All posts
SQL Injection Vulnerability bootcamp.nutanix.com | Bug Bounty POC
SQL Injection Vulnerability that i found inbootcamp.nutanix.com and how i exploited it - Bug Bounty POC Security Breached Blog
RCE Unsecure Jenkins Instance | Bug Bounty POC
RCE in Jenkins Insecure Instance of Dosomething.org and What can an attacker do with an RCE in an Insecure Jenkins Instance.
Edmodo official number for custom text messages to any number around the world!
Hello 1337s, I hope you all are doing good and hunting websites. Today I'm going to tell you about a very interesting finding which was very simple and I never expected that it cou…
IOS 11.4 Siri Auth Bypass | CVE-2018-4238
IOS 11.2.6 IOS 11.4 Siri Authentication | CVE-2018-4238
How I was able to get subscription of $120/year For Free | Bug Bounty POC
How I was able to get subscription of $120/year For Free WeTransfer Bug Bounty How i found The issue in Wetransfer and reported it via Zerocopter
How I found IDOR on Twitter's Acquisition - Mopub.com
Hello everyone, Jay Jani noob here with another noobish finding. As 2k18 has started, I thought to hunt down Twitter for gaining reputation on HackerOne. I tried to find a bug on t…
Hunting Insecure Direct Object Reference Vulnerabilities for Fun and Profit (PART-1)
This is my first Blog post and i am starting with IDOR Vulnerability. In this Post you will know about many endpoints to test IDOR vulnerability! Hope you will like it.
How I was able to Bypass XSS Protection on HackerOne's Private Program
Hello friends, This is Jay Jani here and First of all frankly I would like to tell you all that I am completely a noob so I did some noobish things here. Please forgive me for my n…

