Chaining Path Traversal to RCE ā Dissecting Metaās $111,750 Bug ā”
How a file placement bug in Facebook Messenger was escalated into a full Remote Code Execution.
ā Full Article š
medium.com/@Aacle/chaininā¦
Think your app is secure?
What can a logged-in user really do?
Most teams only pentest their public-facing pages (pre-auth).
Attackers thrive on the inside (post-auth). Can they:
ā š Access other users' data?
ā š Escalate their privileges to admin?
ā š„ Exploit sensitiveā¦
How a Simple File Upload can lead to a Full Company Workspace Takeover.
Itās a classic, but still effective, vulnerability. Here's a quick breakdown of the attack chain and how to prevent it. #bugbounty#infosec
Here's the Amazing Article š
medium.com/@Aacle/from-imā¦
Ever feel like you're learning a ton about bug bounty but not actually finding anything?
It's a common trap caused by focusing on too many things at once. A focused methodology is the key to cutting through the noise. #bugbountytips
Read the full guide:
medium.com/p/beyond-the-hā¦
Tired of hunting the same old OWASP Top 10? The real gold is often found in business logic flaws ā where processes, not just code, are vulnerable.
Learn how to systematically uncover these high-impact bugs that scanners overlook.
New article out now! š
medium.com/@Aacle/yond-thā¦
š Introducing the Vulncure Penetration Testing Dashboard
Meet Vulncure Pentest Dashboard ā the all-in-one platform designed to simplify and supercharge your penetration testing workflow.
In this demo, weāll walk you through how Vulncure helps you:
⢠⨠Streamline yourā¦
I once spent days writing long reports only for the client to say they didnāt understand a word. That frustration shaped how we built Vulncure.
On 27th Aug, see how weāre solving this.
š Coming Soon !
From pentester to COO at Vulncure, Iāve seen how slow and complex security testing can be.
Thatās why on 27th August, weāre launching the Vulncure Pentest Dashboard ā built for leaders who canāt afford delays.
Stay Tuned ā
#pentesting#infosec
š Coming Soon !
From pentester to COO at Vulncure, Iāve seen how slow and complex security testing can be.
Thatās why on 27th August, weāre launching the Vulncure Pentest Dashboard ā built for leaders who canāt afford delays.
Stay Tuned ā
#pentesting#infosec
19K Followers 713 Followingā ļø inactive account ā ļø - Training the next generation of Hackers over at bsky / linkedin / youtube š“āā ļøš
0 Followers 77 FollowingInfernoRadar- Scanning the digital horizon for
threats before they strike. Daily Cybersecurity
and AI tips, tools, and roadmaps to keep you one
step ahead.
55 Followers 462 FollowingI condemn acts of violence/hate posts = educational purposes. It does not intend to promote dangerous acts, organisations, violence, harassment, or bullying.
468 Followers 4K FollowingFrom science to technology. Into data analytics, engineering and science. Interested in politics and geography. Fan of ā½š“š¾šš»
190K Followers 0 FollowingWe make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
233K Followers 1K FollowingCofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01š®š·
247K Followers 3K FollowingPentester, Forensic investigator, and former college professor. Trained hackers at every branch of US military and intelligence.
Visit me at https://t.co/G478wufszw
187K Followers 6K FollowingThe leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuityā¢
19K Followers 713 Followingā ļø inactive account ā ļø - Training the next generation of Hackers over at bsky / linkedin / youtube š“āā ļøš
43K Followers 897 FollowingCo-founder of @centrahq/@detectify/@poweredbyingrid. I do not advertise doing hacking services, do not trust the ones telling you I do.
22K Followers 69 FollowingA 'by Hackers for Hackers' podcast focused on technical content ranging from bug bounty tips, to write-up explanations, to the latest exploitation techniques.
10K Followers 1 FollowingUser friendly unofficial HackerOne public disclosures, keeps you updated about the recently disclosed bugs.
Made With ā„ By Hackers For Hackers. - @rohsec
4K Followers 543 Following⢠Irish/Japanese web hacker living in Scotland.
⢠Researcher for @ctbbpodcast Lab.
I run https://t.co/Ja1P3vco1X | Newsletter weekly at https://t.co/KA5b2kY8ih
4K Followers 399 FollowingMicrosoft's Top Security Researcher Globally (Rank 23) | Apple Hall of Fame | Google Hall of Fame | Microsoft Hall of Fame | Microsoft MSRC MVR (Rank 82) Global
65K Followers 2 FollowingThis is an unofficial HackerOne public disclosure watcher who keeps you up to date about the recently disclosed bugs. By @NOBBD