offsecrunner Profile Banner
Frey Profile
Frey

@offsecrunner

Followers
5K
Following
11K
Media
2K
Statuses
7K

24 ; Pentester and MMA Player ; chasing impact | https://t.co/5o70t1MjKR | LW (9-0-0) ; building @cybity_

ap-south-1
Joined September 2021
Don't wanna be here? Send us removal request.
@offsecrunner
Frey
2 hours
One piece is real.
0
1
4
@offsecrunner
Frey
1 day
7
77
995
@offsecrunner
Frey
6 days
Hey folks need some advice. I reported a bug in an API endpoint it got patched and I was asked to re-test. During retesting, I found a different bypass on the same endpoint but it’s a different vulnerability category. Should I disclose it now or wait and report it after payment?
5
0
27
@offsecrunner
Frey
7 days
Hacker in the Night City :)
0
0
14
@offsecrunner
Frey
8 days
Post exploitation tip always check the victim’s browser for saved bookmarks and credentials. Forgot this myself, sharing so you don’t
0
5
49
@offsecrunner
Frey
8 days
Collected all Cyberpunk 2077 Tarot cards :)
1
0
4
@offsecrunner
Frey
11 days
bypassing EDR and Antivirus is really painful :(
4
3
39
@offsecrunner
Frey
11 days
Vibe coding at its peak! First writing code with AI, then checking it for vulnerabilities. (Of course this is a great time to get into security.) But yeah… the era of low-hanging fruits is ending 🍓
@claudeai
Claude
12 days
Introducing Claude Code Security, now in limited research preview. It scans codebases for vulnerabilities and suggests targeted software patches for human review, allowing teams to find and fix issues that traditional tools often miss. Learn more: https://t.co/n4SZ9EIklG
0
2
14
@offsecrunner
Frey
12 days
Oh I have a youtube channel lol https://t.co/edCDu2hgjp
0
0
6
@offsecrunner
Frey
14 days
Have you checked what’s out of scope for the program? Let it be Unless someone chains it. Do not report P4 it might be someone's P1
@_JohnHammond
John Hammond
16 days
"TikTok needs to fix this vulnerability" -- video: https://t.co/JDd3ibM0FR
2
0
21
@Cybity_
Cybity
16 days
Bug Bounty Recon Tip #2: httpx turns huge subdomain lists into real, live attack surface. Dead hosts waste time probe fast, filter smart. Don't ignore 401/403 responses. that's often where the IDOR & bypass gold hides. What's your favorite httpx trick? #BugBounty #Recon
3
23
114
@offsecrunner
Frey
17 days
Valentine’s Day well spent lol Finished all 10/10 Love at First Breach challenges on @tryhackme Fun rooms, solid web security concepts love the crypto one.
0
0
10
@offsecrunner
Frey
19 days
Now after every report you submit on H1 don’t forget to infect the AI model with your coolest prompt injection.
0
0
6
@offsecrunner
Frey
19 days
What do you think: is using different usernames across social platforms a good security practice (unless you’re already famous)? Curious from an OPSEC standpoint
1
0
6
@Cybity_
Cybity
19 days
Bug Bounty Tool Series #1 is live! 🚀 Meet Subfinder – the fastest passive subdomain enumerator 🔥 Stealth recon, 30+ sources, zero packets to target. What's your must-have recon tool? 👇 #BugBounty #Subfinder #Cybersecurity #Recon #Cybity 🔗 https://t.co/AxDVHngSG6
1
2
19
@BugBountyHQ
BugBountyHQ
20 days
Thread - My own opinion & this is to the Bug Hunters, What @Hacker0x01 is doing re AI, is essentially stealing “our work” “our research” for their own profitability. They are for sure breaking client agreements, wherein a clients data / vulns belong to the client. Not H1!!
14
31
226
@offsecrunner
Frey
20 days
🌱🍃💚 my own land
4
0
15