Hack More. Hate Less.
I started writing this in February, but I finally stopped being lazy and just finished it. My reason for writing this is to remind people what made me love the hacking community, and the efforts I'll make to keep loving it.
damnsec.com/blog/hate-less-hโฆ
I invested $$$$ on OSCP without any second thought because I believe in my passion, discipline, and the empire Iโm building.
Donโt chalk it up to โtalent.โ I earned this through obsession, hardwork, and self focusing (Skills arenโt gifted).
Once you tasted the prime, anything less feels unacceptable. My low phase and bad experience sharpened me, I utilised that as my fuel to came back stronger, smarter, and ready to hit harder than ever.
OSCP (@offsectraining โค๏ธ) ๐ค๐ป
There's a lot of folks who help make the show you don't know about.
Threat Hunter - Kenny Finditt
Backup Specialist - Noah Restore
Crash Log Analyzer - Corey Dump
RAM Usage Expert - Meg A. Byte
USB Orientation Expert - Terry B. Flippen
AI Prompt Engineer - Will I. B. Wright
๐Auth bypass using Host Headerโ ๏ธ
โจPayload:
Host: localhost
Join my BugBounty telegram channel ๐๐ผ t.me/ShellSec
โ Step to Reproduce:
1. Open target in BurpSuite, and simply visit as possible deeper.
2. Filter all JS script files.
3. Figure out any sensitive path e.g. Admin dashboard path.
4. Send request on the path via changing Host Header.
#bugbountytips