Cybersecurity #VulnerabilityScanner #BugBounty #bugbountytips #professor #the

bughuntar's tweet image. Digging up old path traversal vulnerabilities? 🕵️‍♂️

I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets:

Github Tool: github.com/bughuntar/CVE-…

#Cybersecurity #VulnerabilityScanner #BugBounty  #bugbountytips #professor #the…

Day 4/365 of the Until get 10.0 Critical report 📤 Reports Submitted:- 1 reported Critical idor 🟠 triaged -0 🟦 new status - 0 🟤 Duplicate - 0 🟣 New -3 💰 Paid - 0 💻 Worked - Working like 7 hour still working learned 3 hour #bugbounty


AUTOMATE THE MOST POWERFUL SECURITY TOOLS Check our YouTube channel to see how Sn1per can help your security team! youtube.com/c/Sn1perSecuri… External Attack Surface Management | Offensive Security | Penetration Testing | OSINT | Bug Bounty #infosec #bugbounty #netsec #offsec

Sn1perSecurity's tweet image. AUTOMATE THE MOST POWERFUL SECURITY TOOLS
Check our YouTube channel to see how Sn1per can help your security team! youtube.com/c/Sn1perSecuri…

External Attack Surface Management | Offensive Security | Penetration Testing | OSINT | Bug Bounty #infosec #bugbounty #netsec #offsec

v2.0 of xnldorker is available: ✅ Add new source: Ecosia search engine ✅ Add new source: Baidu search engine ✅ See CHANGELOG ✅ Update with "pip install --upgrade xnldorker" github.com/xnl-h4ck3r/xnl… #BugBounty 🤘


Apple'dan çarpıcı karar. Tespit edebilene milyon dolarlar verecek! baskagazete.com/haber/apple-da… #apple #bugbounty

baskagazetecom's tweet image. Apple&apos;dan çarpıcı karar. Tespit edebilene milyon dolarlar verecek!

baskagazete.com/haber/apple-da…

#apple #bugbounty

30-Day Bug Bounty Challenge #Day: [ 70 ] 🫟 Hanting : 1.45 h 📕 Study : 30 min 🕷️ Bugs reported: [ 0 ] + total bugs reported : [ 7 ] ============== #BugBounty #InfoSec #BugHunter #Recon

30-Day Bug Bounty Challenge #Day: [ 69 ] 🫟 Hanting : 4.25 h 📕 Study : 0 min 🕷️ Bugs reported: [ 1 ] + total bugs reported : [ 7 ] ============== الحمد الله ، لقيت ثغرة 'Low' ، بالأحرى ثغرتين مع بعض. بس الموقع VDP 🥲 #BugBounty #InfoSec #BugHunter #Recon

Kai_Vritra's tweet image. 30-Day Bug Bounty Challenge

#Day: [ 69 ]
🫟 Hanting : 4.25 h 
📕 Study : 0 min 
🕷️ Bugs reported: [ 1 ]

+ total bugs reported : [ 7 ]

==============

الحمد الله ، لقيت ثغرة &apos;Low&apos; ، بالأحرى ثغرتين مع بعض.  بس الموقع VDP 🥲

#BugBounty
#InfoSec
#BugHunter 
#Recon


I talked to multiple hackers today and the more I talk to them the more I learn new and creative ways people hack stuff 🙌 It's always refreshing hearing these hacker stories. One common trait I've seen is most of these hackers love playing video games. #BugBounty


XSS Bypass Method: Payload: ">>>>>><marquee>RXSS</marquee></head><abc></script><script>alert(document.cookie)</script><meta #BugBounty #XSS

NullSecurityX's tweet image. XSS Bypass Method:

Payload:
&quot;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;lt;marquee&amp;gt;RXSS&amp;lt;/marquee&amp;gt;&amp;lt;/head&amp;gt;&amp;lt;abc&amp;gt;&amp;lt;/script&amp;gt;&amp;lt;script&amp;gt;alert(document.cookie)&amp;lt;/script&amp;gt;&amp;lt;meta

#BugBounty #XSS

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

It's fantastic to receive this feedback and $2000 reward. This is exactly the motivation I need to hunt for bugs every day. #bugbounty #motivation

nadhn011194's tweet image. It&apos;s fantastic to receive this feedback and $2000 reward. This is exactly the motivation I need to hunt for bugs every day.

#bugbounty #motivation
nadhn011194's tweet image. It&apos;s fantastic to receive this feedback and $2000 reward. This is exactly the motivation I need to hunt for bugs every day.

