Testing an API parameter for SQLi and got some interesting results--time-based delays scaling with injected sleep values, plus a boolean true/false differential in the response.Not 100% sure this confirms SQLi or if there's another explanation. Thoughts? Screenshots below 🧵
#bug
Small win from today's bug hunting session ✨.
Found a Host Header Injection where the application trusts the X-Forwarded-Host header and reflects it in the Location response header.
I wasn't able to escalate it beyond a redirect
#AppSec#WebSecurity#Pentesting#bugbounty#bug
Found my first Reflected XSS today 🎯
It blocked all the generic tags like <script>, <svg>, <img> — so I tried onmouseover instead and it worked 😄
Reported responsibly, fix pending.
#XSS#bugbounty#infosec
Found my first Reflected XSS today 🎯
It blocked all the generic tags like <script>, <svg>, <img> — so I tried onmouseover instead and it worked 😄
Reported responsibly, fix pending.
#XSS#bugbounty#infosec
If you're learning bug bounty, don’t miss this write-up on HubSpot Full Account Takeover.
Shows how deep testing of auth flows can lead to critical findings.
Great learning resource 👇
https://t.co/XF8ZlpQvUd