Pinned Tweet
Hello all security enthusiasts!
During a recent security assessment for a private client, I came across a potential cross-site scripting (XSS) vulnerability that I wanted to share with you.
1/n
#security #cybersecurity #penetrationtesting #informationsecurity #bughunting #xss
Shebiiiii retweeted
Just dropped a write-up on using Muse Code for Security Research with the folks at @metabugbounty and my good friend @phwd_ and @1_am_nek0 !
Particularly happy with the binary research section using @full_duplex's lldb-mcp with @clearbluejar's pyghidra-mcp 🔥🔥
bugbounty.meta.com/en-gb/lea…
Shebiiiii retweeted
Added more training to the AI-CTF (it won't be fast but you can run this on a halfway decent laptop) - github.com/mubix/ai-ctf
It teaches prompt injection and other paths prompt injection can take. All the answers are in the repo so it isn't about getting the flags but learning.
Shebiiiii retweeted
1/ Applied Agentic AI Security - Lab #2
I asked my AI agent for another customer's data.
It gave it to me.
No jailbreak. No prompt injection. Just broken authorization.
Field Guide:
rewanthtammana.com/who-let-t…
Thread 🧵
Shebiiiii retweeted
🚀 Just released 𝗪𝗵𝗼 𝗟𝗲𝘁 𝘁𝗵𝗲 𝗔𝗴𝗲𝗻𝘁𝘀 𝗔𝗰𝘁? 🤖
An open-source Agentic AI security lab to break, inspect & learn AI Agents Security.
rewanthtammana.com/who-let-t…
#AISecurity #AgenticAI #LLMSecurity
My tweets haven't gone viral in a while now, so I must drop this banger: reburp
And yes, it's a game changer in applicative pentest and bug bounty. Following me was worth it.
Know how BurpSuite's API does not expose all that burpsuite can do in the UI? and how their MCP isn't better? it lets you read findings but can't do the workflows.
reburp is a small burp extension that uses the extension's access to the internal Montoya API object to re-expose it over a localhost OpenAPI REST API to bridge all that a burp extension can do, to your AI agents in seconds !
Your agent can now use burp's:
- active scan, stop/start scans, fuzzing, turbo intruder
- iterate entire sitemap tree
- websockets
- use tools like Generate CSRF PoC
- use other extensions e.g. Autorize
- Create custom Bambda rules and custom scanners
My favorite: you can explore burp features you haven't found in the UI even after 10 years using it
github.com/forefy/reburp
Shebiiiii retweeted
I've seen a lot of Active Directory environments in the last 5+ years. These are some of the most dangerous issues I recommend reviewing and addressing in your environment.
Treat it like a check list.
If you have 0 of these, you're doing a great job.
Shebiiiii retweeted
CRLF-Powered Desync Attacks: Beheading HTTP Streams
A smart one by @t0xodile
portswigger.net/research/crl…
Shebiiiii retweeted
When fuzzing is no longer treated as merely bruteforcing, you start to unlock meaningful results 🤠
From discovering hidden assets to turning unusual behavior into exploitable vulnerabilities! 😎
In our latest article, we've teamed up with Orwa Atyat (@GodFatherOrwa) to dive deeper into mastering web fuzzing for reconnaissance and vulnerability exploitation.
Read the article now! 👇
intigriti.com/researchers/bl…
Shebiiiii retweeted
Hacking SAML with Claude Code oblique.security/blog/hackin…
Shebiiiii retweeted
New blog post :) 😊 hacking nethack to get #1 on the leaderboard!
shout out to @7urb01 for being the inspiration
josephthacker.com/hacking/20…
Shebiiiii retweeted
Hey Hunters,
just released: Burp Unrestricted MCP
Free and open source, for hunters running AI agents against Burp on
long engagements.
A fork of @PortSwigger's Burp MCP Server that adds the 8 tools an agent
actually needs to work a target end to end.
github.com/RamanMG/Burp-MCP-…
#Bugbounty
Shebiiiii retweeted
إذا كنت تدرس HTB CPTS، فهذا المستودع يستحق يكون من أول المصادر عندك
يحتوي على ملاحظات مفصلة لكل وحدة من مسار HTB Certified Penetration Testing Specialist (CPTS)، بالإضافة إلى Cheat Sheets مرتبة تساعدك أثناء المذاكرة واللابات.
يغطي مواضيع مثل:
✅ Enumeration
✅ Active Directory
✅ Web Exploitation
✅ Privilege Escalation
✅ Pivoting & Tunneling
✅ Password Attacks
✅ وأكثر...
سواء كنت تذاكر للمسار أو تستعد للاختبار، وجود مرجع سريع ومنظم مثل هذا يوفر عليك وقتًا كبيرًا
🔗 github.com/0x1ceKing/HTB-Cer…
Shebiiiii retweeted
إذا كنت تستعد لـ OSCP أو CPTS،
فهذا من أفضل المستودعات المجانية اللي تستحق تضيفها للمفضلة 🔥
📚 يحتوي على ملاحظات مرتبة تغطي:
• Enumeration
• Privilege Escalation
• Active Directory
• Pivoting
• Web Exploitation
• وغير ذلك الكثير...
المميز فيه أنه يركز على المنهجية (Methodology) أكثر من مجرد حفظ الأوامر، ويتم تحديثه باستمرار.
🔗 github.com/dollarboysushil/o…
إذا تعرف مصادر مجانية بنفس الجودة، شاركها تحت التغريدة 👇
Shebiiiii retweeted
Yh in June I made only $5,160 from my i consistent hunts. These were mostly IDORs, OAuth and GraphQL vulnerabilities.
I released some writeups you can read:
$500 to $1,500 Email Verif Bypass: medium.com/@tinopreter/from-…
$2,000 Web Cache Deception medium.com/@tinopreter/crack…
Shebiiiii retweeted
Want to learn AI / LLM Security Assessment? Don't have the money for a training?
Here are 🎯SEVENTY ONE🎯 FREE LLM security labs that we have curated for you!
Like and share! (Link Below)
<3 from @arcanuminfosec
Shebiiiii retweeted
Full Bug Bounty Hunting & Red Teamers Methodology 2026
github.com/Cyber-note/Full-B…