Ticket to Trouble: How I Hijacked Support Tickets to See Everyone’s Complaints ️
Free Link 🎈Continue reading on InfoSec Write-ups »
Read more...
Free Link 🎈Continue reading on InfoSec Write-ups »
Read more...
Medium
Ticket to Trouble: How I Hijacked Support Tickets to See Everyone’s Complaints 🎟️😈
Free Link 🎈
DAY 1 Recon: Manual Reconnaissance: How I Explore Targets Like a Hacker (But With Good Intentions)
Before the tools come out, I like to get my hands dirty — and here’s why that matters.Continue reading on InfoSec Write-ups »
Read more...
Before the tools come out, I like to get my hands dirty — and here’s why that matters.Continue reading on InfoSec Write-ups »
Read more...
Medium
DAY 1 Recon: Manual Reconnaissance: How I Explore Targets Like a Hacker (But With Good Intentions)
Before the tools come out, I like to get my hands dirty — and here’s why that matters.
Day2 Recon: Scope Discovery: Finding Every Domain & IP with WHOIS, reverse WHOIS, IP lookups…
When I first started digging into bug bounty and cybersecurity, I kept hearing this one piece of advice over and over:Continue reading on InfoSec Write-ups »
Read more...
When I first started digging into bug bounty and cybersecurity, I kept hearing this one piece of advice over and over:Continue reading on InfoSec Write-ups »
Read more...
Medium
Day2 Recon: Scope Discovery: Finding Every Domain & IP with WHOIS, reverse WHOIS, IP lookups, certificate parsing
When I first started digging into bug bounty and cybersecurity, I kept hearing this one piece of advice over and over:
Filtering out Noise on Burp suite like a Pro
Often times during Bug Bounty and Pentests we come across a website that sends 100s of Analytics request per second to some random website…Continue reading on Medium »
Read more...
Often times during Bug Bounty and Pentests we come across a website that sends 100s of Analytics request per second to some random website…Continue reading on Medium »
Read more...
Medium
Filtering out Noise on Burp suite like a Pro
Often times during Bug Bounty and Pentests we come across a website that sends 100s of Analytics request per second to some random website…
I Turned IDOR and XSS Into a Mass Account Takeover
https://infosecwriteups.com/i-turned-idor-and-xss-into-a-mass-account-takeover-a0b487c19366?source=rss------bug_bounty-5
https://infosecwriteups.com/i-turned-idor-and-xss-into-a-mass-account-takeover-a0b487c19366?source=rss------bug_bounty-5
Ever missed a critical bug because you didn’t chain vulnerabilities?Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/i-turned-idor-and-xss-into-a-mass-account-takeover-a0b487c19366?source=rss------bug_bounty-5)
Reflected XSS Made Easy: Catching Real Bugs in the Wild
https://infosecwriteups.com/reflected-xss-made-easy-catching-real-bugs-in-the-wild-4222376ae3ea?source=rss------bug_bounty-5
https://infosecwriteups.com/reflected-xss-made-easy-catching-real-bugs-in-the-wild-4222376ae3ea?source=rss------bug_bounty-5
How a Simple Payload Uncovered a Real Vulnerability on MTN’s WebsiteContinue reading on InfoSec Write-ups » (https://infosecwriteups.com/reflected-xss-made-easy-catching-real-bugs-in-the-wild-4222376ae3ea?source=rss------bug_bounty-5)
Day2 Recon: Scope Discovery: Finding Every Domain & IP with WHOIS, reverse WHOIS, IP lookups…
https://infosecwriteups.com/day2-recon-scope-discovery-finding-every-domain-ip-with-whois-reverse-whois-ip-lookups-b69238aa5fe2?source=rss------bug_bounty-5
https://infosecwriteups.com/day2-recon-scope-discovery-finding-every-domain-ip-with-whois-reverse-whois-ip-lookups-b69238aa5fe2?source=rss------bug_bounty-5
When I first started digging into bug bounty and cybersecurity, I kept hearing this one piece of advice over and over:Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/day2-recon-scope-discovery-finding-every-domain-ip-with-whois-reverse-whois-ip-lookups-b69238aa5fe2?source=rss------bug_bounty-5)
Filtering out Noise on Burp suite like a Pro
https://normalitee.medium.com/filtering-out-noise-on-burp-suite-like-a-pro-b3fa2423a34b?source=rss------bug_bounty-5
https://normalitee.medium.com/filtering-out-noise-on-burp-suite-like-a-pro-b3fa2423a34b?source=rss------bug_bounty-5
Often times during Bug Bounty and Pentests we come across a website that sends 100s of Analytics request per second to some random website…Continue reading on Medium » (https://normalitee.medium.com/filtering-out-noise-on-burp-suite-like-a-pro-b3fa2423a34b?source=rss------bug_bounty-5)
Bug Hunting Story: You Won’t Believe What I Found Hidden in a RetToken Parameter
In cybersecurity, passive reconnaissance is often underestimated. Unlike active attacks, it doesn’t involve directly exploiting a system —…Continue reading on InfoSec Write-ups »
Read more...
In cybersecurity, passive reconnaissance is often underestimated. Unlike active attacks, it doesn’t involve directly exploiting a system —…Continue reading on InfoSec Write-ups »
Read more...
Medium
Bug Hunting Story: You Won’t Believe What I Found Hidden in a RetToken Parameter
In cybersecurity, passive reconnaissance is often underestimated. Unlike active attacks, it doesn’t involve directly exploiting a system —…
Bug Hunting Story: You Won’t Believe What I Found Hidden in a RetToken Parameter
https://infosecwriteups.com/bug-hunting-story-you-wont-believe-what-i-found-hidden-in-a-rettoken-parameter-781b9ec7e3f5?source=rss------bug_bounty-5
https://infosecwriteups.com/bug-hunting-story-you-wont-believe-what-i-found-hidden-in-a-rettoken-parameter-781b9ec7e3f5?source=rss------bug_bounty-5
In cybersecurity, passive reconnaissance is often underestimated. Unlike active attacks, it doesn’t involve directly exploiting a system —…Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/bug-hunting-story-you-wont-believe-what-i-found-hidden-in-a-rettoken-parameter-781b9ec7e3f5?source=rss------bug_bounty-5)
25 Hidden Google Dorks for 2025 Bug Bounty Hunters: Real Targets, Real Bounties
https://medium.com/@qaafqasim/25-hidden-google-dorks-for-2025-bug-bounty-hunters-real-targets-real-bounties-0bf8dd18d8bb?source=rss------bug_bounty-5
https://medium.com/@qaafqasim/25-hidden-google-dorks-for-2025-bug-bounty-hunters-real-targets-real-bounties-0bf8dd18d8bb?source=rss------bug_bounty-5