uraniumhacker Profile Banner
Uranium238 Profile
Uranium238

@uraniumhacker

Followers
12K
Following
4K
Media
334
Statuses
3K

I do the hacks. He/him. Building and hacking stuff at @OphionSecurity

United States
Joined August 2016
Don't wanna be here? Send us removal request.
@uraniumhacker
Uranium238
18 days
Every critical I find in major corp has been through the most obscure feature that is annoying as hell to setup. It never ceases to give.
@dhakal_ananda
Ananda Dhakal
18 days
The harder the configuration, the more the bugs. I used to give up when something was very annoying to setup, but it attracts me more now. Apparently, almost everyone avoids those, which leads to really simple yet impactful findings :P.
1
4
40
@uraniumhacker
Uranium238
4 months
Hacking with AI recently has been fun. Here is couple of things I did recently:. - Parsed multiple JS files within seconds after identifying a target domain. Used the parsing data to find a critical vulnerability. - For a different program, used mixture of redress, radare2 and.
2
0
8
@uraniumhacker
Uranium238
4 months
getting ready to hack and send criticals
Tweet media one
0
0
0
@uraniumhacker
Uranium238
5 months
We are doing #VibeSecurityForAI. If you are an AI startup (pre-seed or seed ) we will test your application for free. We are doing this only for next two weeks. We are hackers who have hacked major companies like Zoom, AWS, Amazon, Google, banks and more. DM me or contact us.
2
0
1
@uraniumhacker
Uranium238
5 months
Presenting on some fun stuff with @OphionSecurity this year at @_kernelcon_ and @bsidesseattle. Come for the talk, stay for the vulnerabilities. #vulnerabilities #bugbounty #attacksurfacemanagement
Tweet media one
0
2
1
@uraniumhacker
Uranium238
5 months
Been trying out Cursor for the last few days with prompts generated through deep research via ChatGPT and Grok, it is definitely a game changer. I have deployed apps that I have wanted personally within hours. ◦ AI aided development is future. ◦ Security is still.
0
0
4
@uraniumhacker
Uranium238
5 months
RT @polygonben: 🚨 New blog alert!. I recently "compromised" a threat actors Telegram based C2 channel, that was used for exfiltration of st….
0
41
0
@uraniumhacker
Uranium238
5 months
I reached level 10 in Taptastic! 🎮. Final speed: Super Fast.Tiles: 9. The pattern that defeated me: 🟥 🟨 🟨 🟥 🟦 🟦 🟦 🟥 🟨 🟩 🟨. Can you beat my score? #Taptastic.
taptastic.app
Can you beat the Taptastic score of 10?
0
0
1
@uraniumhacker
Uranium238
5 months
Vibe coded so much: I did not even write a single piece of code. It did all the heavy lifting.
0
0
0
@uraniumhacker
Uranium238
5 months
Vibe coded a security script to open source for a future talk. I love AI. #security #GenAI #LLMs.
1
0
2
@uraniumhacker
Uranium238
5 months
RT @xyz3va: update! @cursor_ai is donating me $50,000 USD for my efforts with the todesktop vulnerability.
0
56
0
@uraniumhacker
Uranium238
5 months
RT @hackerfantastic: North Korea stole $1.4billion by injecting JavaScript through an AWS S3 bucket to spoof the UI interface during a tran….
0
951
0
@uraniumhacker
Uranium238
5 months
Announcing: Ask Us Anything Security - A free security advisory for startups. Security often gets pushed to the back burner at startups until something breaks or a big deal requires it. But what if you could get expert security guidance without the overhead?. At Ophion Security,.
0
0
1
@uraniumhacker
Uranium238
6 months
0
0
0
@uraniumhacker
Uranium238
6 months
I will be attending @CactusCon this weekend! I will have some stickers, and swags dropping around the con area. #cactuscon13
Tweet media one
0
0
1
@uraniumhacker
Uranium238
6 months
We found a vulnerability in Cisco's Webex Connect giving access to live chat histories of every organizations from government agencies to fortune 500. Check it out: #vulnerabilitydisclosure #cisco #attacksurfacemanagement.
Tweet card summary image
ophionsecurity.com
In July 2024, we identified a vulnerability that resulted in access to millions of live customer support messages for organizations using Cisco Webex Connect.
1
5
44
@uraniumhacker
Uranium238
9 months
Complete your security reviews faster while building your product. Contact us today to learn more.
@OphionSecurity
Ophion Security
9 months
Endless security reviews, questionnaires, and compliance can be a nightmare when selling to enterprises. 🛡️ What if you could handle it all in one platform? Pentests, Questionnaires, & more. Check it out: #Cybersecurity #SaaS #SecurityCompliance
Tweet media one
0
0
2
@uraniumhacker
Uranium238
10 months
Getting access to thousands of customers' chat history with support agents with just a cookie. Learn more on blog one of two from our Live Chat security research at @OphionSecurity. #livechat #vulnerabilitydisclosure.
Tweet card summary image
ophionsecurity.com
A misconfiguration in an organizations' setup of their live chat system allowed unauthenticated access to user chat histories with customer support agents.
0
10
33
@uraniumhacker
Uranium238
10 months
At the rate “AI code editors” have popped, I wanna see these code editors writing code for new code editors startups.
0
0
3