Spix0r
@spix0r.bsky.social
📤 304
📥 136
📝 68
Cyber Security Enthusiast | Github:
https://github.com/Spix0r
pinned post!
To hack a thing, first learn to build it.
about 1 year ago
0
0
0
From "Log in with OAuth" to "Your Account Is Mine" I just published my first write-up on my blog:
blog.mirzadzare.net/from-log-in-...
This article is based on a recent
#OAuth
vulnerability I discovered. I hope you enjoy it! ❤️🔥🙌
#BugBounty
#cybersecurity
loading . . .
OAuth Vulnerabilities in Desktop Apps
Security flaw in desktop app OAuth allows account takeover with malicious links. Understand attack steps, why it works, and fix strategies
https://blog.mirzadzare.net/from-log-in-with-oauth-to-your-account-is-mine-desktop-app-edition
about 2 months ago
0
3
0
It’s been a while since my last update, but I’m thrilled to share some exciting news about my project called Fback 1/5
#bugbounty
#bugbountytips
#bugbountytools
#recon
#hacking
#CyberSecurity
7 months ago
1
1
0
github.com/synacktiv/la...
loading . . .
GitHub - synacktiv/laravel-crypto-killer: A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.
A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications. - synacktiv/laravel-crypto-killer
https://github.com/synacktiv/laravel-crypto-killer
11 months ago
0
0
0
Subdomain Enumeration - Finding subdomains that are hidden in the cloud. We need to conduct a certificate search on the IP ranges of cloud providers such as Amazon, Digital Ocean, Google, and Microsoft. 1/3
12 months ago
1
1
0
Root Detection & SSL Bypass Script
github.com/0xCD4/SSL-by...
loading . . .
GitHub - 0xCD4/SSL-bypass: SSL bypass check
SSL bypass check. Contribute to 0xCD4/SSL-bypass development by creating an account on GitHub.
https://github.com/0xCD4/SSL-bypass
12 months ago
0
2
0
Bypass Cloudflare's /h/b/jsd challenge using 100% python
github.com/xkiian/cloud...
loading . . .
GitHub - xKiian/cloudflare-jsd: Bypass Cloudflare's /h/b/jsd challenge using 100% python
Bypass Cloudflare's /h/b/jsd challenge using 100% python - xKiian/cloudflare-jsd
https://github.com/xkiian/cloudflare-jsd
12 months ago
0
1
0
reposted by
Spix0r
James Kettle
12 months ago
I’ve updated the bug bounty & content creators starter pack with classic research group
@hackerschoice.bsky.social
! Let me know if you’re not on this list and would like to be added.
go.bsky.app/GD7hKPX
add a skeleton here at some point
7
44
13
I’ve added a new feature to Robofinder, and now you can extract old parameters from archived robots.txt files. This is very useful for your recon process because you may find hidden or deprecated parameters that other tools might miss. Github:
github.com/Spix0r/robof...
12 months ago
0
0
0
reposted by
Spix0r
Jorian
about 1 year ago
During
#x3ctf
, I discovered an unintended solution that turned out to be a pretty cool generic technique. It allows you to detect the result of a selector during CSS Injection, bypassing any CSP restricting external requests! Check out the writeup below:
jorianwoltjer.com/blog/p/ctf/x...
loading . . .
Post: x3CTF - blogdog (+ new CSS Injection XS-Leak!) | Jorian Woltjer
A "hard web xssbot" challenge about a fun browser quirk with the is= attribute to perform CSS Injection. Bypass the strict CSP with an unintended new technique to XS-Leak a selector's result by detect...
https://jorianwoltjer.com/blog/p/ctf/x3ctf-blogdog-new-css-injection-xs-leak
1
22
7
Robots.txt File And
#Reconnaissance
What is a robots.txt file? The robots.txt file is designed to restrict web crawlers from accessing certain parts of a website. However, it often inadvertently reveals sensitive directories that the site owner prefers to keep unindexed. 1/3
about 1 year ago
1
1
0
Writeup-Miner is live again on
T.me/Daily_Writeups
Join to be among the first to access the latest cybersecurity write-ups! Source Code:
github.com/Spix0r/write...
about 1 year ago
0
0
0
reposted by
Spix0r
Liran Tal
about 1 year ago
Find out about new JavaScript security vulnerabilites in npm packages on the Node.js Security newsletter:
www.nodejs-security.com/newsletter/n...
