@thelabdai
iAccount based inHungary
About this account
- Account based in
- Hungary
- Connected via
- Hungary Android App
Account-level information from X, not a live location or the device used for a specific post.
Geek, IT security, OSCP https://nitter.cf/t.co/EWCotWEbvp Former Synack RedTeam member @Bugcrowd Ambassador #BugBountyTips
Budapest, Magyarország
Joined June 2014
- Tweets1.8K
- Following393
- Followers726
- Likes928
☠Labda☠ retweeted
🔥 Introducing REx@Skill — an open-source 𝗔𝗻𝘁𝗵𝗿𝗼𝗽𝗶𝗰 𝗖𝗹𝗮𝘂𝗱𝗲 𝗖𝗼𝗱𝗲 𝗦𝗸𝗶𝗹𝗹 for agentic binary reverse engineering & vulnerability discovery.
7 specialized subagents with integrated Ghidra, QEMU, AFL++, and Z3 tooling.
github.com/tihanyin/REx-skil…
#AgentSkill
I spent a few days auditing a slice of the WordPress plugin ecosystem with over 400 plugins.
thelabda.com/2026/07/five-da…
#BugBounty #Wordpress #hacking #automation
We’re proud to share that Hackrate is now Hungary’s first CVE Numbering Authority (CNA) under the CVE Program.
Hackrate is now a CVE Numbering Authority (CNA) assigning CVE IDs for vulnerabilities that are discovered, validated, & coordinated through the Hackrate Ethical Hacking Platform
cve.org/Media/News/item/news…
#cve #cna #vulnerabilitymanagement #vulnerability @CVEnew @hackrate
☠Labda☠ retweeted
Call any number (even premium-rate ones) from a locked iPhone and confirm whether a number/email is saved in the contact list:
szilak.com/2025-09-18-locked…
#iphone #apple #privacy
☠Labda☠ retweeted
We've just released Shadow Repeater, for AI-enhanced manual testing. Simply use Burp Repeater as you normally would, and behind the scenes Shadow Repeater will learn from your attacks, try payload permutations, and report any discoveries via Organizer.
☠Labda☠ retweeted
Idén is megejtjük az adománygyüjtő streamet a Boldog Gyermekkor Nevelőszülői Hálózat gyerekeinek! 💜
HackGATE: Empowering ethical hacking with visibility and control producthunt.com/posts/hackga… via @producthunt
☠Labda☠ retweeted
One does not simply walk to the Vault ✋
But every quest is easier with the support of our allies! Thank you @Bugcrowd for being the Diamond Sponsor of #BusinessCTF24. Register now for the biggest #CTF competition for corporate teams: okt.to/IxcdSO
☠Labda☠ retweeted
A new @Burp_Suite extension (by @compasssecurity) looking for JWT vulns 🤖
blog.compass-security.com/20…
How do you log your penetration-test activity?
Do you use your custom tool, or some sort of third party solution?
#questionoftheday #hacking #pentest #bugbounty
Wow crazy af! #BugBounty
Just published a writeup on my account takeover vulnerability in ChatGPT, using a really cool web cache deception technique. Waited a while to finally publish this, enjoy :)
nokline.github.io/bugbounty/…
☠Labda☠ retweeted
GAP is now the @Burp_Suite BApp store 🤘
Go give it a go, give some feedback, give it a rating, and go get all those links, parameters and custom wordlists!
#BugBounty
☠Labda☠ retweeted
You probably know that
<Img Src=javascript:alert(1)>
Doesn't work anymore (although several lists out there have it)
But if you add
OnError=location=src
It does!
brutelogic.com.br/gym.php?p0…
Not so useful but who knows your next inline injection scenario?
#XSS 😎
My latest cve has been published!💣 nvd.nist.gov/vuln/detail/cve…
It was a nasty directory traversal. Keep in mind: always try to escape from your current directory!
#bugbounty #bugbountytips #cve #hacking
Save the date!
✎ Take note: "Strengthen Your Security Posture" is happening this month with industry leaders Rob N. Gurzeev (@CyCognito), and @caseyjohnellis (@Bugcrowd).
Join the live event on January 24, 2024, to witness the magic of external attack surface management (EASM) and crowdsourced security testing.
Secure your spot now:
cycognito.com/webinars/stren…
If you want to get into BugBounty, check this out!
👇👇👇
The Bugcrowd Web Hacking Resource Kit for beginners
🎓 Courses
📚 Blogs
🧰 Tools
📺 Videos
🗣️ Forums
Download now 👇
bugcrowd.com/resources/hacke…