Callmed Profile Banner
Callmed Profile
Callmed

@HarshDRanjan1

Followers
1,756
Following
720
Media
62
Statuses
3,747

IT Slave Private investigator at Night

Jharkhand, India
Joined November 2018
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
Pinned Tweet
@HarshDRanjan1
Callmed
2 years
I just published Bounties 💸 vs Health 💊 Let me know what you guys think about this issue #bugbounty #Cybersecurite #health #Hackers
3
50
157
@HarshDRanjan1
Callmed
3 years
Thank you @Bugcrowd this is awesome 🔥
Tweet media one
7
6
239
@HarshDRanjan1
Callmed
2 months
Yay, I was awarded a $2,500 bounty on @Hacker0x01 ! #TogetherWeHitHarder It was a unique approach, will disclose soon
15
6
224
@HarshDRanjan1
Callmed
1 month
I'm about to start a 20-day bug bounty journey tomorrow on @Hacker0x01 ! Gonna hunt for extreme Hours daily. Never been this serious before! wait for the results will surely publish #BugBounty #Cybersecurity
30
3
155
@HarshDRanjan1
Callmed
3 years
Finally!! crossed 500+ points for the first time!! @Bugcrowd #ItTakesACrowd 👀still No sign of hoodies
Tweet media one
11
1
127
@HarshDRanjan1
Callmed
2 years
Broke a 6 year old logic🦖🍺 Yay, I was awarded a $1,600 bounty on @Hacker0x01 ! #TogetherWeHitHarder
9
1
130
@HarshDRanjan1
Callmed
3 months
Yay, I was awarded a $5,000 bounty on @Hacker0x01 ! #TogetherWeHitHarder Bhagwan sabko paise de, shuruwat mujhse kare 🤧
14
1
129
@HarshDRanjan1
Callmed
7 days
Thank you @Hacker0x01 💔
Tweet media one
6
0
131
@HarshDRanjan1
Callmed
4 years
Finally Top 1K at @Bugcrowd the only Motivation @ADITYASHENDE17 and @dhakal_ananda ,Thank You for Pushing me and Motivating . Next goal: Top 500
Tweet media one
8
4
124
@HarshDRanjan1
Callmed
4 years
patience is the Key I earned $300 for my submission on @bugcrowd #ItTakesACrowd
Tweet media one
11
0
97
@HarshDRanjan1
Callmed
3 years
Gold Mine, Try it if you are new or anywhere struck
4
47
93
@HarshDRanjan1
Callmed
2 years
back in business Yay, I was awarded a $1,900 bounty on @Hacker0x01 ! #TogetherWeHitHarder
6
1
87
@HarshDRanjan1
Callmed
1 year
Tweet media one
@remonsec
ʀᴇᴍᴏɴ ⚡
1 year
Tweet media one
2
0
54
5
7
71
@HarshDRanjan1
Callmed
2 years
😂first time on h1 private Yay, I was awarded a $250 bounty on @Hacker0x01 ! #TogetherWeHitHarder
2
1
64
@HarshDRanjan1
Callmed
7 months
Got a Crit after a year , it was a VDP so no rewards but this mail from @Hacker0x01 made my day a little easy 😸
Tweet media one
3
0
51
@HarshDRanjan1
Callmed
4 months
Found a critical IDOR on @Hacker0x01 Sandbox. As the Feature was new, demo data was used. the report was Informative and in reply, they said "This is how we set sandboxes. Flags get set, one of them giving access to this page and showing demo data" (1) #bugbounty
5
2
47
@HarshDRanjan1
Callmed
4 months
All @Hacker0x01 programs scope are showing today’s date on last update , who th exploited it 🙂
Tweet media one
Tweet media two
9
0
45
@HarshDRanjan1
Callmed
4 years
Finally Crossed 100 Points @Bugcrowd with Severity at 3.94 Happy to work with Bugcrowd and make things Safe. Next Aim is to get a Bugcrowd Swag, Hope to get it soon with a Lot of Bounties .
