Fares Profile
Fares

@_2os5

Followers
1,966
Following
161
Media
137
Statuses
2,291
Explore trending content on Musk Viewer
Pinned Tweet
@_2os5
Fares
6 months
وَاتَّقُوا يَوْمًا تُرْجَعُونَ فِيهِ إِلَى اللَّهِ ۖ ثُمَّ تُوَفَّىٰ كُلُّ نَفْسٍ مَّا كَسَبَتْ وَهُمْ لَا يُظْلَمُونَ (281)
0
0
7
@_2os5
Fares
11 months
The new cve is really cool Shodan dork Ssl:”domain” 200 http.title:”citrix gateway” #bugbountytips
Tweet media one
5
85
318
@_2os5
Fares
2 years
I liked these resources *Business Logic Issues* about 1- 2- 3- 4- most bugs: #bugbountytips #bugbounty
5
106
232
@_2os5
Fares
2 years
I tried my best to brute force the password Any suggestion? #bugbountytips #bugbounty
Tweet media one
57
32
188
@_2os5
Fares
1 year
I just got reward for my full account takeover P1 on @Bugcrowd #BugBounty
Tweet media one
13
7
181
@_2os5
Fares
2 years
I'm trying to find IDOR over here any more tips to bypass #bugbountytips #BugBounty
Tweet media one
Tweet media two
21
19
174
@_2os5
Fares
2 years
Yes, I earned $500 for my submission on @Bugcrowd #ItTakesACrowd #bugbounty
Tweet media one
6
6
164
@_2os5
Fares
2 years
always test for CSRF #bugbountytips #BugBounty thank you @LazySaad
Tweet media one
8
10
140
@_2os5
Fares
2 years
graphQL GET method! @_zwink #bugbountytips
Tweet media one
5
20
129
@_2os5
Fares
2 years
Tweet media one
4
11
116
@_2os5
Fares
2 years
yeah, I just found my first High vuln on @Bugcrowd for a Full account takeover the severity changed from P1 to P2 bec my bug wasn't on the main version #BugBounty #bugbountytip
Tweet media one
9
7
107
@_2os5
Fares
2 years
Tips: the app was using JWT on resetting the password so I copied my JWT and paste it here the JWT contains email info so I changed my email to victim's email and I copied the JWT (with victim's email) 1/x #bugbountytips #BugBounty
@_2os5
Fares
2 years
yeah, I just found my first High vuln on @Bugcrowd for a Full account takeover the severity changed from P1 to P2 bec my bug wasn't on the main version #BugBounty #bugbountytip
Tweet media one
9
7
107
10
17
109
@_2os5
Fares
7 months
for those who say P4 is useless!! low hanging fruit #bugbounty the P5 here is rewarded
Tweet media one
5
3
90
@_2os5
Fares
6 months
anything after < will get 403 after < must be empty #bugbounty any suggestions
Tweet media one
16
11
87
@_2os5
Fares
1 year
I earned $$$ for my submission on @bugcrowd #ItTakesACrowd SALESFORCE STILL ALIVE just do recon
Tweet media one
10
7
86
@_2os5
Fares
11 months
I found an IDOR leads to leaking PII via profile id but the profile id is unpredictable UUID does HackerOne accept it? #bugbountytips #BugBounty
17
1
76
@_2os5
Fares
3 months
e-commerce website✅ #BugBounty
Tweet media one
6
1
71
@_2os5
Fares
4 months
stored xss via PDF file upload. and the file will be stored on (s3. amazonaws. com) is it informative? #bugbounty
14
5
70
@_2os5
Fares
2 years
I earned $$$ for my submission on @Bugcrowd #ItTakesACrowd #BugBounty
Tweet media one
2
2
65
@_2os5
Fares
2 years
one month ago I reported a bug and I got N/A one week ago I reported the same bug to the same program and I got Triaged #BugBounty never give up
Tweet media one
9
0
53
@_2os5
Fares
8 months
الحمدلله P1 Duplicate #bugbounty
Tweet media one
5
2
54
@_2os5
Fares
2 years
I found this page at phpmyadmin/setup BUT I don't know is it enough to say it is critical? #bugbountytips #BugBounty
Tweet media one
8
9
49
@_2os5
Fares
2 months
Tweet media one
4
1
43
@_2os5
Fares
8 months
I found this config.js file leaks many api_key and client_id and secret id I tried to connect to the service using Curl, but it didn't work @GodfatherOrwa @MrTuxracer @HusseiN98D #bugbountytips
Tweet media one
2
7
38
@_2os5
Fares
2 years
I found a bug on and the same bug on should I report them in one report? or two #bugbounty
9
1
36
@_2os5
Fares
2 years
when I put (resultsPerPage=20) I got this but when I put (resultsPerPage=') what do u think about this #BugBounty
Tweet media one
Tweet media two
5
6
34
@_2os5
Fares
2 years
even it is informational I got a reward thanks @Bugcrowd BTW ( it is a valid bug) #bugbountytips #BugBounty
Tweet media one
2
1
34
@_2os5
Fares
2 months
Great to meet @Bugcrowd on real!
