When the frontend is doing the auth check, the frontend is the attack surface.
In our latest Exploits Explained, SRT Researcher @kuldeepdotexe breaks down three client-side authentication bypasses he found on real assessments:
1) Forging a JWT and expiry into localStorage after spotting an authRequired: !0 route guard
2) Flipping a sessionStorage loggedIn flag and setting userInfo to {} to satisfy a truthy check
3) Toggling is_active from false to true in an API response to unlock a hidden webhook flow for an inactive user
https://t.co/GMXehXStqU
Day 2:
Today, I worked on a legal assistant project and explored the Unit 8200. I also watched a video by a Wiz technical team member about CTFs.
This made me decide to dive deeper into hacking, especially focusing on cloud security and AI security.
Learning continues ........
Yesterday, I committed to spending the next 1000 days diving deep into hacking and security research.
Day 1: I explored the DevSecOps room on TryHackMe and started collecting tools for bug bounty hunting.
This is just the beginning.
⏳ Only 24 Hours Left! The clock is ticking!
We're giving away all of these hacking devices for absolutely FREE to celebrate hitting 600,000 subscribers on YouTube. If you haven't jumped in yet, this is your final warning before the window slams shut. 🎉
Thank you so much for your love and support 🙏
✅ How to Enter
Follow us on X
Comment on this or the original post what you want us to teach next.
Repost this or the original to complete your entry!
🗓️ Ends: Tomorrow
🎁 Each winner will receive a powerhouse kit including:
🔥 ZS Cactus PRO: Combine keystroke injection capabilities, hardware keylogging and Wi-Fi phishing with wireless control.
🔥 ZS Venom PRO: Keystroke injection capabilities and Wi-Fi phishing with wireless control all inside a normal charging cable!
🔥 Atheros AR9271 WiFi Adapter: The gold standard for wireless hacking. It supports monitor mode and packet injection out of the box with rock-solid Linux compatibility.
🔥 Realtek RTL8812AU WiFi Adapter: Need 5Ghz? This dual-band adapter gives you high-gain performance and modern 802.11ac support for auditing high-speed networks.
🔥 Data Blocker: Stay secure on the go. This "USB condom" prevents accidental data exchange and juice jacking when charging your devices in public spaces.
Single biggest improvement I made to my CLAUDE.md:
"When I report a bug, don't start by trying to fix it. Instead, start by writing a test that reproduces the bug. Then, have subagents try to fix the bug and prove it with a passing test."
Before touching Burp:
1️⃣ Read the company website
How do they make money?
What are premium features?
2️⃣ Identify trust boundaries
• Authenticated vs unauthenticated
• Free vs paid
• Admin vs support
3️⃣ Map features
Not endpoints.
Features.
Reset password
Invite user
Apply coupon
Upload document
Change email
4️⃣ Ask:
“What assumption is this feature making?”
That assumption is your entry point.
Hack the workflow.
Not the parameter.
🔵 𝗖𝗕𝗧𝗣 𝗕𝗹𝘂𝗲 𝗧𝗲𝗮𝗺 𝗥𝗲𝗮𝗱𝗶𝗻𝗲𝘀𝘀 𝗖𝗵𝗮𝗹𝗹𝗲𝗻𝗴𝗲 - 𝗖𝗵𝗮𝗻𝗰𝗲 𝘁𝗼 𝗪𝗶𝗻 𝗮 𝗙𝗥𝗘𝗘 𝗘𝘅𝗮𝗺 🤩!
Are you preparing to start your journey in 𝗕𝗹𝘂𝗲 𝗧𝗲𝗮𝗺 / 𝗦𝗢𝗖 𝗼𝗽𝗲𝗿𝗮𝘁𝗶𝗼𝗻𝘀?
Test your fundamentals with this 𝗖𝗕𝗧𝗣-𝘀𝘁𝘆𝗹𝗲 𝗾𝘂𝗲𝘀𝘁𝗶𝗼𝗻 👇
📸 [𝘘𝘶𝘦𝘴𝘵𝘪𝘰𝘯 𝘪𝘯 𝘪𝘮𝘢𝘨𝘦]
💬 𝗖𝗼𝗺𝗺𝗲𝗻𝘁 𝘄𝗶𝘁𝗵 𝘁𝗵𝗲 𝗰𝗼𝗿𝗿𝗲𝗰𝘁 𝗮𝗻𝘀𝘄𝗲𝗿 and demonstrate your readiness.