Tweet media one
5
0
37
@HarshDRanjan1
Callmed
3 years
(1/2) Tired of Duplicate on Long String DoS on the web apps? Try this < Apply the Long String using the web app and open the same stuff in Android App. The app will crash always or will lag if vulnerable. #BugBounty #bugbountytips
1
12
32
@HarshDRanjan1
Callmed
1 year
unlocked payment cancellation 🤣🤣 @Bugcrowd
Tweet media one
3
1
32
@HarshDRanjan1
Callmed
16 days
Because of @Hacker0x01 slow triaged I am suffering. New featured was introduced and I found a bug in it but before the triager can reproduce it , they took the feature down thus making it a NA according to triager. Is this case normal.
12
1
32
@HarshDRanjan1
Callmed
1 year
My bro at 18 🔥
@dhakal_ananda
Ananda Dhakal
1 year
I just published the blog post on my journey and review of AWAE/OSWE (WEB-300) by Offensive Security. Do give it a read :)
14
64
278
1
1
26
@HarshDRanjan1
Callmed
2 years
And people are saving it in notion @SaveNotToNotion #bughunting
@BegHacker
BegBountyHacker
2 years
35 SST injections in one day @Hacker0x01 All DELETE & GET requests Expecting 12k$+ Payloads used: {{7*7}} {{8*7}} {{8*8}} {{111-7}} {{222-3}} {{1337/1337}} {{1337+1}} {{1337+2}} {{1331+6}} {{payloda}} {{1}} {{2}} #bugbountytips #richlife #audemarspiguette
27
107
418
7
2
20
@HarshDRanjan1
Callmed
5 years
@PentesterLab Essential badge 😍.... I just got the pro account yesterday and I am already in love with the way you guys teach there and those exercises..... Everything is top notch.... <3
2
1
20
@HarshDRanjan1
Callmed
2 years
Hard work always pays 😶, let's hunt for PS5 from 2nd of March
@dhakal_ananda
Ananda Dhakal
2 years
2 weeks of continuous bug hunting and here is the result. Thanks @Hacker0x01 #bugbounty #togetherwehitharder
Tweet media one
24
4
364
1
0
19
@HarshDRanjan1
Callmed
4 months
Escalated my low severity report of @Hacker0x01 to High by reading tweets and talking with @errorsec_ 😴🥂
3
0
19
@HarshDRanjan1
Callmed
2 years
🤤🤤☘️
Tweet media one
@ThisIsDK999
Debangshu 🇮🇳🥷
2 years
Tweet media one
1
1
27
3
0
17
@HarshDRanjan1
Callmed
4 years
Finally HOF at @oneplus Thankyou @ADITYASHENDE17 @Assass1nmarcos Sometimes the Demotivation inside you makes you do stuff that you were never supposed to 😎
Tweet media one
4
2
17
@HarshDRanjan1
Callmed
4 years
What Annoys You The Most in The Platform You Work? Mine: 'Eligible to apply' @debangshu_kundu @dhakal_ananda @ArmanSameer95
3
0
15
@HarshDRanjan1
Callmed
11 months
The title and the summary explains everything, it was an easy one but surely tricky to notice 😜 #bugbounty
@disclosedh1
publiclyDisclosed
11 months
Cloudflare Public Bug Bounty disclosed a bug submitted by @HarshDRanjan1 : #hackerone #bugbounty
Tweet media one
0
6
26
3
1
15
@HarshDRanjan1
Callmed
1 month
a person below 3k reputation or 4.0 signal cannot comment on a closed report. But can create a mediation which will increase the supports work which is already slow by leaps and bounds. People will be creating more mediation now. How are you tackling this @Hacker0x01 @jobertabma
2
0
15
@HarshDRanjan1
Callmed
11 months
@Hacker0x01 is definitely one of the best programs I have hunted. They are not rigid like others and always ready to listen and correct if anything is wrong . I didn't create any support tickets , spam the report section or tagged Hackerone's staff on Twitter .❤️
@scarybeasts
Chris Evans
11 months
A huge thank you to @HarshDRanjan1 for patience relating to report . Severity went Medium -> High; bounty raised. Good programs will re-evaluate reports with rational arguments. Hackers, thanks for the CVSS "Privileges Required" feedback. Action underway.
