I'm making a full of my methodology video ,
The actual method that i use to find privilege escalation vulnerabilities easily ๐
i have reported multiple privilege issues in hackerone using this method.
I will post the videos in *Monday* keep on eye ๐โ๐จ
#bugbounty#infosec
Reported โ Triaged โ Rewarded โ Patched
One week laterโฆ
Tried bypass with โ Reported again โ Retriaged
Sometimes the patch is just the beginning.
Tips :- https://example[.]com/endpoint -> Forbidden
https://example[.]com/endpoint -> bypassed
#bugbountytips
Hi everyone
I have reported a critical bug on one target IP and checked it's SSL certificate and confirmed using Nmap the IP belongs to the target only like sub.target.com and the company saying it's not belong to the our organisation how? @Bugcrowd@GodfatherOrwa
I have reported a critical in @Zendesk@ZendeskOps@zendeskpartners in your IP and you have changed your SSL certificate name and saying this IP is not belonging to you it's not a professional way to handle a critical vulnerability report in report also i mentioned certificate.
Got 8 Rce today for #React2Shell
But the challenge is in most of the target you will only get the "digest" value means RSC is thier but if you try to execute os command the command will not work, there is a way u can take shell, i will share if anyone getting this issue Dm .