#bugbounty #motivation

I don’t think I was ready for that :D #BugBounty

AseemShrey's tweet image. I don’t think I was ready for that :D

#BugBounty

Today I received the gift sent by Google VRP. Thank you so much for the beautiful hoodies you sent me. @GoogleVRP & @Google ❤️❤️ @AtaTurk1925 ❤️😘❤️😘❤️ #BugBounty

p__oria's tweet image. Today I received the gift sent by Google VRP. Thank you so much for the beautiful hoodies you sent me.
@GoogleVRP &amp;amp; @Google ❤️❤️
@AtaTurk1925 ❤️😘❤️😘❤️

#BugBounty
p__oria's tweet image. Today I received the gift sent by Google VRP. Thank you so much for the beautiful hoodies you sent me.
@GoogleVRP &amp;amp; @Google ❤️❤️
@AtaTurk1925 ❤️😘❤️😘❤️

#BugBounty

Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique > Pll leakage data #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

sardar0x1's tweet image. Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique &amp;gt; Pll leakage data  #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

Pulled /etc/passwd for the first time via an out-of-band XXE on the main application. feels so damn goooooood! #BugBounty

one33se7en's tweet image. Pulled /etc/passwd for the first time via an out-of-band XXE on the main application. 

feels so damn goooooood!

#BugBounty
one33se7en's tweet image. Pulled /etc/passwd for the first time via an out-of-band XXE on the main application. 

feels so damn goooooood!

#BugBounty

I am not that into bug bounty hunting anymore, but if I need a larger amount of money for a side project, I usually simply start... and its always the same... there is always stuff to find.😂 #pentesting #bugbounty #bbp #hackerone

damian_89_'s tweet image. I am not that into bug bounty hunting anymore, but if I need a larger amount of money for a side project, I usually simply start... and its always the same... there is always stuff to find.😂 #pentesting #bugbounty #bbp #hackerone

Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack #say_mashallah #YesWeHack #BugBounty

x1337loser's tweet image. Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty
x1337loser's tweet image. Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty
x1337loser's tweet image. Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty
x1337loser's tweet image. Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty

📌CVE-2025-32463 -Local Privilege Escalation Vulnerability in Sudo📌 -In the article below, I explained how CVE-2025-32463 can be easily exploited using a vulnerability in the sudo version, along with a POC file. #BugBounty #CyberSecurity

NullSecurityX's tweet image. 📌CVE-2025-32463 -Local Privilege Escalation Vulnerability in Sudo📌
-In the article below, I explained how CVE-2025-32463 can be easily exploited using a vulnerability in the sudo version, along with a POC file.
#BugBounty #CyberSecurity

I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2 @Hacker0x01 #bugbounty

Muntrive's tweet image. I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2
@Hacker0x01
#bugbounty

Alhamdulillah, I received a €950 bounty for responsibly reporting two IDOR vulnerabilities through @yeswehack #say_mashallah #YesWeHack #BugBounty

x1337loser's tweet image. Alhamdulillah, I received a €950 bounty for responsibly reporting two IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty
x1337loser's tweet image. Alhamdulillah, I received a €950 bounty for responsibly reporting two IDOR vulnerabilities through @yeswehack 

#say_mashallah
#YesWeHack
#BugBounty

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

Yay! I was rewarded a $1,000 bounty on HackerOne. @Hacker0x01 #BugBounty #CyberSecurity

austino_as's tweet image. Yay! I was rewarded a $1,000 bounty on HackerOne.

@Hacker0x01 #BugBounty #CyberSecurity

Validated! Improper Authorization, escalated to ATO (account takeover) and then mass user data exposure via /api/user, concluding a Critical Severity 9.1. Ty @intigriti #bugbounty #bugbountytips #bugbountytip

adrielsec's tweet image. Validated! Improper Authorization, escalated to ATO (account takeover) and then mass user data exposure via /api/user, concluding a Critical Severity 9.1.
Ty @intigriti 
#bugbounty #bugbountytips #bugbountytip

This is an old writeup by @ozgur_bbh from four years back, a very successful #bugbounty hunter. I feel it still holds relevance if you're planning to start doing it as a side gig, even in 2025. Link 👇

payloadartist's tweet image. This is an old writeup by @ozgur_bbh from four years back, a very successful #bugbounty hunter.

I feel it still holds relevance if you&apos;re planning to start doing it as a side gig, even in 2025. Link 👇

Jai Shree Ram 🚩 Yay, I was awarded a $1500 bounty on @Hacker0x01! #TogetherWeHitHarder #BugBounty

root__professor's tweet image. Jai Shree Ram 🚩 
Yay, I was awarded a $1500 bounty on @Hacker0x01!

#TogetherWeHitHarder #BugBounty

Thank you #bugbounty ( first self-earned phone!) :)

xlsize0bruh's tweet image. Thank you #bugbounty ( first self-earned phone!) :)

First bug submitted to eBay!🔥🚀 Hope for the best💪 #BugBounty

pwn_xyz's tweet image. First bug submitted to eBay!🔥🚀
Hope for the best💪

#BugBounty

Loading...

Something went wrong.


Something went wrong.


United States Trends