
Aayush Vishnoi
@0xfa1c0n
Followers
256
Following
279
Media
3
Statuses
242
Building CertMon || Security Researcher || Certified Ethical Hacker(CEHv10) || Certified Red Team Professional(CRTP)
Dehradun, India
Joined September 2019
π πππ«πππ¨π§ Update: We're on the Launch Pad! π°οΈ. Remember the "π¦ππ π’πππ₯ πππ₯ππ¬ππ¨π©π" for cybersecurity? It's primed and ready for action!. π Deployment is just around the corner.
1
0
1
π See it in action in the attached video. Don't let new assets slip through the cracks. Empower your security team with CertMon!. #bugbounty #certmon #bugbountytips #attacksurfacemanagement.
0
0
1
RT @ph0enixProtocol: π Exciting News for Bug Bounty Hunters! π.Introducing Phoenix Scope - The ultimate tool to streamline your bug bountyβ¦.
0
4
0
Another article is published on Medium. This article explains the use of Google Dorks to find out potential subdomains/endpoints that leads to critical vulnerabilities such as SSRF, SQLi, XSS, etc. Give it a read π.
medium.com
Ending 2023 with good note, I came up with another misconfiguration due to a parameter that leads to exposure of AWS credentials and accessβ¦
0
22
67
RT @ph0enixProtocol: πIntroducing #PhoeniXScope - The ultimate open-source dashboard for bug bounty hunters! π Merge the worlds of HackerOnβ¦.
0
2
0
RT @trufflesec: We fixed a series issue in Forager, hours before public launch. Here's that story. Huge shout out to @silentbronco for disβ¦.
trufflesecurity.com
Weβre happy to announce our team fixed an authorization vulnerability in our new public scanning tool, Forager, prior to public launch. This wouldnβt have been possible without the incredible support...
0
5
0
TL;DR It was a misconfiguration found in Lotus Domino Web Servers that leads to PII Data Disclosure and other misconfiguration files.
medium.com
Another misconfiguration found last week, because this has more content I thought of releasing last blog before this one so that I will getβ¦
0
1
2
Hey Everyone, I have made a write-up for the recent misconfiguration that I have found. This blog also have my recon script and recon steps that I had performed. @silentbronco .@arjundobal96.@xscorp7.@d0tdotslash .@e11i0t_4lders0n.
2
1
6
RT @InfoSecComm: Featuring articles by @cyberninja8881 , @nav1n0x , @Sahildari, @AayushVishnoi10 . Trending threads by @mcipekci , @ZaricNeβ¦.
0
1
0
Hey Everyone, I have made a write-up for the recent vulnerability that I have found. TL;DR It was a Time Based Blind SQL Injection attack found using wayback machine URLs. @e11i0t_4lders0n @arjundobal96 @xscorp7 .@d0tdotslash.
11
20
91
Hey Everyone, I have made a writeup for the recent misconfiguration that I have found. TL;DR It was a Directory Listing that leads to PII Data Leak of the Employees, Stored XSS and Remote Code Execution on a HRMS subd. @e11i0t_4lders0n @arjundobal96.@xscorp7 @d0tdotslash.
1
2
11