Imran Huda(Ahhad) Profile Banner
Imran Huda(Ahhad) Profile
Imran Huda(Ahhad)

@imranHudaA

Followers
5,477
Following
743
Media
232
Statuses
2,776

Dhaka, Bangladesh
Joined August 2018
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
Pinned Tweet
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $7,700 bounty on @Hacker0x01 ! #TogetherWeHitHarder
23
4
217
@imranHudaA
Imran Huda(Ahhad)
2 years
Last night I found an IDOR while looking at wayback urls of epicgames target. So here how I have found it. I used waybackurls and grep to find public api endpoints $ echo target. com | waybackurls | grep "/api/" This listed all the public api endpoints.......
15
106
434
@imranHudaA
Imran Huda(Ahhad)
2 years
Interesting account takeover of the day. The site was hosting their on amazonaws While resetting my password I have noticed that the host was getting passed in json body
Tweet media one
12
79
296
@imranHudaA
Imran Huda(Ahhad)
1 year
We are running a promotion for our private program at @Hacker0x01 New bounty range: Critical $3000 (1.5x) High $1125 (1.5x) Medium $500 (2x) Low $200 (2x) Feel free to ping @iambouali or me for an invite. Cheers.
270
13
286
@imranHudaA
Imran Huda(Ahhad)
3 years
Alhamdulillah gifted myself this beauty ❤️❤️
Tweet media one
28
4
231
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $4400 bounty on @Hacker0x01 ! $3350 on epicgames for idor 2 Android issues and 2 idors #TogetherWeHitHarder
22
18
220
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $5,600 bounty on @Hacker0x01 ! My highest paid bounty on a single bug $4,450 #TogetherWeHitHarder
23
9
222
@imranHudaA
Imran Huda(Ahhad)
9 months
Completed 10k+ bounties in January. Its hard to push myself doing a full time job. Thanks to @Hacker0x01 and @Bugcrowd 🙏🏻
43
3
221
@imranHudaA
Imran Huda(Ahhad)
3 years
Hope to complete 100k this year in shaa Allah.
Tweet media one
28
3
218
@imranHudaA
Imran Huda(Ahhad)
4 years
Thank you @Hacker0x01 . 2021 is a blessing for me ❤️
Tweet media one
11
3
200
@imranHudaA
Imran Huda(Ahhad)
3 years
Admin adds a user. User receives the invite. Clicks on accept invite and captures the request. Sends to turbo intruder. After the attack is completed admin cannot removed then user. Found this type of issue several times.
Tweet media one
10
40
176
@imranHudaA
Imran Huda(Ahhad)
3 years
Alhamdulillah another achievement completed. Special thanks to @Hacker0x01
Tweet media one
Tweet media two
Tweet media three
11
4
160
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $3,800 bounty on @Hacker0x01 ! Back on epicgames. #TogetherWeHitHarder
14
6
161
@imranHudaA
Imran Huda(Ahhad)
3 years
Completed 100 bounties on @Hacker0x01 🎉
Tweet media one
7
3
160
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,500 bounty on @Hacker0x01 ! - Bypassing idor protection to add admin to the organisation = $1000 - exposing user product unauthenticated idor = $500 #TogetherWeHitHarder
3
10
156
@imranHudaA
Imran Huda(Ahhad)
3 years
In February, I submitted 39 vulnerabilities to 4 programs on @Hacker0x01 . My target was 10k but couldn’t complete. Earned 7k this month. By far 2022 is going great Alhamdulillah. #TogetherWeHitHarder
11
3
155
@imranHudaA
Imran Huda(Ahhad)
3 years
Thanks @epicgames Also thanks to @Hacker0x01 for this opportunity. Top researcher of @EpicGames last quarter.
Tweet media one
Tweet media two
4
2
155
@imranHudaA
Imran Huda(Ahhad)
3 years
Completed 3000+ reputations on @Hacker0x01 🎉 Thank you for such a great platform.
Tweet media one
20
0
153
@imranHudaA
Imran Huda(Ahhad)
3 years
🎉Thanks @Hacker0x01 and @SMHTahsin33 for helping to receive it.
