crypt0grapherr Profile Banner
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ Profile
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ

@crypt0grapherr

Followers
661
Following
845
Media
33
Statuses
171

Be Kind, Be Happy, Be Generous

INDIA
Joined August 2024
Don't wanna be here? Send us removal request.
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
3 months
Hope you like it ๐Ÿฅ‚๐Ÿฅ‚ #BugBountytips.I just published $1,000 Bounty for Bypassing Restrictions via Modified HTTP Request
Tweet card summary image
gaurrav.medium.com
Hello,
0
20
104
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
7 days
Bounty amount was rewarded on old submission with new bounty table. I raised this issue 5 minutes ago and @Hacker0x01 responded and resolved within 5 minutes. Thank you @Hacker0x01 @jobertabma for quick solution #bugbounty
Tweet media one
1
2
81
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
2 months
I was awarded $2,000 Bounty for another 3 Reports.#BugBounty ๐Ÿค‘๐Ÿค‘๐Ÿค‘
Tweet media one
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
2 months
#BugBounty.Reported only 90 CVE-2025-0133.2 - Pending Program Review.1 - Triaged .2 - rewarded $700(+$100$ retest) + $100.85 - Duplicates
Tweet media one
5
6
200
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
2 months
#BugBounty.Reported only 90 CVE-2025-0133.2 - Pending Program Review.1 - Triaged .2 - rewarded $700(+$100$ retest) + $100.85 - Duplicates
Tweet media one
8
6
228
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
2 months
#BugBountyTip .Found Swagger endpoint ?.test.yaml โŒ not working.test.json โŒ not working.test.pdf โœ… WORKED ๐Ÿ’ธ๐Ÿ’ธ
Tweet media one
5
25
302
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
6 months
Third bypass of my fixed XSS report.#BugBountyTip .First - basic img payload.Second - double encoded xss payload.Third - triple encoded img xss payload .#HackerOne
Tweet media one
5
5
176
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
6 months
some programs are ๐Ÿ”ฅ on @Hacker0x01
Tweet media one
3
0
106
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
7 months
BLIND XSS #BugBountyTip :-.asset in scope wwwdotTARGET1dotcom - 403.wwwdotTARGET2dotcom - 403.wwwdotTARGET3dotcom - 403 with below error."reach to xyz@target3dotcom".1. opened gmail and added img BXSS payload in subject.2. email sent to xyz email. 3. few days later got this ๐Ÿ‘‡
Tweet media one
1
12
94
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
8 months
๐Ÿฆ‰ Proud to share my 2024 #HackerOne journey! 129 vulnerabilities reported, 68 high/critical severity findings, and a passion for web security that never sleeps! Thanks @Hacker0x01 ๐Ÿ›ก๏ธ #BugBounty #CyberSecurity #HackWithPurpose
0
1
34
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
9 months
I am not Pro , I am not Full time BBH but i improoved myself in six years ๐Ÿ˜….2018 - 48 rep points & -2.39 signal points .2024 - 3735 rep points & +2.14 signal points.Thank you @akita_zen (a great Man๐Ÿซก) for this tweet ๐Ÿป.#BugBounty.
11
2
117
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
My highest retest amount till now.Thank You @Hacker0x01 ๐Ÿป
Tweet media one
5
2
121
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
censys input :- "WWWdotTARGETdotCOM".
0
0
7
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
#BugBountyTip $1,000 Tip ๐Ÿ‘‡๐Ÿ‘‡.Target/robots.txt mentioned /devuser/ is present.Target/devuser/ -> 404 .Target/devuser/FUZZ -> all 403,404.found original IP at censys .IP/devuser/ -> 403 .IP/devuser/index.php:DATA -> 200 OK.๐Ÿ‘‡๐Ÿ‘‡๐Ÿ‘‡๐Ÿ‘‡๐Ÿ‘‡
Tweet media one
10
63
491
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
Found interesting ??.
0
1
12
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
when i inspect that button , see that mf link ๐Ÿ˜ .which i was looking 3 days ago
Tweet media one
4
1
10
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
when i opened the EMAIL i found there is one Register Button ๐Ÿ˜ต๐Ÿ˜ต
Tweet media one
1
0
4
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
Tried FUZZZing but it gives me 403, 429 errors only ๐Ÿ˜–. i almost gave up on target when i didn't found any result Later i went to main domain www(.)target(.).com and subscribe for newsletters, updates etc etc. & i gave up on TARGET !!!! โš”๏ธโš”๏ธ. after 3 days, i got EMAIL ๐Ÿ˜ฏ.๐Ÿ‘‡๐Ÿ‘‡
Tweet media one
1
0
5
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
i went to wayback , there also zero result i found ๐Ÿ˜ญ
Tweet media one
1
0
5
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
i tried to search on google but No result there too ๐Ÿ˜ฅ
Tweet media one
1
0
6
@crypt0grapherr
๐†๐š๐ฎ๐ซ๐ซ๐š๐ฏ ๐‹๐ฎ๐ญ๐ก๐ซ๐š ๐Ÿ‡ฎ๐Ÿ‡ณ
10 months
#BugBountyTip .How i got access to Internal docx on 403 domain Which ends up on $$$$ ? ๐Ÿ˜Ž๐Ÿค‘๐Ÿค‘.Target had Asset inscope was *(.)TARGET(.)com.workdevd(.)TARGET(.)com looks interesting to me but wheni opened the domain i got error ๐Ÿค“
Tweet media one
3
15
191