Tweet media one
1
1
33
@_2os5
Fares
5 months
In this situation any information will be P3!! #bugbounty
Tweet media one
2
2
33
@_2os5
Fares
9 months
I have a Txt file with full of URLs How can I extract all endpoints? any tool or a command? #BugBounty #bugbountytips
11
4
31
@_2os5
Fares
2 years
الحمدلله default credentials: test/test information: endpoint has (token-secret and other things) #BugBounty #bugbountytips
Tweet media one
3
1
32
@_2os5
Fares
6 months
That is amazing!
Tweet media one
0
1
31
@_2os5
Fares
2 years
@0xRh1d0Y @GodfatherOrwa normal dork : 1-ssl:"target{.}com" 2-found a valid IP 3- 2x FUZZ Information Disclosure
5
1
29
@_2os5
Fares
11 months
organization has a limit to add users (email) only 4 users I tried race conditions but I can't put something like $$ as in the intruder any suggestions #bugbountytips #BugBounty
Tweet media one
5
0
28
@_2os5
Fares
2 years
I found two valid bugs on two programs they accept it and now both two programs are CLOSED 1 report status: Triaged 2 report status: UNRESOLVED BBP @Bugcrowd #bugbountytips #BugBounty
4
1
24
@_2os5
Fares
2 years
1
4
22
@_2os5
Fares
8 months
he really didn't even read the f POC just close it as N/A and everything is clear and request mediation is not allowed wow @Hacker0x01 I don't usually hunt on HackerOne and that is why
Tweet media one
Tweet media two
4
0
23
@_2os5
Fares
1 year
Tweet media one
0
6
21
@_2os5
Fares
3 months
The internal team downgraded the severity from P2 to P3 and paid the minimum P3 :) #BugBounty
Tweet media one
Tweet media two
1
0
22
@_2os5
Fares
7 months
How can I escalate cache deception that leads to leaks victim information like email, username etc. any suggestions #bugbounty @bxmbn
1
1
21
@_2os5
Fares
7 months
I have been trying to understand HTTP request smuggling it is as complex as >>>> any suggestions #BugBounty
2
0
21
@_2os5
Fares
7 months
Is cache deception considered to be social engineering? @bxmbn #bugbounty
Tweet media one
@_2os5
Fares
7 months
How can I escalate cache deception that leads to leaks victim information like email, username etc. any suggestions #bugbounty @bxmbn
1
1
21
3
1
21
@_2os5
Fares
5 months
I got duplicate report of my report first report the bug was on () Traiged. second report bug was on () Duplicate of first. {since the fix is the same} right? #BugBounty
Tweet media one
7
0
21
@_2os5
Fares
1 year
just started working on @Hacker0x01 lets see how it will be #BugBounty
4
0
20
@_2os5
Fares
2 years
after coping the JWT I went to the reset password page and I wrote a new password and intercept the request the JWT was verified on GET request but NOT ON POST request so I changed the JWT(has my own email) with JWT(has victim's email) and forward the request and yes full ATO
Tweet media one
Tweet media two
1
3
20
@_2os5
Fares
1 year
I found two paths have the same parameter (url) it is vulnerable to ssrf should I report them in one report? #bugbountytip #BugBounty
6
1
19
@_2os5
Fares
11 months
An application that can create a project and add user to my organization I found xss in a project and once the user enter that project the xss will execute Is this stored xss? #BugBounty
1
2
17
@_2os5
Fares
2 years
If the program blocks me when I fuzz. How can I bypass this block so I fuzz the directory? #bugbountytips #BugBounty
