Bug Bounty Hunter | EJPT V2 | Web3

Joined June 2021
81 Photos and videos
Pinned Tweet
I bought a 2BHK flat in Navi Mumbai. It’s happened because of Bug Hunting Thanks to my Mentors for always supporting me @ADITYASHENDE17 @AtharvShejwal #cybersecurity #bughunting
39
1
193
16,237
Hey @grok who is great hacker in this world
1
2
585
8K Dollars bounty Started with recon ended with full impact → 2,000 user accounts (ATO) → Company SSH access exposed → IDOR exploited for unauthorized access → Got leaked internal team user information Valid Sendgrid api key using GhostJS (TrinetLayer) → 2Fa Bypass
10
7
206
10,302
$2500 bounty from simple recon 👀 found a subdomain via passive scan → grabbed JS files → then started manual review Found Hardcoded AWS access key secret in JS Validated using a fileOn → got AWS access Nothing fancy. Just patience . #bugbounty #infosec #recon
17
16
361
12,574
Yash___HackZ retweeted
Think you can break AI? Try: ai.trinetlayer.com/ Practice real Prompt Injection attacks Use Learn Mode to understand step by step Don’t just use AI — learn how to break it (ethically) #AI #CyberSecurity #PromptInjection #BugBounty #Infosec
1
4
406
Got $4,300 bounty from 2 programs 💰 Not a single bug — just connecting dots. Using GhostJS (TrinetLayer) for recon: Found → AWS secrets in JS → Hidden APIs Then: •LFI •IDOR (invoice & profile) •PII exposed Small issues → big impact. #BugBounty #CyberSecurity #
10
18
303
13,436
Yash___HackZ retweeted
Sometimes it is easier to draw than explain...
4
12
35
1,262
Yash___HackZ retweeted
Important notice. Official company announcements and news happens on the official @RWA_Inc_ channels. This is my personal account, where I share news directly from the RWA INC machine room, my thoughts and where I produce articles to inform more about investment, blockchain, ai and entrepreneurship. At the moment, I cover my daily discoveries with the RWA INC AI agentic autonomous system! I consider this the most important work I have ever done. You should pay close attention as well. Understand, that we are transforming @RWA_Inc_ yet again. This time to the most future proof and high performing small startup in the Web3 space! Value is created as you read this beyond imagination. Trust the process! With the current pace, my best estimate is that in 10-15 days, we achieve Agentic Revenue AGI. The moment, where the RWA INC agents have figured out how to produce real revenue for buy back and burns of the $RWAINC token and the inception point, where real revenue comes in. Now... back to the AI findings and conclusions. Finding #1 AI works best under threats (LOL) Finding #2 You have to build systems to manage hallucinations within the systems themselves. So we did. Finding #3 AI forgets. Even clear instructions. Build systems to mitigate against AI Alzheimers (I just made up this term) Finding #4 It is the human and AI Agent hybrid that performs the best in getting revenue. for now... Finding #5 AI is uncontrollable. Expect complete autonomous actions. Do what you can to control it.
6
10
27
1,132
Yash___HackZ retweeted
Bug Hunters… you’re walking past CRITICALS. While everyone is busy fuzzing endpoints… the real money is chilling inside JavaScript files. 🔎 One scan. And suddenly you see: 🔥 PEM Private Keys 🔥 Hardcoded API Keys 🔥 Active Google Cloud Keys 🔥 NuGet Tokens (ACTIVE) 🔥 Sentry DSNs 🔥 Client Secrets Up to 99% confidence. Categorized. Prioritized. No guesswork. Most hunters: view-source → ctrl f → hope Smart hunters: ⚡ Scan → Extract → Validate → Report → Get Paid Low-hanging criticals don’t scream. They hide in plain sight. Start catching what others miss 👇 🚀 app.trinetlayer.com/ #BugBounty #ReconLife #HackerCommunity #AppSec #TrinetLayer
1
1
3
410
Yash___HackZ retweeted
BREAKING NEWS FROM OPERATIONS... After many months of development an old dream of mine came through! today @RWA_Inc_ AI Call Center is now officially LIVE!!! and @RWA_Inc_ can finally enage with VCs and clients worldwide fully automized with up to 100 concurrent calls (in phase 1). Quality is INSANE... DM or kevin@rwa.inc me your phone number, if you want our AI agents to pitch our Series A round to you (min ticket size is 100.000 USD and you have to be KYCed on launch.rwa.inc and diamond tier) ... Do note, some countries are restricted due to regulation etc. With this huge milestone, we are now finally ready to dial for Dollars at global scale. Sales, fundraising, partner onboarding just got a 10000x super power and we just eliminated the last obstacles for global scaling... The Call Center is just a tiny part of the total Agentic roll out. AI revenue generated buy backs and burns will be a thing very, very soon, mark my words! We are cooking! Chart has never been worse, but RWA.INC has never been stronger. We will continue to build and do all the right things at the right time... Market will follow.... LFG
3
20
60
3,442
How many reports did you forget to follow up on? 👀 Meet your smart bug bounty tracker. • All reports in one place • Smart alerts so nothing goes cold • No spreadsheets. No chaos Hunt smart. Get paid. 💰 👉 app.trinetlayer.com #BugBounty #EthicalHacking #cybersecurity
3
575
Yash___HackZ retweeted
28 Nov 2025
27
13
126
22,711
Yash___HackZ retweeted
Look closely at the @RWA_Inc_ brand letters and tell me what you see.... I see AI - full blown agentic roll out I see WAR - against traditional finance I see RAW execution 24-7 I see INC - on our ready offers... ...It will go very fast from here! K.Y.
2
12
40
899
Reported multiple vulnerabilities to Samsung’s Security Program Acknowledged and rewarded with bounties💰 SVE IDs: SVE-2025-60001 SVE-2025-60002 SVE-2024-60005 SVE-2024-60006 SVE-2024-60007 SVE-2024-60008 SVE-2024-50021 SVE-2024-50027 SVE-2024-50032 SVE-2024-50013 5 more pending
3
275
RWA breaking limits with 30.29% growth — this is just the beginning! Big ups to @kevinyunai @RWA_Inc_ for making it happen 🔥🔥🔥 💪
1
4
346
Yash___HackZ retweeted
🚨 New Drop for Security Researchers & Wallet Builders 🚨 We built Awesome Wallet Security 🛡️ — a repo of blogs, courses, checklists, audit reports & tools. 👉 github.com/ValkyriSecurity/a…
2
9
47
5,849
🔐 Cybersecurity isn’t just about tech.
It’s about people, culture & strategy. 🎙️ New Podcast with Yash Gorasiya: The Non-Technical Side of Cybersecurity You Didn’t Know 🎧 Watch here: youtu.be/eSwOvtXWTu8?si=nfEE… #CyberSecurity #Podcast #Infosec
5
383
Yash___HackZ retweeted
2 May 2025
New Episode Out Now!
Dive into the world of #Cybersecurity with Saransh Saraf – Head of Security @ Perimeters.io & top bug bounty hunter. We talk SaaS Security, Bug Bounties, Startups & tips for aspiring hackers! Watch here: youtu.be/ABwswRxTXdE?si=x4ya… #Infosec #bugbounty
1
3
339
Excited for this event.
17 Apr 2025
We’re excited to share that the @Hacker0x01 In-Person Hacking Meetup – Pune, taking place at Vishwakarma University, in collaboration with HICA, for two power-packed days of hacking, learning, and networking! 📍Location: Vishwakarma University, Pune 📅 Dates: April 26–27, 2025
286
See you there!
1
186