Japz (h4nt3rx) 🕷️🏴☠️
@japzdivino
Followers
5K
Following
9K
Media
128
Statuses
4K
Bug Bounty Hunter | OSCP | CWES | https://t.co/ceCcrmIzOp
Philippines
Joined July 2009
Bypass @Hacker0x01 2FA requirement and reporter blacklist by @japzdivino Severity: Medium (5.0) — High (7.1) Weakness: Improper Authorization Bounty: $10,000 https://t.co/kmC8X63sPq
infosecwriteups.com
Severity: Medium (5.0) — High (7.1) Weakness: Improper Authorization Bounty: $10,000 Summary:
9
136
450
Mine 😅
Final giveaway for Black Friday! I'll pick two hackers to gift free access to all of our courses by @_JohnHammond, myself and @BuildHackSecure on @hackinghub_io! - Drop a comment & RT to enter You can also purchase them here: The Hackers Arsenal: https://t.co/TwLegdsT1F Bug
0
0
0
Privacy matters — and now you can access ROOTCON through our official Tor mirror for a more secure, censorship-resistant experience. READ: https://t.co/E0n51amIZy Bookmark it. Stay private. #ROOTCON #Privacy #Tor #Infosec
0
3
6
Just got a reward for a high vulnerability submitted on @yeswehack -- Cross-site Scripting (XSS) - Generic (CWE-79). https://t.co/FdwJJQqq0c
#YesWeRHackers
4
3
98
Just got a reward for a high vulnerability submitted on @yeswehack -- Cross-site Scripting (XSS) - Reflected (CWE-79). https://t.co/FdwJJQqq0c
#YesWeRHackers
0
1
50
@japzdivino @CSAsingapore Thanks for joining us there! And congrats 👏👏
0
1
2
Our team Peenoise secured 4th place in the IoT Bug Bounty Hackathon! 🇵🇭 A huge thank you to the @CSAsingapore and @yeswehack for organizing such an amazing live bug bounty event!
✅ #SPIRITCYBER25 has come to a successful close! 👏 Big shoutout to everyone who participated and congrats to our Top 6 teams once again - your findings have helped advanced Singapore’s cyber resilience. 1️⃣ zamny zamn zamn: @elma_ios, @sunsh1nefact0ry, @junr0n 2️⃣ NullIoT:
1
0
21
⌛ #SPIRITCYBER25 goes beyond hacking targets - hunters are also exchanging insights and building friendships that make the community stronger. 💪 And in the lead, we have zamny zamn zamn (@elma_ios, @sunsh1nefact0ry, @junr0n) setting a high bar for the final stretch. Check back
0
2
27
HTTP is supposed to be stateless, but sometimes... it isn't! Some servers create invisible vulnerabilities by only validating the first request on each TCP/TLS connection. I've just published a Custom Action to help you detect & exploit this - here's a narrated demo:
24
186
1K
It's good to be back! :)
🇸🇬 Big week for @yeswehack at #SICW2025! The #SPIRITCYBER25 Hackathon will see 6 elite teams competing live on 22–23 Oct to strengthen Singapore’s critical #IoT systems. 🏆 From 30+ teams which participated in the 4-week qualifiers, these top hunters have earned their spot in
1
1
16
Team "Peenoise" with @shipcod3 @jeroldcamacho We just got a reward for a high vulnerability submitted on @yeswehack -- OS Command Injection (CWE-78). https://t.co/FdwJJQpSaE
#YesWeRHackers #SPIRITCYBER25 #CSA
1
3
63
Two vulnerabilities in Advantech were found by our team during the SPIRITCYBER-24 IoT / OT Hackathon in Singapore: CVE-2025-48466 and CVE-2025-48470. Our Poc for CVE-2025-48470: https://t.co/87HG6SvHF0 Advisory: https://t.co/T9p64iuJpx
0
6
12
In September, I submitted 12 vulnerabilities to 12 programs on @Hacker0x01. #TogetherWeHitHarder
0
1
35
Goodbye HTB CBBH… HELLO HTB CWES! 🕷️ Your favorite path and certification just got a fresh new look — aligned with today’s hiring needs. With revamped Modules and new content on modern attack surfaces like GraphQL and web fuzzing, you’ll be equipped to break into today’s
4
26
226