Ben Sadeghipour
@NahamSec
Followers
236K
Following
17K
Media
2K
Statuses
15K
Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
California
Joined January 2014
🚨NEW HUB: Poll Position F1 What if a simple web/API flaw on F1's governing site let you access sensitive data? Imagine gaining access to Max Verstappen's ID and personal information, along with every other F1 driver's sensitive data Master the circuit: https://t.co/HAHaLrlH43
0
3
16
Days like today are brilliant, I was invited in to Exeter University to teach students about the basics of web application security in preparation for their CTF with Hack South West. The students did amazing and really seemed to grab the concepts brilliantly. We covered content
1
2
36
In Nov 2024, researchers used minimal data (name, email, or plate) to access engine controls, door locks, location tracking, and PII on Subaru STARLINK vehicles. Master this high-impact exploit chain in our new CypherDrive lab! Get started: https://t.co/77a66aczur
1
2
44
Caido Scanner v1.0.4 is out 🎉 This release adds 9 new checks: - 7 for detecting CSP issues - 1 for pages missing a content-type header - 1 for spotting suspicious input transformations Full changelog: https://t.co/vQxIukw4Yu
0
19
116
Reverse-engineer a real-world exploit on CypherDrive. The CypherDrive lab breaks down the attack chain: DNS Brute-forcing, Account Takeover via Insecure Password Reset, and Client-Side 2FA Evasion. Ready to learn? Get Started: https://t.co/77a66aczur
0
6
21
Why spend time manually converting JSON to XML to test for XXE? Just ask Burp AI in Repeater: it handles the transformation and delivers the exploit. @NahamSec demonstrates this massive shortcut for finding complex, overlooked bugs. 👇
0
51
327
Is Burp AI going to steal @NahamSec's job? Nope - but it does make an excellent sidekick! Check out his full Burp AI demo here 👉 https://t.co/hErQtlRjQB
4
10
68
This is how @infosec_au and @samwcyo tracked and unlocked every @subaru_usa 👉🏼 https://t.co/ML86wJvr6k (includes a free lab!)
2
21
213
Got two hours to learn Blind XSS? @NahamSec condenses the exact, battle-tested process he used to earn $250k+ from BXSS into a hands-on course. You’ll learn: ✅ Correct BXSS lab setup ✅ Where blind XSS hides ✅ Common mistakes to avoid Get Started: https://t.co/5a1IiW8Rym
2
9
31
Stuck in theory with no hands-on experience? Our Hands-On Web Exploitation course by @NahamSec and @BuildHackSecure you how to find bugs through practical labs, pro strategies, and a cert that proves your skills. Sign up today👇 https://t.co/561Wji7Xsl
1
2
18
This would be help for someone. Thanks @NahamSec
https://t.co/JxLM4K2tfE
0
3
12
11
55
469
Bug bounty legend @NahamSec just put Burp AI to the test. See how it helps turn hunches into evidence faster, right inside Burp Suite Professional 👇 #AppSec #BugBounty #BurpSuite
1
4
34