Twitter | Pretraživanje | |
sumgr0
Pentester | Bug Bounty Hunter | | | Security Analyst
22.007
Tweetovi
4.978
Pratim
2.652
Osobe koje vas prate
Tweetovi
sumgr0 proslijedio/la je tweet
Pranav Sapra 33 min
If I got a rupee every time a millennial said "I mean" and "like", do you know how rich I'd be? I mean like really rich!
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Jeff Man 22 h
InfoSec Rule: If customer says, "we don't store that"...they do.
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Luke Stephens (hakluke) 11 h
Quickly get the ASN of an IP address, along with the associated company name and location: curl <ip> This is a great way to confirm ownership of an IP/domain. It also is a great way to services that might be in use (AWS/Azure/Cloudfront/Akamai, etc.)
Reply Retweet Označi sa "sviđa mi se"
sumgr0 24 h
Shows of hands, if you’ve got the invite and going to be there!
Reply Retweet Označi sa "sviđa mi se"
sumgr0 24 h
Odgovor korisniku/ci @KHIZER_JAVED47
Mine highest was 12 sub takeovers for a VDP...but you rock 🤘
Reply Retweet Označi sa "sviđa mi se"
sumgr0 5. velj
Odgovor korisniku/ci @0xw2w
In my experience it’s a wildcard registration. But I could be wrong.
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Prateek Tiwari 5. velj
Bas yahi dekhna reh gaya tha 🤦‍♂️
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Eduard Tolosa 4. velj
Findomain has just reached 1k of stars in Github. Thanks for all the community support and ideas.
Reply Retweet Označi sa "sviđa mi se"
sumgr0 5. velj
Odgovor korisniku/ci @k1ra__ @KHIZER_JAVED47 @zseano
You cannot disclose the private ones 😂
Reply Retweet Označi sa "sviđa mi se"
sumgr0 5. velj
Odgovor korisniku/ci @k1ra__ @KHIZER_JAVED47 @zseano
I hope you mention this from the public one 😉
Reply Retweet Označi sa "sviđa mi se"
sumgr0 5. velj
Odgovor korisniku/ci @KHIZER_JAVED47 @zseano
BTW I’ve noticed the cross between same programs being public on one platform, and them being private on the other 🤔
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Mr Andy goTtA gO fASt offensive 5. velj
Laugh of the morning :-)
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Twitter Support 3. velj
We recently discovered an issue that allowed bad actors to match a specific phone number with the corresponding accounts on Twitter. We quickly corrected this issue and are sorry this happened. You can learn more about our investigation here:
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Elliot Alderson 4. velj
Another *super smart* phishing attempt...
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Yassine Aboukir 🐐 4. velj
Rumors say that local tax authorities have all started tracking down those "Yay, I was awarded a bounty on " related tweets for interviews eligibility. You may find more information on
Reply Retweet Označi sa "sviđa mi se"
sumgr0 4. velj
Odgovor korisniku/ci @vasim_infosec
I’ve got the invite and I’m in delhi but the amount is really low to consider. I’d be keen to see how many are going?
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
Random Robbie 4. velj
Reply Retweet Označi sa "sviđa mi se"
sumgr0 4. velj
Odgovor korisniku/ci @pdp @TomNomNom
Reply Retweet Označi sa "sviđa mi se"
sumgr0 4. velj
Odgovor korisniku/ci @pdp
Check out gf tool from tomnomnom. It integrates grep for common scenarios and makes it easy to trace.
Reply Retweet Označi sa "sviđa mi se"
sumgr0 proslijedio/la je tweet
dawgyg 4. velj
When testing for SSRF using a black list, take internal IP addresses and when encoding them, dont encode entire IP. Encode 1 octet of the IP address, or 2 or 3. For Instance: AWS Metadata - 0251.254.169.254 (this got the $160,000 payout in Oct 2018)
Reply Retweet Označi sa "sviđa mi se"