5
0
17
@_2os5
Fares
2 years
1- try to post a blog and intercept the request 2- make HTML file for csrf 3- send it to the victim, once he opens it he will post a blog with the attacker's content
4
1
17
@_2os5
Fares
1 year
weird thing on reset password If I want to reset my password, it will change my password and send it to my email without verification so in this situation, I can change anyone's password! does this consider a bug? because it is developer's fault #bugbountytips #BugBounty
Tweet media one
5
0
17
@_2os5
Fares
4 months
I think it is a good idea if @Bugcrowd added this feature as Hacker-one #bugbounty
Tweet media one
0
1
17
@_2os5
Fares
2 years
In July, I submitted 6 vulnerabilities to 3 programs on @Bugcrowd . #TogetherWeHitHarder
1
0
17
@_2os5
Fares
1 year
I was able to use paid features even though the 7 days expired. And still works Does this consider a bug!!?? I got N/A from it on @Bugcrowd #bugbountytip
8
0
15
@_2os5
Fares
10 months
0
0
1
@_2os5
Fares
7 months
I have access to a site on Chrome that has 2FA (I Bypassed it) I can't do it again as it required social eng how can I access it on Firefox? I have the creds but 2FA! #BugBounty
2
1
15
@_2os5
Fares
1 year
want to collab? send me your bugcrowd profile. #BugBounty
6
0
14
@_2os5
Fares
6 months
I found a (low) bug that affects the main domain and the whole subdomains, they have the same path and they have the same bug main domain + 25+ subdomains are affected! should I report it in one report right? #bugbounty @Hacker0x01
3
0
14
@_2os5
Fares
2 years
@h4x0r_dz you know finding bugs in vdp is easier (good for beginners to get reputation ) . BUT Nice words.
2
0
13
@_2os5
Fares
1 year
HTML injection on email. can I escalate it to something higher? #BugBounty
2
1
13
@_2os5
Fares
7 months
I faced this situation where I could only login. via email and password or via Google etc. but there is no signup function so I tried to login with Google which it is not a registered account is it a normal thing? #BugBounty
Tweet media one
3
0
13
@_2os5
Fares
11 months
@MrTuxracer With the elon musk upgrade, it is impossible
0
0
1
@_2os5
Fares
8 months
I like retesting resolved bugs🤣 Easy $ #BugBounty
0
0
12
@_2os5
Fares
7 months
Tweet media one
@bxmbn
🇪🇨🍫
7 months
@_2os5 ask them if they accept RXSS, if yes then why wouldn’t they accept CD? you require one click just like in a RXSS attack
1
0
8
1
0
12
@_2os5
Fares
6 months
While signup there is email verification, after login I can change the email to any email without email verification. So I bypassed the email verification Why it is P5 @Bugcrowd #bugbounty
1
1
11
@_2os5
Fares
2 years
I earned $ for my submission on @bugcrowd #ItTakesACrowd
Tweet media one
0
0
10
@_2os5
Fares
2 years
bypass rate limit is informative?????? #bugbountytips #BugBounty @GodfatherOrwa
Tweet media one
3
0
9
@_2os5
Fares
2 months
Do you guys pay medium subscription? #bugbounty
3
1
9
@_2os5
Fares
1 year
smart move lol.
Tweet media one
0
0
8
@_2os5
Fares
2 years
@GoodBoy61100515 try this : {IP-here}
0
2
7
@_2os5
Fares
2 years
@nasdanja @GodfatherOrwa @Bugcrowd he means ffuf gave him 403 like this
Tweet media one
2
1
6
@_2os5
Fares
1 year
Is anyone here use whoxyrm @Jhaddix tool? I am not getting a response, did I miss anything?
