Amal PK
@0xKrat0s
Followers
230
Following
1K
Media
55
Statuses
1K
I won't fail, I have responsibilities on my shoulder. Volunteer : @seasides_conf && @_c0c0n_
Joined December 2021
Interesting way to bypass WAF when you need to use the </script> tag: Inspired by: @_0x999 meydi" or 1=/*</script>*/ -- - <XSS> The WAF first checks for SQLi, so ignore the comment section. 1)
3
30
267
From SSRF to RCE and transfer money in core banking. It is really cool red team case. A perfect combination of external and internal vulnerabilities for each other to bypass the monitoring and detection of the blue team. Present by my colleague @_q5ca
https://t.co/1BTM3YvFgT
6
72
356
๐Monthly Giveaway๐ Hack The Box 6-month VIP+ - Follow, Like, and Retweet to join! - Winners will be picked randomly on 5 June. #hackthebox #giveaway #projectsekaictf
94
421
577
Just 2 days to go! Donโt miss the hands-on workshop at the ISRA Kochi Meetup! Learn how the Windows loader handles binaries, and how attackers mimic this behavior for stealth and persistence. #CyberSecurity #MalwareAnalysis #ReverseEngineering #kochi #kerala #SecurityCommunity
0
3
3
Join us for a hands-on workshop at the ISRA Kochi Meetup: โBinary Blueprints โ How File Structures Reveal Malware Secretsโ with Niranjan Jayanand and Madhuri Syamakala! Date: May 24, 2025 Venue: Tinkerhub, Seaport - Airport Road, Kochi #cybersecurity #infosec #kochi #Kerala
0
3
3
Call for Papers is OPEN! Are you working on cutting-edge cybersecurity research, offensive/defensive techniques, or innovations in AI or threat intel? Deadline for Talk Submission: 01 Jun 25 For more details, visit: https://t.co/grcs6jdxLA
#cfp #cfpalert #CyberSecurity
0
5
7
๐ Introducing CAPIE: Certified API Hacking Expert โ Now Only โฌ25! https://t.co/nSqtdp8qTx My approach has always been direct, and Iโm not about to change that now. If youโre itching to break into API hacking but donโt know where to start, listen up: research is everything. I
1
4
21
โ ๏ธ Warning โ ๏ธ Kali has a new signing key! ๐ (Manual action required! ๐ซฃ) If you are getting: > Missing key 827C8569F2518CC677FECA1AED65462EC8D5E4C5, which is needed to verify signature. You need to download and install the new key manually, hereโs the one-liner: ``` sudo
29
395
1K
๐ xss0r v4 GIVEAWAY ALERT! ๐ Starts: April 28, 2025 Ends: Sunday, May 4, 2025 ๐ Prizes: ๐ฅ 1st Place: Diamond Plan (3 months) + FREE VPS (8 months) ๐ฅ 2nd Place: PRO Plan (1 month) + exclusive access to xss0r Labs ๐ฅ 3rd Place: Basic Plan (1 month) ๐ How to Enter: 1๏ธโฃ
youtube.com
"Hunting XSS bugs is like earning money while you sleep, except instead of sweet dreams, you get surprise pop-ups saying 'Gotcha!' in your code!"
53
44
95
๐ฑ A Comprehensive Guide on Modern iOS Pentesting Guide: https://t.co/oOZ3u4p6Vg
#infosec
2
169
630
Dear @hackthebox_eu Iโm reaching out to bring to your attention a concerning issue involving the misuse of the Hack The Box (HTB) name and community branding by a group claiming affiliation with HTB Kerala. More in the threadโฆ
10
6
64
Client-Side Path Traversal (CSPT): The Overlooked Vulnerability. Read more about this on my new blog: https://t.co/SPjV7ynFlt
#cybersecurity #bugbounty #vulnerability #websecurity
0
1
1
#๐๐ฎ๐น๐บ๐ฎ๐ฟ๐๐ง๐ ๐ฎ๐ฌ๐ฎ๐ฑ ๐ถ๐ ๐ท๐๐๐ ๐ฎ๐ฟ๐ผ๐๐ป๐ฑ ๐๐ต๐ฒ ๐ฐ๐ผ๐ฟ๐ป๐ฒ๐ฟ - ๐ฐ๐ผ๐บ๐ฒ ๐ฐ๐ผ๐บ๐ฝ๐ฒ๐๐ฒ ๐๐ถ๐๐ต ๐๐ต๐ฒ ๐ฏ๐ฒ๐๐ ๐ฐ๐ผ๐บ๐ฝ๐ฒ๐๐ถ๐๐ถ๐๐ฒ ๐ต๐ฎ๐ฐ๐ธ๐ฒ๐ฟ๐ ๐ณ๐ฟ๐ผ๐บ ๐ฎ๐ฟ๐ผ๐๐ป๐ฑ ๐๐ต๐ฒ ๐๐ผ๐ฟ๐น๐ฑ ๐ฎ๐ป๐ฑ ๐๐ถ๐ป ๐ด๐ฟ๐ฒ๐ฎ๐ ๐ฝ๐ฟ๐ถ๐๐ฒ๐! (6x IDAPro from @HexRaysSA) #CTF
1
24
76
Hey all!!! at @seasides_conf ------Lost& found post---- 1.If you have found a goodie bag ๐ That has a Jiofi device (wifi ) & bunch of new landyards Please connect with one of our volunteer Cc @parveen1015 @bugbountyvillag @goodbestguy @Debuhkzr @mishr_a_nurag @Zero0x00
0
4
7
Me to the recruiters after attending @seasides_conf - ๐ฐ Salary? 2x it. - ๐ Work mode? Remote with ocean view. - โณ Work hrs? As per me & thrilling. - ๐ฉ Job title? Sr Cyber Overlord (or just "Hacker Extraordinaire"). #SeasidesEffect #HackingFlex #PayMeInCryptoToo #UpSkills
1
1
2
Do join @seasides_conf for your upskilling & networking! Your future will thank u, get upskilling, interview & hiring opportunities from the professionals! @goodbestguy @parveen1015 @Debuhkzr @lazyhack3r @Zero0x00 @f4z41u @harekrishna_rai @0xKrat0s @PulkitTalwar26 @AshishHuria
0
1
1
Simple Blog about PHP Type Juggling Read More: https://t.co/X1NMvni932
#cybersecurity #bugbounty #bug #php #programming
0xkratos.medium.com
PHP type juggling can lead to security vulnerabilities. Learn how attackers exploit it and how to secure your web applications.
0
0
0
A big thank you to @Checkmarx for sponsoring Seasides Conference! ๐ A leader in SAST & AppSec, offering ASPM, DAST, AI Security, and moreโif itโs AppSec, theyโve got it! Grateful for your support @sandeepjohri in strengthening the cybersecurity communities in India.
2
10
14
A huge thank you to @SecureNexus us & for sponsoring us @SecureNexus has been our biggest supporter, and weโre truly grateful. A special shoutout to @beingsecure for his leadership in strengthening the cybersecurity ecosystem
1
10
14