0
2
1
To hack a thing, first learn to build it.
about 1 year ago
0
0
0
reposted by
Spix0r
renniepak
about 1 year ago
Hey BlueSky! I case you missed it: I've created
cspbypass.com
A site where you can search for known CSP bypass gadgets to gain XSS. It already contains a bunch of useful gadgets with contributions from your favourite hackers. If you have some CSP bypasses to share, feel free to contribute!
loading . . .
1
71
25
reposted by
Spix0r
Gareth Heyes
about 1 year ago
I'm building two web security tools at the moment: Shazzer - A shared online fuzzer
shazzer.co.uk
Hackvertor - Web security conversion tool
hackvertor.co.uk
2
15
4
I've created a repo for top Nuclei templates from the security community. Contribute your templates or find powerful ones for CVE scans, fuzzing, and more! Let's build the largest Nuclei template library together!
github.com/Spix0r/Nucle...
loading . . .
GitHub - Spix0r/Nuclei-Community-Templates: A collaborative hub for Nuclei templates. Contribute, share, and explore powerful vulnerability detection tools!
A collaborative hub for Nuclei templates. Contribute, share, and explore powerful vulnerability detection tools! - Spix0r/Nuclei-Community-Templates
https://github.com/Spix0r/Nuclei-Community-Templates
about 1 year ago
0
0
0
reposted by
Spix0r
Random Robbie
about 1 year ago
github.com/veikkos/bmw
Guide on there for the BMW app should work on any other app
loading . . .
GitHub - veikkos/bmw: BMW Connected Drive apis
BMW Connected Drive apis. Contribute to veikkos/bmw development by creating an account on GitHub.
https://github.com/veikkos/bmw
1
1
1
Can you drop every useful resources about hacking Wordpress websites? 👇🏻
about 1 year ago
0
0
0
reposted by
Spix0r
Nicolas Grégoire
about 1 year ago
If you write Python scripts, make yourself a favor and use the Rich library to beautify their output 🐍 🧑💻
loading . . .
GitHub - Textualize/rich: Rich is a Python library for rich text and beautiful formatting in the terminal.
Rich is a Python library for rich text and beautiful formatting in the terminal. - Textualize/rich
https://github.com/Textualize/rich
6
115
20
Cloudrecon - This script is used to search for cloud certificate entities such as Amazon, Azure, and others that have been extracted by the kaeferjaeger[.]gay provider.
github.com/Spix0r/cloud...
loading . . .
GitHub - Spix0r/cloudrecon: This script is used to search for cloud certificate entities such as Amazon, Azure, and others that have been extracted by the kaeferjaeger.gay provider.
This script is used to search for cloud certificate entities such as Amazon, Azure, and others that have been extracted by the kaeferjaeger.gay provider. - Spix0r/cloudrecon
https://github.com/Spix0r/cloudrecon
about 1 year ago
0
2
0
reposted by
Spix0r
Nicolas Grégoire
about 1 year ago
A younger me, as a pentester and bug hunter, had exactly the bias described in this article 🤫 Luckily, I later worked with and for "the other side" and it changed my mind 🤯 I hope young people reading it will avoid taking years to understand the complexities of fixing bugs in a timely manner 🤞
loading . . .
Why Can't You Fix This Bug Faster?