🎁 𝗚𝗶𝘃𝗲𝗮𝘄𝗮𝘆
We’ll be selecting 𝟯 𝗹𝘂𝗰𝗸𝘆 𝗽𝗮𝗿𝘁𝗶𝗰𝗶𝗽𝗮𝗻𝘁𝘀 with the correct answer to receive the
𝗖𝗲𝗿𝘁𝗶𝗳𝗶𝗲𝗱 𝗕𝗹𝘂𝗲 𝗧𝗲𝗮𝗺 𝗣𝗿𝗮𝗰𝘁𝗶𝘁𝗶𝗼𝗻𝗲𝗿 (𝗖𝗕𝗧𝗣) 𝗲𝘅𝗮𝗺 — 𝗰𝗼𝗺𝗽𝗹𝗲𝘁𝗲𝗹𝘆 𝗙𝗥𝗘𝗘.
❤️𝗟𝗶𝗸𝗲 𝘁𝗵𝗶𝘀 𝗽𝗼𝘀𝘁, 🔄𝘀𝗵𝗮𝗿𝗲 𝗶𝘁, 𝗮𝗻𝗱 👥𝘁𝗮𝗴 𝘆𝗼𝘂𝗿 𝗳𝗿𝗶𝗲𝗻𝗱𝘀 to increase your chances of winning the 𝗙𝗥𝗘𝗘 𝗖𝗕𝗧𝗣 𝗲𝘅𝗮𝗺.
🧪 Want a realistic exam experience before the real attempt?
Try our 𝗖𝗕𝗧𝗣 𝗠𝗼𝗰𝗸 𝗘𝘅𝗮𝗺 to assess your preparedness and identify gaps.
🔥 𝗠𝗶𝘀𝘀𝗲𝗱 𝘁𝗵𝗲 𝗴𝗶𝘃𝗲𝗮𝘄𝗮𝘆?
We’re currently offering 𝟳𝟱% 𝗗𝗶𝘀𝗰𝗼𝘂𝗻𝘁 𝗼𝗻 𝗮𝗹𝗹 𝗼𝘂𝗿 𝗣𝗲𝗻𝘁𝗲𝘀𝘁𝗶𝗻𝗴 𝗘𝘅𝗮𝗺𝘀, making this the perfect time to get started—even if you’re new to cybersecurity.
🔖𝗨𝘀𝗲 𝗗𝗶𝘀𝗰𝗼𝘂𝗻𝘁 𝗖𝗼𝗱𝗲- 75-OFF
🚀 𝗖𝗕𝗧𝗣 𝗶𝘀 𝗮𝗻 𝗲𝗻𝘁𝗿𝘆-𝗹𝗲𝘃𝗲𝗹 𝗲𝘅𝗮𝗺 𝗱𝗲𝘀𝗶𝗴𝗻𝗲𝗱 𝘁𝗼 𝘃𝗮𝗹𝗶𝗱𝗮𝘁𝗲 𝗿𝗲𝗮𝗹-𝘄𝗼𝗿𝗹𝗱 𝗕𝗹𝘂𝗲 𝗧𝗲𝗮𝗺 𝗳𝘂𝗻𝗱𝗮𝗺𝗲𝗻𝘁𝗮𝗹𝘀.
Start right. Start strong 💪 https://t.co/jZsdRy1Ryk
Who's up for a bonus challenge? Easier than usual! 👀
6 random solvers will win a limited edition t-shirt! 😎
Rules:
✅ Follow us @INTIGRITI
✅ Submit the flag before 31/12/2025, 11:59 UTC 👇
https://t.co/PZIAe1cF7S
Do you know you can find high to critical severity vulnerabilities just by doing reconnaissance properly?
Most beginners think exploitation is the hard part, but what actually holds them back is not knowing where to look or how deep to go. I’ve seen people pick random targets, run recon tools without context, open Burp, and still end up with nothing meaningful.
If you are someone who can related with this, Then i can something special for you.
I've recently created an interesting course where instead of jumping straight into exploits, it shows how to think during reconnaissance. You’ll learn how to pick the right target as a beginner, how to recon web applications with intent, and how to dive deeper into an application instead of stopping at surface-level findings.
The key part comes at the end. We take a real-world target and uncover high to critical severity vulnerabilities using only in-depth reconnaissance, with a full practical walkthrough that shows the entire thought process.
If recon feels confusing or random right now, this course is meant to bring clarity and structure — not shortcuts.
I’ve shared an 85% Christmas discount below.
The link is valid for only 50 students and will expire in 3 days.
https://t.co/Z5q62JAMKA
@thedawgyg I have nothing to say maybe apply top hackers method/trick to find similar bugs
I applied your HTTP/0.9 trick in 2024 and found Log4j Bypass The web app fix the finding on https and HTTP/1.1 or 2.0
I tried http instead of https and http/0.9 and made around 10k for this.