
Reconless
@0xReconless
Followers
6K
Following
9
Media
15
Statuses
41
Security research, blogs, and videos by @filedescriptor, @ngalongc & @EdOverflow YouTube: https://t.co/IGj1aW40ro
Joined January 2020
Brilliant finding by sateeshn. @gitlab remains one of the best programmes to learn from thanks to their transparency. 👏.
1
0
29
New blog post by @EdOverflow 👇.
As promised, a blog post in response to a reader's email. "Reading RFCs for bug bounty hunters" — This blog post covers how reviewing RFC literature can be beneficial for bug bounty hunters, and includes tricks for speeding up the reading process.
0
1
14
Reconless member @EdOverflow is doing a bug bounty Q&A series on
edoverflow.com
I write about bug bounty, open source, and security.
You shared topics you would like to see bug bounty hunters blog about. Here is an opportunity to be featured in my next blog post and have your bug bounty questions answered. ➡️ Send me a DM or email with your question, and I will respond to the best questions in a blog post.
0
0
5
Ed has published a new blog post on DOM-based XSS. 👇 #bugbountytips.
0
2
7
by @S1r1u5_.
blog.s1r1us.ninja
Blog Location changed to here : https://blog.s1r1us.ninja/research/cookie-tossing-to-rce-on-google-cloud-jupyter-notebooks
Don't assume XSS in out-of-scope/sandboxed domains is not worth reporting! Check out how you can escalate it for a bigger impact in this video.
0
1
14
RT @LiveOverflow: Somebody told me you can find exclusive videos from @Farah_Hawaa @PwnFunction @0xReconless @ghidraninja and @LiveOverflow….
0
15
0
RT @DailySwig: ‘Soft skills are the most under-researched area of the bug bounty industry’ – ‘Reconless’ YouTubers (@0xReconless ) on filli….
portswigger.net
One year after the launch of their ethical hacking video channel, Ron Chan, ‘FileDescriptor’, and ‘EdOverflow’ tell The Daily Swig about their approach towards inspiring and educating the hacker...
0
43
0
RT @ngalongc: I wrote a tool to help to make the tedious process of authorization testing in GraphQL more enjoyable. Give it a try! You can….
0
199
0
Check out our latest video in the 1Password Hacking series, where how @ngalongc found simple API bugs that nobody had looked at after decrypting the protocol!.
New vid is out! It talks about two bugs I found in 1Password worth $3,300 that everyone overlooked and it has 3 bug bounty tips at the end of the video. What future areas of security would you like us to explore?.Big 👍 to @wacms666 for video editing .
0
2
11
RT @theXSSrat: Love this video by @0xReconless😍😍😍 Finding DOMXSS with DevTools | Untrusted Types Chrome Extension v….
0
7
0
As a frequent request, we have made a video covering how to find DOMXSS with DevTools! @filedescriptor walks through how to use Untrusted Types to turn a manual process into semi-automated.
0
37
109
Check out how @ngalongc cracks open the data encryption in this episode of Hacking @1Password!.
Video is up! I'll show you how to decrypt @1Password encrypted data, and you will be surprised how little crypto knowledge is required to do so 🤓A good example to show leveraging the resources on the internet can make hacking so much easier
0
1
16
Hacking without Humans - Check out our latest video! @ngalongc & @filedescriptor talk about how OpenAI's GPT-3 can be applied in cybersecurity. From writing bug bounty reports, identifying spam reports to looking for security logic flaws from the docs.
1
36
135
Check out our new video by @filedescriptor and learn Unicode tricks on IDN!.
New @0xReconless video! I will talk about how you can abuse IDN and Unicode tricks to make short domains for XSS that has a length limitation, bypass URL/SSRF validation, and many more!.
0
2
13
RT @filedescriptor: New @0xReconless video! I will talk about how you can abuse IDN and Unicode tricks to make short domains for XSS that h….
0
133
0