Making things by day; breaking things by night.

Joined March 2015
13 Photos and videos
Also highlights the value that hackers/researchers can bring to the intersection of cybersecurity, law, & compliance. We can stoke FUD, or we can offer legit expertise & emphasize practical impact. If we go about claiming the sky's falling, we better be damn sure it actually is.
I think the takeaway from Mythos is that anything can be export controlled at any time and you should probably have a good answer for regulators
1
21
Nerdwell retweeted
Anthropic is expanding access to Claude Mythos, an AI model previously restricted for its advanced bug hunting capabilities. 🔋 By opening access to vetted security teams, organizations can use its codebase mapping to find and fix vulnerabilities before attackers do. Read more from ISMG: govinfosecurity.com/anthropi…
2
9
63
6,817
Nerdwell retweeted
Gadgets: Turning harmless bugs into P1s Gadgets are low-impact bugs like open redirects or client-side quirks, that seem harmless alone. But when you chain these pieces (Prototype Pollution, cookie injections, etc.), you can build a high-impact exploit that crushes a hardened target. Let’s learn. 🧵👇
1
5
24
3,564
Nerdwell retweeted
May 13
HOLY FUCKING SHIT OMG CLAUDE JUST CRACKED THIS SHIT, THANK YOU @AnthropicAI THANK YOU @DarioAmodei NAMING MY KID AFTER YOU 😍 blockchain.com/explorer/addr…
8 Aug 2023
My wallet with my locked btc from 9 years ago lol 😭😭😭 blockchair.com/bitcoin/addre…
3,395
3,261
39,219
16,959,411
Nerdwell retweeted
ETSY uses a lot of integers.... go get those #bugbounty payouts people! Holler here when you find a bug. #bugbountytips Actually buy and sell a product to open up more buttons to push and APIs to call! Duh 😜
5
2
119
6,993
Gonna have to start hacking iOS .... if @Apple put as much effort into security on iOS 26 as they did UAT, it must be riddled with vulns. 🙄
53
Fascinating stuff and surprisingly easy! There are many great articles/resources on fault injection; but here's a shameless plug for my high-level overview of how such attacks can be applied to #BugBounty, along with some other interesting examples. bugcrowd.com/blog/hacking-cr…
Replying to @zoecyber001
The attack is called Clock Glitching (or Voltage Glitching). It’s surgical. The tester didn't guess the PIN. They waited for the exact microsecond the CPU was asking the question: "Is the PIN correct?" At that precise moment, they used the paperclip to short the power rail with the AA battery, " starving the chip of just enough juice to cause a hiccup. The CPU didn't crash. It just tripped. It skipped the "Compare" instruction entirely and landed on the very next line of code: Access Granted.
1
2
174
For all my #BugBounty friends ... quick way to supercharge your workflow: 1. Burp extension that hooks IHttpListener IProxyListener, serializes req/res pairs to JSON, and POSTs them to a local MCP server. 2. MCP server that receives the traffic, dedupes by endpoint, and exposes tools like get_pending_reqs, search_traffic, & submit_request. 3. Now Claude can see your Burp traffic in real time, analyze endpoints, and submit test requests back through Burp's HTTP stack. Bonus: Just have Claude build both sides and iterate ad infinitum. #bugbountytips
1
1
169
I'm surely not the first to do that but thought I'd share with the class. Happy Hunting! 😃
50
Nerdwell retweeted
Mar 22
Thrust vectoring mount for model rocket project … soo spacex job offer yet? 😀😀
58
37
1,079
80,036
Nerdwell retweeted
Catch Tatiana Uklist from Bugcrowd on the Women in Cybersecurity Careers Panel hosted by the UTS Cyber Security Society 💼 It’s always inspiring to see conversations like this create more visibility, representation, and guidance for the next generation of talented folks in cyber!
1
7
1,442
Performed manual token manipulation using WinDbg , stole a token from the SYSTEM process and assigned it to my CMD process, achieving privilege escalation to NT AUTHORITY\SYSTEM. ✨
9
7
137
7,769
Nerdwell retweeted
3/ Mobile Secrets: Decompile that APK. 📱 Hardcoded AES keys in strings aren't just "informational" P4s. If you can use those keys to forge requests or decrypt local data, you’ve just escalated a "low" finding to a critical P1.
1
1
5
780
Nerdwell retweeted
Why ignore crypto? Most hunters think it’s "math." 🧮 The truth: The math is usually fine, it’s the implementation that breaks. Take a 6-digit OTP. If the "random" seed is just a system timestamp, it’s not secure. It’s predictable. Brute-force becomes faster than the expiration timer.  Crypto hacking isn't about breaking the code; it's about finding where the developer left the key under the mat. 🗝️ (👇🧵)
1
5
51
5,463
Nerdwell retweeted
25 Dec 2025
JWT vulnerabilities extend beyond the 'none' algorithm. 🤠 Yesterday, we bypassed JWT authentication by exploiting the 'none' algorithm. Today, we're covering another JWT attack: key ID (kid) injection! 😎 The 'kid' parameter instructs the application which key to use for signature verification. If this parameter isn't properly validated, attackers can manipulate it to point to predictable files or locations, allowing them to forge valid tokens with known keys! This misconfiguration is still present in older applications and can lead to complete authentication bypass and privilege escalation. It's another reminder that trusting user-controlled input (even in JWT headers) is dangerous! 👀 Day 25 of #BugQuest2025 is now available! Swipe through to learn more. 👇 #BugBounty #HackWithIntigriti
3
15
84
5,743
Nerdwell retweeted
25 Dec 2025
🛜 Pentesting Bluetooth: A few blogs on Hacking Bluetooth Low Energy 1. blog.attify.com/the-practica… 2. pentestpartners.com/security… 3. book.hacktricks.xyz/todo/rad… authors: @hacktricks_live / @attifyme
2
90
432
21,476
Nerdwell retweeted
3 Oct 2025
Replying to @nerdwell
@nerdwell “My biggest piece of advice for new hackers is to dive in and start getting your hands dirty as soon as possible,”
1
2
76
6 Feb 2025
🚀Had a blast sharing my bug bounty journey with @Bugcrowd! From past hacks to what lies ahead in 2025, it's all in this Hacker Spotlight. 🏴‍☠️🔎 bugcrowd.com/blog/hacker-spo… 👀What was your biggest bug bounty lesson from 2024, and what’s next for 2025? 💬
1
6
247
Nerdwell retweeted
4 May 2023
In #LevelUpX Series 20, gain insight to better understanding the modular structure of Windows applications to guide your understanding of the exposed attack surface. Like this write-up by @nerdwell? Check out his other pieces, all in #BCU! ⤵️ bugcrowd.com/resources/level…
3
15
3,863