12. Found a security issue in the @aadhaarapi's website. They contact me and fixed the issue. I will disclose the details soon.https://twitter.com/fs0c131y/status/953315051389284352 …
-
Show this thread -
Elliot Alderson Retweeted Elliot Alderson
13. Another bug in the
#Aadhaar app.@UIDAI didn't make a public statement or contact me.https://twitter.com/fs0c131y/status/953378017849552903 …Elliot Alderson added,
0:25Elliot Alderson @fs0c131yBug in the official#Aadhaar#android app. By default, the application asks for the password for each action. In the settings, you can deactivate this password protection. By force quitting the app when you deactivate this mechanism you don't need to enter the password. pic.twitter.com/HJ8PqyIXS1Show this thread1 reply 30 retweets 23 likesShow this thread -
Elliot Alderson Retweeted
14. I found 100 malwares signed with the private key of
@lorensiuswlt. He contacted me and denied to be the author. He said he uploaded his private key on the web few years ago. https://twitter.com/fs0c131y/status/951965826420154368 …Elliot Alderson added,
This Tweet is unavailable.1 reply 2 retweets 9 likesShow this thread -
Elliot Alderson Retweeted Elliot Alderson
15. I found a
#coinhive script on the@lorensiuswlt's website. He contacted me and took his website offline.https://twitter.com/fs0c131y/status/953203109119123456 …Elliot Alderson added,
1 reply 3 retweets 13 likesShow this thread -
Elliot Alderson Retweeted Elliot Alderson
16.
@safelyfiled which keep sensitive docs, records, assets and directives digitally#secure is vulnerable to a basic#XSS. They didn't make a public statement or contact me.https://twitter.com/fs0c131y/status/952210674045931521 …Elliot Alderson added,
Elliot Alderson @fs0c131yHi@safelyfiled
! Your Twitter bio is : "Keep sensitive docs, records, assets and directives digitally #secure. Tag, note, remind, permit, audit & share. Expert#encryption & controls ensure#privacy." Instead of making such claims, can you fix this basic XSS vuln
? pic.twitter.com/DAOzfe3HT61 reply 2 retweets 12 likesShow this thread -
Elliot Alderson Retweeted Elliot Alderson
17.
@NewIndianXpress, an#Indian newspaper is vulnerable to a basic#XSS. They did not make a public statement or contact me.https://twitter.com/fs0c131y/status/952267272776769536 …Elliot Alderson added,
3 replies 16 retweets 40 likesShow this thread -
All this work had been done for free (am I stupid
?), if you want to support my research and pay me the coffee, feel free to send me BTC to this address 382rGcim5vDpztHyy9EDnvtLuAAasJHrEi7 replies 17 retweets 79 likesShow this thread -
-
-
@fs0ci31y is a scammer be careful. I don't use paypal
-
-
fuck me for trying to compensate people that do the good work. I don’t have bitcoin unfortunately.0 replies 0 retweets 1 likeThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Elliot did you report that account ? Almost anyone can be easily fooled !
0 replies 0 retweets 0 likesThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.