All posts
How I was able to Download Any file from Web server!
I tried to open the file but then I came to know that the file is only downloadable :/ WTF. You can't open it on web server. But I don't give up coz i have an other option that was…
KNOXSS for Dummies! A new Detailed Guide to use KNOXSS Pro in real world
Hello to all my brothers and friends.
Security Researcher saved Careem from a Data Breach
The Post is about a Researcher found a security loop hole in Careem Cab app that let him takeover 1.4 Million user information,
Unrestricted File Upload to RCE | Bug Bounty POC
How I bypassed image upload functionality on a project to gain RCE,
HOW I WAS ABLE TO TAKEOVER FACEBOOK ACCOUNT | Bug Bounty Poc
hey all here is ameer hamza, Facebook has recently introduced login with phone functionality if you have forgotten your password. however I was able to exploit it which leads to a…
My Guide to Basic Recon? | Bug Bounties + Recon | Amazing Love story.
The Post describe basic steps i follow before starting actual hunt for bugs in a bug bounty program, how i map out the target and which tools to use.
UBER Wildcard Subdomain Takeover | BugBounty POC
one of ubers domain was vulnerable to Wildcard subdomain takeover, Basically as heroku wildcard is Opened and i can register any subdomain & takeover it.
Accessing Localhost via Vhost | VIRTUAL HOST ENUMERATION | BugBounty POC
The Blog post is about what are Virtual Host, how U can Enumerate them and get access to the vulnerable system, including POC of resent BugBounty Report.




