Avanish Pathak

@avanish46

19 | Infosec | Bug Hunter | | | Acknowledged by Google,Microsoft, Apple

Goa, India
Vrijeme pridruživanja: kolovoz 2014.

Tweetovi

Blokirali ste korisnika/cu @avanish46

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @avanish46

  1. Prikvačeni tweet
    27. velj 2019.
    Poništi
  2. 18. sij

    This means alot ❤️ Thanks alot for this kind words. Its really very motivating.

    Poništi
  3. 18. sij

    Was great meeting you ❤️ Got good motivation after talking to you. See you at ⭐ (Thanks for the Swag 😄)

    Poništi
  4. 12. sij

    Thanks alot for those cool swag and The Kind words ❤️

    Poništi
  5. 8. sij

    This was a Critical one, I was able to buy the Highest Privileged Account of the Application which Cost's $ 9795.10 for Free of Cost. The Endpoint was Out of Scope, but seeing its impact over the application rewarded me with $500 😃

    Poništi
  6. 16. pro 2019.

    I earned $750 on . Capture the Account Creation Request On BurpSuite, Most of the case you'll find the redirect request in burp but not on the web : - [ https.//www.TARGET.com/account-created?redirectUrl=javascript:alert(document.cookie)// ]

    Poništi
  7. 13. pro 2019.

    Got My Christmas Gift Early I guess this year. Thanks alot ♥️

    Poništi
  8. proslijedio/la je Tweet
    12. pro 2019.
    Poništi
  9. 12. pro 2019.

    "This is how it looks when The bounties Earned is put into Result." Bought a New House in Thanks ♥️

    Poništi
  10. 2. pro 2019.
    Poništi
  11. 2. pro 2019.

    Reported Stored XSS on 6 Year old public program and Earned $3000. Hunting old public programs never gets out of fashion.! The Public Programs are Still Vulnerable. So dont Lose your Hope and Keep Hunting. Thanks ♥️

    Poništi
  12. proslijedio/la je Tweet
    27. stu 2019.

    “How I find Blind XSS Vulnerability in ” by newp_th

    Prikaži ovu nit
    Poništi
  13. 21. stu 2019.

    "Though you are stored deep inside but still i love to find you "

    Poništi
  14. proslijedio/la je Tweet
    16. stu 2019.

    Closing keynote 1. Invest in yourself 2. Nobody learns how to do a hockey goal by checking YouTube videos. 3. Practice is the key.

    Poništi
  15. proslijedio/la je Tweet
    12. stu 2019.

    Couldn't have said this better myself. One of the biggest problem with most people that are just starting out in bug bounties is the expectation that they can read a blog, or disclosed report and suddenly start getting bounties. I have spent 25 years learning, and still not done

    Poništi
  16. proslijedio/la je Tweet
    9. stu 2019.

    There's a lot of websites over there that are vulnerable to SQLi. Be ethical and report it instead of upload a webshell (like some script-kidiots are uploading that 🤦‍♂️).

    Poništi
  17. 9. stu 2019.

    Reported a Blind Stored XSS on which was affecting all the Support Admin who are on the Chat and it got fixed within a week. Thanks for forwarding the issue to the Team and keeping me updated about it. Waiting for the cool reward to come 🤟.

    Poništi
  18. proslijedio/la je Tweet
    6. stu 2019.

    Breaching the perimeter, PhantomJs arbitrary file read vulnerability that allows an attacker to access local files on the hosted system. Find out more in our team’s security advisory at and a detailed blog post at

    Poništi
  19. proslijedio/la je Tweet
    5. stu 2019.

    Here is an interesting find and the root cause analysis of an Arbitrary file read vulnerability discovered by me in Note to Devs, never download user controllable HTML locally for converting it in to PDF or PNG if you are using PhantomJs.

    Poništi
  20. 2. stu 2019.

    I was rewarded with $1400 for my submission :- [ XSS Filter bypass To Stored XSS ] . A simple and Commonly seen Scenario.

    Poništi
  21. 26. lis 2019.

    I just earned Rs 251 for collecting 5 Diwali stamps on Google Pay 😅 Thanks . Happy Diwali Friends ♥️

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·