
003random
@rub003
Followers
2K
Following
9K
Media
45
Statuses
801
Cyber Security && Software Development
The Netherlands
Joined February 2012
The $15,000 secret of viewing posts from private Instagram accounts. #bugbounty #bugbountytips #writeup.
5
137
571
RT @VolerionSec: Our models identified the correct product (CPE), versions (semver) and gathered remediation options. This data is availabl….
0
1
0
RT @spaceraccoonsec: Pre-orders have started shipping and getting to readers around the world!. Whether you’re new to vulnerability researc….
0
21
0
CVSS can be confusing. Therefore, I've created a CVSS calculator with lots of information (click the ? icons) and even a guided walkthrough. Let me know what you think! . #bugbountytips #bugbountytip #infosec.
1
1
4
RT @VolerionSec: Launching today!. Volerion transforms raw CVEs into structured and instant insights. #CVE #CyberSecurity #infosec
https://….
0
17
0
RT @infosec_au: Our research on vulnerabilities caused by the great firewall was nominated for the top ten web hacking techniques this year….
0
15
0
@FIRSTdotOrg There are a lot of bad copy paste mistakes as well, but the main issue is that the comments do not apply to the spec and are telling the reader more often what the result is, rather than why that is the result. It's confusing overall. I can supply a correct version if needed 😄.
0
0
0
RT @hackermondev: 1 Bug, $50K+ in bounties: how Zendesk left a backdoor in hundreds of companies #bugbountytips .
0
339
0
@FIRSTdotOrg that 'if a specific configuration is required for an attack to succeed, the vulnerable system should be assessed assuming it is in that configuration.'. More than half of the given examples have incorrect metric evaluations like this🙃 [2/2].
1
0
0
@FIRSTdotOrg While someone is at it, please redo the CVSS v4.0 Examples. Comments such as 'Attack requirements are present. Only applications built with a specific configuration are vulnerable.' are at odds with the spec defining [1/2].
1
0
0
Hey @FIRSTdotOrg, any chance we could get the CVSS 4.0 supplemental metrics in the same order across the overview image, section 5 and the calculator? Kinda triggered ngl😆.
1
0
0
is pretty dope! It's a follow-up to CVE-2023-46137. Most affected servers are running some cPanel instance 👀. In short, Twisted.web servers can mess up pipelined requests, leading to info leaks. Cool PoC out there too! #bugbounty #bugbountytips #twisted.
0
1
9
Exciting News! I just released getJS v2.0.0! . New features and improved compatibility!.Check out the gif to see simple CLI usage in action! 👇. Integrate it right into your custom recon tools, as it's importable as Go package. #bugbounty #bugbountytips
0
1
9
RT @wikileaks: JULIAN ASSANGE IS FREE. Julian Assange is free. He left Belmarsh maximum security prison on the morning of 24 June, after ha….
0
88K
0
RT @Karel_Origin: Found myself in a scenario where I had to query a rate-limited API. The sleep command works but will waste a lot of time….
0
8
0
RT @rub003: The $15,000 secret of viewing posts from private Instagram accounts. #bugbounty #bugbountytips #write….
0
137
0
#1337up1023 from @IntelSecurity & @intigriti was a success, and I'm happy with my team ending up in the top 3 on the teams leaderboard 🥳. Congratulations to @erbbysam, @arneswinnen & @MattiBijnens for being the top 3 individuals!.
1
0
41