10
6
96
3
0
13
@HarshDRanjan1
Callmed
3 years
@theXSSrat If you need to understand the Life read "Bhagwat Gita" You will get all the answer regarding life, I prefer this over everything because it's not a Holy book it's the Life and any one can read this regardless of there religion and see the magic.
1
0
14
@HarshDRanjan1
Callmed
3 years
Hey folks, Here is a Great video on Dos & DDoS by @codingo_ Do not repeat my mistakes at @Bugcrowd but remember if the program has Out-of-scope Denial of Service. 1. Do not report a DDoS using wp-cron.php 2. Do not report Pixel flood attack (1/2)
@codingo_
Michael Skelton
3 years
I find DOS to be very misunderstood. Let's talk about why, and what goes into an impactful DOS that matters within a bug bounty program. 👉 #bugcrowdtipjar #bugbountytips
Tweet media one
4
48
157
1
4
14
@HarshDRanjan1
Callmed
5 years
🥳🥳Finally something good #1st bounty Thank you @Kirq @thecybermentor @NahamSec @stokfredrik @albinowax For your motivation and sharing
Tweet media one
1
0
13
@HarshDRanjan1
Callmed
2 years
let's start the bug hunt again
1
0
10
@HarshDRanjan1
Callmed
4 months
Gotta make it hard , more 20 reports within the next 15 days remaining
@HarshDRanjan1
Callmed
5 months
Lets report 10 submissions.
4
1
6
3
0
11
@HarshDRanjan1
Callmed
2 months
Programs are all Mighty. Above everything , even if they scam you or being unfair, You cannot go against them. The middleman may try to convince the client but won’t fight for you and that’s the truth of #bugbounty
4
1
12
@HarshDRanjan1
Callmed
2 years
A bad day getting worse @Hacker0x01 🥲
Tweet media one
1
0
11
@HarshDRanjan1
Callmed
3 years
Learning Xss from Scratch , If you have any lab suggestions or Resources please do mention it below. I will add all my resources and labs here while I will learn in these coming days. #bugbounty #xss
4
3
9
@HarshDRanjan1
Callmed
6 months
Give it a read
@h1Disclosed
H1 Disclosed - Public Disclosures
6 months
⚡ Datadog api keys exposed can be used to do all the read and write access to the instance 👨🏻‍💻 @HarshDRanjan1 ➟ Mars 🆘 Critical 💰 None 🔗 #bugbounty #bugbountytips #cybersecurity #infosec
Tweet media one
0
2
19
4
0
10
@HarshDRanjan1
Callmed
3 years
I just pwned Delivery in Hack The Box! #hackthebox #htb #cybersecurity
2
0
9
@HarshDRanjan1
Callmed
4 months
@PurbiaLaxita all these beginner tips are already out there share something new or else don't.
3
0
7
@HarshDRanjan1
Callmed
4 months
@Cyber_Ritik @Bugcrowd @ADITYASHENDE17 Review your hacking methodology bro , you trying to win the game with luck and it’s dangerous. Congratulations for the first bounty, hard works always pays
1
0
8
@HarshDRanjan1
Callmed
28 days
We won 🇮🇳 #ICCT20WorldCup2024
0
0
8
@HarshDRanjan1
Callmed
5 years
Tweet media one
0
0
8
@HarshDRanjan1
Callmed
4 years
When You really finished every cup of Horlicks in your childhood.
@akshaysharma71
Akshay Sharma 🇮🇳
4 years
In April, I submitted 268 vulnerabilities to 3 programs on @Hacker0x01 . #TogetherWeHitHarder
17
5
239
0
0
6
@HarshDRanjan1
Callmed
3 years
@hakluke Why always beginners? Why not some sources for intermediate or some advance stuffs?
