shreyas_chavhan Profile Banner
Shreyas Chavhan Profile
Shreyas Chavhan

@shreyas_chavhan

Followers
6K
Following
6K
Media
260
Statuses
1K

Semi-Consciously simplifying bug bounties for myself and others | Slaying Bugs Full Time with My Nichirin Sword (aka Burp) since Aug 2023 | INFJ

Joined June 2019
Don't wanna be here? Send us removal request.
@shreyas_chavhan
Shreyas Chavhan
1 year
I was getting a lot of DMs asking me how I got started, how I progressed so fast and if I can suggest a Roadmap for the beginners who also wanna get started and progress. Sharing the answer publicly. Link: #BugBounty #bugbountytips
Tweet media one
46
200
806
@shreyas_chavhan
Shreyas Chavhan
2 days
For those who have already reached level 10 on focumon, I'll be waiting for a while to let more applications come as a lot of people started late because they came across the post late. Continue being consistent even if you have already reached level 10 - I'll respond to everyone.
@shreyas_chavhan
Shreyas Chavhan
9 days
I'm creating a group of 6 hackers, and the goal will be to hack together, be consistent, share knowledge, help each other and keep each other accountable on our journey to be great hackers. I'll be picking a few of you, doesn't matter if you are a beginner ⬇️. #BugBounty.
4
1
33
@grok
Grok
5 days
Generate videos in just a few seconds. Try Grok Imagine, free for a limited time.
364
649
3K
@shreyas_chavhan
Shreyas Chavhan
4 days
windows equivalent is `windirstat`.
1
0
4
@shreyas_chavhan
Shreyas Chavhan
4 days
Tip: Use `qdirstat` in your linux to figure out what's taking most of the space and clean up your system. My .cache folder is taking almost 60 GBs lol, gonna delete that. #bugbounty #linux
Tweet media one
5
0
33
@shreyas_chavhan
Shreyas Chavhan
9 days
If anyone of you doesn't stay active for long, you'll be removed and someone else who's active will be given the chance. Good luck! and let's hack together.
2
0
16
@shreyas_chavhan
Shreyas Chavhan
9 days
I'll pick one of based on the following conditions:.- You are the first to reach level 10 or more, and you have atleast 50+ flowers gathered in last 7 days (you'll understand once you'll start using the .- We are not full (6 members).
Tweet card summary image
focumon.com
Turn your daily goals into a multiplayer adventure! Boost productivity while collecting 100+ monsters!
3
0
13
@shreyas_chavhan
Shreyas Chavhan
9 days
Once you reach level 10, fill this form and I'll DM you with the group invite link: .
Tweet card summary image
docs.google.com
Once you reach trainer level 10 on focumon.com, fill this form!
1
0
15
@shreyas_chavhan
Shreyas Chavhan
9 days
I'll need a proof of consistency. For that, you need to reach level 10 on something like the image below. Join focumon by accepting my invite (or you can directly login on : .
Tweet media one
7
2
32
@shreyas_chavhan
Shreyas Chavhan
9 days
I'm creating a group of 6 hackers, and the goal will be to hack together, be consistent, share knowledge, help each other and keep each other accountable on our journey to be great hackers. I'll be picking a few of you, doesn't matter if you are a beginner ⬇️. #BugBounty.
46
10
245
@shreyas_chavhan
Shreyas Chavhan
17 days
Lol, found a completely new RCE by accident while trying to find the RCE mentioned in the CVE 🤣. It was fun. Very fun!
Tweet media one
@shreyas_chavhan
Shreyas Chavhan
17 days
My first Auth Bypass to admin account takeover -- a chain of multiple vulns, reverse engineering an old CVE in a controlled environment obviously (for learning) with a complete blind approach so far. Hoping to see this helping me in real world too.
Tweet media one
2
1
62
@shreyas_chavhan
Shreyas Chavhan
17 days
lol
Tweet media one
0
0
19
@shreyas_chavhan
Shreyas Chavhan
17 days
My first Auth Bypass to admin account takeover -- a chain of multiple vulns, reverse engineering an old CVE in a controlled environment obviously (for learning) with a complete blind approach so far. Hoping to see this helping me in real world too.
Tweet media one
7
8
151
@shreyas_chavhan
Shreyas Chavhan
18 days
this is Mr. ChatGPT motivating me to put in the work. lol.
1
0
14
@shreyas_chavhan
Shreyas Chavhan
18 days
You're full time. This is your battlefield. No manager will check in. No deadlines will remind you. Your discipline is the only thing keeping your dream alive. Let others work 9-5. You? You hunt, grow, and dominate. Stay relentless. Build the future. Be legendary. #bugbounty.
6
7
123
@shreyas_chavhan
Shreyas Chavhan
23 days
The concepts felt a bit confusing there, so I tried simplifying them in this blog. I also learnt Bit Masking, and it felt more simple than Bit Shifting Method, so I added it here:. 🔗 Link: #bugbounty
Tweet media one
@shreyas_chavhan
Shreyas Chavhan
23 days
This method of using bitwise shifting to retrieve data from a blind SQLi is awesome. I'm not sure why it's so much under the radar:. #BugBounty.
3
15
105
@shreyas_chavhan
Shreyas Chavhan
23 days
Credits where it's due:
Tweet media one
0
1
7
@shreyas_chavhan
Shreyas Chavhan
23 days
This method of using bitwise shifting to retrieve data from a blind SQLi is awesome. I'm not sure why it's so much under the radar:. #BugBounty.
Tweet card summary image
exploit-db.com
3
10
60
@shreyas_chavhan
Shreyas Chavhan
23 days
If you are starting bug hunting back again after maybe few days or weeks of break, and now you feel overwhelmed - just push through that and simply start hacking. Action is the best medicine to such feelings.
2
9
88
@shreyas_chavhan
Shreyas Chavhan
1 month
My plan on dealing with volatility in #bugbounty, any feedback?
Tweet media one
6
4
58
@shreyas_chavhan
Shreyas Chavhan
1 month
This blog feels cool af: .
1
1
19