Thank you so much @msftsecresponse for the bounty 🤑. It was my very first report to MSRC ❤ and awarded with 4 digit bounty $$$$ 🥳. Report will be disclosed soon after discussing with msrc. Till then onto next one 🚀 Follow me here: medium.com/@dsmodi484
7
4
128
8,895
cryptoshant🇮🇳 retweeted
SQL Injection - Bypassing Baffin Bay WAF to Exploit PostgreSQL ORDER BY Injection - @p3n7a90n p3n7a90n.github.io/blogs/sql…
1
13
102
6,185
cryptoshant🇮🇳 retweeted
📢📢📢 Attention bug hunters! Want to know more about how brutecat found a vulnerability in Google’s internal APIs, bypassing authorization to exploit the GFile library to gain access to internal filesystems and storage? If yes, check out his blog post 👇 bughunters.google.com/blog/b…
9
82
551
44,873
cryptoshant🇮🇳 retweeted
Recently I uploaded two new videos! But I have been pretty inactive the past 2-3 years and a lot has happened. Let me share an update about my life, AI and the future of LiveOverflow.
46
36
634
51,646
To find subdomains you can use this new technique: crt.name/v1/search?apex=targ…
122
590
7,710
6,312,367
Appreciate everyone pointing out that CT logs are a classic technique! I'm learning in public & found this endpoint while trying to learn something new.Even if CT logs aren't new, what's awesome about crt.name is how fast it is compared to standard web parsing! 👇
3
19
351
239,152
For anyone learning with me, under the hood crt(.)name reads the live Certificate Transparency firehose in memory. It strips out the certificate metadata and instantly indexes just the subdomains. Love how lightweight it is! (2/2)
2
2
133
127,386
Recently watched video of @thisis0xczar demonstrating his findings of Azure bug bounty. It's really amazing. You will learn a lot from it. Make sure to make note 📝 here is the link: piped.video/watch?v=gTXfnbFh…
2
7
1,741
Here is the writeup of my MSRC bug. I hope you will learn something from it 🤗 link: medium.com/@dsmodi484/chaini…
2
54
3,518
which command will led to revel the flag.txt file? Offsec assessment labs are amazing 🔥 and it's free..! link: portal.offsec.com/assessment…
1
3
943
Writeup coming soon 🔥! I hope you found it helpful 😉
2
74
3,631
It is quite hard to find job in offensive security as a fresher..! Do you agree? 🤔 #cybersecurity #jobs
1
1
536
I recently come across the Bug Bounty Masterclass course made by Nagli 🔥the legend with the wiz ❤. It was amazing and I learn something new from that. Share with your friends.. It's free here is the link: wiz.io/bug-bounty-masterclas…
1
538
First Report to Google and It's Duplicate but still I have no complaints. see the timings its saves my lots of hours of thinking of getting a good response. That's why I love to find bugs in companies who really cares about security. No Complaints😊 Life is a part of up & down
44
2,564
If you found any encoded Ids and if it is same everytime not changing then try to decode once may be you found a Gold there.!? Google Loves "Protocol Buffers" encodings. Here is a great writeup which proves this thing 👇 ezequiel.tech/2020/08/leakin…
1
354