After a week of building and refining,
Simon Recon is finally out...🐿️
Designed to make scoped recon easier and save time during bug bounty hunting.
Let me know what you think.
https://t.co/O4vxJ7aQda
The keys themselves aren't necessarily sensitive.
By finding the right API paths and using the exposed configs/credentials, I was able to reach backend functionality and access sensitive data...
@MertPolatis Not everything here is sensitive by itself.
The interesting part is the combination of exposed endpoints, configs, and credentials , some of which can lead to sensitive backend access depending on their permissions...
That’s where the real impact is...
XSS2Shell — a WordPress Core pre-auth XSS → RCE vulnerability reportedly discovered autonomously by @pwn_ai using open-source models.
https://t.co/J367yeG2jO
The flaw affects WordPress versions broadly and could impact a huge portion of the web.
If you run WordPress, patch CVE-2026-64638 ASAP.
#WordPress #CyberSecurity #XSS #RCE #CVE #AppSec #InfoSec #AI
انقد این چند وقت از سایت های ایرانی cors misconfiguration پیدا کردم که دیگه حالم به هم میخوره از هر چی :
HTTP/2 200
access-control-allow-origin: https://t.co/82dY34QWvU
access-control-allow-credentials: true
تازه بعد از اینکه این باگ رو گزارش دادم
تریاژر محترم فرمودن ما خودمون باز گذاشتیم و هیچ چیز مخفی از مردم نداریم😐😐😂
(حدس میزنم اصن نمیدونست api key چیه)
خدایی سطح پاسخگویی و سعی در ماسمالی کردن باگ و بانتی ندادنشون در حد پاتریکه...
#bugbounty
Lesson:
Secrets in NEXT_DATA and public .env files = bad. Very bad. Same bug, different location. Time to rotate everything. 🚀
* Choose a long-term target and stay committed to it *
@voorivex🙏
•𝐒𝐢𝐦𝐨𝐧𝐬𝐞𝐜🐿
انقد این چند وقت از سایت های ایرانی cors misconfiguration پیدا کردم که دیگه حالم به هم میخوره از هر چی :
HTTP/2 200
access-control-allow-origin: https://t.co/82dY34QWvU
access-control-allow-credentials: true
Lesson:
Secrets in NEXT_DATA and public .env files = bad. Very bad. Same bug, different location. Time to rotate everything. 🚀
* Choose a long-term target and stay committed to it *
@voorivex🙏
•𝐒𝐢𝐦𝐨𝐧𝐬𝐞𝐜🐿