Giveaway! 🎉
I'm going to buy someone a new MacBook Pro M2 13".
To enter, retweet this tweet, then follow: @hakluke, @hacker_content & @haksecio.
If you're a cybersecurity org looking for high quality content and social media management, check out https://t.co/FfJsZ2HZYU 👇
Uniswap V3 is notorious for being one of the most complex DeFi protocols there is.
Here's everything you need to know to understand it, as simply put as possible. 🧵👇
Become an Nmap pro in 30s 👇🕥
Nmap is a port scanner, but it does much more including service/OS detection and even vuln scanning.
By default nmap does a standard TCP SYN scan on the top 1000 ports of host.
$ nmap host
For more verbosity use -v or -vv.
$ nmap -vv host
👇
I want to keep track of the latest cybersecurity news.
I also don't want to rely solely on Twitter.
Here are 5 great cybersecurity news outlets that I rely on daily! 👇
🤖 WebSecGPT - Your AI security buddy
Hacking an API or JS framework?
Don't have a swagger file or struggling to understand the app?
Wanna quickly identify all js sinks?
Meet WebSecGPT
(a thread ) 👇
I hacked into a @Bing CMS that allowed me to alter search results and take over millions of @Office365 accounts.
How did I do it? Well, it all started with a simple click in @Azure… 👀
This is the story of #BingBang 🧵⬇️
☃️Bug Bounty Beginner's Roadmap☃️
Many of you have asked me how to get started at bugbounty and what are the pre-requisites to get started.
This repository contains nearly everything you need to know and can help you get started easily with a variety of resources.
#bugbounty
If you're still using @Burp_Suite Extension 𝗚𝗔𝗣 1.𝘅, or haven't tried 𝗚𝗔𝗣 before, go get 𝗚𝗔𝗣 𝘃2.4 now and find potential parameters, links and a custom wordlist for your target 🤘
https://t.co/xnkU74yZBQ
#BugBounty
If you want to master hacking JWT tokens, open this thread!
JWT tokens are often used to authenticate logged-in users. They do this by signing the data so that the server can verify forged tokens. But in some cases, we can bypass this protection! 🤯
A Thread 🧵👇