1
0
7
@HarshDRanjan1
Callmed
4 months
Update : Done 3 triage 6 info/Dup 1 Pending review 🥂
1
0
7
@HarshDRanjan1
Callmed
3 years
(2/2) what worked for me? The program was having a chat feature, so I just send the long string in the chat but nothing happened in the web app but when I checked the Android app, the App stoped working and was awarded a p2 <3 let me know if this is a Duplicate tips 😂😂
2
1
7
@HarshDRanjan1
Callmed
6 months
It was a nice bug on @Shopify
@h1Disclosed
H1 Disclosed - Public Disclosures
6 months
⚡ Staff without Manage Themes permissions can update themes 👨🏻‍💻 @HarshDRanjan1 ➟ Shopify 🟧 Medium 💰 None 🔗 #bugbounty #bugbountytips #cybersecurity #infosec
Tweet media one
0
1
20
1
0
7
@HarshDRanjan1
Callmed
2 months
1
0
7
@HarshDRanjan1
Callmed
1 year
🙌🙌
@Rhynorater
Justin Gardner
1 year
I've made over 100k on SSRF vulnerabilities. They aren't always as simple as pointing it at localhost or AWS Metadata service. Here are some tricks I've picked up over the past 5 years of web app testing:
Tweet media one
47
869
3K
0
1
7
@HarshDRanjan1
Callmed
2 months
Happy Birthday to my partner-in-crime and work buddy! 🎉 From deadlines to caffeine-fueled brainstorms, we’ve tackled it all together. Here’s to more epic projects and unforgettable office shenanigans! 😜🎂 @errorsec_ May your day be full of happiness and a great life ahead.
3
0
7
@HarshDRanjan1
Callmed
6 months
@Bugcrowd Thank you, for helping me select a target on @Hacker0x01
3
0
6
@HarshDRanjan1
Callmed
2 months
@black____Linux @BRuteLogic 😂😂we were curious for this
2
0
6
@HarshDRanjan1
Callmed
28 days
The man did it 😭🫶🏻 🇮🇳
0
0
6
@HarshDRanjan1
Callmed
4 years
Thank you @Bugcrowd , it means a lot.
Tweet media one
0
0
6
@HarshDRanjan1
Callmed
1 year
A must read 🔥🔥
@MrRajputHacker
Shivam Kumar Singh
1 year
Tweet media one
12
127
371
2
0
6
@HarshDRanjan1
Callmed
2 months
James uncle is the best , can’t wait 🔥🔥
@albinowax
James Kettle
2 months
I'm thrilled to announce "Listen to the whispers: web timing attacks that actually work" will premiere at Black Hat USA! After nine months of running bulk timing attacks on thousands of live sites, I've got a lot to share :D #BHUSA @BlackHatEvents
36
107
658
0
0
6
@HarshDRanjan1
Callmed
5 months
Lets report 10 submissions.
@hunter0x7
Ahsan Khan
5 months
Lets report 100 submissions.
17
13
181
4
1
6
@HarshDRanjan1
Callmed
3 years
Stop doing this and Try to contact the support, which is available on the right bottom side of the web app @Bugcrowd or Email them. Posting this because a lot of people suggested me to do this. @codingo_
Tweet media one
4
0
6
@HarshDRanjan1
Callmed
4 years
@TiGTHOR @stokfredrik @NahamSec @hakluke @InsiderPhD @zseano @Jhaddix @thecybermentor @_johnhammond @dccybersec ALL OF THEM ARE GOLD MINES AND SPECIALLY @NahamSec and @thecybermentor i have watched them continues for 9 hours and without getting bored for a single minute
2
0
4
@HarshDRanjan1
Callmed
5 years
@noobsec_org @XssFan @Bugcrowd Can u do a write up how to chain these without mentioning the web-application name
0
0
5
@HarshDRanjan1
Callmed
3 months
🙂It hurts
@jobertabma
Jobert Abma
3 months
A few months ago @Hacker0x01 ’s AI hack agent was capable to find basic vulnerabilities and thus solve the first few Hacker101 CTFs. Soon it’ll be able to solve all of them. Perhaps we should launch a leaderboard of developers that build AI agents that can solve the CTFs the
11
7
143
2
0
5
@HarshDRanjan1
Callmed
2 months
0
0
5
@HarshDRanjan1
Callmed
24 days
@krishnsec Aaj omlet nhi tehelka omlet khaunga
0
0
5
@HarshDRanjan1
Callmed
4 years
@dhakal_ananda You guys are getting paid?