Fixing security vulnerabilities in a timely manner is more complicated than you realize.
https://maxwelldulin.com/BlogPost/Why-Can't-You-Fix-This-Bug-Faster
2
59
20
reposted by
Spix0r
Gareth Heyes
about 1 year ago
Hackvertor BApp pro tip: 🛠️ Did you know you can use Hackvertor tags inside custom tags? This also works with globally declared variables! Example set a global in a request: <@set_var(true)>1337<@/set_var> Custom JS tag: output = convert("< @get_var />") Now that's power 💪
0
13
1
reposted by
Spix0r
Nick Dunn
about 1 year ago
While everyone waits for the next
@bsideslondon.bsky.social
, here are my slides from the previous event. This isn't entirely for self-promotion 😆, it's also because of the lack of resources out there for SOSL injection Apex and Java code for Salesforce.
github.com/N1ckDunn/SOS...
loading . . .
GitHub - N1ckDunn/SOSLInjection
Contribute to N1ckDunn/SOSLInjection development by creating an account on GitHub.
https://github.com/N1ckDunn/SOSLInjection
1
9
3
I've developed a Python tool called Fback that generates wordlists for fuzzing backup files. It takes a JSON-based pattern file and a seed wordlist as input and produces a target-specific wordlist as output. Github:
github.com/Spix0r/Fback
#bugbounty
#bugbountytools
#cybersecurity
loading . . .
GitHub - Spix0r/fback: This is a useful Python script for generating a target specific wordlist for fuzzing backup files.
This is a useful Python script for generating a target specific wordlist for fuzzing backup files. - Spix0r/fback
https://github.com/Spix0r/Fback
about 1 year ago
0
3
1
reposted by
Spix0r
James Kettle
about 1 year ago
I've updated the bug bounty starter pack with some more hitters - re-subscribe to get them in your timeline. There's still 65 open places remaining so just let me know if you'd like to be added!
bsky.app/starter-pack...
add a skeleton here at some point
7
24
3
reposted by
Spix0r
Bitquark
about 1 year ago
I've just updated Shortscan to support reading a list of URLs to scan from a file (and included a minor bugfix). Feedback welcome! The latest version is v0.9.2 and can be found on Github:
github.com/bitquark/sho...
loading . . .
GitHub - bitquark/shortscan: An IIS short filename enumeration tool
An IIS short filename enumeration tool. Contribute to bitquark/shortscan development by creating an account on GitHub.
https://github.com/bitquark/shortscan
4
36
8
I've put aside Hunt for a month and I'm studying for my bachelor's courses so I can get into a master's program. In our country, we have to take an exam called the "Konkur" before we can start studying for a master's. I really miss Hunt! :) I hope I can hang in there for these two months.☠️
about 1 year ago
0
0
0
reposted by
Spix0r
Richard Johnson
about 1 year ago
piping websocat to jq had weird buffering, so here's an ugly bash oneliner that infinitely listens to jetstream for some seconds, writing identity records to a file, then processing them to add bidirectional mappings for DID and Handle to redis
gist.github.com/richinseattl...
0
8
2
What are the top 3 books you have read in your entire life?
about 1 year ago
0
0
0
reposted by
Spix0r
TomNomNom
about 1 year ago
I've done a whole bunch of talks, interviews and stuff on other people's YouTube channels over the years so I'm going to try and catalog them here. First up is a video with my good friend STÖK in which I demo some big bounty workflow stuff. This one is special.
youtu.be/l8iXMgk2nnY
loading . . .
VIM tutorial: linux terminal tools for bug bounty pentest and redteams with @tomnomnom
YouTube video by STÖK
https://youtu.be/l8iXMgk2nnY?si=Ovam3IhJ6q_TMR-A
3
58
17
Last year, I developed a tool called Robofinder. It retrieves historical robots.txt files from archive[.]org, offering valuable insights for web application recon and information gathering. You can access the tool here:
github.com/Spix0r/robof...
#CyberSecurity
#BugBounty
#InfoSec
loading . . .
