m0m0x01d Profile Banner
Daher Mohamed Profile
Daher Mohamed

@m0m0x01d

Followers
2K
Following
5K
Media
69
Statuses
486

Joined April 2014
Don't wanna be here? Send us removal request.
@m0m0x01d
Daher Mohamed
1 year
Yay, I was awarded a $30,000 bounty on @Bugcrowd.
15
2
159
@m0m0x01d
Daher Mohamed
13 days
Cc @BugcrowdSupport been trying to get help for 3 months now over my tax form, would you mind helping ?.
0
0
1
@grok
Grok
2 days
Join millions who have switched to Grok.
123
237
2K
@m0m0x01d
Daher Mohamed
26 days
Clone any website in minutes 🚀.
@HusseiN98D
Hussein Daher
26 days
🚀 $100 GIVEAWAY 🚀. Clone ANY website into clean React + TypeScript code in MINUTES!. Watch me recreate GitHub's landing page with ⚡. To enter: .✅ Like this post .✅ RT & tag a developer friend .✅ Follow @hussein98d. @grok pick the Winner 48 hrs from
0
0
0
@m0m0x01d
Daher Mohamed
10 months
I was awarded an additional 9,600$ Thanks to @BugcrowdSupport making things right!.
0
0
48
@m0m0x01d
Daher Mohamed
1 year
RT @HusseiN98D: ⛔️Update your SolarWinds Serv-U instances! - We have discovered an unauthenticated critical vulnerability assigned CVE-2024….
0
6
0
@m0m0x01d
Daher Mohamed
2 years
RT @HusseiN98D: I will give the full results of the first 5 dorks I get under this tweet ⬇️.
0
5
0
@m0m0x01d
Daher Mohamed
2 years
Subdomains enumeration on out of scope domain -> found a subdomain redirecting to a misconfigured internal atlassian space -> information disclosure (all admin’s info, link to join staff what’s app group, discord channel, admin panels etc
Tweet media one
5
7
65
@m0m0x01d
Daher Mohamed
2 years
300$ reward.
@m0m0x01d
Daher Mohamed
2 years
Renewed my @KN0X55 subscription to bypass a WAF, bypassed after 2 minutes and returned the money
Tweet media one
Tweet media two
0
0
3
@m0m0x01d
Daher Mohamed
2 years
Renewed my @KN0X55 subscription to bypass a WAF, bypassed after 2 minutes and returned the money
Tweet media one
Tweet media two
@KN0X55
KNOXSS
2 years
🚨 Special Limited Time Offer! 🚨.👇🏾👇🏾👇🏾🎉🎉🎉. 3 Months Subscription.$̶6̶0̶ => $49. 6 Months Subscription.$̶9̶0̶ => $69. 1 Year Subscription (best value).$̶1̶5̶0̶ => $99 !!! 🤩. What are you waiting for? 🤔. RT and pick up your subscription! 😀.
1
4
40
@m0m0x01d
Daher Mohamed
2 years
This dude is awesome
Tweet media one
@disclosedh1
publiclyDisclosed
2 years
Reddit disclosed a bug submitted by revolte: - Bounty: $6,000 #hackerone #bugbounty
Tweet media one
0
1
34
@m0m0x01d
Daher Mohamed
2 years
I got a reward increased from 200$ to 700$ because I asked ChatGPT to explain the impact.
0
0
9
@m0m0x01d
Daher Mohamed
3 years
RT @WebImmunify: @WebImmunify team is composed of top world #hackers ready to help identify any flaws in your business assets. If there is….
0
2
0
@m0m0x01d
Daher Mohamed
3 years
RT @WebImmunify: What is a number one way to be protected from malicious hacker attacks? Do a real-life test and let the team of ethical #h….
0
1
0
@m0m0x01d
Daher Mohamed
3 years
Yay, I was awarded 150$ for a RCE via @Hacker0x01
8
0
53
@m0m0x01d
Daher Mohamed
3 years
How to get people in trouble 101.
@007_isnuoT
S.ih
3 years
Yay, I was awarded a $100 bounty on .@Hacker0x01 . For a while i didn't expect the reward 🤞🤞.😂😂😂😂.💰Small bounty💰.Private BBP name disclosed on twitter 🏹🎯
Tweet media one
1
0
2
@m0m0x01d
Daher Mohamed
3 years
Am I the only one who wouldn’t have reported that to fb and use it instead to take over BB’s orgs and earn more?.
@wld_basha
ناضي كناظي
3 years
I hope this reach @fbsecurity ,.two months ago I was scrolling on twitter and I saw this Post when reading it I found out that I reported the exact same thing back in July 2, 2020 when I started BB hunting #bugbounty #bugbountytip 1/N.
1
0
3
@m0m0x01d
Daher Mohamed
3 years
One of the SSRF's :.Server only fetch URL's with :.-https protocol.-AWS S3 bucket suffix (.s3.amazonaws.com).- CSV extension.Payload : https://myserver\.com/ssrf.php?.s3.amazonaws.com/random.csv.ssrf.php redirects to http://169.254.169.254.
@m0m0x01d
Daher Mohamed
3 years
This week I’ve reported 5 brain fucking bugs. No advanced skills needed, just a deep understanding of the application but gosh my head hurts.
0
6
43
@m0m0x01d
Daher Mohamed
3 years
I was awarded a 900$ bounty, waiting for the other rewards.
@m0m0x01d
Daher Mohamed
3 years
This week I’ve reported 5 brain fucking bugs. No advanced skills needed, just a deep understanding of the application but gosh my head hurts.
0
0
9
@m0m0x01d
Daher Mohamed
3 years
This week I’ve reported 5 brain fucking bugs. No advanced skills needed, just a deep understanding of the application but gosh my head hurts.
1
0
26
@m0m0x01d
Daher Mohamed
3 years
Update: it’s a VPS provider company. Using the comp name as pw gave me access to some very big companies vps (ssh access).
@m0m0x01d
Daher Mohamed
3 years
It’s 4 in the morning and I just found a nice bug. While logging in if you remove the email parameter and put a userID header it logs you in. (You need userID+ password). Brute forced the company name as pw with all ID’s (guessable) and took over a lot of accounts!.
1
0
0