0xKonqi Profile Banner
Vahagn Israelian πŸ‡¦πŸ‡² Profile
Vahagn Israelian πŸ‡¦πŸ‡²

@0xKonqi

Followers
3K
Following
433
Media
57
Statuses
340

Application Security | Synack Red Team

I'm Only Here For a While
Joined October 2015
Don't wanna be here? Send us removal request.
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
1 month
Just published a new blog post on escalating open redirect to account takeover. #bugbounty #pentest #Hacking
Tweet media one
0
2
4
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
10 months
Heading to the airport on a Georgian bus. Free wi-fi & default router credentials are included 😏. #wifi #defaultcredentials
Tweet media one
0
0
2
@grok
Grok
6 days
What do you want to know?.
475
307
2K
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
1 year
Fresh one. Leakage of payment gateway API credentials through Access Control Violation in GraphQL. #hacking #pentest #bugbounty #vapt #hackerone #owasp
Tweet media one
1
0
6
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
1 year
Yay, I was awarded a $500 bounty on @Hacker0x01! #TogetherWeHitHarder . Kinda back to H1. next step is to get clear badge.
0
0
11
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
2 years
New Ivanti XXE seems promising (CVE-2024-22024). #pentest #bugbounty #synack #hackerone #ivanti
Tweet media one
4
17
104
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
2 years
Atlassian Confluence Remote Code Execution through OGNL Injection. CVE-2023-22527.#atlassian #bugbounty #hacking #pentest #confluence
Tweet media one
1
2
9
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
2 years
Apache Struts 2 OGNL Injection (CVE-2013-2251) leading to Remote Code Execution. Found this one today during a Pentest. #bugbounty #hacking #pentest #struts #burpsuite
Tweet media one
0
1
3
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
2 years
Just found GraphQL broken access control leading to administrator credentials disclosure. Here's how to avoid:. 1) Implement Proper Authentication & Authorization mechanisms.2) Disable Introspection & field suggestion if API is not for public use. #pentest #bugbounty #hacking
Tweet media one
0
0
2
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
3 years
Tweet media one
1
0
11
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
4 years
RT @curphey: Found my tweet from 2017.
0
263
0
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
RT @ptswarm: ➑️Default creds for #redteam. Cisco: cisco:cisco.Citrix: nsroot:nsroot.Dell iDRAC: root:calvin.Juniper: super:juniper123.pfSen….
0
258
0
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Leveled up to 0x05! Ρ‡Π΅Ρ€Π΅Π· @SynackRedTeam #BugBounty #Synack.
Tweet media one
0
1
27
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Night of the Hunt @SynackRedTeam #BugBounty #Synack
Tweet media one
7
5
177
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Just got my swag pack from @SynackRedTeam for participation in Hacker Hangout Europe! #bugbounty #Synack
Tweet media one
1
3
121
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Check out Easy Hack manual from @ptswarm #pentest #bugbounty.
@ptswarm
PT SWARM
5 years
πŸ’₯Easy RCE Ports. Java RMI: 1090,1098,1099,4444,11099,47001,47002,10999.WebLogic: 7000-7004,8000-8003,9000-9003,9503,7070,7071.JDWP: 45000,45001.JMX: 8686,9012,50500.GlassFish: 4848.jBoss: 11111,4444,4445.Cisco Smart Install: 4786.HP Data Protector: 5555,5556. #ptswarmTechniques
Tweet media one
0
3
7
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Tweet media one
7
34
233
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
RT @__mn1__: The story how I found RCE in Citrix (CVE-2019-19781)
0
183
0
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
RT @SynackRedTeam: The results are in. congrats to our #HackerHangout Europe winner, Ozgur - @ozgur_bbh πŸ†! And extra shout outs to our top….
0
6
0
@0xKonqi
Vahagn Israelian πŸ‡¦πŸ‡²
5 years
Virtual HackerHangout Europe with @SynackRedTeam Like:.#hackerhangout #road2tokyo #BugBounty #synack
Tweet media one
1
0
39