GitHub - Spix0r/robofinder: Robofinder retrieves historical #robots.txt files from #Archive.org, allowing you to uncover previously disallowed directories and paths for any domain—essential for deepen...
Robofinder retrieves historical #robots.txt files from #Archive.org, allowing you to uncover previously disallowed directories and paths for any domain—essential for deepening your #OSINT and #reco...
https://github.com/Spix0r/robofinder
about 1 year ago
0
1
0
I’ve created a tool called Writeup-Miner to fetch the latest write-ups on any topic (specified by
#hashtags
) from Medium, store them in MongoDB or .txt, and send notifications to Telegram/Discord. You can access the tool here:
github.com/Spix0r/write...
about 1 year ago
0
0
0
reposted by
Spix0r
TomNomNom
about 1 year ago
Here's another: make a looping gif into a non-looping gif, without messing up the palette: ffmpeg -i in.gif -loop -1 out.gif -filter_complex "[0:v] split [a][b];[a] palettegen [p];[b][p] paletteuse"
0
1
1
reposted by
Spix0r
TomNomNom
about 1 year ago
Apropos of nothing: if you want to embed subtitles into a video file you can do it with ffmpeg: ffmpeg -i infile.mp4 -i subs.vtt -c copy -c:s mov_text outfile.mp4
1
2
1
reposted by
Spix0r
Nicolas Grégoire
about 1 year ago
Tons of new URL validation bypasses were added to the
@portswigger.bsky.social
cheat sheet 💎
loading . . .
New crazy payloads in the URL Validation Bypass Cheat Sheet
The strength of our URL Validation Bypass Cheat Sheet lies in the contributions from the web security community, and today’s update is no exception. We are excited to introduce a new and improved IP a
https://portswigger.net/research/new-crazy-payloads-in-the-url-validation-bypass-cheat-sheet
0
2
1
I've put together a comprehensive guide for anyone interested in configuring a
#DNS
server for Out-Of-Band (
#OOB
) data
#exfiltration
. This resource will enhance your understanding of how DNS operates. 1/3
about 1 year ago
1
2
2
Do we have any free platforms where I can run my
#Python
#script
(Telegram bot)?
about 1 year ago
0
0
0
I’ve analyzed numerous tools, blogs, tweets, and other resources on bypassing 403
#Forbidden
errors using HTTP Headers
#Fuzzing
techniques. After extensive research, I’ve compiled a list of headers you can fuzz to potentially
#bypass
403 restrictions. 1/2
#BugBounty
#bugbountytips
#infosec
#pentest
about 1 year ago
1
2
0
I've just dropped a
#Python
tool to exploit
#Django
RCE by leveraging
#deserialization
in session cookies. It forges a malicious cookie that executes system commands remotely. 🔗 Check it out here:
github.com/Spix0r/djang...
#CyberSecurity
#BugBountyTools
#RCE
#BugBounty
#Exploit
#BugBountyTips
loading . . .
GitHub - Spix0r/django-rce-exploit: A Python tool for exploiting Django RCE via deserialization vulnerabilities in session cookies, allowing remote code execution through forged cookies.
A Python tool for exploiting Django RCE via deserialization vulnerabilities in session cookies, allowing remote code execution through forged cookies. - Spix0r/django-rce-exploit
https://github.com/Spix0r/django-rce-exploit
about 1 year ago
0
1
0
Bluesky now has over 10 million users, and I was #318,252!
over 1 year ago
0
0
0
The magic you're looking for is in the work you're avoiding.
over 2 years ago
0
0
0
Spent 2 days trying to learn Go by reading. Didn't work. So today I built hacking tools with Go instead. Awesome! Getting your hands dirty is the best way to learn. #go #golang #programming
over 2 years ago
1
0
0
What Are The Best Books or Websites To Learn Golang? #programming #golang #go
over 2 years ago
1
0
0
This is my first tweet? feed? thread or ....😂 Just testing blueSky... =)
over 2 years ago
1
6
0
you reached the end!!
feeds!
log in