BugHunter | web3

Joined May 2019
46 Photos and videos
When I woke up this morning, I was shocked to see that BurpSuite was fully controlled by my AI agent. This is really crazy. #bugbounty #BugBounty #paypal
1
39
VioLin retweeted
XSSNow - The Ultimate XSS Payload Database xssnow.in/
10
231
1,199
48,423
VioLin retweeted
Mar 13

19
40
242
70,312
Hi @BinanceHelpDesk, I need urgent assistance. I received a bug bounty payment from @cantinaxyz, but it was sent via an unsupported network (Story Protocol) to my Binance ETH deposit address, so the funds are not credited. I’ve already checked the self-service recovery
6
5
366
Is there no solution for this? I have also requested a refund form, but the live CS response is like a template.
83
Has anyone ever handled a case like this? Honestly, I really need the funds
2
1
136
maybe you have some suggestions?@zachxbt
79
but this network isn’t supported. Could you please escalate this case to the technical team for possible manual recovery?
79
VioLin retweeted
✨Introducing evmresearch✨✨ A knowledge graph of nearly everything I've learned about the EVM in the past six years The graph structure emulates the brain, exponentiating research speeds for both humans and agents evmresearch.io/
43
87
773
60,942
this is painful, but whoever has that report id, congratulations! #web3 #bugbounty #hackerone
5
82
4,202
VioLin retweeted
here's a directory of 38 smart contract vulnerabilities optimized for ai audit agents have fun github.com/kadenzipfel/smart…

14
14
220
22,164
VioLin retweeted
Python library to retrieve data from TradingView screener github.com/deepentropy/tvscr…
47
393
3,903
270,841
VioLin retweeted
Jan 25
I love Clawdbot, but most parts can be just Claude Code --dangerously-skip-permissions pipe via Telegram. Made a simple version github.com/hanxiao/claudecod… using cloudflare tunnel tmux StopHook.
81
134
1,894
317,648
VioLin retweeted

31
50
434
34,948
VioLin retweeted
Leaking FXAuth Token leading to account takeover ($65,000) ysamm.com/uncategorized/2026… Instagram account takeover via Facebook Pixel script abuse ($32,500) ysamm.com/uncategorized/2026… Multiple XS-leaks disclosing Facebook users in third-party websites ($8,400) ysamm.com/uncategorized/2026…
16
112
698
30,061
VioLin retweeted
16 Dec 2025
How do you learn to find vulnerabilities in Rust code? Read audit reports. Here is a list of the usual go-to auditing company for Rust codebases - @osec_io. Even I myself once applied to join them as an auditor. A MUST read for future great security researchers👇
8
31
211
10,955
VioLin retweeted
26 Nov 2025
What's the best Crypto Card? 💳 I analyzed the most popular crypto cards, and here’s which one actually fits your needs > @AviciMoney: KYC, self custodial, deposit USDC into an escrow smart contract you control, get a USD credit line and spend anywhere Visa works, no spending markup in USD, usual Visa FX (~0.4–1%) when spending non USD, ATM fee ~$1 0.65%, virtual/physical cards have small one time fees and settlements batch every 1–7 days > @Bybit_Official: KYC, multi asset, spend BTC/ETH/USDT/USDC/etc held on Bybit and it converts at swipe, charges ~0.9% crypto to fiat conversion ~0.5% FX on foreign currency, ATM free up to ~100€/month then 2%, virtual card free, physical has a small cost, convenient but fees favor high volume users and VIPs > @KASTxyz: KYC, custodial, rewards heavy, points, cashback, and an active card user airdrop all planned to convert into $KAST at TGE, no fee on USD spending, ~2% FX on other currencies, ATM ~$3 2%, small transaction fees (~$0.30) on some tiers, card tiers range from cheap to very expensive but give higher % back > @solflare: KYC, self custody debit card, spend straight from your USDC in your Solflare wallet with no pre loads or middlemen, zero fees on USD spending, ~1% FX for non USD transactions, no monthly fees, no top up fees, UK/EEA only for now, USDC on Solana only, rewards still rolling out but clean cost structure > @pintopay_me: No KYC, custodial prepaid Mastercard, deposit BTC/ETH/USDT/etc and convert to USD to spend globally. Card issuance free, virtual card instant, top up fee 2.5% for $100 , minimum $2 for smaller top ups, transaction fee $0.25 per authorization, funds take up to 12h to arrive, no withdrawals back to crypto yet, integrates with Apple Pay
151
47
405
217,548
VioLin retweeted
Hey everyone! I’ve been building rep , a lightweight HTTP Repeater inside Chrome DevTools. No proxy setup or certificates. Just open DevTools and start poking requests. It also has built-in AI for explanations and attack ideas. I’ll share one rep feature every day. Try it 👇
50
151
954
86,705
VioLin retweeted
29 Sep 2025
Found API keys or tokens but not sure where to test them? Try this site. it offers a wide range of services so you can quickly validate different types of API keys in one place.
15
118
816
49,898