hunt_n27493 Profile Banner
Paradox hunt (N.u) Profile
Paradox hunt (N.u)

@hunt_n27493

Followers
61
Following
135
Statuses
347

HI GUYS This is Paradox i am self taught learner and hunter preparing my self for purple team and malware dev with python currently doing bug hunting

Joined July 2024
Don't wanna be here? Send us removal request.
@hunt_n27493
Paradox hunt (N.u)
2 days
hey guys check this out this one is cool πŸ˜€πŸ™ƒ @MakeItAQuote
0
0
0
@hunt_n27493
Paradox hunt (N.u)
2 days
Hey guys check this out for airplane OSINT stay tune for more πŸ™ƒ
0
0
0
@hunt_n27493
Paradox hunt (N.u)
2 days
Hey guys i got hall of fame me=Darknight21 am hunting more to break some more cool stuffs thanks to all @zseano @shubhamtiwari_r @shreyas_chavhan @0xblackbird @JR0ch17 @krishnsec @Rhynorater @techycodec08 @Yaseen11211 @coffinxp7 @ReebootToInit5 and everyone keep hunting πŸ™ƒ
Tweet media one
0
0
5
@hunt_n27493
Paradox hunt (N.u)
2 days
@0xJin am not saying that don't post but atleast give some legit things not these cause this one = getting fame for useless things i hope you got me πŸ™ƒπŸ©΅
0
0
1
@hunt_n27493
Paradox hunt (N.u)
2 days
@Bugcrowd and i want that you should do giveaway πŸ˜ŠπŸ™ƒπŸ˜‰πŸ˜œ
0
0
2
@hunt_n27493
Paradox hunt (N.u)
2 days
Hey guys another tip for ssrf have a look πŸ™ƒ stay tune will upload more soon
@Jayesh25_
Jayesh Madnani
1 year
πŸ”Question of the day: Where to find SSRF Issues? Many overlook testing for SSRF vulnerabilities, thinking they're complex and beyond their capabilities. πŸ’»πŸ’” However, these issues can lead to bounties ranging from $1000 to $15000, depending on the Impact. These are the top 5 obvious features I look for in a target app to find SSRF Issues: 1️⃣ Export to PDF - Does your target app support generating PDFs? πŸ“„ Try injecting HTML into the content that is used for generating that PDF. If vulnerable to HTML injection, you might strike gold by injecting HTML/JS.πŸ’° 2️⃣ Integrations - If your target app supports web hook Integration feature, replace the URL with your Burp Collab and wait for a hit. πŸ”„ 3️⃣ Import via link Feature - Does your target app support importing files or websites via a link? πŸ“₯ Specify your attacker Burp Collab and check for a hit, especially when uploading profile pictures or media through a library. 4️⃣ Host Header - Test for Routing-based SSRF by supplying your Collaborator server domain in the Host header. If you receive a DNS lookup from the target server, you might be able to route requests to arbitrary domains🌐 5️⃣ File Upload - Does your target app support uploading files? πŸ“‚ Try uploading an HTML file; if rendered and executed on the server-side, you might strike gold. No luck? Try an SVG with SSRF payload. If that fails, move on to the next! None of the above methods worked? Don't worry; we have more tricks up our sleeves, and we'll be sharing them soon! πŸ§™β€β™‚οΈ Takeaways: Note these features, and if you encounter them in your target app, don't forget to test for SSRF Issues. Who doesn't love some free money while securing the planet? Stay tuned for more! πŸ’ΈπŸŒ #cybersecurity #bugbountytips #securitytips #bugcrowd #hackerone #tips #bounty
Tweet media one
0
0
0
@hunt_n27493
Paradox hunt (N.u)
4 days
@Bugcrowd get the target just chuck at everywhere and you gonna break it πŸ™ƒ
0
0
1
@hunt_n27493
Paradox hunt (N.u)
4 days
@sw33tLie old is gold bro web2 is better then web3 i agree that it's also best but don't go on web3 until you have not done work on web2 very betterly it's a total time waste πŸ™ƒ
0
0
2
@hunt_n27493
Paradox hunt (N.u)
4 days
@Masonhck3571 @Blaklis_ oh bro this was insane πŸ˜… hope you handle them betterly well what happen if tal bugcrowd will get these type of reports πŸ˜œπŸ‘»πŸ‘Ί
0
0
0
@hunt_n27493
Paradox hunt (N.u)
4 days
Hey guys check this small OSINT package it's cool learn and explore πŸ™ƒ stay tune
0
0
0
@hunt_n27493
Paradox hunt (N.u)
4 days
Hey guys if you all are looking for instagram osint use this one its better not so much but it works πŸ™ƒ stay tune will upload more soon #OSINT #CyberSecurity
0
1
1
@hunt_n27493
Paradox hunt (N.u)
5 days
@intruXpert β˜ΊοΈπŸ™ƒ
0
0
0
@hunt_n27493
Paradox hunt (N.u)
6 days
Agree πŸ˜ƒπŸ™ƒ
@Smacaud1
Smacaud
6 days
Tweet media one
0
0
1
@hunt_n27493
Paradox hunt (N.u)
6 days
@krishnsec @Bugcrowd @ReebootToInit5 @RootxRavi @3ncryptSaan @starkcharry collaboration is also good but at the end solo leveling is awesome makes you more sharper and better collab is good to learn differ mindset and things everyone has it's own choice for me Solo= 80% and collab=20% πŸ™ƒ
0
0
1
@hunt_n27493
Paradox hunt (N.u)
6 days
Hey guys i got hall of fame me=Darknight21 am enhancing my skill to break more big achievments thanks to all @zseano @shubhamtiwari_r @shreyas_chavhan @0xblackbird @JR0ch17 @krishnsec @Rhynorater @techycodec08 @Yaseen11211 @coffinxp7 and everyone am improving moreπŸ™ƒkeep hunting
Tweet media one
0
0
3
@hunt_n27493
Paradox hunt (N.u)
6 days
@Bugcrowd waiting for some tips regarding criticals like SSRF and more πŸ’€
0
0
0
@hunt_n27493
Paradox hunt (N.u)
6 days
Hey guys i wanna share some thought and reality people will not stop flexing on linkedin and twitter they write in their bio am OSINT expert etc P1 warrior and in reality they are learning those things and they think that by mentioning this top hunter will contact me πŸ˜’πŸ˜’
0
0
0
@hunt_n27493
Paradox hunt (N.u)
6 days
@rirepra @GodfatherOrwa @OrwaGodfather yeah he is talking about fuzzing all the subdomains and the line he said that use the same keyword on every sub-domains you might get lucky πŸ™ƒ
0
0
0