
Rojan Rijal
@mallocsys
Followers
931
Following
74
Media
13
Statuses
57
Offensive security research & building @OphionSecurity
Joined May 2019
It was amazing to present at @_kernelcon_ today. Thank you for the gift KernelCon team! #kernelcon #offensivesecurity #researchontheroad
0
0
4
๐ฅ Q1 Update from the Field: Real-World Hacking with Orion ๐ฅ . In Q1, we pointed Orion, our offensive Attack Surface Management platform, at a large enterprise to see what it could uncover. The results speak for themselves: .๐ ๐ต ๐๐๐น๐ป๐ฒ๐ฟ๐ฎ๐ฏ๐ถ๐น๐ถ๐๐ถ๐ฒ๐ ๐ฟ๐ฒ๐ฝ๐ผ๐ฟ๐๐ฒ๐ฑ.
0
0
2
RT @uraniumhacker: We are doing #VibeSecurityForAI. If you are an AI startup (pre-seed or seed ) we will test your application for free. Weโฆ.
0
1
0
Not yet a full multiplayer but doing some basic "Simon Says" style game with increasing difficulties. Will add leaderboard style system soon. Open to ideas to improve it further @levelsio
taptastic.app
Test your memory with Taptastic!
0
0
0
tj-actions compromise is a great reminder that pinning the action/dependency to a commit SHA instead of a version tag is safer and securer. We monitor repositories of some public organizations, and most of them are safe because they use a SHA like.
Oh wow, a popular GitHub Action (tj-actions/changed-files) was fully compromised. Someone committed a base64-encoded payload that runs a script that in turn prints out encoded secretsโฆ. Stay safe out there!.
0
0
4
I reached level 11 in Taptastic! ๐ฎ. Final speed: Super Fast.Tiles: 9. The pattern that defeated me: ๐ฉ ๐จ ๐จ ๐จ ๐ฆ ๐ฆ ๐ฆ ๐จ ๐ฆ ๐ฉ ๐ฉ ๐จ. Can you beat my score? #Taptastic #memorygame #challenge
taptastic.app
Can you beat the Taptastic score of 11?
0
0
1
๐งต Securing Your @DecagonAI Chat Bot ๐งต. We've seen a growing number of organizations using s chat bot to enhance customer support with AI. A quick post on how to make sure you deploy it securely based on a recent issue we saw. ๐จ The issue?.If.
0
0
0
RT @OphionSecurity: Live chat histories contain treasure trove of data. From answers to security questions to credentials and more. We founโฆ.
ophionsecurity.com
In July 2024, we identified a vulnerability that resulted in access to millions of live customer support messages for organizations using Cisco Webex Connect.
0
1
0
RT @0xdabbad00: I looked at all the AWS OIDC integrations I could find to identify how they might be misconfigured and to understand the vaโฆ.
wiz.io
Secure AWS OIDC integrations by avoiding common misconfigurations. Discover key IAM trust policy conditions for popular SaaS vendors to protect your cloud.
0
26
0
๐ฆ๐ Proud to have contributed to a safer digital world in 2024! 23 vulnerabilities reported, including 9 critical findings. Special thanks to @Hacker0x01 for providing the platform to make this impact possible. Here's to more secure systems in 2025! ๐ #BugBounty #CyberSecurity.
0
0
6
With HackerOne's Scotland Live Hacking Event now slowly wrapping up, I am excited to have had the opportunity to participate this time. I focused primarily on hacking AWS while collaborating on it with @itscachemoney. Currently, we are ranked in the top 10 for AWS based on our
1
3
34