Bug Bounty
10.5K subscribers
369 photos
3 videos
46 files
426 links
Bugbounty Resources • Tips • Security Zines • Writeups • Vulnerability Update • Notes • Mindmaps • Cheatsheets • Checklists • Article / Blogs • PDFs • ebooks •
Download Telegram
👍22
If an unsafe logger is used, an attacker can inject code and execute arbitrary commands, even if the page being accessed is a 404 page.

Always test HTTP request headers to make sure the application is handling the headers correctly.
👍17🔥4
Did you know if you make the website response with a 400 error status code eg send a request with a massive long characters

You could know what is the real server of the website that hidden behind Cloudflare or other WAF’s.
🔥205🤔3👍2
My Twitter Interaction Circle! Love you all
🔥16👍4
Use These Instead Of Alert and Prompt
In XSS Payload

Example : alert(1) can be encoded as

This leads to bypass waf or blacklisted words at input field

XSS Payload can be manipulated as

<img/src/onerror=Put The Encoded Js here to prompt the alert>

Check This Out : http://jsfuck.com

#bugbounty #Infosec #hacking #cybersecurity
16😱5👍2
👍4
👍5
5
Thank you to everyone who has supported me

Below are x10 free TryHackMe T-shirts and x10 free TryHackMe Baseball Hat swags vouchers

TryHackMe T-Shirt: yVL63k7vuS
TryHackMe T-Shirt: FVwalIK7fB
TryHackMe T-Shirt: bf5Mqqcg8v
TryHackMe T-Shirt: ShG1kGVVz9
TryHackMe T-Shirt: IPkz4ZrpKt
TryHackMe T-Shirt: lhwmkd4LoT
TryHackMe T-Shirt: Nc9SbpBSof
TryHackMe T-Shirt: PGUfOjX2Eh
TryHackMe T-Shirt: 8JzWreyv6I
TryHackMe T-Shirt: ThDkJUd6ax

TryHackMe Baseball Hat: miQKcybjxx
TryHackMe Baseball Hat: pqs71HkZyK
TryHackMe Baseball Hat: 7AxdZSQ9dw
TryHackMe Baseball Hat: BUnGQFfuNs
TryHackMe Baseball Hat: Jz7uai3jQa
TryHackMe Baseball Hat: HcH9topxPg
TryHackMe Baseball Hat: aBhrI4gpzG
TryHackMe Baseball Hat: HbpIBzqb2I
TryHackMe Baseball Hat: WHm4iwcYp2
TryHackMe Baseball Hat: aDpwawb7u2
👍279🔥8🤔5😢4👏2👌2
Happy happy happy new year 🥳

May the new year 2023 bring joy, prosperity, and all the things you wish for.
29
A Gift From My Side

2 x 1-month Tryhackme Voucher: https://tryhackme.com/voucher/stats/B8MMeLOTPAx8NF
😢145🔥4👍2
Don't worry After exactly 30m - Another 2x1-month Tryhackme Voucher giveaway
15👍3🤡2🤣1🫡1
😢208🤬4🔥3👍1😁1
if Anybody wants to purchase at a cheap price, can contact @infosec_lover
4🔥3🤡3👍1
Someone asked me to give some tips to pwn Admin Panel. Here are some basic ways to find the admin panel and bypass it. I learned most of it from Portswigger Lab Academy and It works whenever I apply on a real target.

#bugbountytips #bugbounty
👍34🔥1
👍7🔥2