2
0
5
@HarshDRanjan1
Callmed
3 months
They know the business
@zlatov_cristina
Cristina 🦉
3 months
why do they all look the same tho
Tweet media one
336
171
3K
0
0
4
@HarshDRanjan1
Callmed
3 years
Worst Identity verification by @Bugcrowd 🥲 can't match my face with my Identity Card so can't get verified for lifetime I guess. Same was accepted by other platform 🙂
1
0
5
@HarshDRanjan1
Callmed
2 years
Let's hunt on @Shopify 👑
1
0
5
@HarshDRanjan1
Callmed
5 months
1
0
5
@HarshDRanjan1
Callmed
5 years
Got my name in NCIIP newsletter #Big achievement for this small guy #BugBounty #luffydragneel
Tweet media one
1
0
3
@HarshDRanjan1
Callmed
2 years
@tabaahi_ Happy explaining domain tools 😹
1
0
4
@HarshDRanjan1
Callmed
4 months
Update: Failed Triaged: 8 New: 3 Duplicate/Informative: 3 ;(
0
0
4
@HarshDRanjan1
Callmed
2 years
🤣they never stop
@MrRajputHacker
Shivam Kumar Singh
3 years
Dear Scammer, ( @FalgunR @cyberoctet , @cehvikas ) I request You To Don't Use My Bounty Screen Shot and Name. Otherwise ( Ye last warning ⚠️ hain nhi to phir Name search krne per Sb se phele scammer wala article aayega tmsbka Google per ) #bugbounty #BugbountyTips
Tweet media one
Tweet media two
Tweet media three
4
13
34
1
0
4
@HarshDRanjan1
Callmed
3 years
I just pwned Armageddon in Hack The Box! #hackthebox #htb #cybersecurity
0
0
4
@HarshDRanjan1
Callmed
1 month
isn't the root cause same for #2516250 and #2513082 (Program Member Could Duplicate Report To A Non Related Program Original Report) @Hacker0x01 @errorsec_
0
0
4
@HarshDRanjan1
Callmed
2 years
Op write-up , if you are new to the community or struggling
@tabaahi_
Mohsin Khan | on break 🇮🇳
2 years
Just published my writeup. #bugbounty #bugbountytips
12
30
125
0
1
4
@HarshDRanjan1
Callmed
9 months
@stokfredrik Your videos really helped me in my starting days and gave me the courage to start hunting , Thank you man🙏
0
0
4
@HarshDRanjan1
Callmed
2 years
So do I ❤️
@elonmusk
Elon Musk
2 years
I miss them
Tweet media one
12K
29K
470K
0
0
4
@HarshDRanjan1
Callmed
3 years
@ThisIsDK999 over 50% of the total bug-bounty earnings has been donated to local charities. <3
1
0
4
@HarshDRanjan1
Callmed
4 months
we hackers only have access to Sandbox features and this really kills our time and is frustrating. please improve this and update the sandbox. Multiple of my reports got closed as Informative because it was on Sandbox. (2)
1
0
3
@HarshDRanjan1
Callmed
5 months
@Currencycloud please do something we all Indians are dependent upon you. @Hacker0x01 #Bugbounty #hackerone
@hxh13_
h13-
5 months
ATTENTION all India based researchers !!!! Seems like @Hacker0x01 payment partner[ @Currencycloud ] is no longer processing INR local & SWIFT (USD) payouts to India as per this post - Kindly update your payout preference in @Hacker0x01
Tweet media one
10
10
69
0
0
4