I help companies secure their web applications - Cybersecurity strategy, pentesting and advisory | OSCP - CRTP - CARTP
#cybersecurity #pentesting #webapp #apitripla.dk DenmarkJoined October 2015
𝐑𝐞𝐥𝐞𝐚𝐬𝐢𝐧𝐠 "𝐒𝐎𝐀𝐏𝐈 - 𝐒𝐜𝐚𝐧𝐧𝐞𝐫 𝐨𝐟 𝐎𝐩𝐞𝐧𝐀𝐏𝐈" 𝐝𝐨𝐜𝐮𝐦𝐞𝐧𝐭𝐚𝐭𝐢𝐨𝐧𝐬 👇
After my OWASP presentation from last year, many people asked me when/if the tool is public because they'd love to give it a try
Well, now it is! 😄
github.com/andrei8055/SOA…
𝐓𝐢𝐫𝐞𝐝 𝐨𝐟 𝐭𝐡𝐞 𝐬𝐚𝐦𝐞 𝐨𝐥𝐝 𝐟𝐮𝐳𝐳𝐢𝐧𝐠 𝐰𝐨𝐫𝐝𝐥𝐢𝐬𝐭𝐬? 👇
Download my custom-made collection of API wordlists which I scraped from 120,000+ public documentations
-> API ports, paths, parameters, objects, headers and many more:
sqrsec.com/api-fuzzing-li…
CVE-2024-22272 VMware Cloud Director contains an Improper Privilege Management vulnerability.
An authenticated tenant administrator for a
given organization within VMware Cloud … cve.org/CVERecord?id=C…
SVGs images (unlike other image types) don't rely on unique pixels
But they use 'vector' data
What many applications and developers fail to understand is that SVG files are just XML documents with graphical tags.
This is usually abused to inject XXE, XSS and SSRF payloads
GraphQL DoS Payload 👇
This payload abuses the option to concatenate multiple queries into one single request.
When the number of batched requests were increased, an exponential increase in response time was also observed, ultimately exhausting the server.
#graphql#pentest
2 Followers 172 FollowingRecruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/3LT5wCikYW
233K Followers 1K FollowingCofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
229K Followers 229 Following#1 Cyber Performance Center, providing a human-first platform to create and maintain high-performing cybersecurity individuals and organizations.
247K Followers 3K FollowingPentester, Forensic investigator, and former college professor. Trained hackers at every branch of US military and intelligence.
Visit me at https://t.co/G478wufszw
95K Followers 2K FollowingHacker, marketer. I manage socials and produce amazing technical blogs for cybersecurity orgs. Founder of @hacker_content and @haksecio
68K Followers 586 FollowingHigh Queen of the Cybers | Educator | Content Creator | UwU-Anointed Wapp King | Ex-Brit | https://t.co/04RRExvxXj (he/him) 🇺🇸 I run gameshows at DEF CON.
37 Followers 258 FollowingSecurity Researcher • Web Security Vulnerabilities • Capture The Flag • Hackerone(Achieved 3rd place at Airbnb 2023) • Internship At VTF (Cyber Security).
9 Followers 176 FollowingThis person knows how to code. Has a great sense of humor and good taste in coffee ☕😉
🍿 Web Developer
💡 Entrepreneur
🎉 #Javascript #PHP
38 Followers 490 FollowingI wanna learn & start a career in tech. Interested in Cyber Sec, Ethical Hacking, Pen Testing, IT, Web Dev, Game Dev, Mobile Dev, & all that's tech related!
176 Followers 1K FollowingPentester padawan 💻. One of a kind. Humans and Machines are my friends, but both give me headaches! Twitter as my bulletin board.
3K Followers 3K Followingon a mission for better security #itsecurity #cybersecurity #cyber #Auditor #researcher @accenturesecure @accenturefrance #pcidss #ISA are you ready for v4?
110 Followers 1K FollowingSecurity researcher👨🔬 Busy finding vulnerabilities⚡️in Web2 & Web3 to make the digital world a more safe and secure space🛡️🇫🇷