Husband and Father of 2 | Hacks things | InfoSec Stuff | Twitch: twitch.com/mantissts | YT: YouTube.com/mantissts

Joined July 2011
465 Photos and videos
Pinned Tweet
30 Oct 2020
So I started a YouTube channel and started an iOS hacking series. Check it out! youtube.com/playlist?list=PL… I know I sound like a mong on it but hey, just trying to share some knowledge. I want go get out a new video every couple of days! #bugbountytips #bugbounty
11
113
341
Mantis retweeted
you may think your app's service listening on localhost cannot be accessed by random websites. however, have you considered:
24
21
612
113,242
Mantis retweeted
7
143
699
48,607
4 days! Absolute piss take 😂
1
38
1,632
Mantis retweeted
InfoSec: "Running random Docker containers is a massive security risk." The risk: Spawning a native window to play ASCII DOOM at 60fps.
1
2
11
1,814
Mantis retweeted
Day 9 of #BugQuest! 🤠 Yesterday, we listed an overview of the primary ways to discover endpoints. Today, we're diving deep into one of the easiest and most overlooked methods: common configuration files. Files like robots.txt and sitemap.xml were designed to help search engines, but they often leak valuable information about application structure, including endpoints not referenced anywhere else on the target. Swipe through to see a few examples of config files to check and what they can reveal! #BugBounty #HackWithIntigriti #BugQuest
3
5
41
3,315
Mantis retweeted
Next.js, cache, and chains: The Stale Elixir A nice work by @zhero___ This zero day brought web cache poisoning to the spotlight. His extensive research showed how source code analysis helped him craft a technique that resulted to CVE-2024-46982. Blog link 👇 zhero-web-sec.github.io/rese…
11
86
4,597
Mantis retweeted
11
73
3,555
Mantis retweeted
Replying to @hakluke @xnl_h4ck3r
4️⃣ JSAnalyzer JSAnalyzer by @_jensec automatically extracts API endpoints, secrets, URLs, and sensitive files from JS responses, with smart noise filtering to reduce false positives! 🤠 🔗 github.com/jenish-sojitra/JS…
1
29
143
5,765
Mantis retweeted
2
9
61
3,539
Mantis retweeted
Mar 6
Built WinGraph, my new project - a BloodHound-style dependency visualizer for every binary in Windows System32 directory. 4,000 DLLs, EXEs. Every import. Every export. One interactive graph. Check it out now : wingraph.m0n1x90.dev/
4
92
439
21,742
Mantis retweeted
🔥This is a continuously updated pentesting wiki by @Six2dez1 offering tools, techniques, cheat sheets, and guides covering recon, enumeration, web, cloud, mobile, Windows/Kerberos, and Burp Suite. Link: github.com/six2dez/pentest-b…
1
36
240
13,011
Anyone here big on the @msftsecurity programs? I have a few questions about a bug that I've found
225
Mantis retweeted
Which 'lesser-known' tool in your arsenal gives you a competitive edge? 👇🤖
2
1
12
1,814
Mantis retweeted
Jan 20
OWASP Noir just reached a major milestone: 1k stars! 🎉 I feel so honored to see this project grow. To every contributor and user who has supported Noir, thank you for making this possible. I'm excited for what’s next :D github.com/owasp-noir/noir #OWASP #Security
1
28
160
9,100