Tweet media one
Tweet media two
Tweet media three
10
1
149
@imranHudaA
Imran Huda(Ahhad)
11 months
I earned $3,600 for my submission on @bugcrowd #ItTakesACrowd
17
0
154
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $4,000 bounty on @Hacker0x01 ! Bug: Idor #TogetherWeHitHarder
14
12
152
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I and @SZ_Mahmud_7 was awarded a $11,625 bounty on @Hacker0x01 ! Several issues. We have been collabing for almost a month. Still some issues are pending. #TogetherWeHitHarder
20
7
146
@imranHudaA
Imran Huda(Ahhad)
7 months
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! Zero user interaction account takeover. #TogetherWeHitHarder
11
6
152
@imranHudaA
Imran Huda(Ahhad)
1 year
I lost my patience thank you.
Tweet media one
10
4
139
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1950 bounty on @Hacker0x01 ! 1android issue =$1000 Idor =$500 Idor= $250 Idor=$200 #TogetherWeHitHarder
12
6
137
@imranHudaA
Imran Huda(Ahhad)
3 years
Completed 20k+ in bounties this year already. Although my target was less than 20k in whole year. Thanks to @Hacker0x01 @Bugcrowd @inspectiv and some external programs. Hope to learn more from community.
18
5
132
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $3,000 bounty on @Hacker0x01 ! #TogetherWeHitHarder
18
3
134
@imranHudaA
Imran Huda(Ahhad)
9 months
Yay, I was awarded a $5,350 bounty on @Hacker0x01 ! #TogetherWeHitHarder
11
5
134
@imranHudaA
Imran Huda(Ahhad)
1 year
Completed 6k reputation on @Hacker0x01
Tweet media one
9
1
135
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $2,500 bounty on @Hacker0x01 ! IDOR on epicgames product #TogetherWeHitHarder
10
5
133
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $2,500 bounty on @Hacker0x01 ! #TogetherWeHitHarder
Tweet media one
12
3
131
@imranHudaA
Imran Huda(Ahhad)
10 months
Here is a story of an account takeover and fix bypass. The basic open redirect Which will leak the google clientId,credential,CSRF token to And I could generate Authorization token and full account takeover. Resulted in $$$$
5
30
135
@imranHudaA
Imran Huda(Ahhad)
3 years
When new scopes are added 👀
Tweet media one
8
7
126
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1100 bounty on @Hacker0x01 ! #TogetherWeHitHarder
13
3
126
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,300 bounty on @Hacker0x01 ! Bounty was adjusted on a previous report $500+$500+$300 All three bugs was idor #TogetherWeHitHarder
6
3
127
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $4,500 bounty on @Hacker0x01 ! #TogetherWeHitHarder
17
4
126
@imranHudaA
Imran Huda(Ahhad)
8 months
Yay, I was awarded a $1,250 bounty on @Hacker0x01 ! #TogetherWeHitHarder
7
6
127
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $1,875 bounty on @Hacker0x01 ! Zero click account takeover (total $3000 for this one) #TogetherWeHitHarder
9
8
122
@imranHudaA
Imran Huda(Ahhad)
8 months
Yay, I was awarded a $3,000 bounty on @Hacker0x01 ! #TogetherWeHitHarder
14
4
125
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $2,500 bounty on @Hacker0x01 ! #TogetherWeHitHarder
12
2
124
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $2250 bounty on @Hacker0x01 ! 1000+500+500+250 3idors, 2fa bypass #TogetherWeHitHarder
7
2
124
@imranHudaA
Imran Huda(Ahhad)
3 years
Submitted 16 reports last night on @Hacker0x01 program.Three already triaged and one paid. I call this a good morning.
11
2
122
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $2,000 bounty on @Hacker0x01 ! Bug: Deeplink allows to bypass security code in android app #TogetherWeHitHarder
11
8
119
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $2,400 bounty on @Hacker0x01 ! Several access control and one account takeover. #TogetherWeHitHarder
11
4
117
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,200 bounty on @Hacker0x01 ! idor on Epicgames product #TogetherWeHitHarder
8
2
120
@imranHudaA
Imran Huda(Ahhad)
2 years
Thanks @EpicGames for this swag. Second time top hacker. @Hacker0x01
Tweet media one
Tweet media two
Tweet media three
Tweet media four
6
2
115
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $2,400 bounty on @Hacker0x01 ! #TogetherWeHitHarder
18
1
120
@imranHudaA
Imran Huda(Ahhad)
4 years
If it gets triaged i'm so lucky. Dork : "ValidAccessToken"
Tweet media one
4
9
119
@imranHudaA
Imran Huda(Ahhad)
2 years
Hackerone brand ambassador club(Dhaka) meetup. Thanks @Hacker0x01 and @remonsec for making it possible.
