Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍

Joined May 2016
4,611 Photos and videos
⏰ It's CHALLENGE O'CLOCK! 👉 Capture the flag before Monday the 22nd of June 👉 Win €400 in SWAG prizes 👉 We'll release a tip for every 100 likes on this tweet Thanks @GammarKhalil1 (xhalyl) for the challenge 👇 challenge-0626.intigriti.io
2
9
58
2,193
OSINT Quiz! Where was this picture taken? 👀 Challenge difficulty: Intermediate 🔥
11
1
30
7,473
We're live at BSides Leeds! Come & pass by for some cool swag! 🤠
3
46
4,392
In our latest blog, we speak with Leo Racanelli (@leo__rac), Bug Bounty Hunter and Intigriti Ambassador, about what AI means for the people working closest to the edge of security: ethical hackers, engineers, and security teams. The discussion explores: 🔍 Why AI applications introduce a new breed of vulnerabilities 🤖 How AI is becoming a “teammate” in bug bounty workflows 🧠 Why human creativity remains essential when testing AI systems ⚖️ The value of building playbooks and libraries of AI findings 🚀 How AI may be changing the economics of bug bounty What the next era of crowdsourced security could look like As AI adoption accelerates, one thing is clear: securing these systems requires more than traditional approaches. It takes curiosity, collaboration, and a deeper understanding of how AI can be manipulated in the real world. Read the full discussion here: intigriti.com/blog/business-…
1
3
25
2,010
Intigriti retweeted
1000 Valid Submissions! 🎉 Thank you @intigriti for the recognition and the gift.
20
5
236
8,860
5️⃣ Virtual hosting, a well-forgotten enumeration technique This researcher revisits virtual host enumeration as a recon technique that most hunters overlook in favour of subdomain brute-forcing. By probing for Host header behavior on a single IP, you can uncover internal applications and forgotten services that never resolve via DNS. wya.pl/2022/06/16/virtual-ho…

1
2
408
That was it! We hope you've learned something new (and enjoyed) this thread! If you have enjoyed this thread: 1. Follow us @INTIGRITI for more of these threads! 🐛 2. Retweet the first Tweet to share it with your friends 💙
2
335
Replying to @TheLaluka
3️⃣ Building an AppSec Pipeline with Burp Suite data This researcher shares his burpsuite-project-parser tool that lets you extract requests, responses, and findings from Burp project files directly via the CLI, then pipe them into your testing workflow, grep across multiple projects, or push them into a database for offline analysis. Simply put, a smarter way to work with Burp suite. silentrobots.com/building-an…
1
4
470
4️⃣ How to look for TLS private keys on Docker Hub @detectify documents how publicly published Docker images on Docker Hub frequently leak TLS private keys, API credentials, and other sensitive info. labs.detectify.com/how-to/lo…
1
6
383
Replying to @TheLaluka
2️⃣ How to download eBooks from Google Play Store without paying for them This write-up documents a logic flaw in Google Play Store's eBook download flow that allowed downloading paid books without ever completing a purchase. A great reminder that business logic vulnerabilities can be hiding in features even the largest platforms ship to production.even the largest platforms ship to production. web.archive.org/web/20220627…
1
12
1,125
1️⃣ 60 Remote Code Execution in 60 minutes @TheLaluka walks through 60 different ways to obtain unauthenticated RCE on targets, complete with full chains and references to learn more about each vulnerability. The talk is in French but the slides are in English and packed with technical detail (and great memes) 😎 youtube.com/watch?v=Z9GN6c

4
4
25
3,743
We just dove into our shelf of archived bug bounty write-ups from the most notable hackers! 🤠 In this issue, we selected 5 compelling articles (that are still relevant today) to share with you, from which you can learn something new! 😎 🧵 👇
2
14
60
4,045
Come join us in Austin, Texas, on June 20th! 🤠 Our Hacker Ambassador Ryan @BadAt_Computers (roll4combatus) is hosting a full-day Bug Bounty Meetup on June 20 at Hotel Van Zandt in Austin, a day packed with talks, bug bounty hunting, and networking with the local community! Event details: 📅 Saturday, June 20, 2026 📍 Hotel Van Zandt, Austin, Texas 🕒 10AM - 5PM (CDT) Registration is required. Please use the link in the next post to save your spot! 🚀
2
22
2,526
Intigriti is proud to share that we have been recognised in the EMEA Technology Fast 500 2025. This is the ranking of the 500 fastest‑growing technology companies across Europe, the Middle East, and Africa. Recognition here reflects our growth and ambition to scale with consistency and impact. Congratulations to all winners. You can view the full list here. 👇 deloitte.com/uk/en/services/…
1
15
1,282
Quick reminder! With or without AI, developers still accidentally push API keys, credentials, and any other types of secrets to public repositories every day! 🤠 Our complete guide shows how you can find them before anyone else using several techniques. 😎 Check it out! 👇 intigriti.com/researchers/bl…
1
12
62
3,940
We're heading to BSides Leeds this Saturday! 🤠 Come find us on June 13th at Cloth Hall Court to meet the team, learn about bug bounty, and grab some cool swag! 😎 More details! 👇
14
1,827
Which security conference is on your must-attend list this year? 👇
2
15
3,316