0xReconless Profile Banner
Reconless Profile
Reconless

@0xReconless

Followers
6K
Following
9
Media
15
Statuses
41

Security research, blogs, and videos by @filedescriptor, @ngalongc & @EdOverflow YouTube: https://t.co/IGj1aW40ro

Joined January 2020
Don't wanna be here? Send us removal request.
@0xReconless
Reconless
3 years
Brilliant finding by sateeshn. @gitlab remains one of the best programmes to learn from thanks to their transparency. 👏.
@disclosedh1
publiclyDisclosed
3 years
GitLab disclosed a bug submitted by sateeshn: - Bounty: $12,000 #hackerone #bugbounty
Tweet media one
1
0
29
@0xReconless
Reconless
3 years
New blog post by @EdOverflow 👇.
@EdOverflow
Ed
3 years
As promised, a blog post in response to a reader's email. "Reading RFCs for bug bounty hunters" — This blog post covers how reviewing RFC literature can be beneficial for bug bounty hunters, and includes tricks for speeding up the reading process.
0
1
14
@grok
Grok
3 days
Join millions who have switched to Grok.
151
285
2K
@0xReconless
Reconless
3 years
Reconless member @EdOverflow is doing a bug bounty Q&A series on
edoverflow.com
I write about bug bounty, open source, and security.
@EdOverflow
Ed
3 years
You shared topics you would like to see bug bounty hunters blog about. Here is an opportunity to be featured in my next blog post and have your bug bounty questions answered. ➡️ Send me a DM or email with your question, and I will respond to the best questions in a blog post.
Tweet media one
0
0
5
@0xReconless
Reconless
3 years
RT @EdOverflow: What is something you wished bug bounty hunters would blog more about?.
0
4
0
@0xReconless
Reconless
4 years
Ed has published a new blog post on DOM-based XSS. 👇 #bugbountytips.
@EdOverflow
Ed
4 years
New blog post: "What Bypassing Razer's DOM-based XSS Patch Can Teach Us" —
0
2
7
@0xReconless
Reconless
4 years
by @S1r1u5_.
Tweet card summary image
blog.s1r1us.ninja
Blog Location changed to here : https://blog.s1r1us.ninja/research/cookie-tossing-to-rce-on-google-cloud-jupyter-notebooks
@0xReconless
Reconless
5 years
Don't assume XSS in out-of-scope/sandboxed domains is not worth reporting! Check out how you can escalate it for a bigger impact in this video.
0
1
14
@0xReconless
Reconless
4 years
RT @LiveOverflow: Somebody told me you can find exclusive videos from @Farah_Hawaa @PwnFunction @0xReconless @ghidraninja and @LiveOverflow….
0
15
0
@0xReconless
Reconless
4 years
The absolute state of YouTube
Tweet media one
0
1
8
@0xReconless
Reconless
4 years
RT @ngalongc: I wrote a tool to help to make the tedious process of authorization testing in GraphQL more enjoyable. Give it a try! You can….
0
199
0
@0xReconless
Reconless
5 years
Do you spell it CSRF or XSRF?.
2
0
3
@0xReconless
Reconless
5 years
Don't assume XSS in out-of-scope/sandboxed domains is not worth reporting! Check out how you can escalate it for a bigger impact in this video.
0
7
41
@0xReconless
Reconless
5 years
Ever wondered how an exploitation and the impact of a JWT bug look like? Check out our latest video, where we exploit a critical JWT without a signature to take over any account without user interaction on Microsoft Outlook!
0
10
61
@0xReconless
Reconless
5 years
Check out our latest video in the 1Password Hacking series, where how @ngalongc found simple API bugs that nobody had looked at after decrypting the protocol!.
@ngalongc
Ron Chan
5 years
New vid is out! It talks about two bugs I found in 1Password worth $3,300 that everyone overlooked and it has 3 bug bounty tips at the end of the video. What future areas of security would you like us to explore?.Big 👍 to @wacms666 for video editing .
0
2
11
@0xReconless
Reconless
5 years
RT @theXSSrat: Love this video by @0xReconless😍😍😍 Finding DOMXSS with DevTools | Untrusted Types Chrome Extension v….
0
7
0
@0xReconless
Reconless
5 years
As a frequent request, we have made a video covering how to find DOMXSS with DevTools! @filedescriptor walks through how to use Untrusted Types to turn a manual process into semi-automated.
0
37
109
@0xReconless
Reconless
5 years
Check out how @ngalongc cracks open the data encryption in this episode of Hacking @1Password!.
@ngalongc
Ron Chan
5 years
Video is up! I'll show you how to decrypt @1Password encrypted data, and you will be surprised how little crypto knowledge is required to do so 🤓A good example to show leveraging the resources on the internet can make hacking so much easier
0
1
16
@0xReconless
Reconless
5 years
Hacking without Humans - Check out our latest video! @ngalongc & @filedescriptor talk about how OpenAI's GPT-3 can be applied in cybersecurity. From writing bug bounty reports, identifying spam reports to looking for security logic flaws from the docs.
1
36
135
@0xReconless
Reconless
5 years
Check out our new video by @filedescriptor and learn Unicode tricks on IDN!.
@filedescriptor
FD
5 years
New @0xReconless video! I will talk about how you can abuse IDN and Unicode tricks to make short domains for XSS that has a length limitation, bypass URL/SSRF validation, and many more!.
Tweet media one
0
2
13
@0xReconless
Reconless
5 years
RT @filedescriptor: New @0xReconless video! I will talk about how you can abuse IDN and Unicode tricks to make short domains for XSS that h….
0
133
0