Application Security ( Web, API) || LJ x Esther Smith STAN || Cers x LUFC | Chess & Scrabble player

Asylum
F**king bvlly 🤣🤣😭
You will feel fear you have never felt before do you remember or do I have I have to remind you agin lol
47
Pope Larry 🦅 retweeted
Almost every piece of electronics you own has a master key built into the circuit board. Engineers put it there to test the chips at the factory. Then they boxed it up, shipped it to you, and forgot to disable it. This is JTAG, and it breaks software security completely. 🧵
6
35
363
18,553
Pope Larry 🦅 retweeted
the difference between Pure Akan and Kendrick Lamar is language
Pure Akan
63
245
1,206
37,437
Pope Larry 🦅 retweeted
10 years ago today, we dropped Victory Through Harmony exclusively on Soundcloud. The Mixtape is now available on all DSPs li.sten.to/omar-sterling-vic… We dedicate this milestone to our brother and producer, Raymond Anyafulu aka Yung Bali who passed away earlier this month after a short illness. Forever in our hearts. 🕊️🫶🏿
523
3,350
13,290
564,587
Pope Larry 🦅 retweeted
We're so back 🤩
98
944
9,404
258,630
Pope Larry 🦅 retweeted
🛡️We're back. #TechnicalTuesdays resumes with "Practical API Security: From Recon to Exploitation" To be anchored by @Dghost_Ninja 📅Tue, Sept 29 2026 🪧 Our Discord Scan the QR code on the flyer or join our Discord to be there live. #TechnicalTuesdays
6
14
441
Pope Larry 🦅 retweeted
I am inspiring a generation 🇬🇧
1,677
9,826
64,802
2,870,901
We still have cheap vouchers - 1 year TryHackMe voucher - Comptia sec+ - AWS foundation and AWS associate and more.
Join our Telegram channel for updates on all our digital products and prices. - Vouchers - Premium subscriptions - License keys etc. Join here: t.me/+KtCBDTdPFIdiMWU0
1
4
211
Pope Larry 🦅 retweeted
Hello, Little People Living Inside My Computer, I have made a YouTube account to discuss malware reverse engineering and development. It will primarily target noobs. It will be lighthearted, poorly produced, and spontaneous. youtube.com/@MalwareForFun
129
381
5,127
147,395
Pope Larry 🦅 retweeted
God is EVERYTHING AMEN
219
1,812
17,357
260,790
Pope Larry 🦅 retweeted
God abeg add me for lineup, I don too watch my mates ball
1,024
17,882
58,178
3,593,329
🐛 Bug Bounty Writeup • Bug Bounty Penetration Testing | Real-World Security Testing by Pentester Club: medium.com/@pentesterclubpvt… • Bypassing Access Control by Simply Changing the HTTP Method — A PortSwigger Lab Walkthrough: vivek0x.medium.com/bypassing… • How I found an internal compliance document in client-side code: meetcyber.net/how-i-found-an… • $11,500 : Account Takeover via Race Condition in OAuth2 State Verification & Single-Use…: medium.com/@t4nv1/11-500-acc… • Unauthenticated Account Takeover: When the Password Reset API Hands You the Token: medium.com/@neel.chauhan09/u… • BOLA in the Wild: Reading Another User’s Full Profile by Changing One UUID: medium.com/@neel.chauhan09/b… • How a single broken button got me £150 from a bug bounty program: medium.com/@sairajthorat077/… • Mr. Robot CTF Walkthrough | THM: medium.com/@ker0los/mr-robot… • From Finding Bugs to Getting CVEs: My Journey of How I Got 2 CVEs: infosecwriteups.com/from-fin… • findme — picoCTF Write-up | Finding a Flag Hidden in HTTP Redirects: medium.com/@affanhaxor/findm…
1
10
32
3,104
Pope Larry 🦅 retweeted
Do you want to learn how to fuzz like a real expert, but don't know how to start ? If so, this is the course for you! 10 real targets, 10 exercises. Created by github staff member. Github:- github.com/antonio-morales/F…
1
63
355
12,459
Pope Larry 🦅 retweeted
God, I’m tired of being Endrick. Bring me on 🤲
God abeg add me for lineup, I don too watch my mates ball
17
195
1,962
36,704
Pope Larry 🦅 retweeted
17
157
1,481
43,630
Pope Larry 🦅 retweeted
There are extremely cracked guys out there, just 'cause they don't post doesn't mean shii. We wey know know and we give them the respect.
