Here are some pictures from #LeetCTF organized by our cyber security club @leetctf at @1337FIL , it was really fun and intense, thanks to everyone that participated.
@Shawntiqm@CristiVlad25 Shortly after posting the comment, one of the accounts (not the one I just reverified) lost trusted access, and I wasn't able to reverify it like the first one. Maybe they're rolling out something so each person can only have one verified account?
Interesting Log4j payload I discovered, simply omit the closing brace }, and now you will potentially get a bunch of data exfiltrated to your server until the next } appears in that data. Had it work on a FANG target...
1st writeup..How I turned a Blind SSRF to $15k RCE. My public disclosure request has not been approved so I cannot directly name the program involved, but this was found on one of Hackerone's largest bug bounty programs!
#bugbounty#bugbountytips
https://t.co/fo0m1VJAJQ
We were pleased to meet @DataProtect_ 's team, the meeting resulted in exchanging ideas between both sides and making plans for future collaborations between both teams.
Annual reminder: you can find all my past research, whitepapers & presentations helpfully archived at https://t.co/MzFanmVouC
Often the oldest techniques are the most valuable.
Hello followers 👋 if you know someone who's interested to learn basics React please let him dm me, I'm hosting learning sessions each day (7pm) with couple of friends and everyone is welcome to join! RT if you have followers who might be interested 🤗