Bug Hunter | Never give up ...

Joined September 2019
8 Photos and videos
XSS Tip : Target error parameters on shopping cart pages. πŸ›’ - Find the checkout URL - fuzz for error, msg, err, ... - Test for reflection : ?error=XSS&msg=XSS&err=XSS.... Often, these parameters bypass standard encoding. #BugHunting #HackingTips #XSS
1
26
744
On SPA apps (React/Vue/Angular), use Burp Match & Replace to swap all "false" to "true" in JSON responses. The result ? Hidden admin panels, debug modes, and restricted UI features can appear. πŸ”“ Don't just test the API, explore the UI! πŸ›‘οΈ #Infosec #WebSecurity #BurpSuite #BugBounty #Pentest
2
14
729
DinDinDin retweeted
22 Jun 2020
How to bypass WAF on HTML tag with attributes. Another great scheme by @hackerscrolls. #infosec #CyberSecurity #bugbountytip #ethicalhacking
1
3
πŸ”₯ XSS Tip: Raw HTML response vs Browser DOM When a XSS payload is reflected and filtered in a HTML response, always verify it in the DOM as well. Why? In the raw HTML response, your payload might look safely filtered or encoded. However, once it reaches the DOM, it can still execute due to JavaScript processing (client-side rendering). Don't just trust the raw bytes in Burp β€” trust the DOM πŸ”! #BugBounty #XSS #Pentest #Infosec #WebSecurity #BurpSuite
10
732
πŸ”₯ XSS Tip: Unicode Normalization Don't give up if <, >, " or ' are filtered ! Many apps normalize Unicode after the WAF/security layer. Some bypass variants (URL-encoded): πŸ”Ή < βž” < πŸ”Ή > βž” > πŸ”Ή " βž” οΌ’ πŸ”Ή ' βž” οΌ‡ πŸ”Ή ` βž” ο½€ For example, inject <script> and check if it reflects as <script> in the DOM. Automate these quirks with recollapse : github.com/0xacb/recollapse #BugBounty #BugBountyTips #XSS #Pentest #Infosec #CyberSecurity
2
48
254
14,725
πŸ›‘οΈ #XSS Tip : 1️⃣ Spot a data-.... tag in the HTML response. 2️⃣Example: <div data-user-id="123"> 3️⃣ Test the prefix as a new GET/POST param: ?user=REFLECTED or userId=REFLECTED 4️⃣ Result: <div data-user-id="REFLECTED"> The prefix is often a hidden reflected param name ! πŸ”₯ #BugBounty #Infosec #WebSecurity #Pentest #BugBountyTips
12
265
Honored to be among the Top Performing Hunters in 2025 on YesWeHackπŸ† Really happy to hunt on YesWeHack β€” great platform and great experience #CyberSecurity #BugBounty #YesWeHack #XSS
1
24
638
Happy to have been rewarded for discovering a hidden XSS vulnerability with Onetest, a new tool for discovering hidden XSS ! Curious to test it out ? Join the Discord and give it a try : discord.gg/6RFeshHV #XSS #BugBounty #WebSecurity #Onetest
1
3
53
2,551
DinDinDin retweeted
28 Apr 2025
Onetest Extension is now in free beta. Join our Discord for the download link, install guide and your API key. Tell us about any bugs and share ideas for improvements. discord.gg/tPgThJ6RAU #BugBounty #XSS #OneTest
1
11
47
3,644
DinDinDin retweeted
25 Apr 2025
Join the OneTest Discord! The XSS extension is running a bit late, but we’re working hard to ship the beta ASAP. Check out this quick demo video, all updates and test-lab access will be shared there. See you inside! πŸ‘‡ discord.gg/tPgThJ6RAU
2
9
50
4,327
DinDinDin retweeted
14 Apr 2025
I think I've found 70% of my XSS vulnerabilities automatically in BBP with a tool. I think it can be useful for bb hunters and pentesters. I'll give details of the tool and a test phase in the next few days. What’s your goto method to find XSS quickly? Stay tuned πŸ‘‡
2
15
209
13,977
DinDinDin retweeted
16 Apr 2025
1/6 Tired of manually testing every parameter hoping to find an XSS? Yeah us too. It's time-consuming, repetitive, and let's be honest, not the most exciting part of the job. So we built a Burp Suite extension @onetestfr to automate the entire process (Caido coming soon).
5
13
108
7,719
15 Apr 2025
Rewarded for multiple XSS in bug bounty πŸ’°Found them with Onetest β€” the upcoming tool made for XSS hunters. It’s clean, fast, and built to find what others miss. Coming soon πŸ‘€#bugbounty #xss #Onetest #infosec
2
6
93
5,668
19 Oct 2024
πŸ’‘ Bug bounty - XSS Tip : Found a vulnerable GET parameter? Always check its context in the response! πŸ” Example: If the GET param name is vulnerable and shows up in <script> _cq.name = '[INJECTION]'..., test all param names after _cq. across every response ! You could discover more hidden XSS! πŸš€πŸ’₯ #BugBounty 🐞 #CyberSecurity πŸ›‘οΈ #WebSecurity πŸ”’ #AppSec πŸ“± #InfoSec πŸ”
1
7
560
18 Oct 2024
πŸ’‘ XSS Tip : If you find a vulnerable parameter on your target, test all parameters with a similar name structure! Example: Vulnerable param found : "user_name" Test all params starting with "user_" ! 🎯πŸ’₯ #BugBounty 🐞 #CyberSecurity πŸ›‘οΈ #Infosec πŸ”’ #AppSec #BugBountyTips
4
460
10 Oct 2024
πŸ’‘XSS Tips: When dealing with WAFs πŸ”₯, try combining multiple parameters if possible to form your XSS payload πŸ’₯. This trick can help you bypass filters and trigger the vulnerability! I’ve had great success with this technique ! #BugBounty #XSS #BugBountytips #WebSecurity
1
9
786
🚨XSS Tips : When a param is filtered by the WAF, try adding the same parameter multiple times in your request ! πŸ”„ This can lead to surprising and unexpected results, potentially bypassing the WAF :) ! πŸ”₯ #CyberSecurity #XSS πŸ’₯ #WebSecurity #HackingTips 🧠 #BugBounty
1
22
1,409
πŸ’‘ XSS Tips: When requests return a JSON response , always test XSS payloads on the parameters sent in the request! They can be reflected on other pages, leading to vulnerabilities ! πŸ’₯ I’ve found plenty of XSS this way πŸš€ Stay sharp ! #BugBounty #XSS #CyberSecurity #WebSecurity
4
6
71
5,771