
what_web
@jae_hak99
Followers
3K
Following
221
Media
29
Statuses
319
@Hacker0x01 @Bugbounty @Web
Republic Korea
Joined March 2020
I recently found out about a platform called #hackthebox. This platform provides a learning space and information to learn various knowledge such as cybersecurity, web, network, AI, etc. I think it would be very useful for researchers who want to learn more about information.
0
0
6
I have 15 reports Pending program review. :) I hope the final result comes out soon ππ. @Hacker0x01 #bugbounty
9
3
178
I've been busy for a while. So I took a long break for 3-4 years. I recently started the #Hacker0x01 bug bounty activity again in May, and I found 20 vulnerabilities in the BBP program All are under evaluation and review, and some are already being fixed. Hope it goes well :)
9
8
235
I'm working on validating whether sensitive tokens or API keys are working by analyzing JS files, GitHub repositories, etc. and I'm working on more scripts to automate this task. It's really fun to dig deeper into this. #bugbounty #Hacker0x01.
1
1
6
I successfully accessed my real credentials using a token leaked from a GitHub repository created by an individual or a third party, but it was not the official repository of the program. How does the program handle this case?. #Hacker0x01 #bugbounty.
0
0
3
sitemap.xml is meant to inform search engine crawlers about the structure of your site, but it often contains paths to internal JS files that should not be made public. - admin API endpoint.- Hardcoded private key (JWT secret,API key).- debugging JS code. #bugbounty #bugbountytip.
1
0
5
I just discovered the admin panel of the staging server while analyzing the JS files and collecting subdomains. #bugbounty.
0
0
4