Tweet media one
Tweet media two
Tweet media three
Tweet media four
5
2
116
@imranHudaA
Imran Huda(Ahhad)
3 years
Logged into one of my old program organisation and this pop upped automatically and reported this sweet stored xss. This didn’t popped when I was testing lol😂
Tweet media one
9
0
116
@imranHudaA
Imran Huda(Ahhad)
2 years
Completed 4k+ reputations on @Hacker0x01 ❤️ Thanks to this whole community.
Tweet media one
17
0
110
@imranHudaA
Imran Huda(Ahhad)
4 years
Found simple email verification bypass. Email cannot be changed after signup {"avatar":null,"firstName":"Test","lastName":"Test"} modified to {"avatar":null,"firstName":"Test","lastName":"Test","email":"victim @gmail .com"} email changed to victim email and no verification needed
5
37
113
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,400 bounty on @Hacker0x01 ! Account takeover $1000 Api misconfiguration $400 #TogetherWeHitHarder
11
2
110
@imranHudaA
Imran Huda(Ahhad)
8 months
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! #TogetherWeHitHarder
6
1
117
@imranHudaA
Imran Huda(Ahhad)
9 months
Yay, I was awarded a $1,800 bounty on @Hacker0x01 ! #TogetherWeHitHarder
13
2
113
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $3,550 bounty on @Hacker0x01 ! #TogetherWeHitHarder
10
4
114
@imranHudaA
Imran Huda(Ahhad)
1 year
Thanks @Hacker0x01 for the swag🔥🙏
Tweet media one
9
1
110
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! IDOR with $100bonus #TogetherWeHitHarder
10
2
105
@imranHudaA
Imran Huda(Ahhad)
8 months
Yay, I was awarded a $2,550 bounty on @Hacker0x01 ! #TogetherWeHitHarder
10
3
111
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $3,008 bounty on @Hacker0x01 ! #TogetherWeHitHarder
9
0
109
@imranHudaA
Imran Huda(Ahhad)
10 months
Yay, I was awarded a $1,050 bounty on @Hacker0x01 ! #TogetherWeHitHarder
12
1
108
@imranHudaA
Imran Huda(Ahhad)
9 months
Yay, I was awarded a $1,029 bounty on @Hacker0x01 ! #TogetherWeHitHarder
12
2
108
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $2,000 bounty on @Hacker0x01 ! First bounty of the year finally. #TogetherWeHitHarder
11
2
103
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $500 bounty and $750 bonus on @Hacker0x01 ! 😂 #TogetherWeHitHarder
9
2
106
@imranHudaA
Imran Huda(Ahhad)
2 years
Swag from @EpicGames for being top researcher again this year. @Hacker0x01
Tweet media one
6
2
105
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $600 bounty on @Hacker0x01 ! Bug: Exposing users email #TogetherWeHitHarder
10
5
100
@imranHudaA
Imran Huda(Ahhad)
2 years
I earned $1,759 for my submission on @bugcrowd #ItTakesACrowd
6
2
98
@imranHudaA
Imran Huda(Ahhad)
4 years
Never thought I would find this when hundreds of hackers smashed the target already. Waiting for dup with happy face :/
Tweet media one
8
1
100
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! Privilege escalation on Epicgames product #TogetherWeHitHarder
11
1
99
@imranHudaA
Imran Huda(Ahhad)
1 year
I earned $1,500 for my submission on @bugcrowd #ItTakesACrowd
12
1
98
@imranHudaA
Imran Huda(Ahhad)
3 years
Completed 2500 reputations on @Hacker0x01
Tweet media one
9
2
98
@imranHudaA
Imran Huda(Ahhad)
7 months
Yay, I was awarded a $1,400 bounty on @Hacker0x01 ! #TogetherWeHitHarder
8
2
102
@imranHudaA
Imran Huda(Ahhad)
4 years
I was awarded a 1000$ bounty for my two submissions. Bug: IDOR
Tweet media one
Tweet media two
9
6
95
@imranHudaA
Imran Huda(Ahhad)
11 months
Yay, I was awarded a $900 bounty on @Hacker0x01 ! Tip: Report and forget for 3months😂 #TogetherWeHitHarder
1
0
99
@imranHudaA
Imran Huda(Ahhad)
8 months
Yay, I was awarded a $625 bounty on @Hacker0x01 ! Was an issue in 3rd party and the company didn't care and paid without any hassle. #TogetherWeHitHarder
7
1
100
@imranHudaA
Imran Huda(Ahhad)
3 years
Found an api endpoint leaking all users email.
