Mr.Niko
@_MrNiko
Followers
742
Following
11K
Media
55
Statuses
844
OSCP+ | OSCP | BSCP | CRTA | ACP | HTB #6 | Red Teamer | Pentester | Security Researcher | CVE-2025-3046 | CVE-2025-6208 | CVE-2025-5472 | CVE-2025-3108
In your heart
Joined September 2021
I'm proud to share that I earned a $750 AI/ML bug bounty for discovering CVE-2025-3046, a high-severity (CVSS 7.5) path traversal vulnerability in LLaMA-Index exploitable via symlinks: https://t.co/7hXMkisQ3w
6
4
81
Heading to Beside Ahmedabad! If you’re around, don’t hesitate to say hi, would love to have a quick chit-chat! #BSidesAhmedabad #Cybersecurity #infosecurity @bsidesahmedabad
1
0
2
Got it validated as well by one and only @_diginova and @_MrNiko 🫶🏻🫂
1
1
4
GIVEAWAY!! 🔥 Last 2 days of Hacker Summer 2025 We are giving away 1 seat of Advanced Red Team Lab (CRTE). To participate - Like👍, Repost🔁, and Comment💬 what makes it useful to you, and follow @nikhil_mitt and @AlteredSecurity We will announce a random winner tomorrow. We
109
99
144
GIVEAWAY!! 🔥 Last 3 days of Hacker Summer 2025 We are giving away 1 seat of Cloud Red Team Tactics for Attacking and Defending Azure - Beginner's (CARTP). To participate - Like👍, Repost🔁, and Comment💬 what makes it useful to you, and follow @nikhil_mitt and
80
75
121
GIVEAWAY!! 🔥 Hacker Summer 2025 giveaway! We are giving away a total of 2 seats for any of the highly coveted on-demand courses by @AlteredSecurity To participate - Like👍, Repost🔁 and Comment💬 the course/certification name, what makes it useful to you and follow
206
192
307
✅ Excited to share that I’ve officially passed the OSCP+/OSCP certification!! @offsectraining
#OSCP #CyberSecurity #EthicalHacking #OffensiveSecurity #InfoSec #ProfessionalDevelopment
20
3
165
CVE-2025-5472 The JSONReader in run-llama/llama_index versions 0.12.28 is vulnerable to a stack overflow due to uncontrolled recursive JSON parsing. This vulnerability allows attacke…
0
1
2
CVE-2025-5472 Recursive JSON Parsing Stack Overflow Vulnerability in Llama Index... https://t.co/8K2pB7pCw6 Vulnerability Alert Subscriptions:
0
1
2
CVE-2025-3108 A critical deserialization vulnerability exists in the run-llama/llama_index library's JsonPickleSerializer component, affecting versions v0.12.27 through v0.12.40. Thi…
0
2
1
CVE-2025-3046 A vulnerability in the `ObsidianReader` class of the run-llama/llama_index repository, versions 0.12.23 to 0.12.28, allows for arbitrary file read through symbolic link…
0
1
1
Hacker Summer 2025 giveaway! I am giving away a total of 3 seats for any of the highly coveted on-demand courses by @AlteredSecurity To participate - please Repost, Comment the course/certification name, what makes it useful to you and follow @nikhil_mitt and @AlteredSecurity
121
115
198
🚨 Received a New #CVE 🚨 CVE-2025-3108 - Unsafe Deserialisation in JsonPickleSerializer in LlamaIndex (GPT Index) Severity: Medium (5) Packages: llama_index, llama_index-core Versions: < 0.12.28 https://t.co/V0yTclwg6l
#LLMs #redteam #pentesting #BugBounty #infosec
7
4
69
Active Directory Audit and exploit Tools https://t.co/UGrYasyHz7
https://t.co/jjkChKfTnQ
https://t.co/WkibMkZhg3
https://t.co/r3QmPpBGMG
https://t.co/srnVIKi4yi
https://t.co/gqNRSwKm1H
https://t.co/fJhdY7KTIG
https://t.co/HyEljDctWI
https://t.co/fxlrzjl7UZ
github.com
A script for advanced discovery of Privileged Accounts - includes Shadow Admins - cyberark/ACLight
1
93
333
🚨 Received a New #CVE 🚨 CVE-2025-5472 - Denial of Service via JSON Parsing in LlamaIndex (GPT Index) Severity: Medium (6.5) Packages: llama_index, llama_index-core Versions: < 0.12.28 https://t.co/MbAoNYQFmN
#LLMs #redteam #pentesting #BugBounty
4
6
59
🚨 Received a new #CVE CVE-2025-6208 - Uncontrolled Memory Consumption in llama-index (GPT Index) Bounty: 125$ Severity: Medium (5.3) Packages: llama_index, llama_index-core Versions: < 0.12.42 https://t.co/0F1LIKiAzi
2
1
14
Another launch and giveaway from our sponsors @TheSecOpsGroup ! 🚨 Latest Launch + Win a FREE Exam Chance! 🚨 The all-new Binary Fuzzing & Reversing pentesting exam just dropped and 3 of you can win it for FREE! 🎉 The SecOps Group is back with their latest pentesting exam:
55
77
157