HackerOn2Wheels Profile Banner
HackerOnTwoWheels Profile
HackerOnTwoWheels

@HackerOn2Wheels

Followers
11K
Following
8K
Media
284
Statuses
3K

I hack things and ride motorcycles. Co-Founder of Talaria Security Labs and UGWST. OSCP | OSCE | OSWE | eWPT | RTO 🇧🇷🇺🇲🇯🇵🇪🇸 Jesus is Lord.

Internet
Joined September 2011
Don't wanna be here? Send us removal request.
@HackerOn2Wheels
HackerOnTwoWheels
1 year
These @immunefi profiles look actually pretty sick! 🔥.
Tweet card summary image
immunefi.com
Profile of UGWST_COM on Immunefi
1
3
34
@grok
Grok
16 days
Blazing-fast image creation – using just your voice. Try Grok Imagine.
262
493
3K
@HackerOn2Wheels
HackerOnTwoWheels
2 days
RT @xssdoctor: Found a great waf bypass for client side path traversal (a thread).
0
27
0
@HackerOn2Wheels
HackerOnTwoWheels
3 days
RT @696e746c6f6c: Jokes aside about Microsoft using AI slop here last night what's impressing is how they popped a….
0
7
0
@HackerOn2Wheels
HackerOnTwoWheels
6 days
Tweet media one
1
0
10
@HackerOn2Wheels
HackerOnTwoWheels
7 days
RT @silentgh00st: #bugbountytip .Quick tip and script : ✅️. If you are hunting or scanning a WordPress instance, don't forget to look for e….
0
112
0
@HackerOn2Wheels
HackerOnTwoWheels
7 days
RT @ElS1carius: Let's speak about real bugs. This one was found this year on a huge public program on @Bugcrowd with @Kuromatae666. TL;DR….
secarius.fr
A nice bug caused by a wrong Microsoft SSO implementation.
0
25
0
@HackerOn2Wheels
HackerOnTwoWheels
8 days
RT @ehsayaan: A recent SSRF in a PDF generator 👇. The server converted my supplied HTML into PDF, so I dropped in a <meta http-equiv="refre….
0
38
0
@HackerOn2Wheels
HackerOnTwoWheels
9 days
RT @ElS1carius: I wrote a (very) short article on how I found a Remote Code Execution, seconds after it got mistakenly deployed by the deve….
secarius.fr
A detailed blog on how I found an RCE seconds after its publication using profundis.io's alerting feature.
0
12
0
@HackerOn2Wheels
HackerOnTwoWheels
10 days
RT @albinowax: This is some really nice research! It's definitely worth trying these techniques against cryptocurrency extensions! https://….
Tweet card summary image
marektoth.com
I described a new attack technique that I used against 11 password managers. The result was that stored data of tens of millions of users could be at risk.
0
53
0
@HackerOn2Wheels
HackerOnTwoWheels
11 days
RT @j_zere: Just published my first blog post "Cache Deception + CSPT: Turning Non Impactful Findings into Account Takeover". You can read….
zere.es
Recently, while auditing the main application of a private bug bounty program, I discovered a Client-Side Path Traversal (CSPT) and a Cache Deception vulnerability. Individually, these issues were...
0
107
0
@HackerOn2Wheels
HackerOnTwoWheels
11 days
RT @albinowax: Ever seen two responses to one request? That's just pipelining. or is it? I've just published "Beware the false false-posi….
0
34
0
@HackerOn2Wheels
HackerOnTwoWheels
11 days
RT @Doyensec: 📖Read about a real-world C# #cryptography vulnerability we've discovered in the wild in our latest blog post! No math require….
0
8
0
@HackerOn2Wheels
HackerOnTwoWheels
15 days
🤣🤣🤣🤣.
@vxunderground
vx-underground
16 days
It's leaking nerds driver licenses too. DAWG LOL STOP VIBE CODING
Tweet media one
0
0
0
@HackerOn2Wheels
HackerOnTwoWheels
15 days
Anyone gotten CAI setup and working?.
@luijait_
0x6c75696a616974
16 days
Xbow raised $117M to build AI hacker agents, in @AliasRobotics open-sourced it and made it completely free. Github: Paper:
7
0
28
@HackerOn2Wheels
HackerOnTwoWheels
16 days
Please undisclose this for the mental health of anyone who has to triage bb reports. 🤣.
@disclosedh1
publiclyDisclosed
17 days
8x8 Bounty disclosed a bug submitted by abdallasamir12: - Bounty: $500 #hackerone #bugbounty
Tweet media one
3
2
64
@HackerOn2Wheels
HackerOnTwoWheels
16 days
RT @busf4ctor: I can't think of a better talk to understand Unicode than this one.
0
13
0
@HackerOn2Wheels
HackerOnTwoWheels
16 days
RT @samwcyo: Revisiting this before playing the Battlefield 6 beta tonight. Really great blog about hacking a reverse proxy.
0
7
0
@HackerOn2Wheels
HackerOnTwoWheels
17 days
RT @0xzak: 🚨 UPDATE: Full Post-Mortem On Cursor Security Incident. In yesterday’s thread I explained how I got drained after installing a m….
0
251
0
@HackerOn2Wheels
HackerOnTwoWheels
21 days
RT @elder_plinius: 🌊 SYSTEM PROMPT LEAK 🌊. Here's the new and improved ChatGPT 5 system prompt! 🤗. PROMPT:.""".system_message:.role: system….
0
166
0