Tweet media one
5
1
95
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! Android issue on @EpicGames product #TogetherWeHitHarder
4
2
96
@imranHudaA
Imran Huda(Ahhad)
3 years
Submitted 20+ reports in last 24hours.When I navigate to submit another one I feel like "why am I even doing this" lol.
9
0
89
@imranHudaA
Imran Huda(Ahhad)
2 years
I just completed 5k reputations on @Hacker0x01 Thanks for such an awesome journey.
Tweet media one
12
1
92
@imranHudaA
Imran Huda(Ahhad)
3 years
In January, I submitted 58 vulnerabilities to 5 programs on @Hacker0x01 . #TogetherWeHitHarder
9
1
88
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,000 bounty on @Hacker0x01 ! Two stored xss and two premium feature access #TogetherWeHitHarder
8
3
92
@imranHudaA
Imran Huda(Ahhad)
2 years
Shoutout to @inspectiv for such an amazing platform they are managing. Bounties on triage and fast responses from the support team. More issues on the way. #SecureTheInternet
Tweet media one
5
8
91
@imranHudaA
Imran Huda(Ahhad)
10 months
Yay, I was awarded a $1,289 bounty on @Hacker0x01 ! #TogetherWeHitHarder
5
3
91
@imranHudaA
Imran Huda(Ahhad)
3 years
Completed 2k points in @Hacker0x01
Tweet media one
10
1
81
@imranHudaA
Imran Huda(Ahhad)
4 years
Always wanted to be in 90days leaderboard 😐
Tweet media one
10
2
85
@imranHudaA
Imran Huda(Ahhad)
3 years
Thank you Epicgames @Hacker0x01
Tweet media one
3
0
88
@imranHudaA
Imran Huda(Ahhad)
1 year
Nice 👌
Tweet media one
0
1
85
@imranHudaA
Imran Huda(Ahhad)
2 years
Was awarded a $1000 bounty on @inspectiv Found another fav program to carry hunting . #SecureTheInternet
4
2
81
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $2,050 bounty on @Hacker0x01 ! #TogetherWeHitHarder
8
0
82
@imranHudaA
Imran Huda(Ahhad)
2 years
Yay, I was awarded a $1,500 bounty on @Hacker0x01 ! For finding two issues on @epicgames #TogetherWeHitHarder
7
1
82
@imranHudaA
Imran Huda(Ahhad)
2 years
Was awarded a $1100 bounty on @inspectiv Found some good bugs there and waiting for others to get paid. #SecureTheInternet
7
6
82
@imranHudaA
Imran Huda(Ahhad)
3 years
Yay, I was awarded a $1,000 bounty on @Hacker0x01 !
Tweet media one
@imranHudaA
Imran Huda(Ahhad)
3 years
Full subscription bypass was able to add 12k worth credit to account that will be used for paying the subscription. User can be added and there is a monthly charge for that. Four users subscription for a year is 12k USD. what would be the severity
7
3
22
10
4
79
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $1,350 bounty on @Hacker0x01 ! #TogetherWeHitHarder
6
2
78
@imranHudaA
Imran Huda(Ahhad)
1 year
Yay, I was awarded a $1,350 bounty on @Hacker0x01 ! #TogetherWeHitHarder
4
1
78
@imranHudaA
Imran Huda(Ahhad)
3 years
🎉
Tweet media one
7
1
77
@imranHudaA
Imran Huda(Ahhad)
2 years
Was awarded a bounty on @inspectiv If you have time I would highly recommend checking @inspectiv platform. #SecureTheInternet
Tweet media one
10
4
75
@imranHudaA
Imran Huda(Ahhad)
3 years
Found a interesting account takeover via GET method where I can change any users email and own the organization. Didn’t imagined will find this on a payment site.
8
1
69
@imranHudaA
Imran Huda(Ahhad)
2 years
This year has been great compared to 2021 Completed 100k+ across different platform. Completed 93k from @Hacker0x01 . My target was 100k but because of numerous problem couldn’t focus few months. 15% of my bounties came from @inspectiv . Great platform to focus on.
8
5
76
@imranHudaA
Imran Huda(Ahhad)
8 months
This gives more joy when I see the restest amount is more then the default one. Am I the only one who feels happy for this?
Tweet media one
4
0
78