Tweet media one
1
0
8
@_2os5
Fares
2 years
TIP: using nuclei if you got anything like this here tips to try if there is email spoofing or not 1- go to and Enter Target Website E: (Do Not add https/http or www) and Hit Check SPF(IF ANY) 1/2
Tweet media one
3
5
8
@_2os5
Fares
2 years
I found IDOR yesterday, after reporting it I tried to test it again I found that this issue has been fixed! = Duplicate Welcome to #BugBounty
0
0
7
@_2os5
Fares
2 years
@IamRenganathan choose one give bounty I found this repo by coincidence
0
3
7
@_2os5
Fares
2 years
@GodfatherOrwa @XHackerx007 @Bugcrowd that payload works in every endpoint? target,com/{payload here} ?
1
0
5
@_2os5
Fares
2 years
@remonsec rxss with 400$?? congrats I think they gave you more than what the vulnerable worth congrats again bro.
1
0
5
@_2os5
Fares
2 years
@s3c_krd @Hacker0x01 congrats, but something is not good here. you added #bugbountytips BUT I see no tips here!
1
0
7
@_2os5
Fares
4 months
@Bugcrowd must add CVSS calculator as @Hacker0x01 this is unbelievable to get rewarded with the minimum range they put! the range for P3 is 200-700! and I got rewarded as the internal team feels to reward? @Bugcrowd please put CVSS calc #bugbounty #bugbountytips
2
0
7
@_2os5
Fares
2 years
@dvn50 لا يجوز وضع صور النساء في جميع البرامج والمنتديات على الانترنت لما فيه من استعمال التصوير المحرم، ولما فيه من إثارة الفتن وتهييج الشهوات، وكل من وضع تلك الصور أو ساهم في نشرها فهو آثم لما يترتب على ذلك من مفاسد وشرور
7
0
7
@_2os5
Fares
2 years
2
1
5
@_2os5
Fares
2 years
@r00t_nasser مب مثل حقتك هذي؟
2
1
6
@_2os5
Fares
2 years
@kassem_S94 @immunefi and bugcrowd put it as p4
2
0
6
@_2os5
Fares
2 years
@Agent472458 @af4himi @Hacker0x01 maybe ParamSpider or arjun
1
0
6
@_2os5
Fares
9 months
@bxmbn How do you check if this request vulnerable to cache poisoning or not? what do you do first to check when you try it? cuz I face a lot of (X-Cache: Error from cloudfront) and amazone waf
2
0
6
@_2os5
Fares
2 years
@BountyOverflow I know Authentication Bypass via Response manipulation or brute force but where do you use these headers to bypass?
5
0
6
@_2os5
Fares
1 year
سبحان الله والحمدلله ولا اله الا الله والله اكبر
0
0
6
@_2os5
Fares
2 years
I need some websites like Crunchbase and whois API for large scope #bugbountytips #BugBounty
1
0
6
@_2os5
Fares
8 months
Has anyone tried Heroku subdomain takeover? I claimed the subdomain But I am struggling with deploying. #bugbounty
0
1
6
@_2os5
Fares
2 months
At Dubai for @GISECGlobal .
Tweet media one
0
1
6
@_2os5
Fares
1 year
@win3zz How do you filter with the new GitHub update
0
0
4
@_2os5
Fares
2 years
@infosec_90
Abdulrahman
2 years
كل عام وانتم بخير انتهيت من برمجة CirrusGo أداة موجهة لفحص واستغلال بعض أنواع التطبيقات في الكلاود تمت برمجتها بلغة Go بدأت بأشهر تطبيق SAAS الخاص بشركة Salesforce بإذن الله بفصل عن اختبار اختراق تطبيقات SAAS #امن_المعلومات #BugBounty
Tweet media one
Tweet media two
Tweet media three
13
43
185
1
2
5
@_2os5
Fares
6 months
@GodfatherOrwa where do you inject Time-Based payloads? do you write them or use a wordlist with intruder? how do you know that you have to try SQLi in a specific parameter?
1
0
5
@_2os5
Fares
2 years
@beginnbounty programs will not accept these types of bugs
4
0
5