Joined June 2010
154 Photos and videos
25 Jul 2025
spicy take, but if you are raising mediation requests.. you're just not submitting enough reports 😜 fire & forget baby
2
11
1,253
16 Jul 2025
I still remember when they took my old notification bell away Not forgotten. Not forgiven.
15 Jul 2025
change it back @Hacker0x01 , please
10
1,540
14 Jul 2025
BB success = time * skill * √(right programs for you)
3
3
55
3,510
28 Jun 2025
Grown-up happiness is buying an electronic item and finding that it includes a USB power adapter 🙏
9
1,222
Fisher retweeted
Pre-orders have started shipping and getting to readers around the world! Whether you’re new to vulnerability research or sharpening an existing skill set, this book will show you how to think (and work) like a bug hunter. This book will teach you how to: ✅ Identify promising targets across codebases, protocols, and file formats.    ✅ Trace code paths with taint analysis and map attack surfaces with precision. ✅ Reverse engineer binaries using Ghidra, Frida, and angr. ✅ Apply coverage-guided fuzzing, symbolic execution, and variant analysis. ✅ Build and validate proof-of-concept exploits to demonstrate real-world impact. More than a toolkit, this is a window into how top vulnerability researchers approach the work. You’ll gain not just techniques but also the mindset to go deeper, ask better questions, and find what others miss. Use promo code ZERODAYDEAL at checkout to get 30% off! Buy now: 📘 No Starch: nostarch.com/zero-day 📘 Amazon: amazon.com/Day-Zero/dp/17185… #FromTheDayZeroToZeroDay #Cybersecurity #BugBounty #Hacking #VulnerabilityResearch #InfoSec #BookLaunch
6
21
139
8,809
18 Jun 2025
Am I the only one that reads Greg's posts in his voice/tone? Mixed in with the obligatory "Enjoy!" 😇 As always, great stuff!
If your GraphQL testing stops at introspection and ID swapping, you’re missing out. SQLi, CSRF, caching bugs, race conditions, WebSocket bypasses - it’s all there. I studies 90 real reports to find what actually works.
2
3
41
6,351
Fisher retweeted
11 Jun 2025
Launching today! Volerion transforms raw CVEs into structured and instant insights #CVE #CyberSecurity #infosec
2
17
40
14,734
4 Jun 2025
Hard to swallow truth, but maximizing the parameters below optimizing for health is probably the big secret for a successful, prosperous and happy life
The older I get the more I think it all comes down to controlling your energy/mood/mindset. It’s virtually impossible to do good work when you see yourself and the world in certain negative ways. If I’m in low mood, nothing is possible. If I’m in high mood, everything. Even more strange is the fact that I can—and often do—reliably produce both mindsets through specific behaviors. I can literally change how I see the world, and my agency within it, by doing mundane things like lifting some weights and walking. Final level of craziness is that I constantly forget this while in low mood. Hence why I’m writing it down. I hope it helps you.
3
759
30 May 2025
Only one right answer
89% Reflected
11% Reflective
36 votes • Final results
1
486
20 May 2025
no doubt the best bugs are the ones you ruminate on for hours or sometimes days
2
16
1,321
15 Jan 2025
Everyone knows about proxying your traffic via VPN to bypass geo-based restrictions. But also relevant to bypass some particular WAFs is to consider regions, say proxying via eu-west-1 or us-east-2. Very, very useful. #bugbountytips
9
1,412
9 Jan 2025
kinda hilarious we're reaching a time where people will brag about finding bugs WITHOUT the need of using AI. going full circle 😂
10
1,648
3 Dec 2024
Proper bounty life lesson here
nobody will remember: - your bounty earnings - how “busy you were” - how many hours you worked people will remember: - your @Hacker0x01 Elite poster - that one insane exploit you disclosed - the tools you open sourced
1
4
1,384
4 Nov 2024
I may or may not inadvertently been doing progressive overload with my weighted blanket to the point there isn't one in the market heavy enough and am just considering stacking them together 😂
2
4
1,504
16 Aug 2024
Finally a CVSS I agree on 😌
23
162
5,899
25 Jun 2024
holy f
24 Jun 2024
JULIAN ASSANGE IS FREE Julian Assange is free. He left Belmarsh maximum security prison on the morning of 24 June, after having spent 1901 days there. He was granted bail by the High Court in London and was released at Stansted airport during the afternoon, where he boarded a plane and departed the UK. This is the result of a global campaign that spanned grass-roots organisers, press freedom campaigners, legislators and leaders from across the political spectrum, all the way to the United Nations. This created the space for a long period of negotiations with the US Department of Justice, leading to a deal that has not yet been formally finalised. We will provide more information as soon as possible. After more than five years in a 2x3 metre cell, isolated 23 hours a day, he will soon reunite with his wife Stella Assange, and their children, who have only known their father from behind bars. WikiLeaks published groundbreaking stories of government corruption and human rights abuses, holding the powerful accountable for their actions. As editor-in-chief, Julian paid severely for these principles, and for the people's right to know. As he returns to Australia, we thank all who stood by us, fought for us, and remained utterly committed in the fight for his freedom. Julian's freedom is our freedom. [More details to follow]
4
1,123
18 Jun 2024
I might just load even more extensions, why thank you
5
1,199
16 Jun 2024
Kinda surprised how much of a muscle memory aspect bug bounty has
7
1,834
15 Feb 2024
When someone says reflective instead of reflected XSS
5
30
3,443
16 Nov 2023
GET /secret-dir -> 404 ❌ GET /secret-dir/ -> 404 ❌ GET /secret-dir/x -> 404 ❌ PUT /secret-dir -> 405 💡 Don't forget the other HTTP methods when fuzzing a target as they can reveal interesting info ✅ #bugbountytip
1
5
67
8,925