
Tuan Anh Nguyen⚡️ 🇻🇳
@haxor31337
Followers
15K
Following
18K
Media
216
Statuses
3K
28 y/o Bug Bounty Hunter and Red Teamer at Viettel Cyber Security. Brand Ambassador @Hacker0x01 - Researcher Spotlight @Bugcrowd
Hà Nội, Việt Nam
Joined December 2012
RT @vxunderground: Dear Red Team nerds,. If you're curious what a successful and serious malware campaign looks like (if you want to make a….
0
265
0
RT @infosec_au: IP whitelisting is fundamentally broken. At @assetnote, we've successfully bypassed network controls by routing traffic thr….
0
235
0
RT @th3anatomist: 🚨 We got RCE on Solana 🚨.Finally revealing FULL details about the RCE vulnerability we found 2 years ago. Found it. Lost….
0
31
0
RT @sw33tLie: Do you think autonomous hackbots will significantly reduce your #bugbounty income within the next 5 years?.
0
4
0
RT @caseyjohnellis: I’ve been getting asked a tonne of questions about XBOW and bounty hunting. Von and I did a security flash last week af….
0
13
0
From SSRF to RCE and transfer money in core banking. It is really cool red team case. A perfect combination of external and internal vulnerabilities for each other to bypass the monitoring and detection of the blue team. Present by my colleague @_q5ca.
6
70
350
I think it is more difficult to get access to the installer or source code of a commercial software than to find a vulnerability in a large product like this. We found a serveral vulnerabilities including pre-auth RCE 2 years ago and reported them to Apple 😃
Apple once ran this software. Multiple security firms poked at it. No one spotted the bug. Here's a thread of how we found CVE-2025-5086 in Delmia Apriso. 👇🧵.
6
13
137
RT @clintgibler: 🔥 𝐀𝐈 𝐑𝐞𝐝 𝐓𝐞𝐚𝐦𝐢𝐧𝐠 𝐏𝐥𝐚𝐲𝐠𝐫𝐨𝐮𝐧𝐝 𝐋𝐚𝐛𝐬 from @Microsoft .12 free labs to up-level your hacking skills from the “AI Red Teaming in….
0
87
0
RT @stephenfewer: A new @rapid7 Analysis of CVE-2024-58136 was just published to AttackerKB, courtesy of Calum Hutton 🔥 Affecting the Yii f….
0
24
0
RT @GodfatherOrwa: Video of my talking in #PHDays at @PTsecurity_EN . Hope you like it and enjoy it . #bugbounty #….
0
53
0
RT @thezdi: Outstanding! Nguyen Hoang Thach (@hi_im_d4rkn3ss) of STARLabs SG used a single integer overflow to exploit #VMware ESXi - a fir….
0
45
0
The world will burn again 🔥🔥🔥.
Confirmed!! Dinh Ho Anh Khoa (@_l0gg) of Viettel Cyber Security combined an auth bypass and an insecure deserialization bug to exploit #Microsoft SharePoint. He earns $100,000 and 10 Master of Pwn points. #Pwn2Own #P2OBerlin
1
8
46
Amazing. Congrats my colleague 😍.
w00t!! Dinh Ho Anh Khoa (@_l0gg) of Viettel Cyber Security needed two attempts, but he successfully demonstrated his exploit of #Microsoft SharePoint. If confirmed, he'll win $100,000 for his efforts. Off to the disclosure room! #Pwn2Own #P2OBerlin.
0
1
14