rub003 Profile Banner
003random Profile
003random

@rub003

Followers
2K
Following
9K
Media
45
Statuses
801

Cyber Security && Software Development

The Netherlands
Joined February 2012
Don't wanna be here? Send us removal request.
@rub003
003random
2 years
The $15,000 secret of viewing posts from private Instagram accounts. #bugbounty #bugbountytips #writeup.
5
137
571
@rub003
003random
5 days
getJS will now ignore certificate errors, so that your bug bounty automation will less likely error on the hosts that are the most interesting (e.g. self-signed certificates).
0
0
3
@rub003
003random
5 days
RT @VolerionSec: Our models identified the correct product (CPE), versions (semver) and gathered remediation options. This data is availabl….
0
1
0
@rub003
003random
13 days
RT @spaceraccoonsec: Pre-orders have started shipping and getting to readers around the world!. Whether you’re new to vulnerability researc….
0
21
0
@rub003
003random
15 days
RT @VolerionSec: We just launched our blog!.
0
2
0
@rub003
003random
22 days
CVSS 4.0 version as well 👀 Go boost your bug bounty report severities!.
0
0
1
@rub003
003random
22 days
CVSS can be confusing. Therefore, I've created a CVSS calculator with lots of information (click the ? icons) and even a guided walkthrough. Let me know what you think! . #bugbountytips #bugbountytip #infosec.
1
1
4
@rub003
003random
27 days
RT @VolerionSec: Launching today!. Volerion transforms raw CVEs into structured and instant insights. #CVE #CyberSecurity #infosec https://….
0
17
0
@rub003
003random
6 months
RT @infosec_au: Our research on vulnerabilities caused by the great firewall was nominated for the top ten web hacking techniques this year….
0
15
0
@rub003
003random
8 months
@FIRSTdotOrg There are a lot of bad copy paste mistakes as well, but the main issue is that the comments do not apply to the spec and are telling the reader more often what the result is, rather than why that is the result. It's confusing overall. I can supply a correct version if needed 😄.
0
0
0
@rub003
003random
9 months
RT @hackermondev: 1 Bug, $50K+ in bounties: how Zendesk left a backdoor in hundreds of companies #bugbountytips .
0
339
0
@rub003
003random
9 months
@FIRSTdotOrg that 'if a specific configuration is required for an attack to succeed, the vulnerable system should be assessed assuming it is in that configuration.'. More than half of the given examples have incorrect metric evaluations like this🙃 [2/2].
1
0
0
@rub003
003random
9 months
@FIRSTdotOrg While someone is at it, please redo the CVSS v4.0 Examples. Comments such as 'Attack requirements are present. Only applications built with a specific configuration are vulnerable.' are at odds with the spec defining [1/2].
1
0
0
@rub003
003random
10 months
Hey @FIRSTdotOrg, any chance we could get the CVSS 4.0 supplemental metrics in the same order across the overview image, section 5 and the calculator? Kinda triggered ngl😆.
1
0
0
@rub003
003random
11 months
is pretty dope! It's a follow-up to CVE-2023-46137. Most affected servers are running some cPanel instance 👀. In short, Twisted.web servers can mess up pipelined requests, leading to info leaks. Cool PoC out there too! #bugbounty #bugbountytips #twisted.
0
1
9
@rub003
003random
1 year
Exciting News! I just released getJS v2.0.0! . New features and improved compatibility!.Check out the gif to see simple CLI usage in action! 👇. Integrate it right into your custom recon tools, as it's importable as Go package. #bugbounty #bugbountytips
0
1
9
@rub003
003random
1 year
RT @wikileaks: JULIAN ASSANGE IS FREE. Julian Assange is free. He left Belmarsh maximum security prison on the morning of 24 June, after ha….
0
88K
0
@rub003
003random
1 year
RT @Karel_Origin: Found myself in a scenario where I had to query a rate-limited API. The sleep command works but will waste a lot of time….
0
8
0
@rub003
003random
2 years
@trick3st @trick3st I see you got getJS as option. Nice! Just a small typo in the description: (`can be piped to gets`, should be `getjs`).
0
0
3
@rub003
003random
2 years
RT @rub003: The $15,000 secret of viewing posts from private Instagram accounts. #bugbounty #bugbountytips #write….
0
137
0
@rub003
003random
2 years
#1337up1023 from @IntelSecurity & @intigriti was a success, and I'm happy with my team ending up in the top 3 on the teams leaderboard 🥳. Congratulations to @erbbysam, @arneswinnen & @MattiBijnens for being the top 3 individuals!.
1
0
41