4
24
401
Pope Larry 🦅 retweeted
@Dghost_Ninja’s write up on response manipulation is one you should actually read. He keeps finding the same thing in financial apps. The server already made a decision, then it puts a messy result in the response. The client just believes it. So a failed check still looks like success if the UI is trusting verified: true or a flipped status code. Different screens. Same mistake. I keep seeing the other side of that. On a cart flow I tested, product page is one request. Add to cart is another. The 302 is not the story, the story is `price` sitting in the body the browser sent. If the backend uses that number instead of looking the price up itself, the client is not just showing the cart. It is setting the bill. This class is still everywhere. Request side: amounts, quantities, discounts, IDs. Response side: success, verified, approved. Both mean the app trusted a message it does not own. Price and money decisions belong on the server, on the product record. Not in a field somebody can edit in a proxy. Good write up. The pattern has not gone anywhere. dghostninja.github.io/posts/…
1
3
9
439
LUFC!!
RT if your club is still unbeaten 🤩
1
88
Pope Larry 🦅 retweeted
How to get a job as a Robotics Engineer: robotics is the one frontier field where the entry level still doesn't ask for a degree 1 in 5 robotics jobs posted right now is a technician role, and most of them only need a certificate or a two year degree so here's my workflow for getting a job as a robotics engineer: 1: pick one direction and drop the other two robot learning pays the most and everyone wants it autonomy and mobile robotics has the most openings by a wide margin embedded and mechatronics is boring and you'll never be out of work 2: build things that moved, and write down the numbers recruiters here open your github before they read your CV what gets you through: - a commit history where you're visibly fixing things, not one big final push - real hardware with reliability numbers, sim doesn't count - datasets on the lerobot hub - commits to ROS 2, Nav2, MoveIt, Isaac Lab, LeRobot 3: build your hardware in public the best way to prove your knowledge is the recognition of your skill from masses just build anything you want and share it on X/IG/YT good example of the guy who gets offers from Tier-S level robotics companies (you can copy his strategy): go to IG type in search: "aykhanium" and check which rubrics he does to be recognized repeat. 4: write down what broke everyone posts the demo that worked almost nobody writes up the four things that failed first and how they found each one that's the part you can't fake from a tutorial, and it's the part that survives the third question in an interview cheat-codes to stand out and get into the top 1%: 1. take the shift nobody wants teleoperation pays around $28 an hour. figure posted a humanoid robot operator at $25 to $35 with no degree asked for it's just driving a robot around a lab but it puts you inside a frontier company with a badge on, and now you're a person they know instead of a CV in a pile 2. sell the integration, not the robot the arm is about 25% of what a project costs the other 75% is engineering, safety, and making everything talk to each other a $35k arm turns into an $80k system, and that $45k is your job 3. go where nobody's competing 66% of robotics projects get delayed by certification functional safety pays well and almost nobody bothers learning it 4. C++ and Python, both every Figure and Skild listing I read asks for both, not one 5. delete the ROS 1 from your repos recruiters call it out by name as a red flag if there's still a catkin_make sitting in your github, that's the first thing they see main insight: $47.4B went into physical AI in the first half of 2026 the BLS still projects 1 to 2% job growth in the occupation the money showed up years before the headcount will so the people getting in right now aren't winning interviews, they're walking through the technician door and moving sideways once they're inside that's like to be hired in OpenAI in 2019... and one more thing nothing you learn here goes stale a PID loop works the same as it did in 1990, and the arm you fix this weekend teaches you something you'll still use in ten years you can't say that about anything else in AI right now...
35
124
1,266
83,687